Alternatives

Velociraptor alternatives for AI agents.

Compare similar skills by workflow fit, trust score, quality, GitHub adoption, maintenance, and install readiness.

Current skill

Velociraptor

Digging Deeper....

100
Quality
89
Trust
4.0K
Stars
#1

Osctrl

Similarity 130Trust 86Strong 84

Fast and efficient osquery management

503 starsJun 14, 2026 pushdevopsGoIncident Response
$ npx skills add jmpsec/osctrl
#2

Iris Web

Similarity 122Trust 93Excellent 100

Collaborative Incident Response platform

1.5K starsJun 8, 2026 pushdevopsPythonIncident Response
$ npx skills add dfir-iris/iris-web
#3

Cortex

Similarity 122Trust 91Excellent 100

Cortex: a Powerful Observable Analysis and Active Response Engine

1.6K starsMay 20, 2026 pushdevopsScalaIncident Response
$ npx skills add TheHive-Project/Cortex
#4

My Arsenal Of Aws Security Tools

Similarity 117Trust 91Excellent 100

List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.

9.5K starsApr 17, 2026 pushdevopsShellIncident Response
$ npx skills add toniblyx/my-arsenal-of-aws-security-tools
#5

Catalyst

Similarity 116Trust 88Strong 84

⚡️ Catalyst is a self-hosted, open source incident response platform and ticket system that helps to automate alert handling and incident response processes

530 starsJun 2, 2026 pushdevopsVueIncident Response
$ npx skills add SecurityBrewery/catalyst
#6

Hayabusa

Similarity 116Trust 95Excellent 100

Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.

3.2K starsJun 7, 2026 pushdevopsRustIncident Response
$ npx skills add Yamato-Security/hayabusa
#7

Cortex Analyzers

Similarity 116Trust 84Strong 84

Cortex Analyzers Repository

485 starsJun 11, 2026 pushdevopsPythonIncident Response
$ npx skills add TheHive-Project/Cortex-Analyzers
#8

Volatility3

Similarity 115Trust 89Excellent 100

Volatility 3.0 development

4.2K starsMay 26, 2026 pushdevopsPythonIncident Response
$ npx skills add volatilityfoundation/volatility3
#9

MemProcFS Analyzer

Similarity 115Trust 82Strong 80

MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR

720 starsMay 2, 2026 pushdevopsPowerShellIncident Response
$ npx skills add LETHAL-FORENSICS/MemProcFS-Analyzer
#10

Rustinel

Similarity 115Trust 85Strong 83

Open-source cross-platform endpoint detection engine for Windows, macOS, and Linux using ETW, ESF, eBPF, Sigma, YARA, IOCs, and ECS NDJSON alerts.

377 starsJun 15, 2026 pushdevopsRustIncident Response
$ npx skills add Karib0u/rustinel
#11

Sleuthkit

Similarity 115Trust 90Excellent 100

The Sleuth Kit® (TSK) is a library and collection of command line digital forensics tools that allow you to investigate volume and file system data. The library can be incorporated into larger digital forensics tools and the command line tools can be directly used to find evidence.

3.1K starsJun 12, 2026 pushdevopsCIncident Response
$ npx skills add sleuthkit/sleuthkit
#12

Beagle

Similarity 115Trust 84Strong 72

Beagle is an incident response and digital forensics tool which transforms security logs and data into graphs.

1.3K starsDec 13, 2022 pushdevopsPythonIncident Response
$ npx skills add yampelo/beagle
#13

Live Forensicator

Similarity 115Trust 80Strong 80

Cross-platform incident response and live forensics toolkit with built-in detection, structured analysis, and report generation — designed for fast, actionable security investigations.

623 starsJun 13, 2026 pushdevopsPowerShellIncident Response
$ npx skills add Johnng007/Live-Forensicator
#14

Open Source Security Guide

Similarity 114Trust 86Strong 79

Open Source Security Guide. Learn all about Security Standards (FIPS, CIS, FedRAMP, FISMA, etc.), Frameworks, Threat Models, Encryption, and Benchmarks.

1.1K starsJun 27, 2025 pushdevopsGoIncident Response
$ npx skills add mikeroyal/Open-Source-Security-Guide
#15

Rita

Similarity 114Trust 85Excellent 85

Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

578 starsJun 3, 2026 pushdevopsGoIncident Response
$ npx skills add activecm/rita
#16

AiSOC

Similarity 114Trust 93Excellent 100

Open-source AI-powered Security Operations Center — alert fusion, purple-team drills, agent-assisted triage, MITRE ATT&CK investigation. MIT-licensed, self-hostable.

1.4K starsJun 15, 2026 pushdevopsPythonIncident Response
$ npx skills add beenuar/AiSOC

How to choose

When should you switch?

Use an alternative when it has a clearer install path, higher trust score, fresher maintenance, or better platform fit for your current agent stack. Keep Velociraptor if it already passes your workflow test and repository review.

Next step

Compare top candidates side by side

Open the compare page, test the install commands in a sandbox, and check each repository before using a skill in production.