<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Dev Observatory</title><description>Engineering and AI news, practical system design, and technical guides for people who build software.</description><link>https://www.devobs.io/</link><item><title>BOMHort joins the OpenSSF Sandbox</title><link>https://www.devobs.io/news/news-openssf-bomhort-sandbox/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openssf-bomhort-sandbox/</guid><description>The Kubernetes-native BOMHort project joins OpenSSF, combining SBOM ingestion, OSV refreshes, VEX handling, license policy, and ClickHouse analytics.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Sentry expands Logs with pinning, JSONL export, and large-query handling</title><link>https://www.devobs.io/news/news-sentry-logs-summer-2026-update/</link><guid isPermaLink="true">https://www.devobs.io/news/news-sentry-logs-summer-2026-update/</guid><description>Sentry’s summer Logs update adds shareable pinned rows, aggregate-aware exports, JSONL, faster views, and continuation support for large searches.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenBao 2.6 adds namespace sealing and cross-plugin workflows</title><link>https://www.devobs.io/news/news-openbao-26-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openbao-26-release/</guid><description>OpenBao 2.6 introduces per-namespace cryptographic sealing, external auto-unseal plugins, cross-plugin workflows, and distroless images.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Sentry links OpenTelemetry spans to SDK-captured errors</title><link>https://www.devobs.io/news/news-sentry-opentelemetry-error-correlation/</link><guid isPermaLink="true">https://www.devobs.io/news/news-sentry-opentelemetry-error-correlation/</guid><description>Sentry’s OtlpIntegration connects existing OpenTelemetry trace context with Sentry errors across several backend SDKs, with explicit limits.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Elastic 9.5 makes native Prometheus and PromQL support generally available</title><link>https://www.devobs.io/news/news-elastic-95-general-availability/</link><guid isPermaLink="true">https://www.devobs.io/news/news-elastic-95-general-availability/</guid><description>Elastic 9.5 reaches GA with native Prometheus ingestion and PromQL support, alongside columnar storage and security-operations changes.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Grafana Cloud Adaptive Profiles reaches general availability</title><link>https://www.devobs.io/news/news-grafana-adaptive-profiles-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-grafana-adaptive-profiles-ga/</guid><description>Adaptive Profiles is now GA in Grafana Cloud, dynamically changing profiling detail and frequency and increasing resolution when anomalies or performance issues appear.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Prometheus 3.5.5 patches a dashboard sanitization flaw</title><link>https://www.devobs.io/news/news-prometheus-355-security-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-prometheus-355-security-release/</guid><description>Prometheus 3.5.5 updates sanitize-html to address CVE-2026-53606, giving operators a focused security upgrade on the 3.5 LTS line.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Trivy 0.72 broadens detection and VEX handling</title><link>https://www.devobs.io/news/news-trivy-0720-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-trivy-0720-release/</guid><description>Trivy 0.72 adds Bottlerocket matching, bundled .NET runtime detection, richer Java license discovery, repository VEX loading, and safer temp paths.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Sigstore keeps Rekor v1 as its public default</title><link>https://www.devobs.io/news/news-sigstore-rekor-v1-default-retained/</link><guid isPermaLink="true">https://www.devobs.io/news/news-sigstore-rekor-v1-default-retained/</guid><description>Sigstore changed its Rekor rollout plan: the public-good service will keep v1 as default while modern clients can opt into production Rekor v2.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenTelemetry Go Logs API and SDK enter release candidate</title><link>https://www.devobs.io/news/news-opentelemetry-go-logs-release-candidate/</link><guid isPermaLink="true">https://www.devobs.io/news/news-opentelemetry-go-logs-release-candidate/</guid><description>The Go Logs API and SDK reached release-candidate status for direct application use and logging bridges, while exporters and logtest remain experimental.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Vue 3.5.42 fixes async hydration, Suspense, and v-model edge cases</title><link>https://www.devobs.io/news/news-vue-3-5-42-hydration-runtime-fixes/</link><guid isPermaLink="true">https://www.devobs.io/news/news-vue-3-5-42-hydration-runtime-fixes/</guid><description>Vue 3.5.42 is a maintenance release focused on async hydration teardown, pending Suspense branches, select synchronization, and SSR input safety.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Next.js 16.3 adds disk-backed builds and opt-in instant navigation tools</title><link>https://www.devobs.io/news/news-nextjs-16-3-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-nextjs-16-3-release/</guid><description>Next.js 16.3 lowers development memory use, reuses build artifacts, and previews partial prefetching, navigation inspection, and offline retries.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Chrome 151 adds declarative camera controls and SPA performance entries</title><link>https://www.devobs.io/news/news-chrome-151-capability-elements-soft-navigation/</link><guid isPermaLink="true">https://www.devobs.io/news/news-chrome-151-capability-elements-soft-navigation/</guid><description>Chrome 151 introduces the usermedia capability element, manual declarative shadow slots, and route-level performance signals for single-page apps.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenTelemetry Demo 3.0 introduces breaking schema changes and new signals</title><link>https://www.devobs.io/news/news-opentelemetry-demo-30-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-opentelemetry-demo-30-release/</guid><description>OpenTelemetry Demo 3.0 renames custom attributes, restructures Compose deployment, and adds agentic, profiling, OpAMP, load-generation, and test capabilities.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenTelemetry opens its first Linux packaging repository</title><link>https://www.devobs.io/news/news-opentelemetry-linux-packaging-repository/</link><guid isPermaLink="true">https://www.devobs.io/news/news-opentelemetry-linux-packaging-repository/</guid><description>The Packaging SIG published a first repository and one-command Linux metapackage, with explicit warnings that signing and production readiness remain unfinished.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Falco 0.44 removes legacy engines and hardens runtime detection</title><link>https://www.devobs.io/news/news-falco-0440-runtime-security-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-falco-0440-runtime-security-release/</guid><description>Falco 0.44 drops legacy eBPF, gVisor, and gRPC paths while adding stricter rules, bounded captures, faster process lookup, and new detections.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenTelemetry graduates within the CNCF</title><link>https://www.devobs.io/news/news-opentelemetry-cncf-graduation/</link><guid isPermaLink="true">https://www.devobs.io/news/news-opentelemetry-cncf-graduation/</guid><description>CNCF graduation recognizes OpenTelemetry’s project maturity and governance while the maintainers continue work on interoperable telemetry standards.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenTelemetry separates adoption blueprints from real-world reference implementations</title><link>https://www.devobs.io/news/news-opentelemetry-blueprints-reference-implementations/</link><guid isPermaLink="true">https://www.devobs.io/news/news-opentelemetry-blueprints-reference-implementations/</guid><description>A new OpenTelemetry initiative pairs reusable implementation guidance with snapshots of how real organizations operate telemetry systems, without promising turnkey configurations.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenTelemetry launches a work-in-progress instrumentation explorer</title><link>https://www.devobs.io/news/news-opentelemetry-ecosystem-explorer-launch/</link><guid isPermaLink="true">https://www.devobs.io/news/news-opentelemetry-ecosystem-explorer-launch/</guid><description>OpenTelemetry’s new explorer makes Java agent instrumentation metadata searchable, while clearly presenting Collector and other ecosystem coverage as unfinished work.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Grafana 13 makes dynamic dashboards, Git Sync, and Advisor broadly available</title><link>https://www.devobs.io/news/news-grafana-13-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-grafana-13-release/</guid><description>Grafana 13 turns several major dashboard and operations features on for general use, giving upgrade teams concrete schema, Git, and health-check changes to test.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Pyroscope 2.0 reworks continuous profiling storage</title><link>https://www.devobs.io/news/news-grafana-pyroscope-20-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-grafana-pyroscope-20-release/</guid><description>Pyroscope 2.0 makes object storage authoritative, removes write-path replication, and moves profiling queries onto a stateless read path.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenTelemetry Profiles reaches public alpha</title><link>https://www.devobs.io/news/news-opentelemetry-profiles-public-alpha/</link><guid isPermaLink="true">https://www.devobs.io/news/news-opentelemetry-profiles-public-alpha/</guid><description>OpenTelemetry’s profiling signal entered public alpha, giving implementers a shared data model and OTLP path while keeping stability expectations explicit.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Falco Operator 0.2.0 reaches production-ready status</title><link>https://www.devobs.io/news/news-falco-operator-production-ready-020/</link><guid isPermaLink="true">https://www.devobs.io/news/news-falco-operator-production-ready-020/</guid><description>Falco Operator 0.2.0 adds Kubernetes-style reconciliation, status conditions, finalizers, and a Component resource for managing the wider stack.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Firefox 153 adds bulk IndexedDB reads, video PiP, and JSPI</title><link>https://www.devobs.io/news/news-firefox-153-web-platform-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-firefox-153-web-platform-release/</guid><description>Firefox 153 ships getAllRecords for IndexedDB, desktop video picture-in-picture, WebAssembly Promise integration, and richer WebRTC diagnostics.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>React 19.2.8 improves Server Component decoding performance</title><link>https://www.devobs.io/news/news-react-19-2-8-rsc-decoding/</link><guid isPermaLink="true">https://www.devobs.io/news/news-react-19-2-8-rsc-decoding/</guid><description>React 19.2.8 is a focused patch that changes Server Component payload decoding, giving framework teams a small but important upgrade target.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Vite 8.1 previews bundled development for very large applications</title><link>https://www.devobs.io/news/news-vite-8-1-bundled-dev-mode/</link><guid isPermaLink="true">https://www.devobs.io/news/news-vite-8-1-bundled-dev-mode/</guid><description>Vite 8.1 adds experimental bundled dev and chunk import maps, direct Wasm ESM imports, and configurable asset discovery for custom HTML.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Astro 7 moves its compiler and Markdown pipeline to Rust</title><link>https://www.devobs.io/news/news-astro-7-rust-toolchain-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-astro-7-rust-toolchain-release/</guid><description>Astro 7 combines a Rust compiler and content pipeline with queued rendering, stable route caching, advanced routing, and Vite 8.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>CSS Working Group publishes June CSS Snapshot 2026</title><link>https://www.devobs.io/news/news-css-snapshot-2026-june/</link><guid isPermaLink="true">https://www.devobs.io/news/news-css-snapshot-2026-june/</guid><description>The June CSS Snapshot classifies stable, candidate, and rough-interoperability modules while warning that specification status is not browser support.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Safari 27 beta previews customizable selects and broader web-platform updates</title><link>https://www.devobs.io/news/news-safari-27-beta-webkit-wwdc26/</link><guid isPermaLink="true">https://www.devobs.io/news/news-safari-27-beta-webkit-wwdc26/</guid><description>WebKit’s Safari 27 beta adds customizable form controls, scroll anchoring controls, JSPI, and a large set of CSS, media, and Web API changes.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Svelte 5.56 adds runes-mode declaration tags inside templates</title><link>https://www.devobs.io/news/news-svelte-5-56-template-declarations/</link><guid isPermaLink="true">https://www.devobs.io/news/news-svelte-5-56-template-declarations/</guid><description>Svelte 5.56 adds runes-mode template declarations, with explicit state and derived runes for values that must update reactively.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Firefox 151 adds style queries and document picture-in-picture</title><link>https://www.devobs.io/news/news-firefox-151-developer-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-firefox-151-developer-release/</guid><description>Firefox 151 ships CSS container style queries, declarative shadow slot assignment, and always-on-top HTML windows on desktop.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Safari 26.5 adds :open, Origin API support, and 63 WebKit fixes</title><link>https://www.devobs.io/news/news-safari-26-5-web-platform-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-safari-26-5-web-platform-release/</guid><description>Safari 26.5 expands state styling and origin parsing while repairing IndexedDB, storage-access, WebRTC, scrolling, and accessibility failures.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Chrome 148 adds lazy media loading and a browser Prompt API</title><link>https://www.devobs.io/news/news-chrome-148-web-platform-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-chrome-148-web-platform-release/</guid><description>Chrome 148 can defer audio and video near the viewport, query named containers without a type, and run constrained multimodal prompts on device.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Chrome 147 ships scoped view transitions and new CSS color and border tools</title><link>https://www.devobs.io/news/news-chrome-147-web-platform-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-chrome-147-web-platform-release/</guid><description>Chrome 147 brings concurrent element-level view transitions, automatic black-or-white contrast selection, and shape-aware border painting.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Firefox 149 ships hint popovers and math font support</title><link>https://www.devobs.io/news/news-firefox-149-developer-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-firefox-149-developer-release/</guid><description>Firefox 149 adds the hint popover state, math font defaults, and platform changes that affect layered overlays and mathematical content.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Safari 26.4 adds Grid Lanes, WebTransport, and Keyboard Lock</title><link>https://www.devobs.io/news/news-safari-26-4-web-platform-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-safari-26-4-web-platform-release/</guid><description>Safari 26.4 delivers 44 web features and 191 fixes, including masonry-style Grid Lanes, HTTP/3 WebTransport, and fullscreen keyboard control.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Next.js 16.2 improves startup, rendering, and hydration debugging</title><link>https://www.devobs.io/news/news-nextjs-16-2-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-nextjs-16-2-release/</guid><description>Next.js 16.2 pairs Turbopack and rendering work with clearer server-function logs, hydration diffs, error causes, and stable adapters.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Vite 8 replaces its dual bundlers with Rolldown</title><link>https://www.devobs.io/news/news-vite-8-rolldown-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-vite-8-rolldown-release/</guid><description>Vite 8 makes the Rust-based Rolldown bundler its unified development and production pipeline, with compatibility shims and migration guidance.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Kubernetes 1.37 delivers 67 enhancements in the Garhwal release</title><link>https://www.devobs.io/news/news-kubernetes-1-37-garhwal-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-kubernetes-1-37-garhwal-release/</guid><description>Kubernetes 1.37 ships 67 enhancements, including a stable storage-version migration API and a broad mix of stable, beta, and alpha changes.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Terraform 1.16 adds module imports and machine-readable state commands</title><link>https://www.devobs.io/news/news-terraform-1-16-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-terraform-1-16-release/</guid><description>Terraform 1.16 supports import blocks inside modules, JSON output for state and workspace inspection, richer action triggers, and lifecycle destroy controls.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Kubeflow graduates at the CNCF as a Kubernetes AI platform</title><link>https://www.devobs.io/news/news-kubeflow-cncf-graduation/</link><guid isPermaLink="true">https://www.devobs.io/news/news-kubeflow-cncf-graduation/</guid><description>CNCF graduated Kubeflow, recognizing the Kubernetes-native project’s maturity across data preparation, training, fine-tuning, inference, and model serving.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Docker VMM enters public beta on Mac and Windows</title><link>https://www.devobs.io/news/news-docker-vmm-public-beta/</link><guid isPermaLink="true">https://www.devobs.io/news/news-docker-vmm-public-beta/</guid><description>Docker rebuilt the virtualization layer under Docker Desktop and opened it as a public beta in version 4.86 for macOS and Windows users.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloud Native Buildpacks graduates at the CNCF</title><link>https://www.devobs.io/news/news-cloud-native-buildpacks-cncf-graduation/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloud-native-buildpacks-cncf-graduation/</guid><description>CNCF graduated Cloud Native Buildpacks, recognizing the source-to-OCI image toolkit’s production adoption, governance, and maintained build workflow.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>K8gb advances to CNCF incubation for Kubernetes global routing</title><link>https://www.devobs.io/news/news-k8gb-cncf-incubation/</link><guid isPermaLink="true">https://www.devobs.io/news/news-k8gb-cncf-incubation/</guid><description>CNCF moved K8gb to incubation, recognizing a Kubernetes-native global load-balancing project built around DNS, CoreDNS, ExternalDNS, and custom resources.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Pulumi adds Terraform state, native modules, and first-class HCL</title><link>https://www.devobs.io/news/news-pulumi-terraform-hcl-interoperability/</link><guid isPermaLink="true">https://www.devobs.io/news/news-pulumi-terraform-hcl-interoperability/</guid><description>Pulumi’s August release makes its Terraform backend and HCL language generally available while allowing Pulumi programs to consume Terraform modules directly.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Docker Offload moves the container engine into a managed cloud session</title><link>https://www.devobs.io/news/news-docker-offload-general-availability/</link><guid isPermaLink="true">https://www.devobs.io/news/news-docker-offload-general-availability/</guid><description>Docker Offload reached general availability, letting Docker Desktop users keep local commands while the engine runs in an isolated managed environment.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Podman Desktop 1.26 adds extension credential permissions</title><link>https://www.devobs.io/news/news-podman-desktop-1-26-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-podman-desktop-1-26-release/</guid><description>Podman Desktop 1.26 prompts before extensions access authentication sessions and adds managed controls for extension installation and discovery.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Astro 6 adds built-in fonts, CSP, and live content collections</title><link>https://www.devobs.io/news/news-astro-6-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-astro-6-release/</guid><description>Astro 6 combines new content and security APIs with a refactored development pipeline designed to run the target production runtime locally.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>CSS Working Group updates gap decorations draft for grid and flex</title><link>https://www.devobs.io/news/news-css-gap-decorations-working-draft/</link><guid isPermaLink="true">https://www.devobs.io/news/news-css-gap-decorations-working-draft/</guid><description>The March draft renames inset controls and adds edge, intersection, and empty-area behavior for rules drawn through grid and flex gaps.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Gateway API 1.6 stabilizes portable TCP and UDP routing</title><link>https://www.devobs.io/news/news-gateway-api-1-6-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gateway-api-1-6-release/</guid><description>Gateway API 1.6 moves TCPRoute and UDPRoute into the stable v1 API and separates future experimental resources into an explicitly different group.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Apache Iceberg Rust 0.10 revises table lifecycle and retention APIs</title><link>https://www.devobs.io/news/news-iceberg-rust-010-table-lifecycle/</link><guid isPermaLink="true">https://www.devobs.io/news/news-iceberg-rust-010-table-lifecycle/</guid><description>Iceberg Rust 0.10 adds snapshot-expiration work and separates table purging from catalog removal, with breaking dependency and API changes to review.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>etcd 3.7 streams large ranges and boots directly from v3store</title><link>https://www.devobs.io/news/news-etcd-3-7-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-etcd-3-7-release/</guid><description>etcd 3.7 adds RangeStream for chunked reads, optimizes keys-only queries, and boots from v3store while retaining v2 snapshots for compatibility.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Podman 6.0 removes legacy hosts, databases, and network stacks</title><link>https://www.devobs.io/news/news-podman-6-0-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-podman-6-0-release/</guid><description>Podman 6.0 adds cross-provider machine management and safer volume pruning while requiring migrations from several retired platform components.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>PostgreSQL 19 Beta 1 previews replica-wait and maintenance features</title><link>https://www.devobs.io/news/news-postgresql-19-beta1-replica-read-testing/</link><guid isPermaLink="true">https://www.devobs.io/news/news-postgresql-19-beta1-replica-read-testing/</guid><description>PostgreSQL 19&apos;s first beta introduces replica replay waits and maintenance changes, opening a testing window for application and driver compatibility.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Pulumi previews direct resource operations with pulumi do</title><link>https://www.devobs.io/news/news-pulumi-do-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-pulumi-do-preview/</guid><description>The research-preview pulumi do command offers stateless CRUD and query operations through provider schemas without first creating a project.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Docker makes Gordon generally available for container workflows</title><link>https://www.devobs.io/news/news-docker-gordon-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-docker-gordon-ga/</guid><description>Docker’s Gordon agent is generally available in Docker Desktop and the CLI, with local container context and configurable approval controls for actions.