Tech riderRev. 4 Oct 2026
FIR (Fast Incident Response)
- 1Runs onAPI, self-hosted, Web
- 2CostsFree plan
2 lines stated Written from the maker's own pages: github.com

Overview
FIR (Fast Incident Response) is ranked #19 of 27 in incident management software on Specifiction. It runs on API, Self-hosted, Web. There is a free plan.
FIR (Fast Incident Response) plans and pricing
All plansFacts
- Purpose
- FIR is a cybersecurity incident management platform for creating, tracking, and reporting incidents.github.com · 4 Oct 2026
- Intended users
- The project says FIR is for teams that track cybersecurity incidents, including CSIRTs, CERTs, and SOCs.github.com · 4 Oct 2026
- Incident fields
- Incidents can include category, status, detection method, severity from 1 to 4, date and time, description, and TLP confidentiality.github.com · 4 Oct 2026
- Artifacts
- FIR extracts artifacts such as IP addresses, hostnames, URLs, email addresses, and hashes, and displays correlated artifacts from other incidents.github.com · 4 Oct 2026
- Incident workflow
- Users can add comments, files, attributes, todos, or nuggets and change an event's status to open, blocked, or closed.github.com · 4 Oct 2026
- Reporting
- The incident follow-up action opens a one-page report intended to be printed as a PDF for business lines.github.com · 4 Oct 2026
- Templates
- Incident templates can prefill incident creation fields, and the project documentation says none are defined by default.github.com · 4 Oct 2026
- Custom attributes
- Teams can define numeric incident attributes such as financial loss, stolen credential counts, or downtime and use them for statistics.github.com · 4 Oct 2026
- Integrations
- The repository includes optional plugins for MISP, LDAP, OIDC, two-factor authentication, and an API.github.com · 4 Oct 2026
- Deployment
- FIR can be run with Docker for testing or occasional use, or installed in a production environment for daily use.github.com · 4 Oct 2026
- Technical stack
- FIR is written in Python with Django and Bootstrap, and the README describes MySQL while allowing other Django-compatible database adapters.github.com · 4 Oct 2026
- Deployment requirements
- The README says FIR can run smoothly on an Ubuntu virtual machine with 1 core, 40 GB disk, and 1 GB RAM.github.com · 4 Oct 2026
- License
- The public repository identifies its license as GPL-3.0.github.com · 4 Oct 2026
Best FIR (Fast Incident Response) alternatives
See all 20 All accessCh 01 ITOC360 Free planFree trialAndroid from $12/mo7.7 All accessCh 02 PagerDuty Free planFree trialAndroid from $233.33/mo7.7 All accessCh 03 AlertOps Free planFree trialAndroid from $8/mo7.6 All accessCh 04 xMatters Free planFree trialAndroid from $15/mo7.6 All accessCh 05 Grafana Cloud Application Observability Free planLinuxMac from $0.03/mo7.5 All accessCh 06 incident.io Free planAndroidAPI from $15/mo7.5
Where it ranks on Specifiction
Is FIR (Fast Incident Response) yours?
Claim it for free: prove the domain, then correct facts, plans and screenshots. An editor reviews every change.
Sources
- github.com/certsocietegenerale/fir· checked 4 Oct 2026
- github.com/certsocietegenerale/FIR/wiki/Creating-a· checked 4 Oct 2026
- github.com/certsocietegenerale/FIR/wiki/Incident-T· checked 4 Oct 2026
- github.com/certsocietegenerale/FIR/wiki/Attributes· checked 4 Oct 2026
- github.com/certsocietegenerale/FIR· checked 4 Oct 2026
- github.com/certsocietegenerale/FIR/wiki· checked 4 Oct 2026




