EXTENSIONS
Built by operatives — models, drivers, vaults, and reports, the parts that plug into Swamp.
Filter by what you need and pull what fits.
Snyk/inventory
Snyk Inventory — asset discovery for packages, containers, repos, and cloud resources
Aws/inventory
Discover running AWS resources for cost estimation and inventory management.
Snyk/assets
Snyk Assets — asset discovery and classification across the group
Truenas
Hypervisor-layer VM inventory for TrueNAS SCALE, via the JSON-RPC WebSocket API.
Omada
Observability and safe operational control for a TP-Link Omada controller. One fan-out sync reads every site, device, client, switch port, gateway WAN and SSID into addressable resources, and writes a drift record comparing configuration — not telemetry — against the previous sync, so an idle network reports nothing and a firmware bump, a re-addressed WAN, a disabled PoE port or a device that stopped answering each report themselves. Talks the supported Open API in client-credentials mode, with the controller's own web API as an optional fallback for reads the Open API does not expose. Writes are limited to reversible operational actions — reboot, PoE, client block, reconnect, LED, locate, firmware — each fanning out over a list in one controller session.
B2 Files
Inventory and manage Backblaze B2 file versions via the Native API v4 — an aggregate scan that separates current bytes from the non-current versions a bucket with no hidden-version lifecycle rule pays for forever, plus sync, copy, and gated hide, delete and Object Lock updates.
B2 Account
Inventory a Backblaze B2 account — one read-only scan method emits a resource per bucket and per application key, plus a summary, via the B2 Native API v4.
Esxi
Read-only VM inventory for standalone VMware ESXi hosts, shaped for planning a migration off one and decommissioning it. Collects over SSH from vim-cmd, esxcli and the guests' own .vmx files — virtual hardware, storage with provisioned vs allocated bytes, in-guest identity (hostname, addressing, DNS, default route, mounted filesystems) via VMware Tools, live usage for rightsizing, and the complete vmx verbatim — plus a warnings list of what blocks a clean rebuild. One fan-out inventory method does the whole host in a single SSH round trip.
Catalog
A catalogue of hosts and groups with hierarchical global/group/host metadata, resolved per host for use in workflows.
Nmap
Network scanning with nmap, stored as structured data for change tracking over time. Produces host and port resources keyed by IP and port number, so consecutive scans naturally version and diff via the swamp data model.
Aws Vpc Inventory
Fleet-wide VPC inventory across `profiles × regions`. A single read-only
Aws Rds Inventory
Lists RDS DB clusters in the configured AWS region and emits two
Aws Vpc Inventory Report
Workflow-scope report that renders an operator VPC inventory from the `vpc`
Aws Rds Reservations
Lists every running RDS DB instance (Aurora cluster members AND standalone
Aws Rds Inventory Report
Workflow-scope report that renders an operator RDS inventory from the
Scaleway Inventory
Consolidated inventory report across all @sntxrr/scaleway-* models — counts per service, per region/zone, per status, plus resource ids, names, and statuses, discovered from stored sync/list snapshots.
Freeipa/domain
Read-only FreeIPA domain inspection over the JSON-RPC API: realm/config, server inventory, and replication topology, plus a markdown + Mermaid summary report.
Tailscale/net
Tailscale tailnet device inventory via the API — sync all devices, delete stale entries
Tailscale
Tailscale for swamp: a `setup-tailscale` workflow that installs Tailscale and joins hosts of an @swamp/ssh fleet to the tailnet (auth key via vault + SSH env), plus a `net` model that syncs `tailscale status --json` into one resource per machine so downstream models and workflows can look up nodes by name.
Inventory
A neutral, extensible fleet inventory record — the foundational "what exists and its declared attributes" model. Uniform core (id, purpose, components, relations) across atomic and composite items, with an open facet seam (access, power, network, config, management, firmware, interfaces, + custom) so new dimensions layer on without schema changes. Declarative: `apply` materialises one CEL-queryable `device` resource per id; `prune` soft-retires undeclared devices (status change, not deletion — version history preserves the lifecycle trend). Consumer abstractions (telemetry, management, config-drift) depend on it; it depends on nothing.
Omni
Talos node discovery for swamp, via Sidero Omni.
Fleet
Cross-hypervisor fleet VM inventory report for swamp.
Aws Rds Inventory Csv
Workflow-scope report that emits a CSV summary of RDS DB clusters and