Tracecat is an open-source security automation platform that allows users to automate security alerts, build AI-assisted workflows, and close cases fast. It offers a no-code interface, unlimited workflows, and integrations with various security tools. The platform is open-source, Apache-2.0 licensed, and has a community-driven development process. Key features include a click-and-drag workflow builder, automated alert SLO tracking, MITRE ATT&CK labels, and AI-powered case management. The platform also offers a free plan with unlimited workflows and cases, making it suitable for solo security practitioners and large enterprises alike.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
Sample security playbooks for security automation, orchestration and response (SOAR) using Microsoft Sentinel trigger
An open-source SOAR tool for automating threat and incident response workflows using CACAO security playbooks.
jimi is an orchestration automation tool for multi-team collaboration and automation in IT/Security operations, Development, and CI/CD pipelines.
Catalyst is a SOAR system that automates alert handling and incident response processes, adapting to your workflows and being open source.
A custom activity repository for Ayehu NG automation platform, allowing users to create and modify activities to fit their specific needs.
A compilation of suggested tools for each component in a detection and response pipeline, with real-world examples, to design effective threat detection and response pipelines.
Repository of templates for Ayehu's workflows with the ability to design, execute, and automate IT and business processes.
An open-source, drag-and-drop security workflow builder with integrated case management for automating security workflows and tackling alert fatigue.
Incident response and case management solution for efficient incident response and management.
PINNED

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.