rootme-sdk
An unofficial, typed Python SDK for Root-Me: automated login, session reuse, profile and challenge exploration, and answer submission.
Installation
Requires Python >= 3.13.
With pip
# Install
pip install rootme-sdk
# Upgrade
pip install -U rootme-sdk
With uv
# In a project
uv add rootme-sdk
uv lock --upgrade-package rootme-sdk
# In a virtual environment
uv pip install rootme-sdk
uv pip install -U rootme-sdk
Playwright is included. On first use, it automatically uses your local Chrome/Chromium or downloads a managed Chromium browser.
Quickstart
Copy a snippet, replace the credentials and run it. Login opens a Chromium window and fills the form automatically.
1. Find a challenge by its name and read its statement
from rootme_sdk import RootMeClient
with RootMeClient("your-username", "your-password") as client:
summary = next(client.search_challenges(query="ELF x86 - 0 protection"))
challenge = client.get_challenge(summary.id)
print(challenge.id, challenge.title) # 41 ELF x86 - 0 protection
print(challenge.statement)
2. Download the challenge files
from rootme_sdk import RootMeClient
with RootMeClient("your-username", "your-password") as client:
print(client.download_files(41)) # (PosixPath('ch1.zip'),)
3. Submit a flag
from rootme_sdk import RootMeClient
with RootMeClient("your-username", "your-password") as client:
result = client.submit_flag(41, "your-flag")
print(result.status, result.message) # SubmissionStatus.ACCEPTED ...
4. Browse challenges with filters
from rootme_sdk import Category, Difficulty, RootMeClient
with RootMeClient("your-username", "your-password") as client:
for item in client.search_challenges(
category=Category.CRACKING, difficulty=Difficulty.EASY, limit=20
):
print(f"[{item.id}] {item.title} ({item.score} pts)")
5. Reuse a session
from rootme_sdk import RootMeClient, Session
with RootMeClient("your-username", "your-password") as client:
client.session.save("session.json")
with RootMeClient(session=Session.load("session.json")) as client:
print(client.get_challenge(41).title)
Credentials can also come from a JSON file {"login": "...", "password": "..."}:
RootMeClient(credentials_file="credentials.json").
Important Notes
- Graphical Display: Password login uses an isolated, headed Chromium browser to handle Root-Me's native login flow. A working graphical display is required (
DISPLAYon Linux). - Security: Never commit your passwords or
.secrets/directory. Saved sessions contain cookies and should be restricted to your user account. - Documentation:
- API Reference — Exhaustive methods and types documentation.
- Capabilities & Limits — Observed platform behaviors and known limitations.
- Contributing — Development workflow, quality gates, and testing guidelines.
- Security Policy — Vulnerability reporting and security practices.
Development
nix develop # or install uv + task manually
uv sync --locked
git config core.hooksPath .githooks
task ci
Metadata
Release files for rootme-sdk 0.5.1
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| rootme_sdk-0.5.1.tar.gz | 148.2 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| rootme_sdk-0.5.1-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 186.5 kB
Release files / rootme_sdk-0.5.1.tar.gz
| Download URL | rootme_sdk-0.5.1.tar.gz |
|---|---|
| Size | 148.2 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
85b39a50048fbe170c9f12c94160bdee2cd1b48bea22fa6f2bad46d55d274d5f
|
|
BLAKE2b-256 checksum How to use checksums |
867d69ddb767e2ac45eafcf19fc720782c136dd03d8dc306dfde562be5b2c542
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Oct 6, 2026.
Transparency logRelease files / rootme_sdk-0.5.1-py3-none-any.whl
| Download URL | rootme_sdk-0.5.1-py3-none-any.whl |
|---|---|
| Size | 38.3 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
871eceb31981fcdb11743f51ee4caac297e45ac8704545029e7fd162529c49e0
|
|
BLAKE2b-256 checksum How to use checksums |
3c7cae860f461b10bc7120c3898aa57a5655e97b25f0f11dd09b2f4cead258db
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Oct 6, 2026.
Transparency log