nfstream/nfstream
NFStream: a Flexible Network Data Analysis Framework. observed · 2026-08-28
Health v2 · maintenance only
81/100
- Activity 98
- Release rhythm 47
- Longevity 100
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.
- gap_med: 91
- age_days: 2511
- days_rel: 199
- days_push: 16
- n_releases_24m: 2
Adoption not part of the score
1218 stars · 145 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded
NFStream is a multiplatform Python framework for fast, flexible network flow data analysis from live interfaces or pcap files. It provides flow metering, nDPI-based encrypted layer-7 identification, statistical feature extraction, and extensible NFPlugin support aimed at reproducible machine learning research.
Use cases
- extract network flows from a large pcap file into pandas or csv
- identify encrypted applications in live traffic with nDPI
- extract statistical flow features for machine learning traffic classification
- capture flows from a network interface in python
- add custom flow features with a plugin
- generate reproducible network traffic datasets for research
- fingerprint TLS and SSH metadata from traffic
When to choose
- you need fast python-based flow aggregation from pcaps or live interfaces
- you want layer-7 application identification including encrypted traffic
- you are building ML models for network traffic management and need reproducible features
- you need extensible flow feature extraction via plugins
When to avoid
- you need full packet-level inspection rather than flow-level analysis
- you need a GUI packet analyzer like Wireshark
- you require a permissive license for proprietary linking (LGPL-3.0)
- you need non-python tooling
Facets
framework · maturity stable
nlp machine-learning data-science etl analytics developer-tools networking security data-science machine-learning analytics developer-tools python windows cross-platform network-analysis pcap netflow deep-packet-inspection ndpi traffic-classification packet-capture network-monitoring flow-features nfplugin linux macos
8 sources
- readme: https://github.com/nfstream/nfstream · fetched 2026-08-28 · 94d7798c0e40
- homepage: https://www.nfstream.org · fetched 2026-08-29 · d5e8f6c3dba0
- site_page: https://www.nfstream.org/docs/releases · fetched 2026-08-29 · 76fe34120298
- site_page: https://www.nfstream.org/docs/license · fetched 2026-08-29 · 3bd593d6a2b3
- site_page: https://www.nfstream.org/docs · fetched 2026-08-29 · c6d20bcced8b
- site_page: https://www.nfstream.org/docs/design · fetched 2026-08-29 · 51c7a6bcc5df
- site_page: https://www.nfstream.org/docs/api · fetched 2026-08-29 · 012d63c03011
- site_page: https://www.nfstream.org/docs/community · fetched 2026-08-29 · 7a82ff994327
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| nfstream/nfstream | main | 81 |
For agents
markdown · JSON · MCP: product_card(name="nfstream/nfstream")
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem