🔗 Chariot Platform 📖 Documentation 🔖 PyPI 💻 Chariot UI
- Description
- Getting Started
- Using the CLI
- Developer SDK
- Extending the CLI with script plugins
- Contributing
- Support
- License
Praetorian CLI and SDK are open-source tools for interacting with our products and services. Currently, they support
access to Chariot, our
offensive security platform.
The SDK exposes the full set of APIs that the Chariot UI uses.
The CLI is a fully-featured companion to the Chariot UI.
- Python v3.8 or above
- pip v23.0 or above
Install the Python package using this command:
pip install praetorian-cli
- Register for an account for Chariot using the instructions in our documentation.
- Download the keychain file using this link.
- Place the keychain file at
~/.praetorian/keychain.ini
. - Add your username and password to the keychain file. Your file should read like this:
[United States]
name = chariot
client_id = 795dnnr45so7m17cppta0b295o
api = https://d0qcl2e18h.execute-api.us-east-2.amazonaws.com/chariot
username = lara.lynch@acme.com
password = 8epu9bQ2kqb8qwd.GR
The CLI is a command and option utility for access to the full suite of Chariot API. See documentation for commands
using the help
option:
praetorian chariot --help
As an example, run the following command to retrieve the list of all seeds in your account:
praetorian chariot list seeds
To get detailed information about a specific seed, run:
praetorian chariot get seed <SEED_KEY>
To try one of our plugin scripts, run:
praetorian chariot get seed <SEED_KEY> --plugin list_assets
For more examples, visit our documentation.
The CLI has a plugin engine for implementing more complex workflows.
There are two types of plugins:
-
Scripts: Invoked using the
--plugin
option, they perform additional processing on the data returned by the CLI command. -
Commands: Invoked using the
plugin <plugin_name>
command, they are standalone commands that extend the CLI with a relatively complex workflow.
For example, this command uses my-process-domain.py
to further process the data from praetorian chariot get seed
:
praetorian chariot get seed <SEED_KEY> --plugin ~/code/my-process-domain.py
The CLI also comes with some built-in scripts in this directory. They are invoked by name:
praetorian chariot get seed <SEED_KEY> --plugin list_assets
Plugin commands add end-to-end functions as commands grouped under plugin
. To see a list
of them:
praetorian chariot plugin --help
Different Praetorian teams extend the CLI using plugin commands. For example this command is used by our team in the creation of client reports using internal templates:
praetorian chariot plugin report
You can find the list of plugin commands that comes with the CLI in this directory
If you have ideas on new plugin commands and scripts, contribute them!
For developing plugins, you can refer to this readme file.
The Praetorian SDK is installed along with the praetorian-cli
package. Integrate the SDK into your
own Python application with the following steps:
- Include the dependency
praetorian-cli
in your project. - Import the Chariot class
from praetorian_cli.sdk.chariot import Chariot
. - Import the Keychain class
from praetorian_cli.sdk.keychain import Keychain
. - Call any function of the Chariot class, which expose the full backend API. See example below:
from praetorian_cli.sdk.chariot import Chariot
from praetorian_cli.sdk.keychain import Keychain
chariot = Chariot(Keychain())
chariot.add('seed', dict(name='example.com', dns='example.com'))
The best place to explore the SDK is the handlers of the CLI
We welcome contributions from the community, from plugins, to the core CLI and SDK. To contribute, fork this repository and following the GitHub instructions to create pull requests.
By contributing, you agree to our Code of Conduct.
If you have any questions or need support, please open an issue or reach out via support@praetorian.com.
This project is licensed under the MIT License - see the LICENSE file for details.