Kevin N.
noel-kevin.be
Kevin N.
@noel-kevin.be
Dev, K8s, Infra, SRE, Golang, ex-Java
@[email protected]
Reposted by Kevin N.
At this point I'm willing to pay more money for appliances with zero smart features and physical controls for everything.
September 21, 2024 at 3:32 PM
Reposted by Kevin N.
Again and again, demanding work from dozens or hundreds or thousands of unaffected dependents instead of fixing vulnerability scanners does not scale, and is an open source sustainability issue.

github.com/FiloSottile/... (do NOT dogpile on the reporter, call your vuln scanner vendor instead)
September 5, 2026 at 11:24 AM
Reposted by Kevin N.
With AI assistance, Operations now costs more than Development.

The question is not “Build vs Buy” any more.

Buying software and operating it yourself takes more effort than operating something you built and own.

The question is “Staff it or Outsource it?”
September 2, 2026 at 11:41 PM
Reposted by Kevin N.
I've updated the "Go features by version" list with the latest changes from 1.27.

This is not a replacement for release notes, but rather a quick summary of major features in any given Go version.

antonz.org/go-features/...
August 27, 2026 at 12:39 PM
Reposted by Kevin N.
“Go 1.27 is released” by Nicholas Husin, on behalf of the Go team — https://go.dev/blog/go1.27

#golang
August 19, 2026 at 5:41 PM
Reposted by Kevin N.
not sure anyone has attempted to use gh stacks yet but i'm far from delighted to report they haven't worked for three weeks and still don't work github.com/github/gh-st...
Squashing and merging a stack is stuck · github gh-stack · Discussion #212
Before: After: I've been stuck looking at these spinners for hours. Nothing is merging. I've cancelled and retried a few times; no luck.
github.com
August 7, 2026 at 9:13 PM
Reposted by Kevin N.
La nouvelle version du site est en ligne ! 🥳
Elbakin.net se met à la page avec sa V6
Il y a près d'un an, vous pouviez découvrir la nouvelle version d'Elbakin.net. Mais, après avoir mis des années et des années à proposer un site ne serait-...
www.elbakin.net
July 31, 2026 at 8:14 AM
Reposted by Kevin N.
JFrog Xray is defective, flagging unaffected binaries as vulnerable, and the cost is borne by maintainers who have to field requests to work around it.

This is a real open source sustainability issue.

(The problem here is JFrog, not the person who politely opened the issue.)
v1.3.1 release binaries embed Go toolchain vulnerable to CVE-2025-68121 (crypto/tls session resumption) · Issue #730 · FiloSottile/age
Summary The published v1.3.1 release binaries appear to be built with a Go toolchain that predates the fix for CVE-2025-68121 (Go issue golang/go#77217), a crypto/tls session-resumption vulnerabili...
github.com
July 24, 2026 at 8:00 PM
Reposted by Kevin N.
Instrumenting apps on plain Linux hosts meant downloading agents by hand and wiring up env vars. Not anymore.

The new OTel Packaging SIG shipped its first repo: the Injector plus auto-instrumentation for Java, .NET, Node.js and Python, as system packages.

opentelemetry.io/blog/2026/pa...
One-command OpenTelemetry setup on Linux hosts
OpenTelemetry as system dependency Setting up OpenTelemetry for your applications and systems depends on where those apps and systems run. Some are very automated, especially Kubernetes, thanks to…
opentelemetry.io
July 23, 2026 at 5:54 PM
Reposted by Kevin N.
Lambda expressions land in OTTL! Eight new (experimental) higher-order functions, Filter, MapEach, MapKeys, Any, All, Find, Reduce, and When, let you pass inline logic to transform collections concisely.

opentelemetry.io/blog/2026/la...
Lambda-powered functions land in OTTL
As telemetry pipelines become more sophisticated, so do the transformations they need to perform: sanitizing sensitive data, normalizing inconsistent schemas, and enforcing attribute contracts. While…
opentelemetry.io
July 22, 2026 at 8:19 PM
Reposted by Kevin N.
Nobody ever asks for TLS. Everything they ask for is made of it. A thread about the platform team's dilemma: 🧵
July 9, 2026 at 5:29 PM
Reposted by Kevin N.
One of my most popular blog posts got a much needed refresh and the folks at The Lead Dev were nice enough to publish it

leaddev.com/career-devel...
The reality of being a principal engineer
Principal engineering demands cross-org influence and people skills – and as AI reshapes coding, that judgment only grows more valuable.
leaddev.com
May 27, 2026 at 7:24 PM
Reposted by Kevin N.
I am happy to share a little thing we have been cooking up: github.com/agent-substr...

