Should We Sign Git Commits? Probably Not!Git serves as the bedrock for everything we construct but without trust in this foundational layer, securing our software becomes…Apr 7, 2024Apr 7, 2024
Replacing Helm and Kustomize with KRM Functions — a New Approach to Configuration ManagementConfiguration management is hard!May 29, 2022A response icon4May 29, 2022A response icon4
Why We Should Use ‘latest’ Tag on Container ImagesIts a common advise that you should not use the ‘latest’ tag to identify container images but but instead use proper tags — e.g. semantic…Jan 29, 2022A response icon1Jan 29, 2022A response icon1
Dockerfiles vs. Cloud-native BuildpacksDeclarative cloud-native buildpacks enables valuable new usecases compared to scripted DockerfilesJan 20, 2022A response icon1Jan 20, 2022A response icon1