RootNotes

RootNotes

RootNotes is a self-hosted collaborative workbench for Red Team projects that unites projects, notes, hosts, credentials, discoveries, trophies, and attack paths into the same interface.

Description

Lazy cat OIDC login has been integrated. ##Functional characteristics - Multi-project workbench: Centrally manage status, target scope, system type, description and progress by project. - Markdown Notes and Attachments: Supports structured notes, phase labeling, attachment uploading and team sharing. - Host and service asset view: Record IP, domain name, port, service, label and compromised status. - Credential ledger: Unified management of account numbers, passwords, service types, associated hosts and domain credentials. - Discovery management: Support severity levels, CVE, CVSS, evidence and repair recommendations. - Target and flag tracking: Manage mission objectives, flags, scores and attribution. - Attack path and network view: Put the authority link, node relationship and MITRE information into the same project to sort out. - Loot, Scope, Checklist, Timeline: Covers trophy records, authorization scope, stage list, and operational audit timelines. - Global search and import and export: Support cross-entity search, as well as project ZIP export and import. ###Project creation and editing | 1| Go to `Projects` and click `New project`|no| The project creation form appears on the right side of the page| | 2| Fill out the form and submit| Name: `East China Office Network Penetration`, IP/CIDR:`10.10.20.0/24`, OS: `Various`, Status: `Active`, Description: `Contains OA, VPN, mail and file servers.` | After clicking Create, the project card appears in the list| | 3| Validation Project Summary| no| You can see `Active`,`Various`, description text and target network segment on the card| | 4| Switch to any function page| For example,`Notes`|You can see the project you just created in the `Active target` area on the left| ###Notes, attachments and timeline | 1| Go to the `Notes` page and click `+` in the upper right corner of the list| no| Add a new 'New note' record to the middle list| | 2| Click on this new note card| no| Operation buttons such as Edit, Split, and Preview appear in the details area on the right| | 3| Click `Edit`|no| Switch to edit mode on the right side to see the title, stage drop-down box, label input box and Markdown editor| | 4| Fill in and save notes| Title: `Organization of external network entrances`, Tags: `vpn, oa`, Body: `#Preliminary Conclusion`,`-VPN Open 443`,`-OA Using SSO`|After clicking Save, the new title and label will appear in the middle list, and the Markdown title and list will appear in the right preview area| | 5| To upload attachments| Click the File button next to the editor toolbar and select a PNG or PDF smaller than 5MB| After the attachment is successfully uploaded, it should appear in the Notes Attachment area| | 6| Open Timeline| no| You should be able to see new or edited records related to the current project| ###Hosts, Credentials and Global Search | 1| Go to the `Hosts` page and click `Add`|no| The host creation form appears at the top of the page| | 2| Fill in and save the host| IP:`10.10.20.15`,Hostname:`oa-web-01`,OS:`Windows`,Ports:`80,443`,Tags:`vpn,oa`|After clicking Save, the host table appears `10.10.20.15/oa-web-01/Windows/80/443`| | 3| Observe the host page filter label| no| Clickable label filter buttons such as 'vpn' and 'oa' will appear at the top| | 4| Go to the Creds page and click Add| Username:`svc_oa`,Secret:`Winter2026!` | After saving, the credential table will appear `svc_oa/Plaintetext/Winter 2026!`, Top statistics become `1 entries·0 cracked`| | 5| Click `Ctrl + K` in the lower left corner| no| The global search box pops up, and the placeholder is `Search hosts, creds, notes, findings, root...` | | 6| Search for created hosts| `oa-web`|You can hit 'Hosts (1)' in the search result group and display '10.10.20.15/oa-web-01/Windows'| ###Discovery Items, Goals, Loot and Scope | 1| Go to the `Findings` page and click `Add`|Title: `VPN lacks MFA`, CVSS: `8.1`, Description: `Remote access portal only relies on user name and password, and multi-factor authentication is not enabled.`, Recommendation: `Enable MFA for VPN remote access and restrict high-risk source addresses.` | After saving, you can see the discovery item in the details area on the right, and `medi` in the top statistics will become `1`| | 2| Go to the `Objectives` page and click `Add`|Title: `Get read permission from the file server`, Flag value: `flag {finance-share-read}`, Description: `Confirm that the file server shared directory is readable, and collect key financial documents.` | After saving, the target card appears in the list; note that the default classification is `Flag`, and the default status is `Not Started`🚩| | 3| Go to the `Scope` page and click `Add`|Type: `CIDR`, Value: `10.10.20.0/24`, Description: `Office network core authorized network segment`|After saving, the page displays `1 in scope·0 excluded`, and the project host `10.10.20.15` will be marked as `In Scope`| | 4| Use the Check IP check box| `10.10.20.15`|The page will directly return to `→ In Scope`, which is used to quickly confirm whether a certain IP falls within the current range| | 5| To continue verifying Loot| Type: `file`, value: `\\\fileserver\\share\\finance. xlsx`|After saving, a new trophy record should be added to the Loot list|

Screenshots
Screenshot 1
Screenshot 2
App Information
Version
1.0.0
Package Size
86 KB
Image Size
209.09 MB
Updated
May 11, 2026
Source Code
Buthis404
Platform Support
PC
Keywords
red team collaborationproject managementcredential ledgervulnerability discoveryattack path