# snort3/snort3

Snort++

Repository: https://github.com/snort3/snort3
Canonical: https://ross.abutalabs.com/products/snort3
Language: C++
License: NOASSERTION
License Family: other
Last push: 2026-04-23T20:33:58+00:00

## Health v2 (maintenance only)
Score: 83/100 (v2, computed 2026-09-03T02:20:16.233290+00:00)
- activity 78, release rhythm 80, longevity 100
- inputs: {"age_days": 4283, "days_push": 132, "days_rel": 132, "gap_med": 20, "n_releases_24m": 28}
- flags: no_license
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 3409, forks 687 (observed 2026-08-28T04:08:03.238776+00:00)

## What it is
Snort 3 (Snort++) is the next-generation open-source intrusion prevention system (IPS) written in C++17, supporting multi-threaded packet processing, pluggable components, and Lua-scriptable configuration. It inspects network traffic in real time using rules to detect and prevent intrusions.

## Use cases
- detect network intrusions on my network
- run an open-source intrusion prevention system
- inspect network packets for malicious traffic
- write custom rules to block network attacks
- monitor network traffic in real time
- replace Snort 2 with a multi-threaded IPS
- deep packet inspection for security monitoring

## When to choose
- you need a proven, actively maintained network IPS/IDS with a large rule ecosystem
- you want multi-threaded packet processing for high-throughput networks
- you need scriptable, pluggable network inspection with Lua configuration

## When to avoid
- you need a simple host-based firewall rather than network traffic inspection
- you require full Windows support, which is still on the roadmap
- you want a zero-configuration security tool; Snort requires significant rule and config tuning

## Facets
- artifact type: application
- maturity: active
- function: security, networking, monitoring, plugin-system, parser
- domain: security, networking, monitoring, developer-tools
- platform: windows, cpp, cross-platform
- tags: intrusion-prevention-system, ips, ids, packet-inspection, network-security, snort, traffic-analysis, lua-configuration, linux, macos

## Member repositories
- snort3/snort3 (main) score 83

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:08:03.238776+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-29T18:38:32.705907+00:00, confidence not recorded.
  - readme: https://github.com/snort3/snort3 (fetched 2026-08-28T04:08:03.238776+00:00, sha 0fdcc343602e)
- Data as of 2026-08-30T08:39:29.467469+00:00.
