{"repo":"panther-labs/pypanther","free":true,"listed":false,"github":"https://github.com/panther-labs/pypanther","clone":"git clone https://github.com/panther-labs/pypanther.git","description":"A Pythonic Detection Rules Framework","language":"Python","stars":14,"topics":["detection-as-code","detection-engineering","incident-response","infosec","monitoring","security","panther"],"license":"Apache-2.0","category":"security-tools","readme_excerpt":"PyPanther pypanther is a Python framework for writing detection rules with Panther. It provides an intuitive interface for creating, managing, and deploying detections to enhance your security operations. Included is a pypanther CLI tool to interact with your content and upload it to a Panther instance. Features - Rule Creation : Easily create rules using Python classes and inheritance - Type Safety : Built with type hints for better IDE support and code quality - Testing Framework : Built-in testing utilities for rule validation - CLI Tool : Command-line interface for managing and deploying rules - Helper Functions : Common security detection patterns and utilities - Log Type Support : Native support for major cloud and security log types Installation From PyPI To install pypanther from PyPI, use pip: From Source To install from source: Development Setup For development, we recommend using Poetry: 1. Install Poetry : Follow the instructions on the Poetry website to install Poetry. 2. Clone and Install : 3. Activate the Environment : Prerequisites - Python 3.11 or higher - Panther instance with API access - Poetry (for development) Quick Start Here is a simple main.py to get you started with development. Place this in the base directory: For more detailed examples and implementation patterns, check out the pypanther-starter-kit. Documentation - User Guide - Library Reference - CLI Guide - Rule Development Guide Development Running Tests Code Style We use ruff for code formatt","default_branch":null,"files":null,"tree":[],"storefront":"/r/panther-labs","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/panther-labs/pypanther/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}