EXTENSIONS
Built by operatives — models, drivers, vaults, and reports, the parts that plug into Swamp.
Filter by what you need and pull what fits.
Tailcat Probe
Probe a tailcat server (netcat over Tailscale's data plane, no control plane): ping for reachability and direct-vs-DERP path, perf for throughput/RTT/jitter, transfer for a scp round-trip, exec for a remote command. Every result is a fixed-size summary — no per-second samples, file bodies or command output — so it is cheap on a remote datastore. The tailcat address is a bearer credential: it is a sensitive argument, redacted from captured output, and persisted only as a fingerprint. Long-running modes (serve, forward, socks, browse, recv) are refused.
Netbox
Generic NetBox REST API integration model for swamp.
Cloudflare/magic Transit
Cloudflare Magic Transit — GRE tunnels, static routes, health checks, IPsec
Network
DNS and network probing model that generates diverse diagnostic events.
Meraki
Cisco Meraki Dashboard API v1 integration model for swamp.
Juniper Policy
Deterministic queries over a Junos SRX security policy tree expressed as YAML.
Nmap
Network scanning with nmap, stored as structured data for change tracking over time. Produces host and port resources keyed by IP and port number, so consecutive scans naturally version and diff via the swamp data model.
Scaleway Dns
Manage a Scaleway DNS zone — create/delete the zone, sync records, list zones, and update (apply add/set/delete/clear record changes), via the global Domains & DNS API (/domain/v2beta1) with X-Auth-Token auth.
Scaleway Vpc
Manage a Scaleway VPC — sync current state, create, update and delete VPCs, and discover VPCs and Private Networks in a region, via the VPC API with X-Auth-Token auth.
Scaleway Public Gateway
Manage a Scaleway Public Gateway — sync current state, create, update, delete, and discover Public Gateways in a zone, via the zoned Public Gateway v2 API with X-Auth-Token auth.
Scaleway Load Balancer
Manage a Scaleway Load Balancer — sync current state, create, update, delete, and discover Load Balancers plus their backends and frontends in a zone, via the zoned Load Balancer API with X-Auth-Token auth.
Scaleway Ipam
Manage a Scaleway IPAM IP address — sync state, book (reserve), update tags/reverses, and release an IP, and discover managed IPs in a region, via the IPAM API with X-Auth-Token auth.
Cybriq
Integrate with a CybrIQ (Sepio) asset-visibility / hardware-access-control platform over its REST + GraphQL API. Local-login bearer auth with vault-resolved credentials. Read the asset dashboard, inventory, device types, risk insights, switches, external scan engines (Netpollers), events, alarm destinations, policies, scopes, tags, and user attributes; create tags, user attributes, policies, and scopes; and reach any other endpoint through a generic authenticated passthrough.