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenTofu 1.12 makes lifecycle policy and CLI output more adaptable</title><link>https://www.devobs.io/news/news-opentofu-1-12-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-opentofu-1-12-release/</guid><description>OpenTofu 1.12 adds dynamic prevent_destroy, complete provider checksums, parallel installation, dual output streams, and a state-only removal control.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Kubernetes 1.36 moves controller sharding into the API server</title><link>https://www.devobs.io/news/news-kubernetes-server-side-sharded-watch-alpha/</link><guid isPermaLink="true">https://www.devobs.io/news/news-kubernetes-server-side-sharded-watch-alpha/</guid><description>An alpha Kubernetes API lets horizontally sharded controllers request only their hash range for list and watch traffic instead of discarding events.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>containerd 2.3 becomes the project’s first annual LTS release</title><link>https://www.devobs.io/news/news-containerd-2-3-lts-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-containerd-2-3-lts-release/</guid><description>containerd 2.3 aligns minor releases with Kubernetes, starts a two-year LTS line, and expands CRI, EROFS, sandbox, and NRI capabilities.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Kubernetes 1.36 adds beta in-place resizing for pod-level resources</title><link>https://www.devobs.io/news/news-kubernetes-1-36-pod-level-inplace-resize/</link><guid isPermaLink="true">https://www.devobs.io/news/news-kubernetes-1-36-pod-level-inplace-resize/</guid><description>Kubernetes 1.36 can change pod-level CPU and memory allocations in place, with explicit status conditions and runtime prerequisites for operators.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Kubernetes 1.36 ships 70 enhancements under the Haru release</title><link>https://www.devobs.io/news/news-kubernetes-1-36-haru-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-kubernetes-1-36-haru-release/</guid><description>Kubernetes 1.36 arrived with 70 enhancements, including resource-health reporting, workload scheduling changes, and several removals to audit.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Ingress2Gateway 1.0 turns Ingress migration into a reviewable conversion</title><link>https://www.devobs.io/news/news-ingress2gateway-1-0-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-ingress2gateway-1-0-release/</guid><description>Kubernetes SIG Network released Ingress2Gateway 1.0 with broader Ingress-NGINX annotation coverage and integration-tested Gateway API output.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>DuckDB opens version 2.0 alpha for compatibility testing</title><link>https://www.devobs.io/news/news-duckdb-20-alpha-compatibility-testing/</link><guid isPermaLink="true">https://www.devobs.io/news/news-duckdb-20-alpha-compatibility-testing/</guid><description>DuckDB&apos;s September alpha starts compatibility testing for its next major release, with different client version labels and extension availability to track.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>PostgreSQL’s August update calls for targeted index and statistics checks</title><link>https://www.devobs.io/news/news-postgresql-186-index-repair-checks/</link><guid isPermaLink="true">https://www.devobs.io/news/news-postgresql-186-index-repair-checks/</guid><description>PostgreSQL 18.6 and companion releases fix 28 security issues, with post-update checks for GIN statistics, btree_gist and large ltree indexes.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>ClickHouse 26.7 adds measured execution plans with EXPLAIN ANALYZE</title><link>https://www.devobs.io/news/news-clickhouse-267-explain-analyze/</link><guid isPermaLink="true">https://www.devobs.io/news/news-clickhouse-267-explain-analyze/</guid><description>ClickHouse 26.7 adds EXPLAIN ANALYZE with planning, execution and parallelism measurements, making expensive diagnostics worth scheduling deliberately.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>MySQL 9.7.2 fixes deletion ordering in JSON duality-view updates</title><link>https://www.devobs.io/news/news-mysql-972-duality-view-delete-fix/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mysql-972-duality-view-delete-fix/</guid><description>MySQL 9.7.2 corrects nested-row deletion during JSON duality-view updates and date conversion behavior, making targeted regression cases valuable.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>SQLite 3.53.4 follows a wave of AI-assisted bug reports</title><link>https://www.devobs.io/news/news-sqlite-3534-maintenance/</link><guid isPermaLink="true">https://www.devobs.io/news/news-sqlite-3534-maintenance/</guid><description>SQLite’s July maintenance release fixes more reported bugs; application teams need to verify the embedded runtime they actually distribute.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Kafka 4.3.1 fixes a Kafka Streams RocksDB native memory leak</title><link>https://www.devobs.io/news/news-kafka-431-rocksdb-memory-fix/</link><guid isPermaLink="true">https://www.devobs.io/news/news-kafka-431-rocksdb-memory-fix/</guid><description>Kafka 4.3.1’s highlighted fix concerns native memory in Streams applications, so verification should include process memory and recovery behavior.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Redis 8.8 adds arrays and explicit Streams message rejection</title><link>https://www.devobs.io/news/news-redis-88-arrays-stream-nack/</link><guid isPermaLink="true">https://www.devobs.io/news/news-redis-88-arrays-stream-nack/</guid><description>Redis 8.8 introduces arrays, window counters and XNACK; consumer reclaim settings remain essential to making rejected messages available again.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>ClickHouse 26.5 pushes eligible top-N work below joins</title><link>https://www.devobs.io/news/news-clickhouse-265-topn-join-pushdown/</link><guid isPermaLink="true">https://www.devobs.io/news/news-clickhouse-265-topn-join-pushdown/</guid><description>ClickHouse 26.5 optimizes eligible ORDER BY and LIMIT queries across joins; result cardinality and actual plans are the right upgrade checks.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Kafka 4.3 adds log-directory cordoning and storage metrics</title><link>https://www.devobs.io/news/news-kafka-430-cordon-storage-metrics/</link><guid isPermaLink="true">https://www.devobs.io/news/news-kafka-430-cordon-storage-metrics/</guid><description>Kafka 4.3 adds controls for log-directory placement and retention visibility, alongside deprecations that operators should map to existing dashboards.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Valkey 9.1 adds database-specific access controls and TLS diagnostics</title><link>https://www.devobs.io/news/news-valkey-91-database-access-controls/</link><guid isPermaLink="true">https://www.devobs.io/news/news-valkey-91-database-access-controls/</guid><description>Valkey 9.1 introduces access rules for numbered databases, certificate monitoring and script controls, giving operators more precise deployment checks.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>PostgreSQL’s May update fixes 11 security issues and replication bugs</title><link>https://www.devobs.io/news/news-postgresql-may-2026-maintenance/</link><guid isPermaLink="true">https://www.devobs.io/news/news-postgresql-may-2026-maintenance/</guid><description>PostgreSQL’s May maintenance releases include security fixes and standby repairs; teams should inventory client tools alongside database servers.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Valkey Admin 1.0 unifies cluster inspection and troubleshooting</title><link>https://www.devobs.io/news/news-valkey-admin-10-cluster-diagnostics/</link><guid isPermaLink="true">https://www.devobs.io/news/news-valkey-admin-10-cluster-diagnostics/</guid><description>Valkey Admin 1.0 adds topology, key browsing and command logs, with server-version prerequisites and web-interface authentication to plan.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>SQLite 3.53 adds constraint changes and repairs expression-index compatibility</title><link>https://www.devobs.io/news/news-sqlite-353-constraints-formatting/</link><guid isPermaLink="true">https://www.devobs.io/news/news-sqlite-353-constraints-formatting/</guid><description>SQLite 3.53 adds ALTER TABLE constraint operations and result formatting, while floating-point text changes deserve explicit compatibility tests.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>MSTest 4.4 enables native ahead-of-time test executables</title><link>https://www.devobs.io/news/news-mstest-native-aot-source-generation/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mstest-native-aot-source-generation/</guid><description>Microsoft describes MSTest 4.4&apos;s source-generated Native AOT test path, giving teams another way to examine behavior under their deployment compilation model.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Rust 1.98.1 fixes incorrect trait-object vtable generation</title><link>https://www.devobs.io/news/news-rust-1981-vtable-correction/</link><guid isPermaLink="true">https://www.devobs.io/news/news-rust-1981-vtable-correction/</guid><description>Rust 1.98.1 corrects a compiler bug that could emit null function pointers in trait-object vtables, making build provenance important for remediation.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Node.js 24.20 adds test-runner logging to its LTS line</title><link>https://www.devobs.io/news/news-node-2420-test-reporting/</link><guid isPermaLink="true">https://www.devobs.io/news/news-node-2420-test-reporting/</guid><description>Node.js 24.20 expands test-runner events with contextual logging and entry-file information, alongside additions to asynchronous context and streams.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>LLVM 23.1 changes compiler infrastructure and removes bugpoint</title><link>https://www.devobs.io/news/news-llvm-231-compiler-infrastructure/</link><guid isPermaLink="true">https://www.devobs.io/news/news-llvm-231-compiler-infrastructure/</guid><description>LLVM 23.1 arrives with changes to intermediate representation and internal APIs, including a replacement path for workflows that still use bugpoint.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Go 1.27 adds generic methods and new JSON packages</title><link>https://www.devobs.io/news/news-go-127-generics-json/</link><guid isPermaLink="true">https://www.devobs.io/news/news-go-127-generics-json/</guid><description>Go 1.27 expands generic programming and JSON processing, while a generally available goroutine-leak profile gives maintainers another diagnostic tool.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Python 3.13.15 delivers another maintenance update for the 3.13 line</title><link>https://www.devobs.io/news/news-python-31315-maintenance/</link><guid isPermaLink="true">https://www.devobs.io/news/news-python-31315-maintenance/</guid><description>Python 3.13.15 bundles bug fixes, build improvements, and documentation updates, giving teams on the older feature line a distinct maintenance decision.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Python 3.15 reaches its first release candidate and freezes the ABI</title><link>https://www.devobs.io/news/news-python-315-rc1-wheel-readiness/</link><guid isPermaLink="true">https://www.devobs.io/news/news-python-315-rc1-wheel-readiness/</guid><description>Python 3.15&apos;s first release candidate marks an ABI stability milestone and asks package maintainers to publish wheels ahead of the final release.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Go launches a beta API for package and module metadata</title><link>https://www.devobs.io/news/news-go-pkgsite-metadata-api/</link><guid isPermaLink="true">https://www.devobs.io/news/news-go-pkgsite-metadata-api/</guid><description>Go&apos;s new pkg.go.dev API exposes structured package and module information, with explicit version selection and ambiguity handling for tooling authors.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>MongoDB 8.3 expands query expressions and database fundamentals</title><link>https://www.devobs.io/news/news-mongodb-83-query-expressions/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mongodb-83-query-expressions/</guid><description>MongoDB 8.3 adds type-coercion and string-expression capabilities alongside database improvements; representative query and upgrade fixtures remain essential.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>MySQL 9.7.0 brings JSON duality view writes to Community Server</title><link>https://www.devobs.io/news/news-mysql-970-json-duality-dml/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mysql-970-json-duality-dml/</guid><description>MySQL 9.7.0 expands Community Server JSON duality views to inserts, updates and deletes, with schema and application round trips worth testing together.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>DuckLake 1.0 stabilizes its SQL-based lakehouse specification</title><link>https://www.devobs.io/news/news-ducklake-10-stable-sql-catalog/</link><guid isPermaLink="true">https://www.devobs.io/news/news-ducklake-10-stable-sql-catalog/</guid><description>DuckLake 1.0 pairs a stable format with its DuckDB extension, making catalog recovery and small-write behavior key evaluation points for data teams.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Valkey Search 1.2 adds text filters and server-side aggregations</title><link>https://www.devobs.io/news/news-valkey-search-12-hybrid-queries/</link><guid isPermaLink="true">https://www.devobs.io/news/news-valkey-search-12-hybrid-queries/</guid><description>Valkey Search 1.2 combines text, tags, numeric ranges and vectors; primary routing and shard boundaries matter when testing read-after-write behavior.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>DuckDB 1.5 adds VARIANT and makes GEOMETRY a core type</title><link>https://www.devobs.io/news/news-duckdb-150-variant-geometry/</link><guid isPermaLink="true">https://www.devobs.io/news/news-duckdb-150-variant-geometry/</guid><description>DuckDB 1.5 expands semi-structured and spatial data support, while a date_trunc return-type change gives existing pipelines a concrete upgrade check.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>npm allows multiple trusted-publishing configurations per package</title><link>https://www.devobs.io/news/news-npm-multiple-trusted-publishers/</link><guid isPermaLink="true">https://www.devobs.io/news/news-npm-multiple-trusted-publishers/</guid><description>Maintainers can authorize several independent OIDC workflows, keep each staging-only by default, and wait for malware scanning before approval.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Rust 1.97 changes symbol names and exposes linker diagnostics</title><link>https://www.devobs.io/news/news-rust-197-build-diagnostics/</link><guid isPermaLink="true">https://www.devobs.io/news/news-rust-197-build-diagnostics/</guid><description>Rust 1.97 makes v0 symbol mangling the default and gives Cargo control over warning failures, alongside newly visible linker messages.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Deno 2.9 introduces experimental desktop application packaging</title><link>https://www.devobs.io/news/news-deno-29-desktop-packaging/</link><guid isPermaLink="true">https://www.devobs.io/news/news-deno-29-desktop-packaging/</guid><description>Deno 2.9 adds an experimental desktop command and imports existing package-manager lockfiles, giving teams two distinct migration paths to evaluate.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>.NET 11 Preview 5 adds JSON Lines serialization and full outer joins</title><link>https://www.devobs.io/news/news-dotnet-11-preview-5-json-lines/</link><guid isPermaLink="true">https://www.devobs.io/news/news-dotnet-11-preview-5-json-lines/</guid><description>.NET 11 Preview 5 expands data-processing APIs with JSON Lines serialization and LINQ full outer joins, alongside runtime and SDK improvements.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Rust 1.96 separates range values from their iterators</title><link>https://www.devobs.io/news/news-rust-196-range-types/</link><guid isPermaLink="true">https://www.devobs.io/news/news-rust-196-range-types/</guid><description>Rust 1.96 stabilizes new range types that can be copied, while existing range syntax keeps its meaning and WebAssembly linking becomes stricter.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Deno 2.8 adds dedicated CI installation and npm package-building commands</title><link>https://www.devobs.io/news/news-deno-28-package-commands/</link><guid isPermaLink="true">https://www.devobs.io/news/news-deno-28-package-commands/</guid><description>Deno 2.8 introduces explicit commands for frozen CI installs and npm-ready package artifacts, with a runtime compatibility boundary for Deno-specific APIs.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Python 3.15 enters beta and asks maintainers to test compatibility</title><link>https://www.devobs.io/news/news-python-315-first-beta/</link><guid isPermaLink="true">https://www.devobs.io/news/news-python-315-first-beta/</guid><description>Python 3.15&apos;s first beta starts wider compatibility testing, with lazy imports and UTF-8 defaults among the changes package maintainers should examine.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Node.js 26 enables Temporal by default in its Current release</title><link>https://www.devobs.io/news/news-node-26-temporal-current/</link><guid isPermaLink="true">https://www.devobs.io/news/news-node-26-temporal-current/</guid><description>Node.js 26 ships Temporal, a newer V8 engine, and removals of legacy APIs, giving maintainers a concrete compatibility target before its planned LTS phase.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Rust 1.95 adds configuration selection and if-let match guards</title><link>https://www.devobs.io/news/news-rust-195-cfg-select/</link><guid isPermaLink="true">https://www.devobs.io/news/news-rust-195-cfg-select/</guid><description>Rust 1.95 introduces a standard configuration-selection macro and richer match guards, with a compatibility change for custom target specifications.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>.NET 11 Preview 3 updates archive validation and text handling</title><link>https://www.devobs.io/news/news-dotnet-11-preview-3-library-validation/</link><guid isPermaLink="true">https://www.devobs.io/news/news-dotnet-11-preview-3-library-validation/</guid><description>.NET 11 Preview 3 brings ZIP checksum validation, broader newline recognition, and SDK changes that give maintainers targeted compatibility checks.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Java 26 ships HTTP/3 support and broader ahead-of-time object caching</title><link>https://www.devobs.io/news/news-java-26-general-availability/</link><guid isPermaLink="true">https://www.devobs.io/news/news-java-26-general-availability/</guid><description>Java 26 reaches general availability with HTTP/3 in its client API, garbage-collector-neutral object caching, and several explicitly preview features.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Rustup 1.29 downloads toolchain components concurrently</title><link>https://www.devobs.io/news/news-rustup-129-concurrent-downloads/</link><guid isPermaLink="true">https://www.devobs.io/news/news-rustup-129-concurrent-downloads/</guid><description>Rustup 1.29 overlaps component downloads and unpacking, adds Solaris hosts, and changes how update checks signal that a newer toolchain exists.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Go explains how package authors can automate API migrations</title><link>https://www.devobs.io/news/news-go-source-inliner-migrations/</link><guid isPermaLink="true">https://www.devobs.io/news/news-go-source-inliner-migrations/</guid><description>Go&apos;s source-level inliner lets package maintainers describe migrations through wrappers, with behavior-preserving analysis for call arguments.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>GitLab 19.3 adds flow creation and bulk vulnerability remediation</title><link>https://www.devobs.io/news/news-gitlab-19-3-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gitlab-19-3-release/</guid><description>The release turns plain-language workflow descriptions into reviewable flow definitions and lets teams apply AI-assisted triage to groups of SAST findings.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>GitHub Enterprise Importer adds self-service GitLab migrations</title><link>https://www.devobs.io/news/news-github-importer-gitlab-migrations-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-github-importer-gitlab-migrations-ga/</guid><description>The gh gl2gh extension now supports single and bulk moves from GitLab.com and maintained self-managed versions into GitHub Enterprise Cloud.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>GitHub Actions adds commit-pinned $/ references for local actions</title><link>https://www.devobs.io/news/news-github-actions-self-repository-syntax/</link><guid isPermaLink="true">https://www.devobs.io/news/news-github-actions-self-repository-syntax/</guid><description>The new self-repository syntax resolves actions and reusable workflows at the caller’s exact commit without a separate checkout step.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>GitHub Actions begins holding suspicious workflows for approval</title><link>https://www.devobs.io/news/news-github-actions-malicious-workflow-hold/</link><guid isPermaLink="true">https://www.devobs.io/news/news-github-actions-malicious-workflow-hold/</guid><description>GitHub now pauses potentially malicious workflow runs in public repositories until a collaborator with write access reviews them in the web interface.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>GitLab 19.2 makes Duo CLI and custom flows generally available</title><link>https://www.devobs.io/news/news-gitlab-19-2-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gitlab-19-2-release/</guid><description>The release brings governed agent workflows to the terminal, adds scheduled pipeline policies, and expands automated security and dependency remediation.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Copilot browser tools in VS Code reach general availability</title><link>https://www.devobs.io/news/news-vscode-copilot-browser-tools-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-vscode-copilot-browser-tools-ga/</guid><description>VS Code agents can drive isolated browser sessions for web testing, while tab sharing, sensitive permissions, and enterprise domain policy remain user-controlled.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>GitHub Desktop 3.6 brings worktrees into the desktop client</title><link>https://www.devobs.io/news/news-github-desktop-3-6-worktrees/</link><guid isPermaLink="true">https://www.devobs.io/news/news-github-desktop-3-6-worktrees/</guid><description>The desktop release lets developers manage parallel working trees and deepens Copilot support for commit messages and conflict resolution.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>GitHub hardens checkout defaults for pull_request_target workflows</title><link>https://www.devobs.io/news/news-github-actions-safer-pull-request-target-checkout/</link><guid isPermaLink="true">https://www.devobs.io/news/news-github-actions-safer-pull-request-target-checkout/</guid><description>Actions checkout v7 will refuse common patterns that expose privileged pull_request_target jobs to untrusted pull-request code.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>npm outlines secure-by-default install changes for version 12</title><link>https://www.devobs.io/news/news-npm-12-install-security-defaults/</link><guid isPermaLink="true">https://www.devobs.io/news/news-npm-12-install-security-defaults/</guid><description>npm 12 will require projects to opt into dependency install scripts and non-registry sources, with warnings available in npm 11.16 for migration testing.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>GitLab 19.0 adds secrets management and broader merge-request automation</title><link>https://www.devobs.io/news/news-gitlab-19-0-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gitlab-19-0-release/</guid><description>The major release introduces a Secrets Manager beta, CI component analytics, and agent-assisted work across the merge-request lifecycle.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>GitLab 18.10 expands agentic review and security triage</title><link>https://www.devobs.io/news/news-gitlab-18-10-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gitlab-18-10-release/</guid><description>The monthly release opens Duo Agent Platform access to GitLab.com Free groups and makes SAST false-positive assessment generally available.