Nimentus
Nimentus — Targeted Tooling

The problems the
giants ignore.

Nimentus designs and engineers sharp micro-utilities that resolve the stubborn infrastructure gaps left behind by major platforms — dead IPs, firewall sprawl, and config drift. Focused tools, built to do one thing completely.

Fino alla fine — until the end.

01The idea

Every organization carries the same hidden weight: small, specific problems too narrow to ever reach a major vendor’s roadmap. They get worked around, never fixed, and quietly drain time and attention. Nimentus exists to close those gaps — one focused micro app service at a time, each taking a single overlooked problem and carrying it all the way to a real solution, in the open.

02Products

Each Nimentus product targets a single, well-defined problem and solves it end to end.

Product 01 · ReclaimNet · Live

Confidence-scored liveness for IP address space.

Your IPAM says an address is in use. The wire says nothing’s there. ReclaimNet reconciles the two — gathering evidence from independent collectors over time, scoring how alive each address really is, and writing the verdict back into NetBox.

It never declares an IP dead on a hunch. It watches, accumulates proof, and only commits when it’s confident — and a human always approves the write.

  • Confidence over time — days of multi-collector evidence, not a single snapshot.
  • Two-way NetBox reconciliation — documented-but-dead, and alive-but-undocumented.
  • Modular collectors — ARP, active probe, NetFlow next; add a source, the core never changes.
  • Human-in-the-loop writes — review every change before it touches your source of truth.
  • Configure it from the browser — no config files, no SSH.
2Collectors
0–100Liveness score
RESTAPI + Web GUI
OpenApache-2.0
ReclaimNet dashboard
The dashboard — live verdicts, one host scored dead against an active NetBox record.
ReclaimNet review panel
Review-then-apply — every NetBox write is approved by a human first.
Product 02 · snabridge · Live

Threat intelligence, synced into Cisco Secure Network Analytics.

SNA can’t natively ingest a TAXII feed — so indicators get loaded by hand, and never retired when stale. snabridge reconciles your feeds into SNA continuously: pulling IPs from ThreatFox, OpenCTI, or any TAXII 2.1 source, grouping them by threat, and writing the complete desired state into SNA.

Stale intel is dangerous intel. snabridge clears out aged indicators so detection reflects the threat landscape now, not last month. Every change is reviewed before it applies.

  • Declarative reconciliation — the feed is the desired state; snabridge makes SNA match it.
  • Any TAXII 2.1 source — OpenCTI, MISP, commercial feeds; ThreatFox out of the box.
  • Grouped by threat — indicators land in SNA host groups by malware family or label.
  • Review-then-apply — every create, update, and retire shown before touching SNA.
  • Installs in minutes — Docker images, configured entirely from the browser.
3Feed adapters
TAXII2.1 native
DockerAPI + Web GUI
OpenSource
snabridge dashboard
The dashboard — feed bindings and the live SNA state they maintain.
snabridge review panel
Review-then-apply — additions and retirements before writing to SNA.
In the workshop
Product 03

Firewall hygiene

Surface the dead weight in a firewall ruleset — shadowed, redundant, unused, and overly-broad rules — and explain what each rule actually does. The clean-up enterprise-priced tools price smaller teams out of.

Coming soon
04About

Precision over noise.

Nimentus is a studio for micro app services — small, sharp tools that take on the issues big platforms treat as too minor to touch. We pick one problem, build the tool that solves it completely, and ship it open and in public.

An infrastructure automation studio.

Nimentus is the black and white. The precision. And a fan’s creed — fino alla fine, until the very end. It’s the standard every product is held to.

Everything we build is open source, built in public, and meant to be useful on day one.

05Work with me

Available for consulting and contract work on network automation, security architecture, and tooling.

Or send a message directly — consulting, contract work, a question about a tool, or a feature you wish one of them had.

Lands straight in the Nimentus inbox · typically reply within a couple of days