Ross ROSS = Recommend OSS · open-source software intelligence for agents

w5teams/w5

Security Orchestration, Automation and Response (SOAR) Platform. 安全编排与自动化响应平台,无需编写代码的安全自动化,使用 SOAR 可以让团队工作更加高效 observed · 2026-08-28

github.com/w5teams/w5 · homepage · Python · GPL-3.0 (copyleft) observed · 2026-08-28

Health v2 · maintenance only

23/100

  • Activity 0
  • Release rhythm 8
  • Longevity 100
How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 2107
  • days_rel: n/a
  • days_push: 801
  • n_releases_24m: 0

Full methodology

Adoption not part of the score

1548 stars · 247 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

W5 is an open-source, low-code Security Orchestration, Automation and Response (SOAR) platform built in Python with a visual playbook editor. It lets teams wrap systems and tools as APPs and orchestrate them into automated workflows triggered by various triggers, for security operations, DevOps, and automated penetration testing.

Use cases

  • automate security alert triage and response without writing code
  • build visual security orchestration playbooks
  • automate asset scanning and inventory ingestion
  • respond to server alerts with automated remediation
  • check threat intelligence for suspicious sources
  • automate server maintenance across Linux and Windows
  • orchestrate DevOps deployment workflows visually

When to choose

  • you need a self-hosted SOAR platform with a low-code visual workflow editor
  • your team wants automation without heavy coding, including non-developers
  • you want to wrap internal tools as reusable apps and chain them into playbooks
  • you need security operations automation like alert response and threat detection pipelines

When to avoid

  • you need a mature enterprise SOAR with large vendor ecosystems and compliance certifications
  • you require a fully code-first automation engine rather than visual playbooks
  • you need active rapid development - the project appears to be in maintenance with infrequent releases
  • GPL-3.0 licensing is incompatible with your closed-source derivative plans

Facets

application · maturity maintenance

workflow-automation security plugin-system self-hosted developer-tools security self-hosted developer-tools python self-hosted soar low-code security-orchestration playbook incident-response security-automation automation devops web-server linux docker

4 sources

Member repositories

RepositoryRoleHealth v2
w5teams/w5main23

For agents

markdown · JSON · MCP: product_card(name="w5teams/w5")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem