The problems the
giants ignore.
Nimentus designs and engineers sharp micro-utilities that resolve the stubborn infrastructure gaps left behind by major platforms — dead IPs, firewall sprawl, and config drift. Focused tools, built to do one thing completely.
Fino alla fine — until the end.
Every organization carries the same hidden weight: small, specific problems too narrow to ever reach a major vendor’s roadmap. They get worked around, never fixed, and quietly drain time and attention. Nimentus exists to close those gaps — one focused micro app service at a time, each taking a single overlooked problem and carrying it all the way to a real solution, in the open.
Each Nimentus product targets a single, well-defined problem and solves it end to end.
Confidence-scored liveness for IP address space.
Your IPAM says an address is in use. The wire says nothing’s there. ReclaimNet reconciles the two — gathering evidence from independent collectors over time, scoring how alive each address really is, and writing the verdict back into NetBox.
It never declares an IP dead on a hunch. It watches, accumulates proof, and only commits when it’s confident — and a human always approves the write.
- Confidence over time — days of multi-collector evidence, not a single snapshot.
- Two-way NetBox reconciliation — documented-but-dead, and alive-but-undocumented.
- Modular collectors — ARP, active probe, NetFlow next; add a source, the core never changes.
- Human-in-the-loop writes — review every change before it touches your source of truth.
- Configure it from the browser — no config files, no SSH.


Threat intelligence, synced into Cisco Secure Network Analytics.
SNA can’t natively ingest a TAXII feed — so indicators get loaded by hand, and never retired when stale. snabridge reconciles your feeds into SNA continuously: pulling IPs from ThreatFox, OpenCTI, or any TAXII 2.1 source, grouping them by threat, and writing the complete desired state into SNA.
Stale intel is dangerous intel. snabridge clears out aged indicators so detection reflects the threat landscape now, not last month. Every change is reviewed before it applies.
- Declarative reconciliation — the feed is the desired state; snabridge makes SNA match it.
- Any TAXII 2.1 source — OpenCTI, MISP, commercial feeds; ThreatFox out of the box.
- Grouped by threat — indicators land in SNA host groups by malware family or label.
- Review-then-apply — every create, update, and retire shown before touching SNA.
- Installs in minutes — Docker images, configured entirely from the browser.


Firewall hygiene
Surface the dead weight in a firewall ruleset — shadowed, redundant, unused, and overly-broad rules — and explain what each rule actually does. The clean-up enterprise-priced tools price smaller teams out of.
Coming soonPrecision over noise.
Nimentus is a studio for micro app services — small, sharp tools that take on the issues big platforms treat as too minor to touch. We pick one problem, build the tool that solves it completely, and ship it open and in public.
An infrastructure automation studio.
Nimentus is the black and white. The precision. And a fan’s creed — fino alla fine, until the very end. It’s the standard every product is held to.
Everything we build is open source, built in public, and meant to be useful on day one.