Problem statement: How can we effectively host a bazillion mostly-idle agents in a regular-sized Kubernetes cluster?

This is *demo-grade* software, but it shows some ideas.
GitHub - agent-substrate/substrate: Agent Substrate: the core system
Agent Substrate: the core system. Contribute to agent-substrate/substrate development by creating an account on GitHub.
github.com
May 20, 2026 at 4:13 PM
Reposted by Kevin N.
I truly can’t get over the fact that we chose YAML-interpolated shell scripts as the default CI programming language.

It’s so bad that we forgot how to handle untrusted inputs! (pull_request_target and issue_comment triggers should not be that unsafe! It’s just attacker controlled input.)
🧊 take: YAML pipelines are a pit of failure for CI/CD pipelines. They attract people because they seem declarative and the syntax is “easy”, and they have become “standard”, but everyone ends up encoding subroutines and data flow into them—and YAML is a terrible programming language!
May 11, 2026 at 8:14 AM
Reposted by Kevin N.
Rocky Linux is introducing a new optional Security Repository to help reduce time-to-patch during exceptional security events like CopyFail and Dirty Frag.

Read More: forums.rockylinux.org/t/rocky-linu...
Rocky Linux Security Repository and Dirty Frag Security Update
The Rocky Linux project has always prioritized stability, compatibility, and trust within the Enterprise Linux ecosystem. Historically, this has meant waiting for official upstream Enterprise Linux…
forums.rockylinux.org
May 9, 2026 at 6:01 PM
Reposted by Kevin N.
👩🏽‍🔬 Go 1.26.3 and 1.25.10 are released!

🔐 Security: Includes 11 security fixes to the standard library and the toolchain.

📣 Announcement: https://groups.google.com/g/golang-announce/c/qcCIEXso47M/m/2bOHLAuTBQAJ

📦 Download: https://go.dev/dl/#go1.26.3

#golang
May 7, 2026 at 4:32 PM
Reposted by Kevin N.
In exchange for 18 minutes of your time, you can get an elevator pitch about why you should be using pi (instead of claude) and perhaps more importantly, one of the sanest takes on using AI effectively 🔥

www.youtube.com/watch?v=Rjfb...
Building pi in a World of Slop — Mario Zechner
YouTube video by AI Engineer
www.youtube.com
April 30, 2026 at 10:12 AM
Reposted by Kevin N.
Cute little #kubernetes Informer package replacement for watching resources without parsing all the resource fields you don’t need. Nice optimization.
github.com/alexmt/raw-i...
GitHub - alexmt/raw-informer: Low-overhead Kubernetes informer for sidecar controllers that don't need the full object
Low-overhead Kubernetes informer for sidecar controllers that don't need the full object - alexmt/raw-informer
github.com
April 29, 2026 at 8:38 PM
Reposted by Kevin N.
I don't think tech at large understands how hard it is to be an open source maintainer right now. So many great folks are on the brink of burnout. Funding is drying out. We live in a security minefield. Companies think humans are disposable.

If you're a maintainer, we care. You deserve the world.
April 29, 2026 at 6:59 PM
Reposted by Kevin N.
The GitHub remote execution bug is fine and all, but the bigger story is the LLM (with IDA) quickly decompiling GH's binaries to enable the analysis.

A lot of companies shipping "closed" binaries are going to learn the hard way that they might as well be shipping source.

www.wiz.io/blog/github-...
April 28, 2026 at 9:06 PM
Reposted by Kevin N.
A bit over two years after starting to work on it...

Go is officially FIPS 140-3 certified 💥

csrc.nist.gov/projects/cry...

I am pretty confident Go is now one of the most—if not the most—seamless and complete FIPS 140-3 compliance solutions... with a single env var, out of the box.
April 28, 2026 at 12:05 AM
Reposted by Kevin N.
Gateway API v1.5: Moving features to Stable-
Gateway API v1.5: Moving features to Stable
The Kubernetes SIG Network community presents the release of Gateway API (v1.5)! Released on March 14, 2026, version 1.5 is our biggest release yet, and concentrates on moving existing Experimental features...
kubernetes.io
April 22, 2026 at 3:06 PM
Reposted by Kevin N.
We've been cookin'... 🍳

#Grafana 13.

Loki evolution.

Grafana Assistant for self-managed users.

#AI Observability in public preview.

We can't fit all of the #GrafanaCON 2026 announcements in 1 tweet!

See them all: grafana.com/blog/grafana...
April 21, 2026 at 10:28 AM