
Kubernetes 1.36's PSI Metrics Go GA (Memory QoS Tiering Stays Alpha): What It Takes to Bin-Pack a Fixed Fleet
Kubernetes 1.36 makes kubelet PSI pressure metrics GA but leaves Memory QoS tiering in Alpha — here's exactly what wiring real per-node stall data into scheduler placement takes when your fleet is four owned boxes, not an autoscaler.

Kubernetes Has Scheduled GPUs as Integers Since 2017 — What KAI Scheduler and Grove Actually Change for a Fleet Without Multi-GPU Nodes
Kubernetes has scheduled GPUs as opaque integers since 2017 — here's what KAI Scheduler and Grove's fragmentation-aware bin-packing actually fix, and why the classic multi-GPU fragmentation story doesn't apply to a fleet built on single-GPU Hetzner nodes.

CVE-2026-33814: A Single Zero in One HTTP/2 Field Can Hang Every Go Client in Your Kubernetes Fleet
A malformed SETTINGS_MAX_FRAME_SIZE value can hang any unpatched Go HTTP/2 client forever — and in Kubernetes, that's the apiserver, the kubelet, and every Cluster API provider controller. Here's the mechanism, the exposed-component map, and the govulncheck commands to audit your own fleet.

Kubernetes 1.35 Takes In-Place Pod Resize to GA: What the Restart-Based Workaround It Just Killed Was Actually Costing You
In-place pod resize reached GA in Kubernetes 1.35. Here's the before/after: what evicting and rescheduling a pod to change its CPU/memory actually cost versus a resize subresource PATCH that completes in seconds — and what a Cluster-API-managed PaaS's own autoscaling logic should do differently now.

Let's Encrypt's 2.5-Hour Outage Broke Live Renewals: A Real Fallback-CA Design for Self-Hosted ACME
Let's Encrypt's May 2026 outage lasted 2.5 hours and still broke live renewals. The renewal-buffer math showing why short-lived certificates make it worse, and a concrete two-issuer failover design for self-hosted ACME automation.

MCP Apps Ships July 28: What a Rollout Dashboard Instead of Raw JSON Means for Deploy-From-Chat
MCP Apps lets a tool return a live, sandboxed dashboard instead of a JSON blob the model has to paraphrase. Here's exactly what that changes for a deploy-from-chat platform's rollout and rollback tools.

Neon's 2026 Pricing Reset: What $0.106/CU-Hour Serverless Postgres Really Costs Against Self-Hosted CNPG on Hetzner
Neon's compute and storage rates have dropped repeatedly since the Databricks deal. A line-by-line recompute of what a branching-heavy Postgres workload actually costs on Neon's 2026 pricing versus CloudNativePG on Hetzner — including the labor cost of manual branch refreshes that most comparisons leave out.

Nomad vs Cluster API: Why a 1-3 Week Setup Win Still Loses for a Multi-Tenant PaaS
Nomad reaches production in 1-3 weeks against Kubernetes's 2-6 months — a real win for running your own app, but the wrong axis for a git-push PaaS whose product is hiding the orchestrator from tenants.

Northflank's Vibe-Coding Playbook Has Four Stages. bex Only Ships Two of Them by Default
Northflank's enterprise vibe-coding guidance reduces to four jobs a platform owes an AI-generated app: audit, harden, observe, sandbox. Here's which two bex ships as defaults today, and which two are still the tenant's job — checked against the actual bex.yml schema.