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloudflare cuts 1.1.1.1 cache memory by about 100 terabytes</title><link>https://www.devobs.io/news/news-cloudflare-dns-cache-memory-optimization/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-dns-cache-memory-optimization/</guid><description>Five Rust data-layout changes reduce Big Pineapple’s per-entry footprint by 56% while improving measured cache insertion and lookup performance.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloudflare launches Billable Usage API for self-serve accounts</title><link>https://www.devobs.io/news/news-cloudflare-billable-usage-api/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-billable-usage-api/</guid><description>A single billing endpoint returns daily product usage and cost rows with field names aligned to much of the FinOps FOCUS specification.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloudflare adds response-phase rules for cache decisions</title><link>https://www.devobs.io/news/news-cloudflare-cache-response-rules/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-cache-response-rules/</guid><description>Cache Response Rules can rewrite cache directives, manage cache tags, or strip selected headers after origin response and before storage.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>npm staged publishing adds human approval before package release</title><link>https://www.devobs.io/news/news-npm-staged-publishing-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-npm-staged-publishing-ga/</guid><description>Maintainers can send a tarball from CI to a stage queue, then require a 2FA-authenticated approval before the version becomes installable.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>GitHub previews live migrations from GHES to data-resident cloud</title><link>https://www.devobs.io/news/news-github-enterprise-live-migrations-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-github-enterprise-live-migrations-preview/</guid><description>Enterprise Live Migrations continuously synchronizes active repositories before a short cutover, targeting large repositories that cannot tolerate long freezes.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>GitHub schedules SHA-1 TLS shutdown for September 15</title><link>https://www.devobs.io/news/news-github-sunsets-sha1-https/</link><guid isPermaLink="true">https://www.devobs.io/news/news-github-sunsets-sha1-https/</guid><description>GitHub’s HTTPS endpoints will stop accepting SHA-1-based TLS connections after a July brownout, giving legacy clients a defined migration deadline.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>GitHub adds organization-wide firewall policy for Copilot cloud agent</title><link>https://www.devobs.io/news/news-github-copilot-cloud-agent-org-firewall/</link><guid isPermaLink="true">https://www.devobs.io/news/news-github-copilot-cloud-agent-org-firewall/</guid><description>Organization administrators can set cloud-agent network defaults and allowlists across repositories while retaining repository-level delegation where needed.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>GitHub opens Copilot SDK public preview in five languages</title><link>https://www.devobs.io/news/news-github-copilot-sdk-public-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-github-copilot-sdk-public-preview/</guid><description>The preview exposes Copilot’s agent runtime for application builders, including tools, streaming, approvals, tracing, attachments, and BYOK.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>GitHub Actions custom hosted-runner images reach general availability</title><link>https://www.devobs.io/news/news-github-actions-custom-images-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-github-actions-custom-images-ga/</guid><description>Organizations can standardize GitHub-hosted runner environments with preinstalled tools and certificates while keeping existing preview images intact.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>GitHub Actions Runner Controller 0.14.0 adds multilabel scale sets</title><link>https://www.devobs.io/news/news-github-arc-0-14-0/</link><guid isPermaLink="true">https://www.devobs.io/news/news-github-arc-0-14-0/</guid><description>ARC 0.14.0 lets Kubernetes runner fleets express several scheduling attributes on one scale set and exposes a reusable service client.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>GitHub releases REST API version 2026-03-10</title><link>https://www.devobs.io/news/news-github-rest-api-2026-03-10/</link><guid isPermaLink="true">https://www.devobs.io/news/news-github-rest-api-2026-03-10/</guid><description>A new dated REST API contract gives integrators a controlled migration point, with breaking changes isolated behind an explicit version header.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloudflare launches Precursor for session-level bot signals</title><link>https://www.devobs.io/news/news-cloudflare-precursor-session-bot-signals/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-precursor-session-bot-signals/</guid><description>Precursor injects a first-party script to evaluate behavior across a web session, complementing Turnstile’s checks at sensitive moments.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloudflare Research introduces Meerkat consensus experiment</title><link>https://www.devobs.io/news/news-cloudflare-meerkat-quepaxa-consensus/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-meerkat-quepaxa-consensus/</guid><description>Meerkat applies the leaderless QuePaxa algorithm to small, strongly consistent control-plane state across Cloudflare’s global network.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloudflare scales Security Insights beyond 120 scans per second</title><link>https://www.devobs.io/news/news-cloudflare-security-insights-scanning-scale/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-security-insights-scanning-scale/</guid><description>Kafka flow separation, batched Postgres writes, and API changes raise scanning capacity more than tenfold without adding hardware.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloudflare adds dollar-denominated spend limits to AI Gateway</title><link>https://www.devobs.io/news/news-cloudflare-ai-gateway-spend-limits/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-ai-gateway-spend-limits/</guid><description>AI Gateway can now cap spending by model, provider, or custom attributes, with optional fallback routing when a budget is exhausted.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>VoidZero and the Vite toolchain team join Cloudflare</title><link>https://www.devobs.io/news/news-cloudflare-voidzero-vite-team-joins/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-voidzero-vite-team-joins/</guid><description>Cloudflare brings in the team behind Vite, Vitest, Rolldown, Oxc, and Vite+, while committing to their open-source, vendor-neutral governance.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloudflare cuts core server recovery from four hours to three minutes</title><link>https://www.devobs.io/news/news-cloudflare-core-server-boot-automation/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-core-server-boot-automation/</guid><description>UEFI and iPXE automation changes removed repeated network-interface probes and made firmware configuration survive upgrades without manual BIOS work.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloudflare details Town Lake data platform and its Skipper AI agent</title><link>https://www.devobs.io/news/news-cloudflare-town-lake-skipper-data-platform/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-town-lake-skipper-data-platform/</guid><description>Town Lake gives Cloudflare a governed SQL layer across disparate stores, while Skipper turns natural-language questions into auditable queries.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloudflare traces billing delays to ClickHouse query-plan contention</title><link>https://www.devobs.io/news/news-cloudflare-clickhouse-query-planner-contention/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-clickhouse-query-planner-contention/</guid><description>A growing part list exposed an exclusive-lock bottleneck in ClickHouse planning; Cloudflare’s fixes improved concurrency and part pruning.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloudflare completes Code Orange resilience program after 2025 outages</title><link>https://www.devobs.io/news/news-cloudflare-code-orange-fail-small-complete/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-code-orange-fail-small-complete/</guid><description>Cloudflare says its Fail Small work now stages configuration, narrows failure impact, and expands emergency access and incident communications.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloudflare introduces Flagship, an OpenFeature-based flag service</title><link>https://www.devobs.io/news/news-cloudflare-flagship-feature-flags/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-flagship-feature-flags/</guid><description>Flagship evaluates feature flags locally at Cloudflare’s edge, using Durable Objects for configuration and Workers KV for distribution.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Azure Firewall explicit proxy reaches GA</title><link>https://www.devobs.io/news/news-azure-firewall-explicit-proxy-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-firewall-explicit-proxy-ga/</guid><description>Selected applications and browsers can send HTTP and HTTPS egress to Azure Firewall through standard proxy settings without rerouting a whole subnet.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Azure Deployment Stacks What-If reaches GA</title><link>https://www.devobs.io/news/news-azure-deployment-stacks-what-if-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-deployment-stacks-what-if-ga/</guid><description>Stack updates can now produce a persistent preview showing create, modify, delete, and detach actions at resource, subscription, or management-group scope.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Azure Virtual Network routing appliance reaches GA</title><link>https://www.devobs.io/news/news-azure-virtual-network-routing-appliance-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-virtual-network-routing-appliance-ga/</guid><description>The managed hardware-backed router provides up to 200 Gbps tiers, dual-stack forwarding, zone resiliency, and built-in Azure Monitor metrics.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Azure Monitor previews container-level advanced platform metrics</title><link>https://www.devobs.io/news/news-azure-monitor-advanced-platform-metrics-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-monitor-advanced-platform-metrics-preview/</guid><description>Azure Storage is the first service to expose paid advanced metrics, adding per-container blob capacity and object-count signals.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloudflare unifies third-party AI models behind the AI.run binding</title><link>https://www.devobs.io/news/news-cloudflare-unified-ai-inference-platform/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-unified-ai-inference-platform/</guid><description>Cloudflare’s unified inference layer lets Workers call hosted and third-party models through one binding, catalog, and AI Gateway control plane.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloudflare previews Project Think for durable, long-running agents</title><link>https://www.devobs.io/news/news-cloudflare-project-think-agents-sdk-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-project-think-agents-sdk-preview/</guid><description>Project Think adds durable execution, subagents, persistent sessions, and sandboxed code execution to Cloudflare’s Agents SDK.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloudflare introduces Mesh for identity-aware private networking</title><link>https://www.devobs.io/news/news-cloudflare-mesh-private-networking/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-mesh-private-networking/</guid><description>Cloudflare Mesh connects users, servers, agents, and Workers through identity-based policies without requiring a centralized network topology.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloudflare launches Gen 13 edge servers with Turin CPUs and FL2</title><link>https://www.devobs.io/news/news-cloudflare-gen13-edge-servers-fl2/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-gen13-edge-servers-fl2/</guid><description>Cloudflare’s Gen 13 design pairs 192-core AMD Turin processors with its Rust-based FL2 request layer to double edge throughput in testing.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloudflare introduces Custom Regions for customer-defined data boundaries</title><link>https://www.devobs.io/news/news-cloudflare-custom-regions-data-control/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-custom-regions-data-control/</guid><description>Custom Regions let enterprises define geographic processing boundaries, while Cloudflare expands its catalog of predefined regional controls.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloudflare makes AI Security for Apps generally available</title><link>https://www.devobs.io/news/news-cloudflare-ai-security-for-apps-general-availability/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-ai-security-for-apps-general-availability/</guid><description>AI Security for Apps reaches GA with endpoint discovery, incoming-prompt inspection, topic controls, and WAF actions for detected threats.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloudflare introduces stateful API vulnerability scanning in beta</title><link>https://www.devobs.io/news/news-cloudflare-api-vulnerability-scanner-beta/</link><guid isPermaLink="true">https://www.devobs.io/news/news-cloudflare-api-vulnerability-scanner-beta/</guid><description>Cloudflare’s beta scanner begins with BOLA detection, deriving stateful tests from an OpenAPI call graph and separate owner and attacker contexts.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Azure Blob SDK client-side CRC64 integrity reaches GA</title><link>https://www.devobs.io/news/news-azure-blob-crc64-client-integrity-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-blob-crc64-client-integrity-ga/</guid><description>Selected Blob SDKs can validate CRC64-NVME checksums across whole uploads and downloads as well as individual transfer requests.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Azure Boost previews Guest RDMA in UK South</title><link>https://www.devobs.io/news/news-azure-boost-guest-rdma-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-boost-guest-rdma-preview/</guid><description>Guest VMs can use RDMA through Azure Boost for low-latency, high-throughput communication, beginning with preview availability in UK South.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Azure previews Lasv5 and Laosv5 local-storage VMs</title><link>https://www.devobs.io/news/news-azure-lasv5-laosv5-amd-turin-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-lasv5-laosv5-amd-turin-preview/</guid><description>The AMD EPYC Turin-based VM families increase local NVMe capacity, network bandwidth, size range, and processor performance for storage-heavy workloads.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>VM Scale Sets Flex previews automatic OS image upgrades</title><link>https://www.devobs.io/news/news-azure-vmss-flex-automatic-os-image-upgrades-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-vmss-flex-automatic-os-image-upgrades-preview/</guid><description>Flexible orchestration scale sets can now roll instances to newer OS image versions with health-aware, staged replacement controls.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Azure Machine Configuration custom security baselines reach GA</title><link>https://www.devobs.io/news/news-azure-machine-configuration-custom-baselines-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-machine-configuration-custom-baselines-ga/</guid><description>Teams can customize and deploy reusable Windows and Linux baseline artifacts through policy and infrastructure delivery workflows.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Azure Integrated HSM reaches GA on selected AMD v7 VMs</title><link>https://www.devobs.io/news/news-azure-integrated-hsm-amd-v7-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-integrated-hsm-amd-v7-ga/</guid><description>The same-node hardware cache and crypto offload is generally available for Windows Trusted Launch guests on selected AMD D- and E-series v7 VMs with at least 8 vCores.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Azure’s Intel Xeon 6 Dlsv7, Dsv7, and Esv7 VMs reach GA</title><link>https://www.devobs.io/news/news-azure-intel-xeon-6-dsv7-esv7-vms-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-intel-xeon-6-dsv7-esv7-vms-ga/</guid><description>The seventh-generation general-purpose and memory-optimized families add new CPU, memory, networking, and optional local-storage configurations.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Azure previews in-place regional-to-zonal VM migration</title><link>https://www.devobs.io/news/news-azure-regional-to-zonal-vm-migration-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-regional-to-zonal-vm-migration-preview/</guid><description>Regional VMs and flexible scale-set instances can move into an availability zone while retaining resource identity, disks, NICs, and addresses.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Azure Bastion previews managed identity for session recordings</title><link>https://www.devobs.io/news/news-azure-bastion-managed-identity-recording-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-bastion-managed-identity-recording-preview/</guid><description>Bastion Premium can write graphical session recordings to Blob Storage with a system- or user-assigned identity instead of a storage credential.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Azure Web Application Firewall Default Ruleset 2.2 reaches GA</title><link>https://www.devobs.io/news/news-azure-waf-default-ruleset-2-2-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-waf-default-ruleset-2-2-ga/</guid><description>The new managed ruleset adopts OWASP CRS 3.3.4 across Application Gateway and Front Door, with an upgrade caveat for custom exclusions.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Azure Files SMB managed-identity authentication reaches GA</title><link>https://www.devobs.io/news/news-azure-files-smb-managed-identities-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-files-smb-managed-identities-ga/</guid><description>Applications can access Azure Files over SMB with an Azure managed identity, removing stored account keys and passwords from the application path.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>BigQuery introduces built-in identity columns for generated keys</title><link>https://www.devobs.io/news/news-google-cloud-bigquery-identity-columns-launch/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-bigquery-identity-columns-launch/</guid><description>BigQuery identity columns move numerical key generation into the warehouse, giving data teams a new choice when designing ingestion pipelines.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>AlloyDB makes its managed remote MCP server generally available</title><link>https://www.devobs.io/news/news-google-cloud-alloydb-remote-mcp-server-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-alloydb-remote-mcp-server-ga/</guid><description>AlloyDB’s managed remote MCP endpoint reaches general availability, making agent access to operational databases a platform permissions decision.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloud Storage Rapid adds cache ingestion during writes</title><link>https://www.devobs.io/news/news-google-cloud-rapid-cache-ingest-on-write/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-rapid-cache-ingest-on-write/</guid><description>Google Cloud describes Rapid Cache ingest on write, targeting the first-read delay in workloads that consume newly written objects immediately.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Storage Transfer Service adds Amazon S3 sources in AWS GovCloud</title><link>https://www.devobs.io/news/news-google-cloud-storage-transfer-aws-govcloud-support/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-storage-transfer-aws-govcloud-support/</guid><description>Google Cloud adds AWS GovCloud source-region support to Storage Transfer Service, covering both batch jobs and event-driven S3 transfers.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Azure previews subscription-wide Essential Machine Management</title><link>https://www.devobs.io/news/news-azure-essential-machine-management-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-essential-machine-management-preview/</guid><description>A subscription enrollment layer can apply a core operations set to present and future Azure VMs and Arc-enabled servers at scale.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Azure previews full caching for Ephemeral OS disks</title><link>https://www.devobs.io/news/news-azure-ephemeral-os-disk-full-caching-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-ephemeral-os-disk-full-caching-preview/</guid><description>A new placement mode keeps the complete operating-system disk on VM-local storage, reducing steady-state dependence on remote disks.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloud SQL autoscaling read pools reach general availability</title><link>https://www.devobs.io/news/news-google-cloud-cloudsql-read-pool-autoscaling-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-cloudsql-read-pool-autoscaling-ga/</guid><description>Enterprise Plus read pools can scale MySQL and PostgreSQL replicas behind one endpoint, but applications still need a clear read-consistency policy.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Google Cloud previews smaller GPU slices in G4 virtual machines</title><link>https://www.devobs.io/news/news-google-cloud-fractional-g4-vms-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-fractional-g4-vms-preview/</guid><description>Fractional G4 virtual machines introduce smaller NVIDIA GPU allocations, giving graphics and compute teams another way to size accelerator capacity.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Azure Container Registry makes geo-replication failover health-aware</title><link>https://www.devobs.io/news/news-azure-container-registry-health-aware-failover/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-container-registry-health-aware-failover/</guid><description>ACR’s global endpoint can steer around replicas with deeper push and pull failures instead of relying only on shallow health.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Azure Container Registry adds proactive Service Health alerts</title><link>https://www.devobs.io/news/news-azure-container-registry-proactive-service-health/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-container-registry-proactive-service-health/</guid><description>Registry incidents can now trigger Azure Service Health notifications based on push, pull, and authentication service indicators.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Azure Compute API will always return a VM security type</title><link>https://www.devobs.io/news/news-azure-compute-api-securitytype-non-null/</link><guid isPermaLink="true">https://www.devobs.io/news/news-azure-compute-api-securitytype-non-null/</guid><description>A new Compute API version removes nullable securityType responses, requiring clients to treat Standard as an explicit value rather than an omission.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Google Cloud previews Fault Injection Testing for SQL failover and traffic faults</title><link>https://www.devobs.io/news/news-google-cloud-fault-injection-testing-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-fault-injection-testing-preview/</guid><description>The preview offers reusable experiments for Cloud SQL failover and load-balancer faults, with a dry run that shows permissions and affected resources.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>GKE previews ClusterNetworkPolicy for tiered cluster-wide network rules</title><link>https://www.devobs.io/news/news-google-cloud-gke-clusternetworkpolicy/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-gke-clusternetworkpolicy/</guid><description>ClusterNetworkPolicy enters preview in GKE 1.36 and later, separating administrator rules, namespace policies, and cluster-wide baseline defaults.