The case for a cloud native agent harness
Coding agents became useful when they stopped being a chat box. Four things changed the shape of the problem: capable tools, a shared repository and filesystem, subagents, and skills that capture what...
View ArticleSecurity Slam 2026 – Fall edition
Security Slam 2026 – Fall Edition is a 30-day virtual event from October 5 through November 6, 2026. What Is the Security Slam? The Open Source Security Foundation (OpenSSF) is partnering with the...
View ArticleObservability Day: Where the community comes together at KubeCon +...
Observability Day returns to KubeCon + CloudNativeCon North America on November 9, 2026, in Salt Lake City, Utah, bringing together maintainers, operators, and end users from across the CNCF...
View ArticleWhich hat am I wearing right now?
Neutrality is quietly the hardest part of open source. It gets tricky the moment someone pays your salary — and staying honest about it takes more effort than anyone admits. Here’s something we don’t...
View ArticleFrom attendee badge to speaker badge: My first KubeCon at KubeCon +...
There is something surreal about your first KubeCon being one where you walk onto the stage as a speaker. Most people ease into this community by attending a few conferences, lurking in hallway...
View ArticleKubeCon + CloudNativeCon North America 2026: Your Week in Salt Lake City
This November, the cloud native community is heading to Salt Lake City. From November 9–12, 2026, KubeCon + CloudNativeCon North America will bring together adopters and technologists from across open...
View ArticleOpenTelemetry everywhere: Migrating a metrics platform at scale
Why we did this at all For most of the last decade our metrics pipeline ran on gostatsd, the open-source StatsD implementation we maintain. It primarily did two jobs: as sidecar on every host and the...
View ArticleRunning OpenBao on Kubernetes with a CloudNativePG PostgreSQL backend
Managing infrastructure secrets on Kubernetes needs a backend that is self-healing and free of vendor lock-in, and that is exactly what OpenBao (the Linux Foundation’s open-source fork of HashiCorp...
View ArticleWhat I learned organizing KCD Lima 2026
On July 18, 2026, we held the third edition of Kubernetes Community Days Lima at UTEC in Barranco. By now, we have already sent the Transparency Report to the CNCF, thanked our sponsors, and processed...
View ArticleCilium 1.20: Gateway API ExternalAuth, TCPRoute/UDPRoute, ENI IPAM for IPv6,...
Cilium 1.20, the second major open source Cilium release of 2026 after Cilium 1.19, is finally here. Three themes stand out in this release: Gateway API becomes a much broader traffic management...
View ArticleBuilding a reliable cloud native foundation for distributed AI training
AI workloads are changing what platform teams need from infrastructure. Provisioning GPUs and standing up a cluster no longer makes a platform “AI-ready.” Once training spans more than one node, the...
View ArticleKubernetes disaster recovery: Guidance from three reproducible failure scenarios
Scope This document describes three failure scenarios that separate having backups from being able to recover, and the guidance that follows from each. Every scenario is reproducible on a laptop from...
View ArticleWhose GPUs are these, anyway? Secure, self-service metrics for multi-tenant...
The question that stopped the meeting It was a routine cost review. The slide showed the month’s GPU spend, the biggest line on the whole infrastructure bill, and someone asked a five-word question:...
View ArticleHow cloud native goes AI native
“A sales guy writing code” used to be the lead-up to a joke. But now no one’s laughing. Designers used to sit meekly waiting for the high priests of code to make their designs real. Now they don’t...
View ArticleKubernetes access via an identity provider: Public client, not confidential
Access control belongs on the same day-zero checklist as networking and storage. On most on-prem clusters, it never makes the list. The Identity Gap Managed cloud Kubernetes ships IAM or SSO...
View ArticleDistributed tracing for CI pipelines without touching a single workflow file
You’ve probably felt this one: GitHub Actions usage creeps up across your org, and your actual visibility into it doesn’t keep pace. Which workflows are slow? Which are flaky? How long are jobs...
View ArticleHandling vulnerability reports: Recipe card
RecipeHandling Vulnerability ReportsTarget audience (the chef)This recipe is aimed at small and medium non-security focused projects. Maintainers of a high-risk security sensitive project, you...
View ArticleCPU + GPU: Why AI platform engineering is a heterogeneous infrastructure...
AI infrastructure conversations often start with GPUs. Accelerators provide much of the compute behind model training and inference, so the focus is understandable. But a production AI workload rarely...
View ArticleKubernetes isn’t new, but AI makes It scary again
Kubernetes isn’t brand new anymore. Yet, for many teams, adopting it still feels intimidating. Even if you’ve watched Kubernetes become the default foundation for production software and AI workloads,...
View ArticleJoin OSPOlogy + OSPO Summit China 2026 in Shanghai
There’s still time to join OSPOlogy + OSPO Summit China 2026, taking place on September 7, 2026, in Shanghai, China as part of KubeCon + CloudNativeCon + OpenInfra Summit + PyTorch Conference China....
View Article