Ross ROSS = Recommend OSS · open-source software intelligence for agents

PlumHound/PlumHound

Bloodhound Reporting for Blue and Purple Teams observed · 2026-08-28

github.com/PlumHound/PlumHound · Python · GPL-3.0 (copyleft) observed · 2026-08-28

Health v2 · maintenance only

63/100

  • Activity 52
  • Release rhythm 57
  • Longevity 100
How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.

  • gap_med: 0
  • age_days: 2315
  • days_rel: 291
  • days_push: 291
  • n_releases_24m: 6

Full methodology

Adoption not part of the score

1310 stars · 130 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

PlumHound is a Python CLI reporting engine that wraps BloodHoundAD's Neo4j Cypher queries into consumable security reports for Blue and Purple teams. It identifies Active Directory vulnerabilities and attack paths resulting from business operations, policies, and legacy configurations.

Use cases

  • generate Active Directory security reports from BloodHound data
  • find attack paths to Domain Admin in Active Directory
  • run scheduled BloodHound Cypher queries for continuous AD auditing
  • harden common Active Directory misconfigurations
  • analyze busiest paths to Domain Admin with BlueHound module
  • produce HTML reports for blue and purple team exercises
  • audit AD privilege escalation paths from Neo4j

When to choose

  • you already collect BloodHound data and need repeatable, operations-friendly reports
  • your blue or purple team wants continual AD security lifecycle assessment rather than one-off red team use
  • you need task-list-driven or single-query Cypher reporting against a Neo4j backend

When to avoid

  • you have no BloodHound/Neo4j data collection pipeline in place
  • you need a general-purpose vulnerability scanner rather than AD-specific path analysis
  • you want a GUI-driven tool instead of a command-line workflow

Facets

cli-tool · maturity active

security search-engine developer-tools security penetration-testing developer-tools python cli cross-platform bloodhound active-directory neo4j cypher blue-team purple-team red-team attack-paths infosec reporting linux

2 sources

Member repositories

RepositoryRoleHealth v2
PlumHound/PlumHoundmain63

For agents

markdown · JSON · MCP: product_card(name="PlumHound/PlumHound")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem