GhostManager/Ghostwriter
The SpecterOps project management and reporting engine observed · 2026-08-28
Health v2 · maintenance only
94/100
- Activity 99
- Release rhythm 85
- Longevity 100
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.
- gap_med: 7.0
- age_days: 2605
- days_rel: 23
- days_push: 8
- n_releases_24m: 69
Adoption not part of the score
1893 stars · 254 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded
Ghostwriter is an open-source Django-based platform from SpecterOps for managing offensive security engagements, including client/project tracking, findings and observations libraries, and covert infrastructure (servers, domains) management. Its reporting engine generates polished DOCX, XLSX, PPTX, and JSON deliverables from customizable Jinja2 templates, backed by a Hasura GraphQL API and Docker deployment.
Use cases
- generate pentest reports from findings library
- manage red team engagement projects and clients
- track covert infrastructure like servers and domains
- automate activity logging from Cobalt Strike or Mythic C2
- collaboratively write assessment reports in Word format
- self-host a project management tool for security consulting
- integrate external tools via GraphQL API
When to choose
- you run a red team or pentest consultancy needing centralized engagement and report management
- you want reusable findings/observations libraries and templated DOCX report generation
- you need role-based access control, SSO, and MFA in a self-hosted security platform
- you want automatic logging integration with C2 frameworks like Cobalt Strike or Mythic
When to avoid
- you need general-purpose project management unrelated to offensive security
- you want a lightweight single-user report generator without a multi-container deployment
- your team cannot run Docker or maintain a PostgreSQL-backed web application
Facets
application · maturity active
workflow-automation api-framework documentation auth authorization penetration-testing security developer-tools apis self-hosted python windows red-team pentest-reporting django graphql-api findings-library assessment-management docx-reports cobalt-strike mythic-c2 reporting automation docker web-server linux macos
9 sources
- readme: https://github.com/GhostManager/Ghostwriter · fetched 2026-08-28 · 4854515e63e3
- homepage: https://ghostwriter.wiki · fetched 2026-08-29 · 403e97fe6f49
- site_page: https://www.ghostwriter.wiki/features/graphql-api/graphql-api · fetched 2026-08-29 · 62cef44cf77a
- site_page: https://www.ghostwriter.wiki/getting-started/quickstart · fetched 2026-08-29 · 6be1b9683641
- site_page: https://www.ghostwriter.wiki/getting-started/populating-a-demo-database · fetched 2026-08-29 · d92dff042d8b
- site_page: https://www.ghostwriter.wiki/getting-started/updating-ghostwriter · fetched 2026-08-29 · 3030f2e2993d
- site_page: https://www.ghostwriter.wiki/features/observations-library · fetched 2026-08-29 · dadcc8f2a482
- site_page: https://www.ghostwriter.wiki/features/health-monitoring · fetched 2026-08-29 · 66d397a71be5
- site_page: https://www.ghostwriter.wiki/getting-help/faq · fetched 2026-08-29 · dedf99b34625
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| GhostManager/Ghostwriter | main | 94 |
For agents
markdown · JSON · MCP: product_card(name="GhostManager/Ghostwriter")
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem