Alternatives

Dfirtrack alternatives for AI agents.

Compare similar skills by workflow fit, trust score, quality, GitHub adoption, maintenance, and install readiness.

Current skill

Dfirtrack

DFIRTrack - The Incident Response Tracking Application

70
Quality
79
Trust
536
Stars
#1

Kanvas

Similarity 144Trust 84Strong 78

A simple-to-use IR (incident response) case management tool for tracking and documenting investigations.

457 starsApr 29, 2026 pushdevopsPythonIncident Response
$ npx skills add WithSecureLabs/Kanvas
#2

Beagle

Similarity 137Trust 84Strong 72

Beagle is an incident response and digital forensics tool which transforms security logs and data into graphs.

1.3K starsDec 13, 2022 pushdevopsPythonIncident Response
$ npx skills add yampelo/beagle
#3

Iris Web

Similarity 136Trust 93Excellent 100

Collaborative Incident Response platform

1.5K starsJun 8, 2026 pushdevopsPythonIncident Response
$ npx skills add dfir-iris/iris-web
#4

Catalyst

Similarity 132Trust 88Strong 84

⚡️ Catalyst is a self-hosted, open source incident response platform and ticket system that helps to automate alert handling and incident response processes

530 starsJun 2, 2026 pushdevopsVueIncident Response
$ npx skills add SecurityBrewery/catalyst
#5

CyberThreatHunting

Similarity 132Trust 77Promising 56

A collection of resources for Threat Hunters

915 starsOct 15, 2024 pushdevopsPythonIncident Response
$ npx skills add A3sal0n/CyberThreatHunting
#6

Fame

Similarity 132Trust 86Excellent 87

FAME Automates Malware Evaluation

941 starsJun 13, 2026 pushdevopsPythonIncident Response
$ npx skills add certsocietegenerale/fame
#7

MemProcFS Analyzer

Similarity 131Trust 82Strong 80

MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR

720 starsMay 2, 2026 pushdevopsPowerShellIncident Response
$ npx skills add LETHAL-FORENSICS/MemProcFS-Analyzer
#8

Atc React

Similarity 131Trust 75Promising 55

A knowledge base of actionable Incident Response techniques

666 starsMay 31, 2022 pushdevopsPythonIncident Response
$ npx skills add atc-project/atc-react
#9

Incidental

Similarity 131Trust 77Needs review 54

An opensource incident management platform integrating with Slack.

563 starsDec 27, 2024 pushdevopsPythonIncident Response
$ npx skills add incidentalhq/incidental
#10

Aurora Incident Response

Similarity 130Trust 84Strong 71

Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders

1.1K starsOct 5, 2023 pushdevopsJavaScriptIncident Response
$ npx skills add cyb3rfox/Aurora-Incident-Response
#11

Cortex

Similarity 130Trust 91Excellent 100

Cortex: a Powerful Observable Analysis and Active Response Engine

1.6K starsMay 20, 2026 pushdevopsScalaIncident Response
$ npx skills add TheHive-Project/Cortex
#12

Cortex Analyzers

Similarity 130Trust 84Strong 84

Cortex Analyzers Repository

485 starsJun 11, 2026 pushdevopsPythonIncident Response
$ npx skills add TheHive-Project/Cortex-Analyzers
#13

Volatility3

Similarity 129Trust 89Excellent 100

Volatility 3.0 development

4.2K starsMay 26, 2026 pushdevopsPythonIncident Response
$ npx skills add volatilityfoundation/volatility3
#14

My Arsenal Of Aws Security Tools

Similarity 125Trust 91Excellent 100

List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.

9.5K starsApr 17, 2026 pushdevopsShellIncident Response
$ npx skills add toniblyx/my-arsenal-of-aws-security-tools
#15

Kuiper

Similarity 124Trust 74Needs review 51

Digital Forensics Investigation Platform

893 starsOct 12, 2024 pushdevopsJavaScriptIncident Response
$ npx skills add DFIRKuiper/Kuiper
#16

Hayabusa

Similarity 124Trust 95Excellent 100

Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.

3.2K starsJun 7, 2026 pushdevopsRustIncident Response
$ npx skills add Yamato-Security/hayabusa

How to choose

When should you switch?

Use an alternative when it has a clearer install path, higher trust score, fresher maintenance, or better platform fit for your current agent stack. Keep Dfirtrack if it already passes your workflow test and repository review.

Next step

Compare top candidates side by side

Open the compare page, test the install commands in a sandbox, and check each repository before using a skill in production.