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Google Backup and DR adds cross-region backups for compute, disks, and Filestore</title><link>https://www.devobs.io/news/news-google-cloud-backup-dr-cross-region-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-backup-dr-cross-region-ga/</guid><description>Cross-region backup destinations become generally available for selected Google Cloud resources, giving recovery plans an explicit regional choice.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>BigQuery makes managed Python user-defined functions generally available</title><link>https://www.devobs.io/news/news-google-cloud-bigquery-managed-python-udfs-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-bigquery-managed-python-udfs-ga/</guid><description>Managed Python UDFs reach production support in BigQuery, combining SQL invocation with serverless execution and configurable function resources.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloud Network Insights reaches general availability for hybrid network observability</title><link>https://www.devobs.io/news/news-google-cloud-cloud-network-insights-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-cloud-network-insights-ga/</guid><description>Google’s network observability service uses active probes across hybrid and multicloud paths, joining network measurements with application experience.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Google makes Lightning Engine generally available across managed Spark modes</title><link>https://www.devobs.io/news/news-google-cloud-spark-lightning-engine-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-spark-lightning-engine-ga/</guid><description>Lightning Engine reaches both serverless and managed Spark clusters, adding native execution while retaining fallback for unsupported operators.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Spanner Omni preview brings a downloadable Spanner deployment option</title><link>https://www.devobs.io/news/news-google-cloud-spanner-omni-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-spanner-omni-preview/</guid><description>Google previews Spanner Omni for infrastructure outside its managed service, with a developer edition explicitly limited to non-production use.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloud Run worker pools become generally available for pull-based processing</title><link>https://www.devobs.io/news/news-google-cloud-cloud-run-worker-pools-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-cloud-run-worker-pools-ga/</guid><description>Worker pools give Cloud Run a continuously running execution option for queue consumers, while scaling still needs an explicit workload signal.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Google announces GKE DRA availability and contributes its TPU driver</title><link>https://www.devobs.io/news/news-google-cloud-gke-dra-device-management/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-gke-dra-device-management/</guid><description>Google’s March announcement brings Dynamic Resource Allocation to GKE and contributes a TPU driver, expanding how workloads describe hardware needs.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloud Run adds direct Identity-Aware Proxy integration</title><link>https://www.devobs.io/news/news-google-cloud-cloud-run-direct-iap-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-cloud-run-direct-iap-ga/</guid><description>Google makes direct IAP protection generally available on Cloud Run, reducing the infrastructure needed to restrict access to internal applications.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Graviton5-based EC2 R9g and R9gd instances reach general availability</title><link>https://www.devobs.io/news/news-aws-ec2-r9g-r9gd-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-ec2-r9g-r9gd-ga/</guid><description>AWS launches memory-optimized R9g and R9gd instances, giving database and cache teams new Arm capacity to evaluate against real workload bottlenecks.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Cloud Run previews singleton instances for continuously running workloads</title><link>https://www.devobs.io/news/news-google-cloud-cloud-run-singleton-instances/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-cloud-run-singleton-instances/</guid><description>Cloud Run instances enter preview with a dedicated singleton runtime and stable HTTPS endpoint, adding an option for small persistent workers.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Google and Anyscale introduce experimental gVisor sandboxes for Ray</title><link>https://www.devobs.io/news/news-google-cloud-ray-gvisor-experimental-sandboxes/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-ray-gvisor-experimental-sandboxes/</guid><description>An experimental Ray library makes sandboxes schedulable actors, bringing resource placement and isolated code execution into one runtime.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Lambda adds full IAM resource-based policy support</title><link>https://www.devobs.io/news/news-aws-lambda-full-resource-policies/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-lambda-full-resource-policies/</guid><description>Lambda expands resource policies to support multiple principals, actions, and IAM conditions, giving platform teams a broader policy surface to review.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>ECS adds agent-connectivity health events and managed recovery</title><link>https://www.devobs.io/news/news-aws-ecs-agent-connectivity/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-ecs-agent-connectivity/</guid><description>ECS exposes impaired agent connectivity across compute options, with automatic recovery for Fargate and Managed Instances and events for EC2 operators.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Filestore adopts Colossus and separates IOPS from capacity</title><link>https://www.devobs.io/news/news-google-cloud-filestore-colossus-backend/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-filestore-colossus-backend/</guid><description>Google Cloud’s Filestore backend update separates performance from capacity, giving teams a new sizing choice for shared NFS storage on GKE.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>AWS releases aws-bench in research preview</title><link>https://www.devobs.io/news/news-aws-aws-bench-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-aws-bench-preview/</guid><description>The open-source aws-bench preview pairs cloud tasks with known resource states, giving agent developers a repeatable evaluation starting point.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Lambda adds self-managed S3 code storage</title><link>https://www.devobs.io/news/news-aws-lambda-self-managed-code/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-lambda-self-managed-code/</guid><description>Lambda can reference deployment code in customer-owned S3 storage, making artifact retention and bucket permissions part of the release contract.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Security Hub adds an organization-wide AI asset inventory</title><link>https://www.devobs.io/news/news-aws-security-hub-ai-inventory/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-security-hub-ai-inventory/</guid><description>Security Hub combines managed-resource, software, and DNS signals to discover AI assets, giving security teams a new inventory to reconcile with owners.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Google Cloud makes C4N network and storage optimized VMs generally available</title><link>https://www.devobs.io/news/news-google-cloud-c4n-vms-general-availability/</link><guid isPermaLink="true">https://www.devobs.io/news/news-google-cloud-c4n-vms-general-availability/</guid><description>C4N reaches general availability with stronger network and block-storage limits, aimed at workloads that need more I/O without more CPU.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Network Firewall adds EKS and ECS attribute-based rules</title><link>https://www.devobs.io/news/news-aws-network-firewall-container-attributes/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-network-firewall-container-attributes/</guid><description>Network Firewall can select container traffic using workload attributes, shifting attention from changing IP addresses to who controls those attributes.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>AWS introduces Lambda MicroVMs for user and AI-generated code</title><link>https://www.devobs.io/news/news-aws-lambda-microvms/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-lambda-microvms/</guid><description>Lambda MicroVMs adds a managed execution option with suspend and resume, requiring clear policies for session ownership, network access, and cleanup.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>ECS on Fargate adds 32-vCPU task configurations</title><link>https://www.devobs.io/news/news-aws-ecs-fargate-32vcpu/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-ecs-fargate-32vcpu/</guid><description>Fargate adds larger ECS task sizes for Linux workloads, giving teams more room per container while changing scaling and recovery tradeoffs.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Resilience Hub adds user-journey modeling and failure analysis</title><link>https://www.devobs.io/news/news-aws-resilience-hub-generation/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-resilience-hub-generation/</guid><description>The next Resilience Hub release models systems, journeys, and services, giving SRE teams a richer assessment structure to connect with recovery tests.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>AWS releases ExtendDB 0.1 with a PostgreSQL storage backend</title><link>https://www.devobs.io/news/news-aws-extenddb-01/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-extenddb-01/</guid><description>ExtendDB brings the DynamoDB API model to pluggable storage, giving teams a new local and disconnected deployment option to test for compatibility.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>ECS adds pause points to service deployments</title><link>https://www.devobs.io/news/news-aws-ecs-pause-deployments/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-ecs-pause-deployments/</guid><description>ECS deployment pause hooks let teams add approval and validation stages, with explicit timeout behavior becoming an important release-policy decision.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Compute Optimizer expands EC2 and RDS instance coverage</title><link>https://www.devobs.io/news/news-aws-compute-optimizer-instance-coverage/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-compute-optimizer-instance-coverage/</guid><description>Compute Optimizer adds newer EC2 and RDS options to recommendations, giving teams more candidates to validate against workload and migration constraints.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Aurora Serverless platform version 4 changes scaling behavior</title><link>https://www.devobs.io/news/news-aws-aurora-serverless-platform4/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-aurora-serverless-platform4/</guid><description>Aurora Serverless adds platform version 4 with scaling improvements, making workload transitions and platform-version tracking important upgrade checks.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Hugging Face introduces Funes for portable coding-agent memory</title><link>https://www.devobs.io/news/news-hugging-face-funes-agent-memory/</link><guid isPermaLink="true">https://www.devobs.io/news/news-hugging-face-funes-agent-memory/</guid><description>Funes indexes coding-agent histories locally and can share them through a Hugging Face dataset, preserving source turns behind retrieved decisions.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Ai2 releases BenchMIRT to audit what benchmarks measure</title><link>https://www.devobs.io/news/news-ai2-benchmirt-benchmark-audit/</link><guid isPermaLink="true">https://www.devobs.io/news/news-ai2-benchmirt-benchmark-audit/</guid><description>BenchMIRT applies item response theory to model evaluations, helping researchers inspect which abilities benchmark questions actually distinguish.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Hugging Face and Voice Arena add Hindi and Indian English ASR tests</title><link>https://www.devobs.io/news/news-hugging-face-monsoon-asr-evaluation/</link><guid isPermaLink="true">https://www.devobs.io/news/news-hugging-face-monsoon-asr-evaluation/</guid><description>New Monsoon evaluation sets add Hindi and Indian English coverage, with speaker metadata that helps expose differences hidden by aggregate scores.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Lambda adds S3 Files mounts for shared workspaces</title><link>https://www.devobs.io/news/news-aws-lambda-s3-files/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-lambda-s3-files/</guid><description>Lambda functions can mount S3 buckets through S3 Files, opening a shared workspace option that still needs explicit ownership and concurrency rules.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>AWS Interconnect multicloud reaches general availability with Google Cloud</title><link>https://www.devobs.io/news/news-aws-interconnect-multicloud-ga/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-interconnect-multicloud-ga/</guid><description>AWS makes Interconnect multicloud generally available with Google Cloud, offering a managed private connection to assess against real traffic needs.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>RDS Proxy joins Blue/Green Deployment switchovers</title><link>https://www.devobs.io/news/news-aws-rds-proxy-blue-green/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-rds-proxy-blue-green/</guid><description>RDS Blue/Green Deployments can now redirect connections through RDS Proxy, putting application recovery behavior back into the database rehearsal plan.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Research and Engineering Studio 2026.03 expands desktop administration</title><link>https://www.devobs.io/news/news-aws-res-2026-03/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-res-2026-03/</guid><description>The RES update adds filesystem and session controls, giving research platform operators more direct ways to recover and configure virtual desktops.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Lambda Managed Instances adds Rust support</title><link>https://www.devobs.io/news/news-aws-lambda-managed-rust/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-lambda-managed-rust/</guid><description>Rust functions can now run on Lambda Managed Instances, making concurrency behavior and workload measurement central to adoption decisions.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>S3 adds account regional namespaces for predictable bucket naming</title><link>https://www.devobs.io/news/news-aws-s3-account-regional-namespaces/</link><guid isPermaLink="true">https://www.devobs.io/news/news-aws-s3-account-regional-namespaces/</guid><description>S3 introduces reserved bucket namespaces, giving platform teams a new way to create predictable names without competing for global availability.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>H Company releases NeoMME multilingual multimodal encoders</title><link>https://www.devobs.io/news/news-hcompany-neomme-encoder/</link><guid isPermaLink="true">https://www.devobs.io/news/news-hcompany-neomme-encoder/</guid><description>H Company’s NeoMME release combines text and image processing in one encoder, with Apache-licensed checkpoints and retrieval-oriented variants.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Hugging Face releases a library of WebGPU kernels</title><link>https://www.devobs.io/news/news-hugging-face-webgpu-kernels/</link><guid isPermaLink="true">https://www.devobs.io/news/news-hugging-face-webgpu-kernels/</guid><description>Hugging Face’s new kernel library packages browser GPU building blocks with tests and benchmarks, giving local AI developers a reusable starting point.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Meta publishes Brain2Qwerty v2 research and training code</title><link>https://www.devobs.io/news/news-meta-brain2qwerty-v2-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-meta-brain2qwerty-v2-release/</guid><description>Brain2Qwerty v2 studies real-time sentence decoding during typing, with training code released and important limits on what the experiment shows.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Mistral releases Search Toolkit for composable retrieval pipelines</title><link>https://www.devobs.io/news/news-mistral-search-toolkit-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mistral-search-toolkit-preview/</guid><description>The open-source preview joins ingestion, retrieval, and evaluation, giving teams a common place to compare search changes before altering generation.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Mistral Medium 3.5 powers remote coding agents in Vibe</title><link>https://www.devobs.io/news/news-mistral-medium-3-5-vibe-remote/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mistral-medium-3-5-vibe-remote/</guid><description>Mistral’s model and remote-agent update moves coding sessions beyond the laptop, bringing sandbox access and final review into deployment planning.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Meta introduces Muse Spark with a limited API preview</title><link>https://www.devobs.io/news/news-meta-muse-spark-introduction/</link><guid isPermaLink="true">https://www.devobs.io/news/news-meta-muse-spark-introduction/</guid><description>Meta’s Muse Spark launch brings a new multimodal reasoning model to its consumer products, while API access begins as a private preview.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Meta updates SAM to 3.1 for faster video tracking</title><link>https://www.devobs.io/news/news-meta-sam-3-1-video-update/</link><guid isPermaLink="true">https://www.devobs.io/news/news-meta-sam-3-1-video-update/</guid><description>SAM 3.1 adds multiplexed object processing and global reasoning, with new artifacts for teams evaluating video detection and tracking throughput.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Meta releases TRIBE v2 for predicting brain responses</title><link>https://www.devobs.io/news/news-meta-tribe-v2-research-model/</link><guid isPermaLink="true">https://www.devobs.io/news/news-meta-tribe-v2-research-model/</guid><description>TRIBE v2 expands Meta’s research on stimulus-driven brain-response prediction, with released artifacts and a noncommercial license boundary.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Meta and WRI release Canopy Height Maps v2</title><link>https://www.devobs.io/news/news-meta-canopy-height-maps-v2/</link><guid isPermaLink="true">https://www.devobs.io/news/news-meta-canopy-height-maps-v2/</guid><description>Meta and WRI’s forest mapping release pairs a revised model with global maps, giving geospatial teams a new baseline to validate locally.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Mistral releases Shieldstral with policy-defined safety questions</title><link>https://www.devobs.io/news/news-mistral-shieldstral-policy-classifier/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mistral-shieldstral-policy-classifier/</guid><description>Shieldstral turns text and image moderation into policy-specific classification; teams still need local threshold calibration and review rules.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Mistral introduces single-camera navigation model Robostral</title><link>https://www.devobs.io/news/news-mistral-robostral-navigate-announcement/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mistral-robostral-navigate-announcement/</guid><description>Robostral Navigate targets instruction-following with RGB input; robotics teams must separate navigation-model results from full-system safety.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Leanstral 1.5 expands Mistral’s open proof-engineering model</title><link>https://www.devobs.io/news/news-mistral-leanstral-1-5-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mistral-leanstral-1-5-release/</guid><description>The update releases Apache-licensed weights and the FLTEval suite, with longer proof attempts that make evaluation budgets part of the result.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Mistral OCR 4 adds locations, block types, and confidence scores</title><link>https://www.devobs.io/news/news-mistral-ocr-4-structured-blocks/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mistral-ocr-4-structured-blocks/</guid><description>OCR 4 returns more than extracted text, giving document pipelines spatial and confidence signals that need their own validation before use.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Microsoft Research introduces Vega for private credential proofs</title><link>https://www.devobs.io/news/news-vega-private-credential-proofs/</link><guid isPermaLink="true">https://www.devobs.io/news/news-vega-private-credential-proofs/</guid><description>Vega proposes reusable zero-knowledge proofs of credential facts, with local proving and an implementation that was not yet open sourced at announcement.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Microsoft clarifies the scope of its long-horizon AI delegation study</title><link>https://www.devobs.io/news/news-delegate-52-reliability-clarification/</link><guid isPermaLink="true">https://www.devobs.io/news/news-delegate-52-reliability-clarification/</guid><description>A May clarification explains what DELEGATE-52 measures and why artifact-fidelity stress tests should not be read as general product verdicts.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Mistral puts Workflows into public preview</title><link>https://www.devobs.io/news/news-mistral-workflows-public-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mistral-workflows-public-preview/</guid><description>Mistral’s orchestration preview pairs a hosted control plane with customer-run workers, making failure recovery and approval handling key pilot questions.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Mistral adds speech generation with Voxtral TTS</title><link>https://www.devobs.io/news/news-mistral-voxtral-tts-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mistral-voxtral-tts-release/</guid><description>The new voice model supports multilingual generation and voice adaptation; released weights have different usage terms from the hosted service.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Mistral releases Leanstral for repository-scale proof engineering</title><link>https://www.devobs.io/news/news-mistral-leanstral-proof-agent/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mistral-leanstral-proof-agent/</guid><description>Leanstral targets Lean 4 work with downloadable Apache-licensed weights, shifting evaluation toward verified repository changes and proof review.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Mistral Small 4 combines reasoning, vision, and coding in one model</title><link>https://www.devobs.io/news/news-mistral-small-4-hybrid-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mistral-small-4-hybrid-release/</guid><description>Mistral’s Apache-licensed release brings several workloads into one model; deployment teams still need separate quality and capacity checks.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Microsoft announces MAI-Image-2.6 with image-quality updates</title><link>https://www.devobs.io/news/news-mai-image-2-6-announcement/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mai-image-2-6-announcement/</guid><description>The August announcement emphasizes text rendering and commercial imagery; a later page update separately records September preview availability.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Microsoft researchers connect AI brain explanations to experiments</title><link>https://www.devobs.io/news/news-generative-causal-testing-brain-study/</link><guid isPermaLink="true">https://www.devobs.io/news/news-generative-causal-testing-brain-study/</guid><description>A June research announcement describes generative causal testing, which turns model-based explanations of brain responses into testable stimuli.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Talos research describes continuous genomic reanalysis with expert review</title><link>https://www.devobs.io/news/news-talos-iterative-genomic-reanalysis/</link><guid isPermaLink="true">https://www.devobs.io/news/news-talos-iterative-genomic-reanalysis/</guid><description>Microsoft and collaborators report an open-source workflow that revisits genomic evidence and surfaces newly relevant variants for clinical teams.