Maltego Standard Entities
maltego-transforms-std-entities exposes Maltego's standard entity catalog as Python classes for transform authors.
Maltego Graph Browser and Maltego Graph Desktop discover standard entity definitions from standard entity servers. Installing this package gives Python transforms reusable classes for the same standard entity type names, so transforms can emit and consume entities that pivot cleanly between each other in the graph.
Installation
pip install maltego-transforms-std-entities
Basic Usage
from maltego.entities import Domain, EmailAddress, IPv4Address, Website
domain = Domain("example.org")
website = Website("https://example.org")
address = IPv4Address("203.0.113.10")
email = EmailAddress("analyst@example.org")
print(domain.TYPE_NAME, website.TYPE_NAME, address.TYPE_NAME, email.TYPE_NAME)
Casefile entities are part of the same catalog and can also be imported from maltego.entities.casefile:
from maltego.entities import BankAccount, Gun
from maltego.entities.casefile import Businessman, IdentificationNumber
print(BankAccount.TYPE_NAME, Gun.TYPE_NAME)
print(Businessman.TYPE_NAME, IdentificationNumber.TYPE_NAME)
When To Extend
Prefer an existing standard entity when its type name and properties match the data your transform returns. Reusing standard entities makes downstream pivots easier because other transforms already know those schemas.
Extend a standard class when your data is the same kind of thing but needs additional properties:
from maltego.entities import Person
from maltego.server import MaltegoEntityConfig, MaltegoEntityProperty
class StaffMember(Person):
Config = MaltegoEntityConfig(display_name="Staff Member")
employee_id: str = MaltegoEntityProperty(
display_name="Employee ID",
sample_value="E-42",
)
Create a custom entity only when no standard entity expresses the object without losing meaning or overloading unrelated fields.
Package Scope
This package provides the shared Python catalog for Maltego standard entities. It includes reusable entity classes, Casefile entity classes, icon classes with packaged icon assets, category definitions, and inline type information for transform authors and server implementations.
Maltego already provides discovery for these standard entities in the Graph Browser and Desktop clients, so you don't need to register them yourself. Import the classes and use them directly in your transforms.
Metadata
Release files for maltego-transforms-std-entities 1.0.1
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| maltego_transforms_std_entities-1.0.1.tar.gz | 309.1 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| maltego_transforms_std_entities-1.0.1-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 642.0 kB
Release files / maltego_transforms_std_entities-1.0.1.tar.gz
| Download URL | maltego_transforms_std_entities-1.0.1.tar.gz |
|---|---|
| Size | 309.1 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
60326539b1f2dcca199325609e0f27f7d86b4e7df40d25dc0d9d862071a40da0
|
|
BLAKE2b-256 checksum How to use checksums |
7e0abd06848314f6f0a6c09acdc4a28112780aeb0a50bf7cf277c86585ba3d3b
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Aug 20, 2026.
Transparency logRelease files / maltego_transforms_std_entities-1.0.1-py3-none-any.whl
| Download URL | maltego_transforms_std_entities-1.0.1-py3-none-any.whl |
|---|---|
| Size | 333.0 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
caab0ff8f5bb44dce51914c3abb02acdc4b1925dae40e1575f522635725c0c07
|
|
BLAKE2b-256 checksum How to use checksums |
8430124e9d0b1c71d6a3026b8455f19eb5db0af6f68cb252a00a1e93256aa40e
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Aug 20, 2026.
Transparency log