{"repo":"Query-farm/quackscale","free":true,"listed":false,"github":"https://github.com/Query-farm/quackscale","clone":"git clone https://github.com/Query-farm/quackscale.git","description":"DuckDB WireGuard Extension with Quack & Ducklake over Tailscale, Headscale & Co","language":"Shell","stars":23,"topics":["duckdb","duckdb-extension","ducklake","headscale","quack","query-farm","tailscale","wireguard"],"license":"MIT","category":"networking-infra","readme_excerpt":"QuackScale QuackScale embeds a Tailscale client (libtailscale) inside DuckDB. A DuckDB process joins your private Tailscale network (tailnet) and reaches its peers over encrypted WireGuard. It needs no VPN sidecar and opens no public port. Once your process is on the tailnet, you read any HTTP asset a peer serves as if it sat on local disk. FROM read csv('http://my-laptop.ts.net:8000/sales.csv') pulls the file straight off another machine over the encrypted mesh, with no public URL and no copy step. Pair it with DuckDB's Quack HTTP protocol and you have QuackTail : SQL engines that find each other on 100.x addresses and MagicDNS, then run ATTACH , quack query , and DuckLake workloads across the mesh. QuackScale is the network layer that carries DuckDB's HTTP across a tailnet, from a plain file read to quack and ducklake . Why QuackScale Most teams expose a SQL engine by walling it off. You bind DuckDB or Quack to localhost, where nothing can reach it, or you bind a public IP and defend it with TLS certificates, firewall rules, and a VPN appliance. The database has no identity of its own. It trusts whatever the perimeter lets through. QuackScale inverts that. Each DuckDB process carries its own tailnet identity and speaks WireGuard (how Tailscale works) to the peers your control plane already trusts. Nothing listens on the public internet, so you have nothing there to defend. Perimeter model QuackTail --- --- --- What listens publicly A public IP with TLS, firewall, and VPN in","default_branch":null,"files":null,"tree":[],"storefront":"/r/Query-farm","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/Query-farm/quackscale/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}