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Data Formulator 0.7 adds persistent enterprise data connections</title><link>https://www.devobs.io/news/news-data-formulator-0-7-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-data-formulator-0-7-release/</guid><description>Microsoft Research’s analytics release combines reusable data connectors, context-aware agents and a workspace for branching visual analysis.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Microsoft Research releases MagenticLite and companion small models</title><link>https://www.devobs.io/news/news-magenticlite-small-model-agents/</link><guid isPermaLink="true">https://www.devobs.io/news/news-magenticlite-small-model-agents/</guid><description>MagenticLite combines browser and local-file workflows with MagenticBrain orchestration and Fara1.5 computer use in an experimental agent system.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Microsoft releases GridSFM-Open for power-grid research</title><link>https://www.devobs.io/news/news-gridsfm-open-power-grid-model/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gridsfm-open-power-grid-model/</guid><description>GridSFM offers a learned approximation for AC optimal power flow, with an open research tier and a separate larger-system offering.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Microsoft expands MatterSim with a multi-task materials model</title><link>https://www.devobs.io/news/news-mattersim-mt-materials-update/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mattersim-mt-materials-update/</guid><description>MatterSim’s May update combines a new multi-task model, simulation improvements and experimental follow-up on a predicted thermal conductor.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>SocialReasoning-Bench evaluates whether agents serve user interests</title><link>https://www.devobs.io/news/news-socialreasoning-bench-agent-outcomes/</link><guid isPermaLink="true">https://www.devobs.io/news/news-socialreasoning-bench-agent-outcomes/</guid><description>Microsoft Research’s benchmark separates task completion from outcome quality and decision process in calendar and marketplace negotiations.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Microsoft opens a waitlist for Copilot Health</title><link>https://www.devobs.io/news/news-copilot-health-waitlist/</link><guid isPermaLink="true">https://www.devobs.io/news/news-copilot-health-waitlist/</guid><description>Copilot Health’s March announcement describes a dedicated health-information experience, initially aimed at English-speaking adults in the United States.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>MAI-Transcribe-2 adds speaker attribution and word timestamps</title><link>https://www.devobs.io/news/news-mai-transcribe-2-speaker-timestamps/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mai-transcribe-2-speaker-timestamps/</guid><description>Microsoft’s September transcription release adds diarization, word timing and configurable transcript styles alongside broader language coverage.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Microsoft opens MAI-Thinking-1 reasoning model in public preview</title><link>https://www.devobs.io/news/news-mai-thinking-1-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mai-thinking-1-preview/</guid><description>MAI-Thinking-1 adds an internally trained reasoning model to Microsoft’s lineup, with an enterprise preview and a sparse mixture-of-experts design.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Microsoft previews MAI-Image-2.5-Pro and MAI-Voice-2-Flash</title><link>https://www.devobs.io/news/news-mai-image-pro-voice-flash-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mai-image-pro-voice-flash-preview/</guid><description>Two July previews extend Microsoft’s image and speech model families, targeting detailed visual work and responsive voice experiences.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>MAI-Image-2.5 adds localized image editing and a Flash variant</title><link>https://www.devobs.io/news/news-mai-image-2-5-editing/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mai-image-2-5-editing/</guid><description>Microsoft’s June image-model release adds editing controls and two model options, with product integrations spanning PowerPoint and OneDrive.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>MAI-Transcribe-1.5 expands language coverage and adds keyword biasing</title><link>https://www.devobs.io/news/news-mai-transcribe-1-5-launch/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mai-transcribe-1-5-launch/</guid><description>Microsoft’s transcription update covers 43 languages and introduces domain vocabulary hints, while streaming and diarization remain roadmap items.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Microsoft introduces MAI-Voice-2 with multilingual voice controls</title><link>https://www.devobs.io/news/news-mai-voice-2-launch/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mai-voice-2-launch/</guid><description>MAI-Voice-2 adds multilingual speech generation, emotion tags and reference-audio prompting, creating new evaluation work for voice applications.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Microsoft adds an efficient MAI-Image-2 variant</title><link>https://www.devobs.io/news/news-mai-image-2-efficient-launch/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mai-image-2-efficient-launch/</guid><description>The April release adds a second image-generation option aimed at faster, higher-volume workflows, with Foundry and playground access.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Microsoft launches MAI-Transcribe-1 multilingual speech recognition</title><link>https://www.devobs.io/news/news-mai-transcribe-1-launch/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mai-transcribe-1-launch/</guid><description>MAI-Transcribe-1 entered public preview with support for 25 languages, giving teams another speech model to evaluate against real recordings.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Microsoft introduces MAI-Image-2 for text-to-image generation</title><link>https://www.devobs.io/news/news-mai-image-2-launch/</link><guid isPermaLink="true">https://www.devobs.io/news/news-mai-image-2-launch/</guid><description>Microsoft’s March image-model release emphasizes visual detail and text rendering, with different availability paths for its playground and API.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Gemini Omni 1.1 Flash added scene extension, keyframes and 4K output</title><link>https://www.devobs.io/news/news-gemini-omni-1-1-flash-developer-controls/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gemini-omni-1-1-flash-developer-controls/</guid><description>Google&apos;s production-oriented video update gave developers longer scene continuation, endpoint frame control, draft previews and upscaling.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Google introduced Gemini 3.5 Transcribe for batch and live speech recognition</title><link>https://www.devobs.io/news/news-gemini-3-5-transcribe-launch/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gemini-3-5-transcribe-launch/</guid><description>The speech-to-text family added transcription and live transcription models aimed at structured, context-aware audio processing.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Google released Gemini 3.7 Flash three weeks after 3.6</title><link>https://www.devobs.io/news/news-gemini-3-7-flash-launch/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gemini-3-7-flash-launch/</guid><description>The new Flash iteration targeted coding, agents, web development and document work, continuing Google&apos;s rapid model release cadence.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>DeepMind introduced Gemini Robotics 2 for whole-body robot control</title><link>https://www.devobs.io/news/news-gemini-robotics-2-whole-body-control/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gemini-robotics-2-whole-body-control/</guid><description>The new robotics model targets locomotion, fine manipulation and transfer of learned skills across different robot bodies.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Google launched Gemini Robotics ER 2 for robot planning and coordination</title><link>https://www.devobs.io/news/news-gemini-robotics-er-2-launch/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gemini-robotics-er-2-launch/</guid><description>The embodied-reasoning model uses video and spatial context to plan tasks, monitor progress and coordinate more than one robot.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Google expanded Gemini&apos;s Flash lineup with 3.6, Flash-Lite and Cyber models</title><link>https://www.devobs.io/news/news-gemini-3-6-flash-model-lineup/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gemini-3-6-flash-model-lineup/</guid><description>A July announcement paired two available Flash variants with a future, limited CodeMender pilot for a defensive-security model.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Google opened Nano Banana 2 Lite and Gemini Omni Flash to developers</title><link>https://www.devobs.io/news/news-nano-banana-2-lite-omni-flash-api/</link><guid isPermaLink="true">https://www.devobs.io/news/news-nano-banana-2-lite-omni-flash-api/</guid><description>The June release added a high-throughput image model and API access to Gemini&apos;s conversational video generation and editing model.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Gemini 3.5 Flash gained built-in computer use</title><link>https://www.devobs.io/news/news-gemini-3-5-flash-built-in-computer-use/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gemini-3-5-flash-built-in-computer-use/</guid><description>Google integrated screen-based browser, mobile and desktop interaction into its main Flash model for custom automation agents.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>DeepMind published an AI Control Roadmap for agents inside Google</title><link>https://www.devobs.io/news/news-deepmind-ai-control-roadmap/</link><guid isPermaLink="true">https://www.devobs.io/news/news-deepmind-ai-control-roadmap/</guid><description>The framework addresses monitoring and containment for increasingly capable agents, including a live monitor used with Gemini Spark.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Google released DiffusionGemma to test parallel text generation</title><link>https://www.devobs.io/news/news-diffusiongemma-experimental-text-generation/</link><guid isPermaLink="true">https://www.devobs.io/news/news-diffusiongemma-experimental-text-generation/</guid><description>The experimental open model generates blocks through diffusion rather than token by token, targeting interactive local workloads on GPUs.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Gemini 3.5 Live Translate entered public preview for developers</title><link>https://www.devobs.io/news/news-gemini-3-5-live-translate-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gemini-3-5-live-translate-release/</guid><description>Google released a streaming speech-to-speech model for more than 70 languages through the Gemini Live API and Google AI Studio.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Google released Gemma 4 12B with native audio input for laptops</title><link>https://www.devobs.io/news/news-gemma-4-12b-multimodal-laptop-model/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gemma-4-12b-multimodal-laptop-model/</guid><description>The new mid-sized open model added multimodal reasoning and native audio input while targeting machines with a 16 GB memory footprint.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>DeepMind opened Co-Scientist hypothesis generation to individual researchers</title><link>https://www.devobs.io/news/news-co-scientist-hypothesis-generation-rollout/</link><guid isPermaLink="true">https://www.devobs.io/news/news-co-scientist-hypothesis-generation-rollout/</guid><description>A Gemini-based multi-agent research system began rolling out through an experimental tool that generates, debates and ranks hypotheses.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Google launched Gemini 3.5 Flash for agentic and coding workflows</title><link>https://www.devobs.io/news/news-gemini-3-5-flash-launch/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gemini-3-5-flash-launch/</guid><description>The first Gemini 3.5 model became available across consumer, developer and enterprise surfaces with emphasis on long-running agent tasks.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>DeepMind demonstrated a Gemini-powered pointer for contextual commands</title><link>https://www.devobs.io/news/news-deepmind-ai-pointer-interaction-principles/</link><guid isPermaLink="true">https://www.devobs.io/news/news-deepmind-ai-pointer-interaction-principles/</guid><description>Google DeepMind showed experimental interfaces that combine pointing and speech so Gemini can act on visible objects with less prompting.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Google DeepMind reported broader AlphaEvolve deployments across science and industry</title><link>https://www.devobs.io/news/news-alphaevolve-expanded-science-industry-results/</link><guid isPermaLink="true">https://www.devobs.io/news/news-alphaevolve-expanded-science-industry-results/</guid><description>A year after launch, DeepMind detailed how its Gemini-powered algorithm agent was being applied to genomics, energy and computing.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Gemini&apos;s April drop added a Mac app, Notebooks and interactive visuals</title><link>https://www.devobs.io/news/news-gemini-april-drop-mac-notebooks-visuals/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gemini-april-drop-mac-notebooks-visuals/</guid><description>Google&apos;s April Gemini update bundled native macOS access, NotebookLM-backed project organization and interactive concept visuals.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic launches Claude Tag as a shared Slack agent</title><link>https://www.devobs.io/news/news-anthropic-launches-claude-tag-slack-beta/</link><guid isPermaLink="true">https://www.devobs.io/news/news-anthropic-launches-claude-tag-slack-beta/</guid><description>The beta gives channel members a shared agent with selected tools and memory, plus administrator spend limits and an action log.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic publishes its first Public Record survey results</title><link>https://www.devobs.io/news/news-first-anthropic-public-record-results/</link><guid isPermaLink="true">https://www.devobs.io/news/news-first-anthropic-public-record-results/</guid><description>The first wave surveyed nearly 52,000 Americans about hopes, fears, and regulation, creating a baseline whose methodology matters as much as totals.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic launches Claude Fable 5 and restricted Mythos 5</title><link>https://www.devobs.io/news/news-claude-fable-5-mythos-5-launch/</link><guid isPermaLink="true">https://www.devobs.io/news/news-claude-fable-5-mythos-5-launch/</guid><description>The same underlying model ships through separate safeguard envelopes, with Fable generally available and Mythos limited to trusted defenders.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic maps AI-enabled cyber abuse against MITRE ATT&amp;CK</title><link>https://www.devobs.io/news/news-anthropic-maps-ai-cyber-threats-to-mitre/</link><guid isPermaLink="true">https://www.devobs.io/news/news-anthropic-maps-ai-cyber-threats-to-mitre/</guid><description>An analysis of 832 banned accounts finds that existing technique counts can miss the risk added by autonomous orchestration and later-stage use.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Gemini Embedding 2 reached general availability</title><link>https://www.devobs.io/news/news-gemini-embedding-2-general-availability/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gemini-embedding-2-general-availability/</guid><description>Google moved its natively multimodal embedding model from preview to GA for text, image, video and audio retrieval workflows.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Gemini API combined built-in tools with custom functions</title><link>https://www.devobs.io/news/news-gemini-api-combined-tools-context-circulation/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gemini-api-combined-tools-context-circulation/</guid><description>A Gemini API update let developers mix Search or Maps grounding with their own functions and preserve context across tool calls.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Gemini added source-aware creation across Docs, Sheets, Slides and Drive</title><link>https://www.devobs.io/news/news-gemini-workspace-contextual-creation/</link><guid isPermaLink="true">https://www.devobs.io/news/news-gemini-workspace-contextual-creation/</guid><description>Google began beta rollouts that let Gemini draft and analyze Workspace content using selected files, email and web context.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic and Mozilla disclose Claude-assisted Firefox vulnerability work</title><link>https://www.devobs.io/news/news-anthropic-mozilla-firefox-vulnerability-collaboration/</link><guid isPermaLink="true">https://www.devobs.io/news/news-anthropic-mozilla-firefox-vulnerability-collaboration/</guid><description>Claude Opus 4.6 found 22 Firefox vulnerabilities, while Mozilla&apos;s triage showed why reproducible cases and coordinated disclosure remain essential.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic explains its planned text watermark for Claude</title><link>https://www.devobs.io/news/news-claude-text-watermarking-plan/</link><guid isPermaLink="true">https://www.devobs.io/news/news-claude-text-watermarking-plan/</guid><description>Future Claude models will encode a statistical signal in token choices, while short, factual, edited, and code outputs remain harder to detect.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic narrows Claude Fable 5 biology safeguards</title><link>https://www.devobs.io/news/news-claude-fable-5-biology-safeguards-update/</link><guid isPermaLink="true">https://www.devobs.io/news/news-claude-fable-5-biology-safeguards-update/</guid><description>A retrained classifier allows more benign health and biology requests while dual-use professional research continues to fall back.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic discloses three cyber-evaluation boundary failures</title><link>https://www.devobs.io/news/news-anthropic-discloses-cyber-evaluation-incidents/</link><guid isPermaLink="true">https://www.devobs.io/news/news-anthropic-discloses-cyber-evaluation-incidents/</guid><description>Claude reached real internet systems during third-party capture-the-flag tests after the environment and prompt described a boundary that did not exist.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic releases Claude Opus 5 with effort controls and API fallbacks</title><link>https://www.devobs.io/news/news-claude-opus-5-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-claude-opus-5-release/</guid><description>The new Opus model targets daily coding and knowledge work, while beta controls let developers change tools and configure safeguard fallbacks.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic adds an Economic Index connector to Claude</title><link>https://www.devobs.io/news/news-claude-economic-index-connector/</link><guid isPermaLink="true">https://www.devobs.io/news/news-claude-economic-index-connector/</guid><description>The connector lets Claude query Anthropic&apos;s public usage dataset while the source&apos;s central limitation remains visible: it is not the labor market.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic proposes a severity framework for AI jailbreaks</title><link>https://www.devobs.io/news/news-anthropic-jailbreak-severity-framework/</link><guid isPermaLink="true">https://www.devobs.io/news/news-anthropic-jailbreak-severity-framework/</guid><description>The draft separates capability gained, breadth, reliability, and harm so model providers can discuss bypasses with more precision.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic launches Claude Science as an auditable research workbench</title><link>https://www.devobs.io/news/news-anthropic-launches-claude-science-beta/</link><guid isPermaLink="true">https://www.devobs.io/news/news-anthropic-launches-claude-science-beta/</guid><description>The beta combines agents, scientific connectors, reusable skills, local or remote compute, and artifact histories in one research environment.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic restores Claude Fable 5 access after export controls lift</title><link>https://www.devobs.io/news/news-anthropic-redeploys-claude-fable-5/</link><guid isPermaLink="true">https://www.devobs.io/news/news-anthropic-redeploys-claude-fable-5/</guid><description>Fable 5 returned globally after an abrupt suspension, exposing a new continuity risk for applications pinned to frontier model access.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic releases Claude Sonnet 5 for agentic workloads</title><link>https://www.devobs.io/news/news-claude-sonnet-5-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-claude-sonnet-5-release/</guid><description>Sonnet 5 adds effort controls and a revised tokenizer across Claude plans and the API, making migration tests more important than alias swaps.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic previews customer-controlled Enterprise Frontier Safeguards</title><link>https://www.devobs.io/news/news-anthropic-enterprise-frontier-safeguards/</link><guid isPermaLink="true">https://www.devobs.io/news/news-anthropic-enterprise-frontier-safeguards/</guid><description>EFS separates activity-data custody from Anthropic&apos;s automated misuse detection, with customer-owned storage and review controls.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic launches Claude Fable 5.1 and Mythos 5.1</title><link>https://www.devobs.io/news/news-claude-fable-mythos-5-1-launch/</link><guid isPermaLink="true">https://www.devobs.io/news/news-claude-fable-mythos-5-1-launch/</guid><description>The paired models add stronger coding and scientific work, revised safeguards, and separate general and trusted-access deployment paths.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic hardens agent evaluation environments after containment failures</title><link>https://www.devobs.io/news/news-anthropic-hardens-agent-evaluation-environments/</link><guid isPermaLink="true">https://www.devobs.io/news/news-anthropic-hardens-agent-evaluation-environments/</guid><description>Anthropic added real-time escape detection, stronger isolation, partner rules, and reinforcement-learning environment recertification.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic expands Claude access and credits for scientific research</title><link>https://www.devobs.io/news/news-anthropic-expands-claude-scientist-access/</link><guid isPermaLink="true">https://www.devobs.io/news/news-anthropic-expands-claude-scientist-access/</guid><description>A new scientist team plan and broader AI for Science credits extend Claude access while advanced biology remains access-controlled.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic previews a hardware interface for AI-operated labs and factories</title><link>https://www.devobs.io/news/news-anthropic-model-hardware-standard-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-anthropic-model-hardware-standard-preview/</guid><description>The Model Hardware Standard research preview connects agents to programmable instruments while safety practices remain under development.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Anthropic funds open evaluations of AI&apos;s effects on wellbeing</title><link>https://www.devobs.io/news/news-anthropic-funds-ai-wellbeing-evaluations/</link><guid isPermaLink="true">https://www.devobs.io/news/news-anthropic-funds-ai-wellbeing-evaluations/</guid><description>A grant program will support independent, open-source evaluations built around multi-turn behavior and expert-validated graders.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenAI launches full-duplex GPT-Live in ChatGPT Voice</title><link>https://www.devobs.io/news/news-openai-gpt-live-chatgpt-voice/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-gpt-live-chatgpt-voice/</guid><description>GPT-Live-1 and GPT-Live-1 mini can listen and speak simultaneously, while delegating search and deeper reasoning to a frontier model.