Alternatives

Incident Response Powershell alternatives for AI agents.

Compare similar skills by workflow fit, trust score, quality, GitHub adoption, maintenance, and install readiness.

Current skill

Incident Response Powershell

PowerShell Digital Forensics & Incident Response Scripts.

86
Quality
80
Trust
797
Stars
#1

Microsoft Analyzer Suite

Similarity 130Trust 84Excellent 85

A collection of PowerShell scripts for analyzing data from Microsoft 365 and Microsoft Entra ID

634 starsJun 3, 2026 pushdevopsPowerShellIncident Response
$ npx skills add LETHAL-FORENSICS/Microsoft-Analyzer-Suite
#2

MemProcFS Analyzer

Similarity 129Trust 82Strong 80

MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR

720 starsMay 2, 2026 pushdevopsPowerShellIncident Response
$ npx skills add LETHAL-FORENSICS/MemProcFS-Analyzer
#3

Sleuthkit

Similarity 123Trust 90Excellent 100

The Sleuth Kit® (TSK) is a library and collection of command line digital forensics tools that allow you to investigate volume and file system data. The library can be incorporated into larger digital forensics tools and the command line tools can be directly used to find evidence.

3.1K starsJun 12, 2026 pushdevopsCIncident Response
$ npx skills add sleuthkit/sleuthkit
#4

Incident Response Docs

Similarity 120Trust 91Excellent 96

PagerDuty's Incident Response Documentation.

1.0K starsApr 9, 2026 pushdevopsDockerfileIncident Response
$ npx skills add PagerDuty/incident-response-docs
#5

Trawler

Similarity 120Trust 73Needs review 51

PowerShell script helping Incident Responders discover potential adversary persistence mechanisms.

330 starsMay 1, 2025 pushdevopsPowerShellIncident Response
$ npx skills add joeavanzato/Trawler
#6

PersistenceSniper

Similarity 120Trust 79Promising 69

Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows machines. Official Twitter/X account @PersistSniper. Made with ❤️ by @last0x00 and @dottor_morte

2.1K starsDec 11, 2024 pushdevopsPowerShellIncident Response
$ npx skills add last-byte/PersistenceSniper
#7

SecurityResearcher Note

Similarity 120Trust 70Needs review 48

Cover various security approaches to attack techniques and also provides new discoveries about security breaches.

488 starsApr 17, 2025 pushdevopsPowerShellIncident Response
$ npx skills add LearningKijo/SecurityResearcher-Note
#8

Microsoft Eventlog Mindmap

Similarity 118Trust 89Strong 84

Set of Mindmaps providing a detailed overview of the different #Microsoft auditing capacities for Windows, Exchange, Azure,...

1.1K starsNov 8, 2025 pushdevopsIncident ResponseClaude Code
$ npx skills add mdecrevoisier/Microsoft-eventlog-mindmap
#9

Fame

Similarity 118Trust 86Excellent 87

FAME Automates Malware Evaluation

941 starsJun 13, 2026 pushdevopsPythonIncident Response
$ npx skills add certsocietegenerale/fame
#10

My Arsenal Of Aws Security Tools

Similarity 117Trust 91Excellent 100

List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.

9.5K starsApr 17, 2026 pushdevopsShellIncident Response
$ npx skills add toniblyx/my-arsenal-of-aws-security-tools
#11

Catalyst

Similarity 116Trust 88Strong 84

⚡️ Catalyst is a self-hosted, open source incident response platform and ticket system that helps to automate alert handling and incident response processes

530 starsJun 2, 2026 pushdevopsVueIncident Response
$ npx skills add SecurityBrewery/catalyst
#12

Open Source Security Guide

Similarity 116Trust 86Strong 79

Open Source Security Guide. Learn all about Security Standards (FIPS, CIS, FedRAMP, FISMA, etc.), Frameworks, Threat Models, Encryption, and Benchmarks.

1.1K starsJun 27, 2025 pushdevopsGoIncident Response
$ npx skills add mikeroyal/Open-Source-Security-Guide
#13

GOAD

Similarity 116Trust 88Excellent 100

game of active directory

7.9K starsMar 12, 2026 pushdevopsPowerShellTerraform
$ npx skills add Orange-Cyberdefense/GOAD
#14

Hayabusa

Similarity 116Trust 95Excellent 100

Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.

3.2K starsJun 7, 2026 pushdevopsRustIncident Response
$ npx skills add Yamato-Security/hayabusa
#15

Volatility3

Similarity 115Trust 89Excellent 100

Volatility 3.0 development

4.2K starsMay 26, 2026 pushdevopsPythonIncident Response
$ npx skills add volatilityfoundation/volatility3
#16

Velociraptor

Similarity 115Trust 89Excellent 100

Digging Deeper....

4.0K starsJun 16, 2026 pushdevopsGoIncident Response
$ npx skills add Velocidex/velociraptor

How to choose

When should you switch?

Use an alternative when it has a clearer install path, higher trust score, fresher maintenance, or better platform fit for your current agent stack. Keep Incident Response Powershell if it already passes your workflow test and repository review.

Next step

Compare top candidates side by side

Open the compare page, test the install commands in a sandbox, and check each repository before using a skill in production.