
EKS 1.33 Loses Standard Support July 29, 2026: What the 6x Extended-Support Markup Really Costs
Amazon EKS quietly enrolls aging Kubernetes 1.33 clusters into extended support at 6x the hourly rate on July 29, 2026 — here's what that markup costs in dollars, and what it actually costs to own the upgrade cadence with Cluster API instead.

Why Forgejo, Not Gitea, Is 2026's Default Self-Hosted Git Pick
In October 2022, Gitea's domain and trademark moved to a for-profit company without a community vote. Four years and one GPL license split later, most 2026 self-hosting guides default to the fork that split off, not the original. Here's the governance timeline, the honest feature tradeoffs, and what it means for a git-push PaaS picking a source-of-truth.

Haloy Cuts the Registry Out of the Deploy Path Entirely — Here's What That Actually Buys You
Haloy builds your Docker image locally, uploads only the changed layers straight to your server, and skips Docker Hub or GHCR entirely — here's exactly how that differs from Kamal and Dokku's registry-dependent deploy paths, and what it does and doesn't change for a Kubernetes-based fleet.

Harbor's Garbage Collection Doesn't Block Your Registry Anymore — So What's the Real Cost Zot Is Actually Solving?
Harbor's registry hasn't gone read-only during garbage collection since 2020 — the real cost of running it against a build-per-deploy pipeline is worker-bound reclaim lag, and here's what Zot's inline GC actually trades for it.

Hetzner Killed the `datacenter` Field on Schedule. CAPH's Provider Code Survived — Its Vendored SDK Didn't Keep Up
Hetzner removed the datacenter field from its Server and Primary IP API on July 1, 2026. A code audit of Cluster API Provider Hetzner found its own logic was never at risk, but its vendored Go client is stuck on a release from before the fix, and the dependency bump has sat in a stalled, CI-failing pull request since June.

Kubernetes' New Node Readiness Controller Closes the 'Pod Scheduled Before the Node Actually Works' Gap
None of CCM, CNI, or CSI natively report a Node Condition NRR can gate on — a worked example wires three NodeReadinessRule manifests into a Hetzner bare-metal bootstrap sequence anyway, and shows why managed EKS/GKE node pools never surface this bug in the first place.

Kamal 2.0's kamal-proxy: How Thin Can a Production PaaS Get Before It Needs Kubernetes?
Kamal 2.0's kamal-proxy runs HEY and Basecamp on nothing but Docker and a YAML file. Here's exactly what's in that box, where its five structural gaps are, and which Cluster API mechanism closes each one.

Kargo Puts Terraform and Kubernetes Behind One Freight Promotion — Does a Self-Hosted PaaS Actually Need That?
Kargo's 2026 Terraform/OpenTofu support bundles infra and app changes into one gated GitOps promotion. Here's a concrete three-question test for whether a Cluster API-managed PaaS actually needs that pattern, run against four real deploy scenarios.

Kubernetes 1.36's Mixed Version Proxy Beta: What It Fixes for maxSurge:0 Fleets
Kubernetes 1.36 graduates Mixed Version Proxy to Beta, closing the 404-on-your-own-CRD gap during rolling control-plane upgrades. Here's what changes for a maxSurge:0 fleet on bare metal, and the peer-auth flags you still have to configure yourself.