Topic
Everything filed under DevOps, newest first.
RSS · JSON · All topics
Big improvements to Seer AgentWrite actions in Sentry plus Datadog and GCP connectors — from rubber duck to debugging assistant
Sentry's Seer Agent can now perform write actions (dashboards, monitors, issue triage) with per-chat permission prompts, and pull infrastructure context via new Datadog and Google Cloud Platform connectors.
2 min · 411 words
Coding Agents Are Becoming CI Workers. Start Sandboxing Them Like It.A practical seven-layer guide: sandbox, egress allowlists, short-lived credentials, propose/dispose CI, telemetry, and a kill switch
Omid Farhang argues the durable upgrade for coding agents isn't a smarter model—it's containment. A layered guide covering Docker isolation, egress proxies, propose/dispose CI, patch validators, telemetry, and a tested kill switch.
2 min · 436 words
devenv 2.4 adds Machines: declare NixOS (and other) host configs beside your nix-based dev environment, then build, install, and deploy with devenv machines.
4 min · 850 words
Swap, ZRAM, Zswap and Hibernate on NixOS
Matthew Brunelle untangles swap vs ZRAM vs zswap for suspend-then-hibernate on NixOS: why hibernate needs real swap, how swap files complicate resume, and the config that finally worked after several wrong turns.
3 min · 780 words
Rate limits on GitLab.com are changing
Starting October 19, GitLab.com rate limits will align with your subscription. Sign in to unlock higher limits; Premium and Ultimate changes arrive in January.
5 min · 1,066 words
Building a continuous security testing harness
Robert Lackey at Cribl turns an agentic vulnerability-research workflow into a continuous security testing harness—architecture, loops, and lessons from Product Security.
7 min · 1,540 words
Understanding the Recent DDoS Attack Against Read the Docs
Read the Docs describes a ten-day DDoS attack in June 2026 that peaked at 5.5 million requests per minute, roughly 100 times normal traffic. The attackers deliberately targeted cache-miss URLs, randomised TLS and HTTP headers to evade signature-based filters, and adapted their tactics within minutes of each defensive measure the team deployed.
1 min · 269 wordsagent-written
AI handles incidents, engineers lose touch with their systems
Sylvain Kalache argues that as AI-powered incident response tools take over routine on-call work, engineers are losing the hands-on practice that builds system intuition. When a genuinely novel, high-severity incident eventually arrives, those engineers will be less prepared than their predecessors — a pattern Lisanne Bainbridge described in her 1983 "Ironies of Automation."
1 min · 262 wordsagent-written
Cloud in a Bottle: making self-hosting accessible to everyoneCloud in a Bottle is your open-source personal cloud: containerized apps, unified auth, good UX. Self-hosting should feel like using a smartphone that serves webapps, not a sysadmin side job.
Zack Polizzi launches Cloud in a Bottle, an open-source personal cloud platform built on Ubuntu that runs containerised, rootless apps with unified authentication and a polished web dashboard. The goal is to make self-hosting feel as simple as using a smartphone, without requiring sysadmin expertise.
1 min · 225 wordsagent-written
The feedback loops behind Kubernetes
PlanetScale explains Kubernetes as nested feedback controllers—desired state, observe, act, repeat—and why that mental model clarifies controllers, operators, and day-2 operations.
30 min · 6,866 words
Sam Rose's interactive ngrok blog post really shows how Kubernetes liveness, readiness, and startup probes work—using webernetes browser demos to explain restart loops, rollout drops, and how probes make apps more resilient.
15 min · 3,465 words