assemblyline-ui
Assemblyline 4 - API and Socket IO server
Decision gist · record as of 2026-08-14
Yes, if you are deploying or extending Assemblyline 4. The package is actively maintained, carries no known vulnerabilities, and has low install friction. However, it is a service component designed for containerized deployment, not a general-purpose library—install it only if you are running an Assemblyline instance or integrating with one via its APIs.AI-flagged interpretation of the facts on this page — verify before relying
Before you install
- Requires assemblyline and assemblyline-core packages installed; designed for deployment as a service component rather than library import, typically run in Docker or behind a reverse proxy.
- Active maintenance with a release 2 days old and recent commits.
- Low install friction with a pure Python wheel.
License · maintenance · safety
MIT (permissive) — MIT license permits commercial and private use with minimal restrictions; you may use, modify, and distribute this package freely provided you include the license notice.
last release 2026-08-12 (2 days) · last repo commit 2026-08-12 · 21 stars
0 known vulnerabilities (OSV.dev, 2026-08-14) · 73,940 downloads/mo, #14,903 on PyPI
Alternatives
Verify before relying
pip install assemblyline-ui
from assemblyline_ui import app
# The package provides Flask/Gunicorn-based server; typically deployed via Docker or direct WSGI runner
gunicorn assemblyline_ui:app- Whether the package can be used as a standalone library or is intended only as a deployed service component.
- Specific Python version requirements (classifiers list 3.7–3.11 but requires_python is unspecified).
- Configuration and environment variable requirements for authentication backends (LDAP, SAML, FIDO2).
What it is and what it does
Assemblyline-ui is the web interface and API server for Assemblyline 4, a malware analysis framework. It exposes REST APIs and SocketIO WebSocket endpoints that provide access to submission results, alerts, system health, and live submission state. The package bundles a Flask-based web UI and server infrastructure, designed to be deployed as a containerized service component rather than embedded in other applications.
The package depends on 15 runtime libraries covering web serving (Flask, Werkzeug, Gunicorn, Gevent), authentication (python-ldap, python3-saml, Authlib, fido2, PyJWT), and XML/QR handling (lxml, xmlsec, pyqrcode). It is actively maintained, with a release from 2 days ago and recent commits, and carries no known security vulnerabilities.
Use it for
- Deploy as the primary web interface and API gateway for an Assemblyline 4 malware analysis cluster.
- Integrate with external security tools via REST APIs to query submission results and alert status.
- Monitor live system health and submission progress using SocketIO WebSocket endpoints.
- Implement custom authentication (LDAP, SAML, FIDO2) for enterprise security analysis platforms.
- Build dashboards and reporting tools that consume Assemblyline APIs for threat intelligence workflows.
Worth the install?
AI-flagged interpretation of the facts on this page. Verify before relying on it.
Yes, if you are deploying or extending Assemblyline 4.
The package is actively maintained, carries no known vulnerabilities, and has low install friction. However, it is a service component designed for containerized deployment, not a general-purpose library—install it only if you are running an Assemblyline instance or integrating with one via its APIs.
Install
assemblyline-ui on PyPI
Before you install
Active maintenance with a release 2 days old and recent commits. Low install friction with a pure Python wheel. Depends on 15 runtime packages including Flask, Werkzeug, and authentication libraries (python-ldap, python3-saml, Authlib, fido2), which are standard but add complexity to deployment.
Requires assemblyline and assemblyline-core packages installed; designed for deployment as a service component rather than library import, typically run in Docker or behind a reverse proxy.
License in practice
MIT license permits commercial and private use with minimal restrictions; you may use, modify, and distribute this package freely provided you include the license notice.
Quickstart
pip install assemblyline-ui
from assemblyline_ui import app
# The package provides Flask/Gunicorn-based server; typically deployed via Docker or direct WSGI runner
gunicorn assemblyline_ui:app
Verify before relying
- Whether the package can be used as a standalone library or is intended only as a deployed service component.
- Specific Python version requirements (classifiers list 3.7–3.11 but requires_python is unspecified).
- Configuration and environment variable requirements for authentication backends (LDAP, SAML, FIDO2).
Package facts
| License | MIT permissive |
| Python support | Not specified |
| Install friction | Low. Pure-Python wheel |
| Runtime dependencies | 15 packagesassemblylineassemblyline-corewerkzeugflaskpyqrcodemarkdownpython-ldappython3-samlAuthlibfido2PyJWTgunicorngeventxmlseclxml |
| Maintenance | Actively maintained 2 days since the last release |
| Last repo commit | |
| First released | |
| Downloads | 73,940 / month, #14,903 on PyPI 30-day window, as of 2026-08-14 |
| Known vulnerabilities | None known OSV.dev, checked 2026-08-14 |
| Classifiers | Development Status :: 5 - Production/StableIntended Audience :: DevelopersLicense :: OSI Approved :: MIT LicenseProgramming Language :: Python :: 3.10Programming Language :: Python :: 3.11Programming Language :: Python :: 3.7Programming Language :: Python :: 3.8Programming Language :: Python :: 3.9Topic :: Software Development :: Libraries |
Evidence: assemblyline_ui-4.7.4.9-py3-none-any.whl
Tags
Let your AI agent find packages like this
Example. Real query, live index.
You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.
wish › “malware analysis api server”
- assemblyline-uiProvides REST APIs, WebSocket endpoints, and a web UI for the…
- cisco-ai-mcp-scannerScans MCP (Model Context Protocol) servers and tools for security…
- malduckMalduck provides cryptographic, compression, and memory-analysis…
Give your agent the search over MCP, or paste the wish link into any chat.
More Libraries packages
urllib3 is an HTTP client library that provides thread-safe connection pooling, SSL/TLS verification, multipart file uploads, request retries, compression support, and proxy handling for Python applications.
Requests is a Python HTTP library that simplifies sending HTTP/1.1 requests with automatic handling of headers, authentication, cookies, and response parsing.
Pluggy provides a plugin system that lets you define hook specifications and register implementations to be called in sequence, enabling extensible Python applications without tight coupling.
Install it if you're building an extensible application or framework.
Provides parsing, arithmetic, and recurrence rule computation for dates and times, with timezone support and iCalendar RFC compliance.
Install it if you need to parse flexible date strings, compute relative dates, handle timezones, or work with recurrence rules—it's the de facto choice for these tasks.
Six provides utility functions to write Python code that runs on both Python 2.7 and Python 3.3+, smoothing over language differences between the two versions.
pytest is a testing framework that lets you write test functions using plain assert statements and automatically discovers and runs them, with detailed failure reporting.
See also fastapi-socketio · aiohttp-swagger · ixnetwork-restpy · pysae-ai-tools · aioruckus · vt-py · socketdev · Flask-SocketIO · mattermostdriver · threatwire