/opt/safesquid/bin/modules/dlp | Stores DLP module shared objects and XML. DLP detects and blocks potential data exfiltration. | Upload control fails, DLP policies do not apply, or module inventory is required. | Supports evidence that the DLP module is present. Missing files can remove data-loss controls. |
/opt/safesquid/bin/modules/elevated | Stores Elevated Privacy module files. This feature can block third-party cookies and hide referer and user-agent details according to privacy level. | Privacy controls fail or policy behavior differs from expectation. | Shows whether Elevated Privacy module files are installed. Changes can affect privacy enforcement. |
/opt/safesquid/bin/modules/icap | Stores ICAP module files. ICAP enables request or response modification through an ICAP server. | ICAP integration fails, external content filtering breaks, or request modification is not applied. | Confirms ICAP module presence. Incorrect changes can disrupt external scanning or transformation workflows. |
/opt/safesquid/bin/modules/imgfilter | Stores Image Analyzer module files. The wiki states it can block suspicious images and is typically 80%-90% accurate, depending on configuration. | Image filtering does not trigger or support asks for module state. | Shows installed image analysis files. Treat accuracy as configurable, not absolute. |
/opt/safesquid/bin/modules/imgfilter/imgfilter | Stores Image Analyzer dependency libraries such as libIAImageReaderShared.so.*, libIAEngineShared.so.*, and imgfilter.tune. | Image Analyzer loads but scoring or dependencies fail. | Contains engine, reader, and threshold tuning files. Changes can alter image block behavior. |
/opt/safesquid/bin/modules/rewrite | Stores Content Re-Write module files. The feature uses regular expressions to modify pages, files, client headers, or server headers in real time. | Rewrite policy behaves unexpectedly or high-risk content modification is under review. | High-risk control surface. Use change control because incorrect expressions can alter trusted content before delivery. |
/opt/safesquid/bin/modules/sscore | Stores SScore module files. SScore queries SafeSquid Content Categorisation Service to classify websites. | Category decisions fail or classification evidence is needed. | Confirms website categorization module files. Missing files can reduce category-based enforcement. |
/opt/safesquid/bin/modules/svscan | Stores SvScan module files. SvScan is a high-speed in-memory malware scanner with signature database support. | Malware scanning fails or signature-dependent behavior needs proof. | Confirms anti-malware module files. Missing files can weaken malware protection. |
/opt/safesquid/bin/modules/wccp | Stores WCCP module files. WCCP redirects traffic from WCCP-enabled routers to SafeSquid for transparent proxying. | Transparent redirection fails, router integration changes, or failover is reviewed. | Confirms WCCP support files. Misconfiguration can bypass proxy enforcement or affect routing. |