Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Tools/GitHubGitHub/soc-irdoc/irdoc-app
Defensive ToolsIndicator of Compromise (IOC) ManagementScripting & AutomationDigital ForensicsThreat IntelligenceLearning & EducationIncident ResponseLog Analysis
GitHubsoc-irdoc/irdoc-app

irdoc-app

Incident Response Documentation Platform

View Repository
3141 day agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

IRDoc - Incident Response Documentation Platform

Timeline-first IR documentation with visual report builder, SharePoint auto-sync, and AI-assisted summaries.

CI CodeQL Secret Scan OpenSSF Scorecard License: AGPL-3.0 Sponsor Ko-fi


What is IRDoc?

IRDoc is a self-hostable, open-core incident response documentation platform for SOC analysts, IR engineers, and MSSPs.

It gives your team one structured workspace to document an incident from first detection to final report - instead of switching between a ticket system, a Word document, and a SharePoint folder.

Core promise: Document incidents the way you actually investigate them - fast, structured, and reportable in one click.

  • Timeline-first workspace - chronological event log across detection, analysis, containment, evidence, and comms
  • IOC management - track and auto-detect IPs, domains, hashes, emails, and URLs
  • Evidence attachments - drag-and-drop or paste screenshots straight into the timeline
  • Task management - phase-grouped tasks from incident templates
  • Inbound webhook API - create cases from ServiceDesk Plus, Jira, or anything that can POST JSON
  • Investigation graph - visual relationship map between IOCs, timeline entries, and evidence
  • Self-hosted - your incident data stays on your infrastructure

The core above is AGPL-3.0 and free forever. See irdoc.io for details.

Full docs, quick start, and deployment guides: docs.irdoc.io


Security

If you discover a security vulnerability, please report it to [email protected] rather than opening a public issue.

We aim to release patches for critical vulnerabilities within 24 hours of confirmation. See the badges above for our automated scanning (CodeQL, secret scanning, dependency audits, and an OpenSSF Scorecard).


Contributing

Contributions are welcome. See the contributing guide before opening a PR.

  • Bug reports and feature requests: GitHub Issues
  • Security vulnerabilities: [email protected] (do not open public issues)

Sponsorship

IRDoc's core is free and will stay that way. If your organization relies on it and wants to support ongoing development, you can sponsor via GitHub Sponsors or Ko-fi.


License

Core (this repository): AGPL-3.0

Download Tool