Skip to main content

EXTENSIONS

Built by operatives — models, drivers, vaults, and reports, the parts that plug into Swamp.

Filter by what you need and pull what fits.

Selection
6 results
label:governance

Snyk/policies

@webframp/snyk/policies · v2026.09.08.1

Snyk Policies — security policy management and rule configuration

upd Sep 91 pullsA100/100

Aws/service Quotas

@webframp/aws/service-quotas · v2026.09.04.1

Query and monitor AWS Service Quotas across accounts. Fan-out utilization

upd Sep 414 pullsA100/100

Griptape/rulesets

@webframp/griptape/rulesets · v2026.08.29.1

Griptape Cloud Rulesets — behavioral rulesets and their rules

upd Aug 300 pullsA100/100

Good Planning

@magistr/good-planning · v2026.08.19.1

Good-planning model that operationalizes Felipe Bovolon's "Good Planning

upd Aug 1934 pullsA100/100

Arckit

@magistr/arckit · v2026.08.19.1

Standalone swamp port of ArcKit (https://github.com/tractorjuice/arc-kit —

upd Aug 190 pullsA100/100

Purview

@dougschaefer/purview · v2026.08.11.1

Microsoft Purview compliance-portal RBAC — role groups, their constituent management roles, membership, and the eDiscovery Administrator list, over Security & Compliance PowerShell. Exists because eDiscovery permission is invisible from Entra: Global Administrator maps to OrganizationManagement, which carries Case Management, Compliance Search, Hold and Search And Purge but not Export, Preview, Review, RMS Decrypt or Custodian, so a tenant admin can run a search yet be unable to export a single item. auditPrincipals separates canSearch from canExport and flags eDiscovery Administrators, who can open every case in the tenant. Carries its own credential surface because the compliance endpoint rejects Azure CLI tokens regardless of user.

upd Aug 110 pullsA100/100