TLDR DevOps 2026-09-16
AI Native Cloud โ๏ธ, Internal Developer Portals ๐ฎ, Open Code Review ๐
AWS DevOps Agent: Less firefighting. More building. (Sponsor)
Ever wish it was someone else who scrambles to root cause an incident on a Friday evening?
Meet your new teammate. They're happy to troubleshoot while you're building what's next.
- Autonomously investigates issues and identifies root causes across AWS, multicloud, and on-premises environments
- Delivers prioritized recommendations to continuously improve application reliability
- Reviews code changes and runs autonomous testing so you ship to production with confidence
See how teams are reducing incident resolution from hours to minutes with AWS DevOps Agent โ
Ready to put AWS DevOps Agent to work? Get started โ
Have it both ways: stay discoverable in search while disallowing AI training (8 minute read)
Cloudflare has launched a new Disallow AI Training setting that allows website owners to block AI training while remaining indexed for search. Apple, Google, and Microsoft have committed to honoring this preference, which resolves the tradeoff created by mixed-use crawlers. Cloudflare plans to introduce more granular controls for AI summaries by early next year.
Cilium 1.20: Gateway API ExternalAuth, TCPRoute/UDPRoute, ENI IPAM for IPv6, and more (19 minute read)
Cilium 1.20 adds IPv6 support for AWS ENI IPAM and introduces datapath plugins to let third parties extend the eBPF datapath without forking the project. The release also promotes the Multi-Cluster Services API to a stable status and deprecates the legacy mutual authentication feature in favor of the ztunnel proxy. Other updates include a per-pod option to disable source IP verification and a new ClusterNetworkPolicy for admin-level guardrails.
Kubernetes v1.37: Memory QoS Graduates to Beta (3 minute read)
Memory QoS has graduated to Beta in Kubernetes v1.37 and is now enabled by default. The feature uses the memory controller on Linux nodes running cgroup v2 to guide the kernel on container memory treatment. The default memoryThrottlingFactor changed to null in this release, ensuring that upgrading clusters does not automatically throttle existing workloads.
How runtime insights helps with container security (4 minute read)
Runtime insights provide continuous visibility into live container behavior, enabling real-time threat detection, risk prioritization, faster incident response, and continuous compliance. Using technologies such as eBPF, runtime context also helps AI agents understand infrastructure and deliver more actionable security triage and remediation while reducing noise from traditional static scanning.
Internal Developer Portals: Why Native CI/CD Drives Scale (7 minute read)
Native CI/CD integration transforms internal developer portals from documentation and service catalogs into scalable workflow platforms, enabling developers to create, deploy, and roll back services without manually configuring pipelines. It also lets platform teams centrally enforce golden paths, promotion policies, and governance while reducing pipeline drift and operational complexity.
๐จโ๐ป
Resources & Tools
Your agents opened 40 merge requests. Where did the builds go? (Sponsor)
Agentic coding means more releases, across more projects than anyone ever planned to deploy. Teams struggle to answer: where did this build come from? Can its deployer be trusted? What's inside? How do you prove it?
GitLab will show you how to find answers in the October 6 livestream.
Register hereOpen Code Review (GitHub Repo)
Open Code Review is an open source AI-powered code review CLI tool that originated as Alibaba Group's internal official assistant. It has served tens of thousands of developers and identified millions of code defects. The tool uses a hybrid architecture that combines deterministic engineering with an LLM agent to generate structured review comments with line-level precision.
Openresearch (GitHub Repo)
OpenResearch is a local-first workspace that turns coding agents like Claude Code and Cursor into research agents. The platform can autonomously propose ideas, change code, launch experiments, and analyze evidence. Users can run workspaces locally, over SSH, or on platforms including Kubernetes and Hugging Face Jobs.
Let's not water down the terms Continuous Integration and Continuous Delivery (5 minute read)
Continuous Integration means merging all changes into a shared mainline at least daily, while Continuous Delivery means keeping software deployable at all times through automated pipelines. The author argues both terms are precise and well-documented, not vague, and warns against diluting their meaning as happened with Agile and DevOps.
Infrastructure identity for platform engineers (10 minute read)
Infrastructure identity replaces static credentials and fragmented access controls with short-lived, cryptographically verified identities for humans, workloads, machines, and AI agents. Platform teams can embed just-in-time, policy-driven access into developer workflows, reducing security risk and operational toil while improving access times, auditability, and control over increasingly autonomous infrastructure.
Get our free daily newsletter with curated tools ๐ป, trends ๐, and insights ๐ก, for DevOps Engineers ๐จโ๐ป
Join 350,000 readers for
one daily email