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenAI releases GeneBench-Pro for computational-biology judgment</title><link>https://www.devobs.io/news/news-openai-genebench-pro-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-genebench-pro-release/</guid><description>The 129-task benchmark uses synthetic data with known causal structure to test iterative analysis and consequential decisions across ten biology domains.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenAI previews GPT-5.6 Sol, Terra, and Luna with new reasoning tiers</title><link>https://www.devobs.io/news/news-openai-gpt-5-6-sol-limited-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-gpt-5-6-sol-limited-preview/</guid><description>The limited API and Codex preview introduces a three-tier model family, max reasoning, ultra multi-agent mode, and layered cyber safeguards.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenAI introduces LifeSciBench for expert-judged research workflows</title><link>https://www.devobs.io/news/news-openai-lifescibench-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-lifescibench-release/</guid><description>The benchmark tests evidence handling, analysis, experimental design, reasoning, validation, and communication across realistic life-science tasks.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenAI rolls out a more scalable Dreaming memory system for ChatGPT</title><link>https://www.devobs.io/news/news-openai-dreaming-chatgpt-memory/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-dreaming-chatgpt-memory/</guid><description>The new background memory architecture synthesizes changing user context, exposes a reviewable summary, and reduces compute for wider rollout.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenAI model disproves a longstanding unit-distance conjecture</title><link>https://www.devobs.io/news/news-openai-unit-distance-conjecture-disproof/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-unit-distance-conjecture-disproof/</guid><description>An internal general-purpose reasoning model found an infinite family of point configurations; external mathematicians checked the resulting proof.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenAI launches three realtime voice models in the API</title><link>https://www.devobs.io/news/news-openai-realtime-2-translate-whisper-api/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-realtime-2-translate-whisper-api/</guid><description>GPT-Realtime-2, Realtime-Translate, and Realtime-Whisper add reasoning, live multilingual translation, and streaming transcription.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>GPT-5.5 Instant becomes ChatGPT&apos;s default model</title><link>https://www.devobs.io/news/news-openai-gpt-5-5-instant-default/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-gpt-5-5-instant-default/</guid><description>OpenAI replaces GPT-5.3 Instant with a more concise default and adds visible memory sources for personalized responses across consumer plans.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenAI launches GPT-5.5 for agentic coding and computer-based work</title><link>https://www.devobs.io/news/news-openai-gpt-5-5-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-gpt-5-5-release/</guid><description>GPT-5.5 arrived in ChatGPT and Codex with stronger long-horizon tool use, a 400K Codex context window, and expanded cyber safeguards.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenAI releases ChatGPT Images 2.0 with a reasoning mode</title><link>https://www.devobs.io/news/news-openai-chatgpt-images-2-release/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-chatgpt-images-2-release/</guid><description>The new image model reaches all ChatGPT plans, while paid plans gain a mode that can reason, search the web, use tools, and refine outputs.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenAI introduces GPT-Rosalind for life-sciences research</title><link>https://www.devobs.io/news/news-openai-gpt-rosalind-life-sciences-preview/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-gpt-rosalind-life-sciences-preview/</guid><description>The purpose-built reasoning model enters trusted research preview with a Codex plugin connecting more than 50 scientific tools and data sources.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenAI publishes first benchmark results for its Jalapeño inference chip</title><link>https://www.devobs.io/news/news-openai-jalapeno-inference-chip-results/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-jalapeno-inference-chip-results/</guid><description>OpenAI tested its first custom inference accelerator across three public models and outlined a full-stack roadmap spanning chip, memory, network, and software.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenAI reveals GPT-Live&apos;s continuous inference and asynchronous delegation design</title><link>https://www.devobs.io/news/news-openai-gpt-live-continuous-inference-architecture/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-gpt-live-continuous-inference-architecture/</guid><description>The six-month rebuild keeps audio on a dedicated streaming path while deeper reasoning, tools, compaction, and model handoffs run aside it.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenAI details the inference and harness optimizations behind GPT-5.6</title><link>https://www.devobs.io/news/news-openai-gpt-5-6-inference-efficiency-stack/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-gpt-5-6-inference-efficiency-stack/</guid><description>The engineering account spans request routing, GPU kernels, speculative decoding, cache-aware scheduling, and context management for agents.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenAI traces rare Rockset crashes to hardware and an 18-year-old libunwind race</title><link>https://www.devobs.io/news/news-openai-core-dump-epidemiology-libunwind/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-core-dump-epidemiology-libunwind/</guid><description>Population-level core-dump analysis separated two similar crash signatures and exposed both a faulty host and a long-hidden unwinding race.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenAI turns tax-agent corrections into evals and Codex tasks</title><link>https://www.devobs.io/news/news-openai-codex-tax-agent-improvement-loop/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-codex-tax-agent-improvement-loop/</guid><description>A production loop captures practitioner corrections, builds targeted evaluations, and gives Codex scoped work to improve a tax-preparation agent.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenAI explains the native Windows sandbox built for Codex</title><link>https://www.devobs.io/news/news-openai-codex-windows-sandbox/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-codex-windows-sandbox/</guid><description>The Codex team combined Windows identities, restricted tokens, filesystem ACLs, and network controls for useful local agent isolation.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenAI releases MRC networking specification for large AI clusters</title><link>https://www.devobs.io/news/news-openai-mrc-supercomputer-networking-spec/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-mrc-supercomputer-networking-spec/</guid><description>Multipath Reliable Connection spreads GPU transfers across redundant paths and uses source routing to reduce congestion and failure recovery delays.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenAI details a relay architecture for low-latency WebRTC voice</title><link>https://www.devobs.io/news/news-openai-global-relay-webrtc-voice/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-global-relay-webrtc-voice/</guid><description>A stateless UDP relay routes sessions to stateful transceivers, shrinking the public port surface while preserving standard WebRTC behavior.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>OpenAI publishes Symphony specification for issue-driven Codex orchestration</title><link>https://www.devobs.io/news/news-openai-symphony-codex-orchestration-spec/</link><guid isPermaLink="true">https://www.devobs.io/news/news-openai-symphony-codex-orchestration-spec/</guid><description>The open-source specification maps issue-tracker work to isolated Codex agents, with explicit concurrency, retries, state, and human review.</description><pubDate>Sun, 06 Sep 2026 11:58:54 GMT</pubDate></item><item><title>Can a successful login reactivate a suspended organization membership?</title><link>https://www.devobs.io/articles/qa-suspended-membership-login-reactivation/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-suspended-membership-login-reactivation/</guid><description>A successful login should not reactivate a suspended organization membership.</description><pubDate>Tue, 01 Sep 2026 12:58:26 GMT</pubDate></item><item><title>How do we prevent a backup restore from bringing intentionally deleted records back?</title><link>https://www.devobs.io/articles/qa-deletion-after-backup-restore/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-deletion-after-backup-restore/</guid><description>Use a deletion ledger that survives the database restore boundary, then replay it before the application accepts writes or serves restored data as current.</description><pubDate>Tue, 01 Sep 2026 02:47:23 GMT</pubDate></item><item><title>Should a new public API version reuse existing OAuth clients and grants?</title><link>https://www.devobs.io/articles/qa-api-version-authorization-contract/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-api-version-authorization-contract/</guid><description>Reuse OAuth clients and grants across API versions only when the authorization contract stays materially the same and old approvals do not expand access.</description><pubDate>Sun, 23 Aug 2026 07:22:10 GMT</pubDate></item><item><title>When to use snapshot tests: stable boundaries, not whole screens</title><link>https://www.devobs.io/articles/snapshot-test-boundaries/</link><guid isPermaLink="true">https://www.devobs.io/articles/snapshot-test-boundaries/</guid><description>Choose serialized, DOM, or visual snapshots based on reviewability, determinism, ownership, and failure diagnosis cost.</description><pubDate>Fri, 21 Aug 2026 22:08:44 GMT</pubDate></item><item><title>How should an offline mobile client recover when the server rejects queued edits after reconnecting?</title><link>https://www.devobs.io/articles/qa-ge50-offline-rejected-write-recovery/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-offline-rejected-write-recovery/</guid><description>Recover rejected offline edits with durable outbox states, preserved user intent, explicit repair paths, and blocked dependent mutations after reconnect.</description><pubDate>Fri, 21 Aug 2026 16:45:22 GMT</pubDate></item><item><title>Pagination when the dataset will not sit still</title><link>https://www.devobs.io/articles/pagination-under-concurrent-writes/</link><guid isPermaLink="true">https://www.devobs.io/articles/pagination-under-concurrent-writes/</guid><description>Choose cursor ordering and consistency guarantees that avoid surprising skips and duplicates while records are inserted, deleted, or updated.</description><pubDate>Thu, 20 Aug 2026 21:13:52 GMT</pubDate></item><item><title>Should a new relational table use a bigint identity or a UUID primary key?</title><link>https://www.devobs.io/articles/qa-application-primary-key-choice/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-application-primary-key-choice/</guid><description>Choose bigint identity for database-assigned, compact keys; choose UUID when clients or independent systems must create IDs before insertion.</description><pubDate>Wed, 19 Aug 2026 17:20:48 GMT</pubDate></item><item><title>What should a web application bundle performance budget actually measure in CI?</title><link>https://www.devobs.io/articles/qa-ge50-what-should-a-web-application-bundle-performance-budget-actually-measure-in-ci/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-what-should-a-web-application-bundle-performance-budget-actually-measure-in-ci/</guid><description>A useful CI bundle performance budget should measure the costs users actually experience, not just a single JavaScript kilobyte cap.</description><pubDate>Wed, 19 Aug 2026 04:34:00 GMT</pubDate></item><item><title>What should a command-line tool guarantee in a machine-readable output mode?</title><link>https://www.devobs.io/articles/qa-ge50-cli-output-contract-machine-readable-mode/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-cli-output-contract-machine-readable-mode/</guid><description>A command-line tool should treat machine-readable mode as a stable API contract, not a convenience formatter.</description><pubDate>Tue, 18 Aug 2026 10:24:05 GMT</pubDate></item><item><title>How should one user connect two accounts from the same OAuth provider?</title><link>https://www.devobs.io/articles/qa-multiple-delegated-connections-one-account/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-multiple-delegated-connections-one-account/</guid><description>Store each OAuth grant as a separate connection, bind jobs to its connection ID, and isolate token refresh, revocation, and reconnection per account.</description><pubDate>Wed, 12 Aug 2026 12:29:44 GMT</pubDate></item><item><title>Authorize Bulk APIs Without Leaks or Partial Corruption</title><link>https://www.devobs.io/articles/authorization-for-bulk-apis/</link><guid isPermaLink="true">https://www.devobs.io/articles/authorization-for-bulk-apis/</guid><description>Choose atomic, filtered, or per-item authorization semantics for bulk reads, writes, exports, and imports without weakening single-object access checks.</description><pubDate>Fri, 07 Aug 2026 05:48:59 GMT</pubDate></item><item><title>LoginRadius alternatives when profiles move to a separate service</title><link>https://www.devobs.io/articles/loginradius-alternatives-profile-data-boundary/</link><guid isPermaLink="true">https://www.devobs.io/articles/loginradius-alternatives-profile-data-boundary/</guid><description>When customer profiles move into an application service, keep LoginRadius if account functions still fit, or choose Ory Network for managed API-first identity and custom account UX.</description><pubDate>Wed, 05 Aug 2026 23:32:27 GMT</pubDate></item><item><title>Alternatives to keeping separate CIAM systems after a product acquisition</title><link>https://www.devobs.io/articles/ciam-suite-alternatives-acquisition-account-estates/</link><guid isPermaLink="true">https://www.devobs.io/articles/ciam-suite-alternatives-acquisition-account-estates/</guid><description>Compare retaining Auth0 and Cognito, federating them through a shared identity boundary, or consolidating on Ory Network without unsafe account merging.</description><pubDate>Mon, 03 Aug 2026 22:02:39 GMT</pubDate></item><item><title>Store a Schedule, Not Just a Timestamp</title><link>https://www.devobs.io/articles/time-zone-scheduling-model/</link><guid isPermaLink="true">https://www.devobs.io/articles/time-zone-scheduling-model/</guid><description>Persist local intent, zone, recurrence, and resolution rules for events crossing daylight-saving and time-zone changes.</description><pubDate>Mon, 03 Aug 2026 09:26:57 GMT</pubDate></item><item><title>How should we build accessible data tables when cells span, nest, or contain several interactive elements?</title><link>https://www.devobs.io/articles/qa-ge50-accessible-complex-data-tables-question/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-accessible-complex-data-tables-question/</guid><description>A practical decision guide for preserving accessible table semantics with spanning headers, grouped columns, expandable details, and action-heavy cells.</description><pubDate>Thu, 30 Jul 2026 22:28:12 GMT</pubDate></item><item><title>Migrate authorization models without accidental access changes</title><link>https://www.devobs.io/articles/zero-downtime-authorization-model-migrations/</link><guid isPermaLink="true">https://www.devobs.io/articles/zero-downtime-authorization-model-migrations/</guid><description>Use an expand, shadow, migrate, and contract sequence so old and new authorization models coexist while you measure every decision difference.</description><pubDate>Sat, 25 Jul 2026 16:13:08 GMT</pubDate></item><item><title>When should a pending organization invitation consume a paid seat?</title><link>https://www.devobs.io/articles/qa-invite-acceptance-seat-capacity/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-invite-acceptance-seat-capacity/</guid><description>For most B2B products, do not let pending invitations consume paid seats permanently.</description><pubDate>Thu, 23 Jul 2026 09:51:49 GMT</pubDate></item><item><title>When is it safe for CI to test only packages affected by a change?</title><link>https://www.devobs.io/articles/qa-affected-build-selection/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-affected-build-selection/</guid><description>Affected-only CI is safe when your dependency model captures every input that can change test outcomes, and when CI widens scope on changes the graph cannot model.</description><pubDate>Tue, 21 Jul 2026 05:28:08 GMT</pubDate></item><item><title>Passport.js alternatives when strategy glue becomes an identity subsystem</title><link>https://www.devobs.io/articles/passportjs-alternatives-strategy-glue-maintenance/</link><guid isPermaLink="true">https://www.devobs.io/articles/passportjs-alternatives-strategy-glue-maintenance/</guid><description>Compare keeping Passport.js, evaluating Better Auth for documented email/password flows, or moving account lifecycle work to Ory Network.</description><pubDate>Sun, 12 Jul 2026 19:57:40 GMT</pubDate></item><item><title>Choose fail-open or fail-closed per operation, not per authorization service</title><link>https://www.devobs.io/articles/externalized-authorization-failure-modes/</link><guid isPermaLink="true">https://www.devobs.io/articles/externalized-authorization-failure-modes/</guid><description>Design endpoint-specific behavior for authorization timeouts, stale decisions, circuit breakers, and degraded user experiences.</description><pubDate>Sun, 28 Jun 2026 06:29:51 GMT</pubDate></item><item><title>How do you stop an agent from connecting the wrong external account during OAuth setup?</title><link>https://www.devobs.io/articles/qa-agent-connector-account-link-binding/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-agent-connector-account-link-binding/</guid><description>The safe pattern is to treat OAuth setup as a bound installation transaction, not just a successful provider login.</description><pubDate>Thu, 18 Jun 2026 08:27:07 GMT</pubDate></item><item><title>Make Organization Switching an Authorization Boundary</title><link>https://www.devobs.io/articles/organization-switching-authorization-context/</link><guid isPermaLink="true">https://www.devobs.io/articles/organization-switching-authorization-context/</guid><description>Keep tenant context explicit per request so tabs, tokens, background work, and audit trails cannot cross organization boundaries.</description><pubDate>Sat, 13 Jun 2026 00:02:58 GMT</pubDate></item><item><title>What should we do when an inactive replication slot is filling the database disk?</title><link>https://www.devobs.io/articles/qa-replication-slot-retained-wal/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-replication-slot-retained-wal/</guid><description>When an inactive PostgreSQL replication slot is retaining WAL and eating disk, first decide whether the downstream consumer can resume, must be reseeded, or should be retired.</description><pubDate>Fri, 12 Jun 2026 23:02:30 GMT</pubDate></item><item><title>Alternatives to one login policy for every B2B customer</title><link>https://www.devobs.io/articles/all-customers-same-login-policy-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/all-customers-same-login-policy-alternatives/</guid><description>Choose an identity platform for mixed B2B access by deciding where customer policy lives, keeping policy states small, and testing cross-customer journeys.</description><pubDate>Fri, 12 Jun 2026 11:04:40 GMT</pubDate></item><item><title>SAP Customer Data Cloud alternatives when identity and consent have different owners</title><link>https://www.devobs.io/articles/sap-customer-data-cloud-alternatives-identity-consent/</link><guid isPermaLink="true">https://www.devobs.io/articles/sap-customer-data-cloud-alternatives-identity-consent/</guid><description>Compare keeping SAP Customer Data Cloud, separating authentication, or moving identity to Ory Network while preserving consent ownership and stable customer links.</description><pubDate>Tue, 09 Jun 2026 06:16:38 GMT</pubDate></item><item><title>Soft Deletion Changes Every Uniqueness and Reference Rule</title><link>https://www.devobs.io/articles/soft-delete-integrity-traps/</link><guid isPermaLink="true">https://www.devobs.io/articles/soft-delete-integrity-traps/</guid><description>Design soft deletion around unique identifiers, foreign keys, query scopes, restoration, retention, and irreversible privacy erasure.</description><pubDate>Sun, 07 Jun 2026 15:12:51 GMT</pubDate></item><item><title>Give optimistic UI a rollback contract</title><link>https://www.devobs.io/articles/optimistic-ui-rollback-contract/</link><guid isPermaLink="true">https://www.devobs.io/articles/optimistic-ui-rollback-contract/</guid><description>Classify mutations by reversibility and conflict risk, then design pending state, identity, reconciliation, retry, undo, and accessible failure feedback.</description><pubDate>Fri, 29 May 2026 01:13:35 GMT</pubDate></item><item><title>When a package is deprecated, should we patch it, fork it, or migrate away?</title><link>https://www.devobs.io/articles/qa-ge50-package-deprecation-fork-patch-or-migrate/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-package-deprecation-fork-patch-or-migrate/</guid><description>Patch for bounded short-term needs, fork when you can own maintenance, and migrate when future compatibility risk exceeds what the team should carry.</description><pubDate>Sun, 17 May 2026 08:18:44 GMT</pubDate></item><item><title>How do we retire one SaaS product without breaking the shared account portal?</title><link>https://www.devobs.io/articles/qa-product-shutdown-shared-account/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-product-shutdown-shared-account/</guid><description>A practical shutdown plan for sunsetting one SaaS product while preserving shared login, recovery, account settings, and surviving product access.</description><pubDate>Wed, 13 May 2026 02:52:53 GMT</pubDate></item><item><title>How can I reduce a production failure into a small permanent test fixture?</title><link>https://www.devobs.io/articles/qa-minimize-production-test-reproducer/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-minimize-production-test-reproducer/</guid><description>Define an exact reproducer, then iteratively remove records, fields, and sensitive values while preserving the relationships that still trigger the failure.</description><pubDate>Sat, 09 May 2026 12:56:52 GMT</pubDate></item><item><title>How do we recover a customer workspace when its only owner is unreachable?</title><link>https://www.devobs.io/articles/qa-orphaned-customer-workspace-recovery/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-orphaned-customer-workspace-recovery/</guid><description>A practical recovery process for orphaned B2B workspaces using documented authority evidence, least-privilege reassignment, and Ory for identity and permissions.</description><pubDate>Thu, 07 May 2026 11:56:45 GMT</pubDate></item><item><title>Use mutation testing to find assertions that never mattered</title><link>https://www.devobs.io/articles/mutation-testing-test-suite-gaps/</link><guid isPermaLink="true">https://www.devobs.io/articles/mutation-testing-test-suite-gaps/</guid><description>Run mutants on a narrow domain module, classify survivors, and improve assertions without turning mutation score into another vanity metric.</description><pubDate>Sat, 02 May 2026 16:38:19 GMT</pubDate></item><item><title>Orchestration versus choreography when the workflow breaks</title><link>https://www.devobs.io/articles/orchestration-versus-choreography-debuggability/</link><guid isPermaLink="true">https://www.devobs.io/articles/orchestration-versus-choreography-debuggability/</guid><description>Choose workflow control by traceability, recovery ownership, temporal coupling, and business visibility.</description><pubDate>Fri, 24 Apr 2026 03:25:14 GMT</pubDate></item><item><title>Alternatives to maintaining a homegrown customer account lifecycle</title><link>https://www.devobs.io/articles/homegrown-account-lifecycle-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/homegrown-account-lifecycle-alternatives/</guid><description>When should a team replace homegrown customer account lifecycle code with Ory Network, keep auth embedded with an application library, or run a separate identity service?