About
An independent shelf for community SOAR content
soarshelf is a community project for sharing playbooks, solution packs and connectors that people built for their own SOAR deployments.
Not affiliated with Fortinet
soarshelf is not affiliated with, endorsed by, or sponsored by Fortinet, Inc. FortiSOAR and other product names are trademarks of their respective owners. They are used here only to describe what community content is compatible with. Nothing on this site is official content, and nothing here is supported by any vendor.
Who owns the content
Each item belongs to the contributor who submitted it and is shared under the MIT license. Contributors confirm they wrote the content and have the right to share it. Official vendor content is not accepted: the pipeline rejects exports that match published solution packs.
Use at your own risk
Every submission is scanned and sanitized, and code is reviewed, but community content comes with no warranty. Test it in a non-production instance first, read anything marked Contains code, and only activate playbooks you understand.
Reporting and takedowns
If something here exposes sensitive data, infringes your rights, or is malicious, open an issue with the item's link. Use the "Report it" link at the bottom of any item page. Reported items can be pulled while they're reviewed. For anything that shouldn't be public, say so in the issue without including the sensitive details and a maintainer will follow up privately.
Source
The site, the checking pipeline and all published content live in one public repository, so every change is reviewable.