# GhostManager/Ghostwriter

The SpecterOps project management and reporting engine

Repository: https://github.com/GhostManager/Ghostwriter
Canonical: https://ross.abutalabs.com/products/ghostmanager-ghostwriter
Homepage: https://ghostwriter.wiki
Language: Python
License: BSD-3-Clause
License Family: permissive
Topics: reporting, penetration-testing, red-team, informationsecurity
Last push: 2026-08-25T19:38:30+00:00

## Health v2 (maintenance only)
Score: 94/100 (v2, computed 2026-09-03T02:39:23.370411+00:00)
- activity 99, release rhythm 85, longevity 100
- inputs: {"age_days": 2605, "days_push": 8, "days_rel": 23, "gap_med": 7.0, "n_releases_24m": 69}
- flags: none
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1893, forks 254 (observed 2026-08-28T04:05:50.725822+00:00)

## What it is
Ghostwriter is an open-source Django-based platform from SpecterOps for managing offensive security engagements, including client/project tracking, findings and observations libraries, and covert infrastructure (servers, domains) management. Its reporting engine generates polished DOCX, XLSX, PPTX, and JSON deliverables from customizable Jinja2 templates, backed by a Hasura GraphQL API and Docker deployment.

## Use cases
- generate pentest reports from findings library
- manage red team engagement projects and clients
- track covert infrastructure like servers and domains
- automate activity logging from Cobalt Strike or Mythic C2
- collaboratively write assessment reports in Word format
- self-host a project management tool for security consulting
- integrate external tools via GraphQL API

## When to choose
- you run a red team or pentest consultancy needing centralized engagement and report management
- you want reusable findings/observations libraries and templated DOCX report generation
- you need role-based access control, SSO, and MFA in a self-hosted security platform
- you want automatic logging integration with C2 frameworks like Cobalt Strike or Mythic

## When to avoid
- you need general-purpose project management unrelated to offensive security
- you want a lightweight single-user report generator without a multi-container deployment
- your team cannot run Docker or maintain a PostgreSQL-backed web application

## Facets
- artifact type: application
- maturity: active
- function: workflow-automation, api-framework, documentation, auth, authorization
- domain: penetration-testing, security, developer-tools, apis
- platform: self-hosted, python, windows
- tags: red-team, pentest-reporting, django, graphql-api, findings-library, assessment-management, docx-reports, cobalt-strike, mythic-c2, reporting, automation, docker, web-server, linux, macos

## Member repositories
- GhostManager/Ghostwriter (main) score 94

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:05:50.725822+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T03:12:54.766665+00:00, confidence not recorded.
  - readme: https://github.com/GhostManager/Ghostwriter (fetched 2026-08-28T04:05:50.725822+00:00, sha 4854515e63e3)
  - homepage: https://ghostwriter.wiki (fetched 2026-08-29T10:52:06.362972+00:00, sha 403e97fe6f49)
  - site_page: https://www.ghostwriter.wiki/features/graphql-api/graphql-api (fetched 2026-08-29T10:52:06.372352+00:00, sha 62cef44cf77a)
  - site_page: https://www.ghostwriter.wiki/getting-started/quickstart (fetched 2026-08-29T10:52:06.374462+00:00, sha 6be1b9683641)
  - site_page: https://www.ghostwriter.wiki/getting-started/populating-a-demo-database (fetched 2026-08-29T10:52:06.376417+00:00, sha d92dff042d8b)
  - site_page: https://www.ghostwriter.wiki/getting-started/updating-ghostwriter (fetched 2026-08-29T10:52:06.378316+00:00, sha 3030f2e2993d)
  - site_page: https://www.ghostwriter.wiki/features/observations-library (fetched 2026-08-29T10:52:06.380091+00:00, sha dadcc8f2a482)
  - site_page: https://www.ghostwriter.wiki/features/health-monitoring (fetched 2026-08-29T10:52:06.382005+00:00, sha 66d397a71be5)
  - site_page: https://www.ghostwriter.wiki/getting-help/faq (fetched 2026-08-29T10:52:06.383942+00:00, sha dedf99b34625)
- Data as of 2026-08-30T08:39:29.467469+00:00.
