filebot

Retired — functionality merged into avwatch.

retired 2026-05-31

This tool has moved

filebot was a Python CLI for event-driven file routing and quarantine — TOML rules with condition filters + actions (move, rename, hash, quarantine, log) and a polling daemon. Every command has been absorbed into avwatch as the route subcommand, with several improvements:

Migration

# Old (filebot)
curl -fsSL https://cli.johlem.net/install.sh | bash -s -- filebot
filebot init
filebot rules validate
filebot run ~/Downloads --dry-run
filebot watch
filebot test quarantine-executables ~/Downloads/payload.exe
filebot logs --tail 100 --format json

# New (avwatch route)
curl -fsSL https://cli.johlem.net/install.sh | bash -s -- avwatch
avwatch route init
avwatch route validate
avwatch route run ~/Downloads --dry-run
avwatch route watch
avwatch route test quarantine-executables ~/Downloads/payload.exe
avwatch route audit --tail 100 --format json

Why retired?

filebot and avwatch both watched directories and reacted to file events — filebot for routing, avwatch for integrity baselining and signature scans. Folding them into one binary lets a single polling loop service both jobs and lets avwatch scan share the action engine (a future --on-hit quarantine flag is the obvious next step). Operators install one binary instead of two.

Deferred to a follow-up session: the --tui rich-based interactive menu (low ratio of value to maintenance burden), desktop / webhook notifications (Python's notify action also collapsed to a log line), and SIGHUP-based hot-reload (the avwatch port reloads on a 30-tick mtime check instead, which is equivalent in practice).

→ Go to avwatch