Firepit - STIX Columnar Storage Documentation Status Unit Test Status

Columnar storage for STIX 2.0 observations.


  • Transforms STIX Observation SDOs to a columnar format

  • Inserts those transformed observations into SQL (currently sqlite3 and PostgreSQL)


STIX 2.0 JSON is a graph-like data format. There aren’t many popular tools for working with graph-like data, but there are numerous tools for working with data from SQL databases. Firepit attempts to make those tools usable with STIX data obtained from stix-shifter.

Firepit also supports STIX 2.1

Firepit is primarily designed for use with the Kestrel Threat Hunting Language.


This package was created with Cookiecutter and the audreyr/cookiecutter-pypackage project template.