{"id":13809802,"url":"https://twilio-labs.github.io/socless/","last_synced_at":"2025-05-14T10:31:07.325Z","repository":{"id":37493511,"uuid":"208119394","full_name":"twilio-labs/socless","owner":"twilio-labs","description":"The SOCless automation framework","archived":false,"fork":false,"pushed_at":"2025-02-11T23:17:18.000Z","size":4685,"stargazers_count":139,"open_issues_count":30,"forks_count":23,"subscribers_count":7,"default_branch":"master","last_synced_at":"2025-05-07T14:58:04.712Z","etag":null,"topics":[],"latest_commit_sha":null,"homepage":null,"language":"Python","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"apache-2.0","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/twilio-labs.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":"LICENSE","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null,"publiccode":null,"codemeta":null,"zenodo":null}},"created_at":"2019-09-12T18:31:38.000Z","updated_at":"2025-03-17T04:58:38.000Z","dependencies_parsed_at":"2024-08-04T02:02:15.933Z","dependency_job_id":"7c7e7a10-9fa3-409c-bba7-13c5b26941e9","html_url":"https://github.com/twilio-labs/socless","commit_stats":null,"previous_names":[],"tags_count":2,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/twilio-labs%2Fsocless","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/twilio-labs%2Fsocless/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/twilio-labs%2Fsocless/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/twilio-labs%2Fsocless/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/twilio-labs","download_url":"https://codeload.github.com/twilio-labs/socless/tar.gz/refs/heads/master","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":254120624,"owners_count":22018024,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":[],"created_at":"2024-08-04T02:00:36.374Z","updated_at":"2025-05-14T10:31:03.779Z","avatar_url":"https://github.com/twilio-labs.png","language":"Python","funding_links":[],"categories":["Links"],"sub_categories":[],"readme":"# SOCless - serverless security orchestration, automation and response\n\nSOCless is a serverless framework built to help security teams easily automate their incident response and operations workflows.\n\n# Overview\n\nSOCless uses the AWS Step Functions and AWS Lambda services to execute user-defined workflows. The workflows, called Playbooks, are defined as JSON objects and triggered by real-time alerts from data sources or AWS CloudWatch schedules.\n\n![](https://twilio-labs.github.io/socless/imgs/socless-base-architecture.png)    \n\nFeatures\n---\n- Responds to real-time or scheduled events\n- Orchestrates existing security tools into workflows using AWS Lambda functions written in Python 3\n- Interact with humans as part of automated workflows and adapt to their responses\n- Static IP address that can be whitelisted to internal resources\n- Rapid automation development life-cycle courtesy of reusable, modular and shareable plugins\n- Infrastructure and response workflows deploy as code using [The Serverless Framework](https://serverless.com)\n- Serverless design has low cost, low operational overhead, and scales effortlessly\n\nReady? Check out the [docs!](https://twilio-labs.github.io/socless/)\n\nJoin our [community Slack workspace](https://join.slack.com/t/socless/shared_invite/enQtODA3ODEzNzcwNDgxLTBiYjVjYjI4ODI4YTY5YzM4OWRlYjQ1Yzg4M2EzMGUzMGMyYThlN2U5NTI5OWIwZWE1ZTcwNjA2MjgyZDRmMjg)\n\n\n# Development Guide\n\n## Building and Redeploying the Docs\n\nSOCless documentation is contained in the docs folder and is powered by [MkDocs](https://www.mkdocs.org/) and [MkDocs Material](https://squidfunk.github.io/mkdocs-material/). The built docs are hosted on Github pages\n\n**To setup your environment for building the docs**\n\n```\npython3 -m venv venv\n. venv/bin/activate\npip install -r docs-requirements.txt\n```\n\n**To serve the docs locally (after setup)**\n```\nmkdocs serve\n```\n\n**To deploy the docs to Github pages**\n```\nmkdocs gh-deploy\n```\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/twilio-labs.github.io%2Fsocless%2F","html_url":"https://awesome.ecosyste.ms/projects/twilio-labs.github.io%2Fsocless%2F","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/twilio-labs.github.io%2Fsocless%2F/lists"}