Skip to main content

531 posts tagged with "AI agents"

AI agents and autonomous systems

View all tags

Read the AI agents and MCP guide

Hard Multi-Tenancy for Agent Workloads: What Apple's Kata plus VirtualClusters Recipe Costs
·Dora Noda·11 min

Hard Multi-Tenancy for Agent Workloads: What Apple's Kata plus VirtualClusters Recipe Costs

Apple's KubeCon recipe pairs per-tenant virtual control planes with Kata microVMs so untrusted agent code never shares a kernel with production tenants. The bill: about a second of cold start and 30-100 MB per sandbox, plus one small control plane per tenant.

Kubernetes
PaaS
self-hosting
AI agents
+1
Crossplane Graduates: AI Needs APIs, Not UIs — and What That Means for Your Self-Hosted PaaS
·Dora Noda·9 min

Crossplane Graduates: AI Needs APIs, Not UIs — and What That Means for Your Self-Hosted PaaS

Crossplane's CNCF graduation validates the control-plane-first thesis: AI agents need declarative, reconciled APIs, not dashboards. Upbound's Modelplane proves it across clouds — but a fleet you own needs depth, not breadth.

Kubernetes
AI agents
PaaS
self-hosting
+1
Your PaaS Thought One Developer Meant One Deploy Queue. Then the Agent Fleet Showed Up.
·Dora Noda·11 min

Your PaaS Thought One Developer Meant One Deploy Queue. Then the Agent Fleet Showed Up.

A third of Cursor's own merged PRs are opened by autonomous cloud agents, and GitHub merged 43.2M PRs a month in 2025. One developer's agent fleet can now exhaust a whole account's daily deploy quota before lunch — here is the burst math and the four pipeline fixes: build queues, preview caps, isolated preview data, and merge triage.

AI agents
Cursor
PaaS
Kubernetes
+1
MCP Has 10,000 Servers but Three Production Gaps: Identity Propagation, Timeout Budgets, and Structured Errors for Deploy Agents
·Dora Noda·12 min

MCP Has 10,000 Servers but Three Production Gaps: Identity Propagation, Timeout Budgets, and Structured Errors for Deploy Agents

Ten thousand MCP servers and 97 million monthly SDK downloads made connecting agents to tools trivial — but an agent that can deploy and roll back production needs scoped identity, timeout budgets, and machine-readable errors first. This post designs that deploy surface, tool by tool.

Model Context Protocol
AI agents
Kubernetes
self-hosting
+1
One GPU Per Sandbox: What Modal's Whole-Card Bet Costs Against E2B and Daytona's CPU-First Lanes
·Dora Noda·9 min

One GPU Per Sandbox: What Modal's Whole-Card Bet Costs Against E2B and Daytona's CPU-First Lanes

Modal puts whole GPUs inside sandboxes while E2B stays CPU-only and Daytona's GPUs are ephemeral-only. The reason is physical — Firecracker and gVisor cannot pass a GPU through — and the billing consequence is an 8x cost swing on GPU busy fraction alone.

self-hosting
PaaS
AI agents
infrastructure
+1
Render Taught an AI Agent to Migrate Your Heroku App: What It Gets Right, What Still Needs You, and the Bill at the End
·Dora Noda·9 min

Render Taught an AI Agent to Migrate Your Heroku App: What It Gets Right, What Still Needs You, and the Bill at the End

Render's open-source migration skill lets an AI agent move a Heroku app — dynos, config, Postgres — over MCP in minutes. A line-by-line test of the before/after bill, what the agent nails, where a human is still required, and the five capabilities your own fleet needs before migration becomes a prompt.

migration
AI agents
Model Context Protocol
PaaS
Your 8B Model Isn't Dumb. Its Harness Is: Forge's 53%-to-99% Guardrail Lesson for Platform Ops
·Dora Noda·12 min

Your 8B Model Isn't Dumb. Its Harness Is: Forge's 53%-to-99% Guardrail Lesson for Platform Ops

Forge's May 2026 result took an 8B model from 53% to 99.3% on agentic tasks with guardrails alone — beating unguardrailed Claude Sonnet outright. What the retry-nudge math, the 75-point serving-backend swing, and a worked token-vs-hardware breakeven mean for running platform-ops agents on a self-hosted GPU.

PaaS
self-hosting
AI agents
LLM
+1
Your Coding Agent Needs a Sandbox, Not a StatefulSet: gVisor vs Kata Under Kubernetes' New Sandbox Controller
·Dora Noda·10 min

Your Coding Agent Needs a Sandbox, Not a StatefulSet: gVisor vs Kata Under Kubernetes' New Sandbox Controller

Kubernetes SIG Apps shipped an upstream Sandbox controller for running untrusted agent code. A practical decision guide: what it replaces, whether gVisor or Kata fits your tenants, and what warm pools cost in idle capacity.

AI agents
Kubernetes
self-hosting
security
+1
10,000 MCP Servers and No Human Wiring Them Up: What Server Cards and Stateless Operation Mean for Agents That Deploy Your Apps
·Dora Noda·10 min

10,000 MCP Servers and No Human Wiring Them Up: What Server Cards and Stateless Operation Mean for Agents That Deploy Your Apps

MCP passed 10,000 public servers and is going stateless and self-describing, so agents will soon reach your deploy tools with no human wiring anything up. Here is the three-tier tool surface — observe freely, gate mutation, deny destruction — that survives contact with autonomous callers.

Model Context Protocol
AI agents
security
self-hosting
+1
Showing 316–324 of 531 posts