531 posts tagged with "AI agents"
AI agents and autonomous systems

Daytona Went Closed-Source: What It Costs to Build Agent Sandboxes on Borrowed Open Source
Daytona moved its core to a private codebase in June 2026, freezing the open repo at v0.190.0 with no security patches. What that costs self-hosters in CVE backports, API drift, and AGPL obligations — plus a five-way comparison of Microsandbox, E2B self-hosted, Beam, CubeSandbox, and the SIG-governed agent-sandbox.

Your Deploy Agent Is a Script With an API Key: What Agent Lifecycle Managers Actually Gate
A deploy agent with a scoped API key is a script with credentials that can improvise. How SPIFFE identity, RFC 8693 delegation, and Kagenti's agent registry gate every deploy call — and what scoped-keys-plus-audit-logs can't see.

Kubeflow Grew Up in 2026 — Here's What Your PaaS Should Steal (and What to Leave Alone)
Kubeflow graduated CNCF in August 2026 with Kale 2.0 and a rebuilt Trainer for distributed AI and HPC. A borrow-vs-skip guide for PaaS teams running agent sandboxes: take JobSet, Kueue, and DRA-aware placement, leave the platform behind.

MCP Breaks Forward Again: Pinning a Shipped Infrastructure Server Through the 2026-07-28 Protocol Churn
MCP revision 2026-07-28 deletes the initialize handshake and session IDs while 10,000-plus servers run in production. What broke, how each client/server era-mismatch fails for deploy, rollback, and log reads, and the pinning checklist — plus why a stable REST API under the MCP layer is the real durability story.

Every Pulumi Stack Is Now a Kubernetes CRD: What Operator 2.0 Buys a Cluster API Fleet (and Where Crossplane Already Covers It)
Pulumi Kubernetes Operator 2.0 runs each stack in its own Workspace pod behind the stable Stack CRD. We grade what IaC-as-CRD buys a Cluster API management cluster, where Crossplane already covers the same ground, and which one your agent-operators inherit.

Your Infra MCP Server Is grep+read: What Semble's 98% Token Cut Teaches Tool Builders
Semble cut code-search tokens 98% by chunking, ranking, and refusing to dump whole files into context. Measured tokenizer counts show the same four techniques cut infra MCP responses 87-99% — fleet state, deploy status, and logs costed per 100 agent ops.

Where Lovable, bolt.new, and v0 Run Your Generated Code: Firecracker vs gVisor vs Docker, Priced Against a Hetzner Box
bolt.new runs generated apps in your browser, v0 in Firecracker microVMs, Lovable in preview containers. Boot-latency ranges, isolation tradeoffs, and per-run cost math for each rung — plus the run volume where owned hardware wins.

A2A Hit 150 Organizations in a Year: The Agent-to-Agent Protocol MCP Was Never Meant to Be
A2A grew from a Google proposal to 150+ organizations and a stable v1.0 in twelve months. What the agent-to-agent protocol covers that MCP deliberately doesn't — plus the precise triggers for when a deploy-from-chat roadmap needs both.

Your Next Platform Tenant Is Not Human: What 'Agent as a First-Class Consumer' Actually Requires From a Deploy API
CNCF's agentic-enterprise pitch says AI agents should be first-class platform tenants. A row-by-row check of what that demands from a deploy API — identity, scopes, machine-readable state, audit trails, resource graphs — against what a self-hosted Render-compatible platform ships today.