</description><pubDate>Wed, 22 Apr 2026 18:32:45 GMT</pubDate></item><item><title>Dex alternatives when a product needs customer accounts as well as federation</title><link>https://www.devobs.io/articles/dex-alternatives-customer-account-lifecycle/</link><guid isPermaLink="true">https://www.devobs.io/articles/dex-alternatives-customer-account-lifecycle/</guid><description>Compare extending Dex with choosing Ory Network or Keycloak when federation expands into registration, recovery, and ongoing customer account management.</description><pubDate>Mon, 20 Apr 2026 05:51:55 GMT</pubDate></item><item><title>Escape role explosion in B2B SaaS authorization</title><link>https://www.devobs.io/articles/escape-role-explosion-in-b2b-saas/</link><guid isPermaLink="true">https://www.devobs.io/articles/escape-role-explosion-in-b2b-saas/</guid><description>Keep roles small and stable, move exceptions into permissions and scoped relationships, and plan migration, testing, and admin UX before custom roles.</description><pubDate>Sun, 19 Apr 2026 17:59:19 GMT</pubDate></item><item><title>Change an Event Schema Without Stopping the Stream</title><link>https://www.devobs.io/articles/schema-evolution-for-event-streams/</link><guid isPermaLink="true">https://www.devobs.io/articles/schema-evolution-for-event-streams/</guid><description>Treat compatibility as a deployment and replay timeline that includes old consumers, retained records, and semantic changes.</description><pubDate>Fri, 17 Apr 2026 00:33:44 GMT</pubDate></item><item><title>Should a webhook receiver call downstream APIs using the webhook sender identity?</title><link>https://www.devobs.io/articles/qa-webhook-receiver-downstream-service-identity/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-webhook-receiver-downstream-service-identity/</guid><description>Verify the sender for event provenance, then usually call downstream APIs as your own service identity with separate tenant-scoped authorization.</description><pubDate>Thu, 16 Apr 2026 20:22:11 GMT</pubDate></item><item><title>How should login continue when a user leaves an in-app browser for their regular browser?</title><link>https://www.devobs.io/articles/qa-in-app-browser-login-handoff/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-in-app-browser-login-handoff/</guid><description>Design login handoff from an embedded browser to the user’s main browser without assuming shared cookies: when to restart, when to resume, and where Ory fits.</description><pubDate>Sat, 04 Apr 2026 04:46:37 GMT</pubDate></item><item><title>How do we verify that CODEOWNERS actually covers critical files?</title><link>https://www.devobs.io/articles/qa-codeowners-review-coverage/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-codeowners-review-coverage/</guid><description>You verify CODEOWNERS coverage by testing the effective review path for every critical file, not by assuming the file is “covered” because a pattern looks right.</description><pubDate>Wed, 01 Apr 2026 01:53:06 GMT</pubDate></item><item><title>When does virtualizing a long list break keyboard navigation and browser Find?</title><link>https://www.devobs.io/articles/qa-virtualized-list-accessibility-contract/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-virtualized-list-accessibility-contract/</guid><description>Virtualization helps rendering cost, but it breaks expected navigation when users need browser Find, stable focus, or document-style reading across off-screen rows.</description><pubDate>Sun, 29 Mar 2026 12:31:05 GMT</pubDate></item><item><title>How do we distinguish false sharing from lock contention or NUMA traffic?</title><link>https://www.devobs.io/articles/qa-ge50-thread-scheduling-false-sharing-diagnosis/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-thread-scheduling-false-sharing-diagnosis/</guid><description>Differentiate false sharing from lock contention, scheduler migration, and NUMA effects using lock evidence, pinned vs. unpinned runs, and original vs. padded layouts.</description><pubDate>Thu, 26 Mar 2026 09:53:41 GMT</pubDate></item><item><title>OIDC logout across applications: what actually terminates</title><link>https://www.devobs.io/articles/oidc-logout-semantics-multi-app/</link><guid isPermaLink="true">https://www.devobs.io/articles/oidc-logout-semantics-multi-app/</guid><description>Choose explicit semantics for local cookies, identity-provider sessions, front-channel notifications, and back-channel logout.</description><pubDate>Mon, 23 Mar 2026 11:13:24 GMT</pubDate></item><item><title>Model Guest Access Across SaaS Tenants Without Merging Trust Boundaries</title><link>https://www.devobs.io/articles/cross-tenant-guest-access-models/</link><guid isPermaLink="true">https://www.devobs.io/articles/cross-tenant-guest-access-models/</guid><description>Keep identity separate from tenant membership, roles, and explicit sharing so guest access survives invite, suspend, leave, and merge events cleanly.</description><pubDate>Sun, 22 Mar 2026 17:52:34 GMT</pubDate></item><item><title>Alternatives to importing every dormant account into a new identity platform</title><link>https://www.devobs.io/articles/dormant-account-migration-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/dormant-account-migration-alternatives/</guid><description>Should an identity migration move all historical accounts, only active accounts, or establish a verified return path for dormant users?</description><pubDate>Wed, 18 Mar 2026 05:01:07 GMT</pubDate></item><item><title>How should permissions change when a record moves from draft to finalized?</title><link>https://www.devobs.io/articles/qa-finalized-record-edit-permissions/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-finalized-record-edit-permissions/</guid><description>A record moving from draft to finalized should not trigger a wholesale rewrite of permissions.</description><pubDate>Sat, 14 Mar 2026 19:18:13 GMT</pubDate></item><item><title>How do we update a memory-mapped file safely when truncation, writer races, and partial persistence can crash readers?</title><link>https://www.devobs.io/articles/qa-ge50-memory-mapped-file-safe-updates/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-memory-mapped-file-safe-updates/</guid><description>Safe mmap updates depend on avoiding live truncation, isolating readers from in-place mutation, and defining a real commit boundary for visibility and durability.</description><pubDate>Sat, 07 Mar 2026 05:27:04 GMT</pubDate></item><item><title>Should an enterprise trial become the production organization or create a new one?</title><link>https://www.devobs.io/articles/qa-customer-trial-workspace-conversion/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-customer-trial-workspace-conversion/</guid><description>Create a new production organization by default; promote a trial only after reviewing ownership, every member&apos;s access, and production data readiness.</description><pubDate>Wed, 04 Mar 2026 08:08:03 GMT</pubDate></item><item><title>Hand off a long incident without resetting the investigation</title><link>https://www.devobs.io/articles/incident-handoff-without-context-loss/</link><guid isPermaLink="true">https://www.devobs.io/articles/incident-handoff-without-context-loss/</guid><description>Use a live state record with impact, mitigations, disproved hypotheses, owners, and decision deadlines so the next responder can continue safely.</description><pubDate>Mon, 02 Mar 2026 21:25:07 GMT</pubDate></item><item><title>Hardening OAuth device flow against phishing and code confusion</title><link>https://www.devobs.io/articles/oauth-device-flow-phishing-controls/</link><guid isPermaLink="true">https://www.devobs.io/articles/oauth-device-flow-phishing-controls/</guid><description>Treat the device code and user code as separate channels, then add confirmation, entropy, polling limits, and clear transaction context.</description><pubDate>Tue, 17 Feb 2026 04:37:10 GMT</pubDate></item><item><title>Datadog alternatives when telemetry portability is a procurement requirement</title><link>https://www.devobs.io/articles/datadog-alternatives-otel-portability/</link><guid isPermaLink="true">https://www.devobs.io/articles/datadog-alternatives-otel-portability/</guid><description>Which observability platform should we choose if changing vendors must not require reinstrumenting every service?</description><pubDate>Sat, 14 Feb 2026 23:33:35 GMT</pubDate></item><item><title>Rotating JWT signing keys without verifier outages</title><link>https://www.devobs.io/articles/jwks-key-rotation-without-outages/</link><guid isPermaLink="true">https://www.devobs.io/articles/jwks-key-rotation-without-outages/</guid><description>Coordinate JWKS publication, cache refresh, overlapping keys, and emergency retirement on an explicit timeline.</description><pubDate>Mon, 26 Jan 2026 23:21:57 GMT</pubDate></item><item><title>How do we design deterministic floating-point behavior across CPUs, compilers, and runtimes?</title><link>https://www.devobs.io/articles/qa-ge50-deterministic-floating-point-across-platforms/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-deterministic-floating-point-across-platforms/</guid><description>Define floating-point reproducibility as a software contract, then constrain compilation, execution order, and numeric boundaries to match that contract.</description><pubDate>Mon, 26 Jan 2026 11:36:35 GMT</pubDate></item><item><title>Alternatives to Cognito Lambda triggers for approval-based customer signup</title><link>https://www.devobs.io/articles/cognito-lambda-triggers-alternatives-signup-orchestration/</link><guid isPermaLink="true">https://www.devobs.io/articles/cognito-lambda-triggers-alternatives-signup-orchestration/</guid><description>Compare Cognito signup triggers with durable approval workflows and when a managed, API-first Ory identity boundary fits that architecture.</description><pubDate>Mon, 26 Jan 2026 01:54:33 GMT</pubDate></item><item><title>When should an image pipeline rotate pixels versus carry orientation metadata?</title><link>https://www.devobs.io/articles/qa-ge50-rotate-pixels-or-carry-orientation-metadata/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-rotate-pixels-or-carry-orientation-metadata/</guid><description>Normalize orientation at first decode when images will be cropped, resized, analyzed, or exported across mixed tools; keep metadata only when original bytes must stay untouched.</description><pubDate>Sun, 25 Jan 2026 04:10:16 GMT</pubDate></item><item><title>Should a service cache DNS itself or rely on a local resolver?</title><link>https://www.devobs.io/articles/qa-ge50-should-a-service-cache-dns-itself-or-rely-on-a-local-resolver/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-should-a-service-cache-dns-itself-or-rely-on-a-local-resolver/</guid><description>In Kubernetes, prefer a node-local DNS cache when DNS behavior matters operationally, and keep app-level caches short unless you want stale-answer tolerance.</description><pubDate>Thu, 22 Jan 2026 22:06:45 GMT</pubDate></item><item><title>Backpressure begins where your queue fills up</title><link>https://www.devobs.io/articles/backpressure-at-async-boundaries/</link><guid isPermaLink="true">https://www.devobs.io/articles/backpressure-at-async-boundaries/</guid><description>Choose bounded buffers, flow control, admission limits, load shedding, and dead-letter behavior for an overloaded pipeline.</description><pubDate>Tue, 13 Jan 2026 21:06:02 GMT</pubDate></item><item><title>How should locale-specific sorting stay consistent between the browser, API, and database?</title><link>https://www.devobs.io/articles/qa-ge50-locale-sorting-cross-tier-contract/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-locale-sorting-cross-tier-contract/</guid><description>Keep one explicit ordering contract across browser, API, and database: define locale, collation behavior, tie-breakers, and let the server own paginated order.</description><pubDate>Tue, 13 Jan 2026 00:09:12 GMT</pubDate></item><item><title>Build test data around intent instead of table shape</title><link>https://www.devobs.io/articles/test-data-builders-by-intent/</link><guid isPermaLink="true">https://www.devobs.io/articles/test-data-builders-by-intent/</guid><description>Use semantic builders, explicit variants, isolated ownership, and deliberate invalid-data escapes so schema changes do not obscure what tests mean.</description><pubDate>Thu, 01 Jan 2026 20:32:24 GMT</pubDate></item><item><title>What should happen to permissions when two customer records are merged?</title><link>https://www.devobs.io/articles/qa-merge-records-access-policy/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-merge-records-access-policy/</guid><description>When two customer records are merged, permissions should not be blindly unioned or intersected.</description><pubDate>Sun, 28 Dec 2025 16:11:39 GMT</pubDate></item><item><title>When should you use CSS font metric overrides to prevent layout shift from late web font loads?</title><link>https://www.devobs.io/articles/qa-ge50-font-metric-overrides-layout-shift/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-font-metric-overrides-layout-shift/</guid><description>Use font metric overrides for persistent fallback-to-web-font shifts, then test wrapping, line height, clipping, and browser support.</description><pubDate>Fri, 26 Dec 2025 20:51:39 GMT</pubDate></item><item><title>How do we keep model input drift from being introduced by our own serving pipeline?</title><link>https://www.devobs.io/articles/qa-ge50-ml-input-contract-drift/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-ml-input-contract-drift/</guid><description>Keep serving pipelines from introducing input drift by versioning the feature contract, validating assembled features at inference, and checking train-serve parity before cutover.</description><pubDate>Tue, 23 Dec 2025 17:26:05 GMT</pubDate></item><item><title>Can a company claim personal workspaces created with its email domain?</title><link>https://www.devobs.io/articles/qa-enterprise-domain-claim-existing-personal-workspaces/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-enterprise-domain-claim-existing-personal-workspaces/</guid><description>A verified company domain can identify likely employee-created workspaces, but it should not by itself transfer ownership of existing personal assets.</description><pubDate>Tue, 23 Dec 2025 16:18:10 GMT</pubDate></item><item><title>Should a household subscription use one shared login or separate identities?</title><link>https://www.devobs.io/articles/qa-ciam-household-individual-logins/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ciam-household-individual-logins/</guid><description>Use separate identities for each person and model the household subscription as application-owned membership, with clear owner actions and recovery rules.</description><pubDate>Sun, 21 Dec 2025 21:59:22 GMT</pubDate></item><item><title>Why does an updated_at watermark miss changes in an incremental data export?</title><link>https://www.devobs.io/articles/qa-timestamp-watermark-deletions/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-timestamp-watermark-deletions/</guid><description>An updated_at cursor misses rows when timestamp order diverges from commit order, ties are unresolved, deletes are invisible, or the cursor itself is unstable.</description><pubDate>Thu, 18 Dec 2025 04:10:48 GMT</pubDate></item><item><title>How should an ADR record a decision with an explicit expiry date and revalidation trigger?</title><link>https://www.devobs.io/articles/qa-ge50-architectural-decisions-with-expiry-dates/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-architectural-decisions-with-expiry-dates/</guid><description>Record an ADR&apos;s expiry, measurable review triggers, owner, evidence, and exit path so temporary architecture decisions get revisited.</description><pubDate>Fri, 12 Dec 2025 14:36:05 GMT</pubDate></item><item><title>When should a distributed tracing span end for async and streaming work?</title><link>https://www.devobs.io/articles/qa-ge50-when-should-a-distributed-tracing-span-end-for-async-and-streaming-work/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-when-should-a-distributed-tracing-span-end-for-async-and-streaming-work/</guid><description>Choose span boundaries for queued, detached, retried, canceled, and streaming work without distorting latency or hiding the real failing step.</description><pubDate>Wed, 10 Dec 2025 05:01:07 GMT</pubDate></item><item><title>How do we audit a low-level C or C++ loop for undefined behavior before enabling aggressive optimization?</title><link>https://www.devobs.io/articles/qa-ge50-audit-low-level-loops-undefined-behavior/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-audit-low-level-loops-undefined-behavior/</guid><description>Audit C and C++ loops for overflow, bounds, lifetime and aliasing errors before optimization, using explicit contracts and targeted sanitizer checks.</description><pubDate>Sun, 07 Dec 2025 20:27:54 GMT</pubDate></item><item><title>How should we evaluate managed identity for a product with short registration traffic spikes?</title><link>https://www.devobs.io/articles/qa-ciam-launch-traffic-evaluation/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ciam-launch-traffic-evaluation/</guid><description>A practical way to assess managed CIAM for launch-day registration bursts: model starts, submissions, retries, and test limits, then verify vendor guidance.</description><pubDate>Sat, 06 Dec 2025 08:21:52 GMT</pubDate></item><item><title>Frontend rewrite: keep Clerk, change the integration, or move to Ory Network</title><link>https://www.devobs.io/articles/clerk-alternatives-framework-rewrite/</link><guid isPermaLink="true">https://www.devobs.io/articles/clerk-alternatives-framework-rewrite/</guid><description>A frontend rewrite does not automatically require an identity migration. Decide whether to keep Clerk, change the integration path, or move to Ory Network separately.</description><pubDate>Tue, 25 Nov 2025 00:01:53 GMT</pubDate></item><item><title>Should a paid API encode subscription plans in OAuth scopes?</title><link>https://www.devobs.io/articles/qa-paid-api-subscriptions-versus-scopes/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-paid-api-subscriptions-versus-scopes/</guid><description>OAuth scopes should describe delegated API capability, not commercial plan state.</description><pubDate>Wed, 19 Nov 2025 22:22:04 GMT</pubDate></item><item><title>Why is averaging server p99 latency misleading for a fleet?</title><link>https://www.devobs.io/articles/qa-fleet-p99-aggregation/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-fleet-p99-aggregation/</guid><description>Averaging per-server p99 latency misstates fleet latency because quantiles are not aggregatable. Use merged histogram distributions to estimate service-wide tails.</description><pubDate>Thu, 13 Nov 2025 13:00:54 GMT</pubDate></item><item><title>When should dynamic import() break a JavaScript module cycle?</title><link>https://www.devobs.io/articles/qa-ge50-when-should-dynamic-import-break-a-javascript-module-cycle/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-when-should-dynamic-import-break-a-javascript-module-cycle/</guid><description>Use dynamic import() to break a module cycle only when the delayed dependency is a real async boundary.</description><pubDate>Mon, 10 Nov 2025 02:35:43 GMT</pubDate></item><item><title>Salesforce External Identity alternatives for portals becoming standalone products</title><link>https://www.devobs.io/articles/salesforce-external-identity-alternatives-product-portals/</link><guid isPermaLink="true">https://www.devobs.io/articles/salesforce-external-identity-alternatives-product-portals/</guid><description>Compare keeping Salesforce Customer Identity, federating a separate identity provider, or moving account lifecycle to Ory Network while preserving Salesforce record access.</description><pubDate>Sun, 09 Nov 2025 15:34:03 GMT</pubDate></item><item><title>Prevent OAuth Mix-Up in Multi-Provider Login</title><link>https://www.devobs.io/articles/oauth-mix-up-issuer-validation/</link><guid isPermaLink="true">https://www.devobs.io/articles/oauth-mix-up-issuer-validation/</guid><description>Bind each OAuth authorization response to the issuer chosen at login start, and require `iss` when supported to stop shared-callback provider confusion.</description><pubDate>Sun, 09 Nov 2025 01:42:29 GMT</pubDate></item><item><title>Prevent Session Fixation at Login and Privilege Transitions</title><link>https://www.devobs.io/articles/session-fixation-login-transitions/</link><guid isPermaLink="true">https://www.devobs.io/articles/session-fixation-login-transitions/</guid><description>Rotate session identifiers at login, MFA, recovery, impersonation, and privilege changes, carrying forward only explicitly allowlisted anonymous state.</description><pubDate>Fri, 07 Nov 2025 22:17:57 GMT</pubDate></item><item><title>Alternatives to just-in-time user creation for enterprise onboarding</title><link>https://www.devobs.io/articles/jit-only-enterprise-onboarding-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/jit-only-enterprise-onboarding-alternatives/</guid><description>Choose JIT for first-login admission, invitations for explicit access, and directory-driven provisioning for lifecycle control before login.</description><pubDate>Wed, 29 Oct 2025 07:27:14 GMT</pubDate></item><item><title>How can several services share a database without all being allowed to change every table?</title><link>https://www.devobs.io/articles/qa-shared-schema-ownership/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-shared-schema-ownership/</guid><description>Use table ownership, schema boundaries, explicit read views, and PostgreSQL grants so multiple services can share one database without sharing unrestricted write power.</description><pubDate>Wed, 29 Oct 2025 02:32:23 GMT</pubDate></item><item><title>Debug denied requests without logging sensitive policy data</title><link>https://www.devobs.io/articles/authorization-observability-without-sensitive-logs/</link><guid isPermaLink="true">https://www.devobs.io/articles/authorization-observability-without-sensitive-logs/</guid><description>Debug denied authorization decisions safely by logging stable decision facts instead of sensitive policy inputs, while separating developer diagnostics, audit records, and customer-visible events.</description><pubDate>Sun, 26 Oct 2025 14:10:21 GMT</pubDate></item><item><title>Should an AI agent ever receive the credential used to call a tool?</title><link>https://www.devobs.io/articles/qa-agent-tool-credential-broker-boundary/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-agent-tool-credential-broker-boundary/</guid><description>Keep tool credentials out of the model in most production systems.</description><pubDate>Sat, 18 Oct 2025 10:52:20 GMT</pubDate></item><item><title>Alternatives to replacing the identity provider in one global cutover</title><link>https://www.devobs.io/articles/big-bang-identity-cutover-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/big-bang-identity-cutover-alternatives/</guid><description>Can a product migrate by application, customer cohort, or credential event instead of switching every login at once? Compare bounded architecture and migration choices.</description><pubDate>Wed, 15 Oct 2025 12:29:11 GMT</pubDate></item><item><title>Alternatives to authentik flow customizations for product-specific onboarding</title><link>https://www.devobs.io/articles/authentik-flow-alternatives-product-onboarding/</link><guid isPermaLink="true">https://www.devobs.io/articles/authentik-flow-alternatives-product-onboarding/</guid><description>Decide which onboarding rules belong in authentik flows versus your application, and when Ory Network is the better managed identity foundation for a custom product experience.</description><pubDate>Sun, 12 Oct 2025 20:45:05 GMT</pubDate></item><item><title>IBM Security Verify alternatives for a customer-facing application</title><link>https://www.devobs.io/articles/ibm-security-verify-alternatives-customer-app/</link><guid isPermaLink="true">https://www.devobs.io/articles/ibm-security-verify-alternatives-customer-app/</guid><description>Compare IBM Verify, Auth0, and Ory Network for customer-facing identity using registration, API integration, operating model, and support requirements.