Ross ROSS = Recommend OSS · open-source software intelligence for agents

ForensicArtifacts/artifacts resource

Digital Forensics artifact repository observed · 2026-08-28

github.com/ForensicArtifacts/artifacts · Python · Apache-2.0 (permissive) observed · 2026-08-28

Health v2 · maintenance only

78/100

  • Activity 95
  • Release rhythm 44
  • Longevity 100
How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: 91.0
  • age_days: 4324
  • days_rel: 218
  • days_push: 33
  • n_releases_24m: 3

Full methodology

Adoption not part of the score

1268 stars · 227 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

A community-sourced, machine-readable knowledge base of digital forensic artifact definitions stored as YAML files. It provides standardized descriptions of forensic artifacts (registry keys, log files, file paths) usable across DFIR tools.

Use cases

  • find where windows stores evidence of usb device connections
  • get machine-readable definitions of forensic artifacts for my dfir tool
  • standardize artifact collection across incident response tooling
  • look up which log files indicate program execution
  • contribute forensic artifact definitions to a shared knowledge base

When to choose

  • you need a shared, standardized catalog of forensic artifact definitions
  • your tool can parse YAML and you want artifact metadata without heavy dependencies
  • you are building DFIR collection or analysis tooling

When to avoid

  • you need an actual forensic acquisition or analysis tool rather than a knowledge base
  • you need non-forensic configuration data

Facets

dataset · maturity active

security developer-tools documentation security operating-systems cross-platform python digital-forensics dfir yaml knowledge-base incident-response forensics

2 sources

Member repositories

RepositoryRoleHealth v2
ForensicArtifacts/artifactsmain78

For agents

markdown · JSON · MCP: product_card(name="ForensicArtifacts/artifacts")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem