# BloodHound Community Edition

Six Degrees of Domain Admin

Repository: https://github.com/SpecterOps/BloodHound
Canonical: https://ross.abutalabs.com/products/bloodhound-community-edition
Homepage: https://specterops.io/bloodhound-enterprise/
Language: Go
License: Apache-2.0
License Family: permissive
Last push: 2026-08-26T22:29:07+00:00
Link (homepage): https://specterops.io/bloodhound-enterprise/
Link (site_page): https://specterops.io/bloodhound-integrations
Link (site_page): https://bloodhound.specterops.io/home?_gl=1%2A1d64b6h%2A_gcl_au%2AOTIyNjg1MzkwLjE3NDk4NDI1Nzk.%2A_ga%2AMTQyMjE5OTAxNS4xNzQ5ODQyNTc5%2A_ga_53SGLN9EBJ%2AczE3NTMyMDI1OTAkbzEwNyRnMSR0MTc1MzIwNTM5NiRqNDUkbDAkaDA
Link (site_page): https://specterops.io/about

## Health v2 (maintenance only)
Score: 91/100 (v2, computed 2026-09-03T02:39:23.370411+00:00)
- activity 99, release rhythm 86, longevity 80
- inputs: {"age_days": 1126, "days_push": 7, "days_rel": 15, "gap_med": 9.0, "n_releases_24m": 63}
- flags: none
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 3355, forks 363 (observed 2026-08-28T04:07:57.860937+00:00)

## What it is
BloodHound Community Edition is a free, open-source application that uses graph theory to reveal hidden relationships and attack paths in Active Directory and Entra environments. It collects identity and directory data with collectors like SharpHound and AzureHound, ingests it into a graph database, and visualizes privilege escalation paths for defenders and attackers.

## Use cases
- map active directory attack paths
- find shortest path to domain admin
- audit privilege escalation routes in AD
- visualize AD trust relationships as a graph
- identify over-privileged users and groups
- assess Entra ID attack paths
- plan remediation of identity attack paths

## When to choose
- you need to analyze Active Directory or Entra ID attack paths during assessments
- you want a free self-hosted tool to map privilege escalation routes to Domain Admin
- you are auditing over-privileged identities and trust relationships

## When to avoid
- you need continuous enterprise-scale attack path management with remediation guidance across AWS, Okta, and other platforms - use BloodHound Enterprise
- you need a general-purpose network vulnerability scanner rather than identity attack path analysis

## Facets
- artifact type: application
- maturity: active
- function: security, osint, data-visualization, search-engine
- domain: security, penetration-testing, networking, developer-tools
- platform: cross-platform, self-hosted, windows
- tags: active-directory, attack-path-management, graph-theory, red-team, pentesting, sharphound, azurehound, privilege-escalation, docker, linux, macos

## Member repositories
- SpecterOps/BloodHound (main) score 91
- SpecterOps/BloodHound-Legacy (mirror) score 54
- SpecterOps/SharpHound (plugin) score 92

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:07:57.860937+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-29T17:18:28.937193+00:00, confidence not recorded.
  - readme: https://github.com/SpecterOps/BloodHound (fetched 2026-08-28T04:07:57.860937+00:00, sha e00fbe5c3372)
  - homepage: https://specterops.io/bloodhound-enterprise/ (fetched 2026-08-29T08:17:39.138876+00:00, sha 2b8d485b2392)
  - site_page: https://specterops.io/about (fetched 2026-08-29T08:17:39.146679+00:00, sha 313d2c8d7eed)
  - site_page: https://specterops.io/bloodhound-integrations (fetched 2026-08-29T08:17:39.142187+00:00, sha 0ee2d0b3451d)
  - site_page: https://bloodhound.specterops.io/home?_gl=1%2A1d64b6h%2A_gcl_au%2AOTIyNjg1MzkwLjE3NDk4NDI1Nzk.%2A_ga%2AMTQyMjE5OTAxNS4xNzQ5ODQyNTc5%2A_ga_53SGLN9EBJ%2AczE3NTMyMDI1OTAkbzEwNyRnMSR0MTc1MzIwNTM5NiRqNDUkbDAkaDA (fetched 2026-08-29T08:17:39.144785+00:00, sha d602e6ec49fb)
- Data as of 2026-08-30T08:39:29.467469+00:00.