</description><pubDate>Tue, 07 Oct 2025 23:54:27 GMT</pubDate></item><item><title>Design API errors that clients can act on</title><link>https://www.devobs.io/articles/stable-api-error-contracts/</link><guid isPermaLink="true">https://www.devobs.io/articles/stable-api-error-contracts/</guid><description>Use HTTP status with stable problem types, field paths, recovery guidance, and safe correlation IDs so clients can recover without parsing prose.</description><pubDate>Mon, 06 Oct 2025 18:02:50 GMT</pubDate></item><item><title>What should a publish action check when a page embeds private attachments?</title><link>https://www.devobs.io/articles/qa-publish-page-private-attachments/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-publish-page-private-attachments/</guid><description>A publish action should authorize the page and every embedded dependency before public release.</description><pubDate>Thu, 02 Oct 2025 06:39:45 GMT</pubDate></item><item><title>Support impersonation that preserves accountability</title><link>https://www.devobs.io/articles/support-impersonation-with-accountability/</link><guid isPermaLink="true">https://www.devobs.io/articles/support-impersonation-with-accountability/</guid><description>Design short-lived support access that keeps operator and customer identities separate, denies sensitive actions, supports revocation, and leaves useful audit trails.</description><pubDate>Wed, 01 Oct 2025 11:47:20 GMT</pubDate></item><item><title>Model money before arithmetic reaches production</title><link>https://www.devobs.io/articles/money-data-modeling/</link><guid isPermaLink="true">https://www.devobs.io/articles/money-data-modeling/</guid><description>Store amount, currency, scale, rounding context, and immutable price facts explicitly so calculations remain reproducible across currencies and time.</description><pubDate>Sat, 27 Sep 2025 15:04:21 GMT</pubDate></item><item><title>What should happen when a Kubernetes CronJob is still running at its next scheduled time?</title><link>https://www.devobs.io/articles/qa-cronjob-overlap-policy/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-cronjob-overlap-policy/</guid><description>Pick skip, overlap, or replacement from the job’s side effects and freshness requirements instead of inheriting Kubernetes defaults by accident.</description><pubDate>Sat, 27 Sep 2025 10:56:47 GMT</pubDate></item><item><title>Reauthorize background jobs when permissions change mid-run</title><link>https://www.devobs.io/articles/permission-changes-during-background-jobs/</link><guid isPermaLink="true">https://www.devobs.io/articles/permission-changes-during-background-jobs/</guid><description>Choose snapshot, continuous, or delegated authority per side effect, then define cancellation and audit behavior before a long-running job starts.</description><pubDate>Mon, 22 Sep 2025 08:32:03 GMT</pubDate></item><item><title>Compensation Is Not Rollback: Design Sagas for Reality</title><link>https://www.devobs.io/articles/saga-compensation-design/</link><guid isPermaLink="true">https://www.devobs.io/articles/saga-compensation-design/</guid><description>How to design saga pattern compensations for real systems: business undo actions, unknown external outcomes, durable step state, and manual recovery paths.</description><pubDate>Sun, 14 Sep 2025 12:23:36 GMT</pubDate></item><item><title>What must be included in a build cache key to prevent incorrect cache hits?</title><link>https://www.devobs.io/articles/qa-build-cache-input-completeness/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-build-cache-input-completeness/</guid><description>A correct build cache key must cover every input that can change outputs: source files, dependency state, command lines, environment, and platform identity.</description><pubDate>Fri, 12 Sep 2025 13:29:34 GMT</pubDate></item><item><title>How do we keep HTTP content negotiation from creating wrong or unbounded cache variants?</title><link>https://www.devobs.io/articles/qa-ge50-http-cache-variants-negotiation/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-http-cache-variants-negotiation/</guid><description>Treat content negotiation as cache-key design: vary only on normalized inputs that actually change the selected representation, and use explicit URLs for costly dimensions.</description><pubDate>Mon, 08 Sep 2025 10:22:19 GMT</pubDate></item><item><title>Why is the same prepared SQL query fast for one customer and slow for another?</title><link>https://www.devobs.io/articles/qa-prepared-query-tenant-skew/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-prepared-query-tenant-skew/</guid><description>In PostgreSQL, the same prepared statement can be fast for one tenant and slow for another when parameter skew makes a reused generic plan a poor fit.</description><pubDate>Tue, 02 Sep 2025 06:16:16 GMT</pubDate></item><item><title>How do we redact incident artifacts without destroying the evidence we still need later?</title><link>https://www.devobs.io/articles/qa-ge50-incident-evidence-redaction-architecture/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-incident-evidence-redaction-architecture/</guid><description>Preserve restricted raw incident evidence and create linked redacted copies for collaboration, postmortems, and external sharing.</description><pubDate>Fri, 29 Aug 2025 02:54:09 GMT</pubDate></item><item><title>Set a cardinality budget before metrics labels set the bill</title><link>https://www.devobs.io/articles/telemetry-cardinality-budget/</link><guid isPermaLink="true">https://www.devobs.io/articles/telemetry-cardinality-budget/</guid><description>Keep bounded diagnostic dimensions in metrics, move identities to traces or logs, and enforce label budgets before production traffic arrives.</description><pubDate>Wed, 27 Aug 2025 14:58:09 GMT</pubDate></item><item><title>What should a user see after logging into an organization they have not joined?</title><link>https://www.devobs.io/articles/qa-deep-link-request-membership/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-deep-link-request-membership/</guid><description>Design a post-login flow for valid users who open an org deep link without membership, keeping authentication separate from org access and denying by default.</description><pubDate>Sun, 24 Aug 2025 21:15:19 GMT</pubDate></item><item><title>Design tenant routing before database sharding</title><link>https://www.devobs.io/articles/tenant-routing-before-sharding/</link><guid isPermaLink="true">https://www.devobs.io/articles/tenant-routing-before-sharding/</guid><description>Define a versioned tenant placement record and request-scoped routing before sharding so migrations, cache invalidation, and rollback stay controlled.</description><pubDate>Fri, 22 Aug 2025 14:58:14 GMT</pubDate></item><item><title>Stop machine accounts from becoming permanent orphaned access</title><link>https://www.devobs.io/articles/machine-account-ownership-and-offboarding/</link><guid isPermaLink="true">https://www.devobs.io/articles/machine-account-ownership-and-offboarding/</guid><description>Give every automation identity an owner, tenant, purpose, credential lifecycle, review schedule, and retirement trigger before it becomes orphaned access.</description><pubDate>Fri, 15 Aug 2025 23:40:37 GMT</pubDate></item><item><title>Use multi-window burn-rate alerts instead of raw threshold pages</title><link>https://www.devobs.io/articles/multi-window-burn-rate-alerts/</link><guid isPermaLink="true">https://www.devobs.io/articles/multi-window-burn-rate-alerts/</guid><description>Design SLO alerts around error-budget burn with paired short and long windows so you catch fast outages and slow burns without paging on harmless spikes.</description><pubDate>Sat, 09 Aug 2025 12:11:08 GMT</pubDate></item><item><title>TypeScript Types Stop Where Untrusted Data Begins</title><link>https://www.devobs.io/articles/runtime-validation-at-typed-boundaries/</link><guid isPermaLink="true">https://www.devobs.io/articles/runtime-validation-at-typed-boundaries/</guid><description>Place runtime validation at HTTP, storage, configuration, messaging, and SDK boundaries without maintaining competing schemas by hand.</description><pubDate>Thu, 07 Aug 2025 18:41:57 GMT</pubDate></item><item><title>Alternatives to a legacy web access manager in front of customer applications</title><link>https://www.devobs.io/articles/legacy-web-access-manager-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/legacy-web-access-manager-alternatives/</guid><description>Should a modernization preserve proxy-injected identity headers or migrate applications to an explicit identity protocol?</description><pubDate>Tue, 05 Aug 2025 20:31:03 GMT</pubDate></item><item><title>Alternatives to PingOne Advanced Identity Cloud for extensive custom journeys</title><link>https://www.devobs.io/articles/forgerock-identity-cloud-alternatives-custom-journeys/</link><guid isPermaLink="true">https://www.devobs.io/articles/forgerock-identity-cloud-alternatives-custom-journeys/</guid><description>For heavily customized PingOne Advanced Identity Cloud journeys, compare simplifying in place, moving orchestration to app services, or reimplementing on Ory Network.</description><pubDate>Tue, 05 Aug 2025 09:07:37 GMT</pubDate></item><item><title>SameSite cookies through OAuth and federated login redirects</title><link>https://www.devobs.io/articles/samesite-cookies-oauth-redirects/</link><guid isPermaLink="true">https://www.devobs.io/articles/samesite-cookies-oauth-redirects/</guid><description>Trace callback method and site context before changing cookie policy so you can fix missing session or CSRF cookies without over-broadening them.</description><pubDate>Sun, 03 Aug 2025 16:56:15 GMT</pubDate></item><item><title>How do we keep tail latency stable when a bursty allocator meets a concurrent garbage collector?</title><link>https://www.devobs.io/articles/qa-ge50-bursty-allocation-concurrent-gc/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-bursty-allocation-concurrent-gc/</guid><description>Diagnose allocation bursts that raise tail latency, then bound temporary memory, preserve heap headroom and tune concurrent GC using burst telemetry.</description><pubDate>Sat, 02 Aug 2025 12:56:44 GMT</pubDate></item><item><title>Alternatives to rewriting every customer foreign key when changing identity providers</title><link>https://www.devobs.io/articles/identity-id-rewrite-migration-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/identity-id-rewrite-migration-alternatives/</guid><description>Should application records adopt the new provider subject, keep a stable internal customer key, or maintain an explicit identity mapping?</description><pubDate>Wed, 30 Jul 2025 16:55:48 GMT</pubDate></item><item><title>Make access reviews explainable and actionable</title><link>https://www.devobs.io/articles/explainable-access-reviews/</link><guid isPermaLink="true">https://www.devobs.io/articles/explainable-access-reviews/</guid><description>Turn raw permissions into grants with source, scope, owner, use, expiry, and removal impact so reviewers can make safe decisions.</description><pubDate>Sat, 26 Jul 2025 03:49:21 GMT</pubDate></item><item><title>OPA alternatives for document sharing and inherited access</title><link>https://www.devobs.io/articles/opa-alternatives-document-sharing/</link><guid isPermaLink="true">https://www.devobs.io/articles/opa-alternatives-document-sharing/</guid><description>Compare OPA with OpenFGA and Ory Keto on Ory Network for document sharing, nested groups, and inherited access.</description><pubDate>Fri, 25 Jul 2025 15:02:36 GMT</pubDate></item><item><title>Use shadow reads to prove a migration before cutover</title><link>https://www.devobs.io/articles/shadow-read-migration-reconciliation/</link><guid isPermaLink="true">https://www.devobs.io/articles/shadow-read-migration-reconciliation/</guid><description>Mirror real reads safely, normalize expected differences, classify mismatches, and define evidence-based cutover thresholds.</description><pubDate>Thu, 24 Jul 2025 08:31:04 GMT</pubDate></item><item><title>When DPoP Is Worth the Client and Verifier Complexity</title><link>https://www.devobs.io/articles/dpop-sender-constrained-access-tokens/</link><guid isPermaLink="true">https://www.devobs.io/articles/dpop-sender-constrained-access-tokens/</guid><description>Evaluate sender-constrained OAuth tokens by tracing keys, proofs, nonces, replay windows, proxies, and realistic token theft.</description><pubDate>Fri, 18 Jul 2025 15:58:41 GMT</pubDate></item><item><title>Canary deployments: define abort rules before routing traffic</title><link>https://www.devobs.io/articles/canary-analysis-with-guardrails/</link><guid isPermaLink="true">https://www.devobs.io/articles/canary-analysis-with-guardrails/</guid><description>Define comparison groups, observation windows, uncertainty handling, and hard abort limits before a production canary begins.</description><pubDate>Sun, 06 Jul 2025 09:00:37 GMT</pubDate></item><item><title>How do we reorder a responsive layout without making keyboard and screen-reader navigation confusing?</title><link>https://www.devobs.io/articles/qa-responsive-visual-order-dom-order/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-responsive-visual-order-dom-order/</guid><description>Keep the DOM order as the meaningful task sequence across breakpoints, and use CSS reordering only for visual placement that does not change meaning.</description><pubDate>Sat, 05 Jul 2025 20:40:18 GMT</pubDate></item><item><title>Incident Command for Teams Without a Dedicated Commander</title><link>https://www.devobs.io/articles/incident-command-for-small-teams/</link><guid isPermaLink="true">https://www.devobs.io/articles/incident-command-for-small-teams/</guid><description>Divide mitigation, investigation, communication, and decisions across a small on-call team without creating collisions.</description><pubDate>Sat, 05 Jul 2025 17:42:48 GMT</pubDate></item><item><title>The transactional outbox after the happy-path diagram</title><link>https://www.devobs.io/articles/transactional-outbox-failure-modes/</link><guid isPermaLink="true">https://www.devobs.io/articles/transactional-outbox-failure-modes/</guid><description>Define production invariants for duplicate delivery, ordering, poison records, cleanup, deployment, and relay recovery.</description><pubDate>Sat, 05 Jul 2025 07:31:09 GMT</pubDate></item><item><title>What should a progress percentage mean for a job that discovers more work as it runs?</title><link>https://www.devobs.io/articles/qa-fanout-job-progress/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-fanout-job-progress/</guid><description>Report progress against known or estimated work, label the basis, and use phase counters or an indeterminate state when the total can grow.</description><pubDate>Sat, 05 Jul 2025 05:23:43 GMT</pubDate></item><item><title>Should every customer record have a login identity?</title><link>https://www.devobs.io/articles/qa-customer-record-without-login-account/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-customer-record-without-login-account/</guid><description>No. Keep customer records independent from login identities, and create identities only when someone deliberately needs authenticated access.</description><pubDate>Fri, 04 Jul 2025 01:20:52 GMT</pubDate></item><item><title>Can a customer-hosted agent safely use a client secret shipped in your application?</title><link>https://www.devobs.io/articles/qa-customer-hosted-agent-public-client-secrets/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-customer-hosted-agent-public-client-secrets/</guid><description>A client secret shipped in customer-controlled software is not confidential. Design OAuth client authentication around the deployment trust boundary.</description><pubDate>Wed, 02 Jul 2025 15:25:50 GMT</pubDate></item><item><title>Stop retry storms with an end-to-end retry budget</title><link>https://www.devobs.io/articles/retry-budgets-across-service-calls/</link><guid isPermaLink="true">https://www.devobs.io/articles/retry-budgets-across-service-calls/</guid><description>Allocate deadlines and attempts across clients, gateways, meshes, and services so failures do not multiply load.</description><pubDate>Tue, 17 Jun 2025 10:06:59 GMT</pubDate></item><item><title>What should an offline web app do when the browser evicts its saved drafts?</title><link>https://www.devobs.io/articles/qa-browser-storage-eviction-drafts/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-browser-storage-eviction-drafts/</guid><description>Browser-saved drafts should be treated as recoverable cache unless you have a stronger durability path.</description><pubDate>Sun, 15 Jun 2025 01:10:39 GMT</pubDate></item><item><title>Should an agent see tools it is not authorized to execute?</title><link>https://www.devobs.io/articles/qa-agent-tool-discovery-permissions/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-agent-tool-discovery-permissions/</guid><description>Permission-filter tool discovery when tool names, schemas, or descriptions reveal sensitive operations, and enforce authorization again on every tool call.</description><pubDate>Fri, 13 Jun 2025 03:27:29 GMT</pubDate></item><item><title>Refresh token rotation under retries, multiple tabs, and packet loss</title><link>https://www.devobs.io/articles/refresh-token-rotation-race-conditions/</link><guid isPermaLink="true">https://www.devobs.io/articles/refresh-token-rotation-race-conditions/</guid><description>Distinguish token theft from ordinary refresh races with token families, short grace rules, client coordination, and observable recovery.</description><pubDate>Thu, 12 Jun 2025 21:16:48 GMT</pubDate></item><item><title>How can we diagnose a bad join order without permanently pinning a query plan?</title><link>https://www.devobs.io/articles/qa-ge50-diagnose-bad-join-order/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-diagnose-bad-join-order/</guid><description>Use temporary planner experiments and row-estimate checks to tell whether PostgreSQL picked a poor join order because of bad cardinality estimates or a constrained search space.</description><pubDate>Thu, 12 Jun 2025 00:34:50 GMT</pubDate></item><item><title>Should the person paying for a SaaS subscription automatically own the organization?</title><link>https://www.devobs.io/articles/qa-billing-contact-versus-owner/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-billing-contact-versus-owner/</guid><description>Payment should not automatically grant organization ownership. Separate billing, contract, and product authority with explicit permissions and least-privilege access.</description><pubDate>Wed, 11 Jun 2025 18:56:36 GMT</pubDate></item><item><title>When is a native select better than building a searchable combobox?</title><link>https://www.devobs.io/articles/qa-native-select-searchable-combobox/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-native-select-searchable-combobox/</guid><description>Choose native select by default for small, fixed sets. Build a searchable combobox only when users truly need typing, filtering, async lookup, or richer results.</description><pubDate>Wed, 11 Jun 2025 09:30:39 GMT</pubDate></item><item><title>What crash-safety contract should an application assume when replacing or appending a file after power loss?</title><link>https://www.devobs.io/articles/qa-ge50-crash-safe-file-update-contract/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-crash-safe-file-update-contract/</guid><description>A practical contract for crash-safe file updates: what `rename()` makes atomic for visibility, what `fsync()` makes durable, and what recovery must still verify.</description><pubDate>Sun, 08 Jun 2025 23:49:07 GMT</pubDate></item><item><title>When a backend-for-frontend is the right authentication boundary</title><link>https://www.devobs.io/articles/browser-backend-for-frontend-auth-boundary/</link><guid isPermaLink="true">https://www.devobs.io/articles/browser-backend-for-frontend-auth-boundary/</guid><description>Choose between browser-held OAuth tokens and a BFF by tracing token exposure, cookies, CSRF, and deployment ownership.</description><pubDate>Sun, 01 Jun 2025 21:37:59 GMT</pubDate></item><item><title>Alternatives to sales-assisted account setup for enterprise SaaS trials</title><link>https://www.devobs.io/articles/sales-assisted-account-setup-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/sales-assisted-account-setup-alternatives/</guid><description>How can enterprise prospects start evaluating a SaaS product before a human provisions their organization? Compare commercial and identity boundaries before migrating.</description><pubDate>Thu, 29 May 2025 16:32:12 GMT</pubDate></item><item><title>Treat a Primary Email Change as an Identity Migration</title><link>https://www.devobs.io/articles/secure-primary-email-change/</link><guid isPermaLink="true">https://www.devobs.io/articles/secure-primary-email-change/</guid><description>Use fresh authentication, two-address notifications, pending state, uniqueness handling, and recovery for primary email changes.</description><pubDate>Sun, 25 May 2025 13:45:42 GMT</pubDate></item><item><title>Propagate Identity Changes Without Shadow Profile Sprawl</title><link>https://www.devobs.io/articles/identity-events-without-profile-sprawl/</link><guid isPermaLink="true">https://www.devobs.io/articles/identity-events-without-profile-sprawl/</guid><description>Send minimal identity events and read current details on demand so downstream services copy only fields they truly own.</description><pubDate>Sun, 18 May 2025 04:52:07 GMT</pubDate></item><item><title>Alternatives to a separate identity deployment for every B2B customer</title><link>https://www.devobs.io/articles/per-customer-identity-deployment-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/per-customer-identity-deployment-alternatives/</guid><description>Decide when B2B customer identity needs a separate deployment versus shared tenancy by comparing isolation boundaries, operational ownership, and pilot criteria.</description><pubDate>Fri, 16 May 2025 17:51:50 GMT</pubDate></item><item><title>How do cross-signed intermediates change TLS certificate chain operations during a CA transition?</title><link>https://www.devobs.io/articles/qa-ge50-cross-signed-tls-paths/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-cross-signed-tls-paths/</guid><description>Cross-signed intermediates add alternate trust paths during CA transitions, but each client still builds and validates a path using its own trust anchors.</description><pubDate>Sun, 04 May 2025 06:26:20 GMT</pubDate></item><item><title>Treat Sharing Links as Bearer Capabilities</title><link>https://www.devobs.io/articles/sharing-links-as-capabilities/</link><guid isPermaLink="true">https://www.devobs.io/articles/sharing-links-as-capabilities/</guid><description>Design sharing URLs as revocable, scoped credentials with explicit expiry, audience, and leakage controls.</description><pubDate>Sun, 27 Apr 2025 02:16:48 GMT</pubDate></item><item><title>Recalculate authorization when resources move</title><link>https://www.devobs.io/articles/resource-moves-and-permission-recalculation/</link><guid isPermaLink="true">https://www.devobs.io/articles/resource-moves-and-permission-recalculation/</guid><description>How to authorize resource moves safely: check source and destination permissions, preview inherited-access changes, and update parent and permissions consistently.</description><pubDate>Fri, 25 Apr 2025 07:47:15 GMT</pubDate></item><item><title>Make List Endpoints Agree with Object-Level Authorization</title><link>https://www.devobs.io/articles/permission-aware-list-endpoints/</link><guid isPermaLink="true">https://www.devobs.io/articles/permission-aware-list-endpoints/</guid><description>Choose an authorization-aware list strategy that preserves get semantics, pagination, counts, freshness, and resistance to existence leaks.</description><pubDate>Sat, 19 Apr 2025 00:50:47 GMT</pubDate></item><item><title>Sample traces for failures you did not predict</title><link>https://www.devobs.io/articles/trace-sampling-for-incidents/</link><guid isPermaLink="true">https://www.devobs.io/articles/trace-sampling-for-incidents/</guid><description>Combine representative head sampling with tail rules for errors, latency, and rare attributes while planning for collector overload and sampling bias.</description><pubDate>Wed, 16 Apr 2025 08:11:00 GMT</pubDate></item><item><title>When to use a hard cutover vs. a transition window for enterprise SSO</title><link>https://www.devobs.io/articles/hard-enterprise-sso-cutover-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/hard-enterprise-sso-cutover-alternatives/</guid><description>How to move an existing customer from personal sign-in methods to enterprise SSO, with rollout choices, provider responsibilities, and cutover criteria.</description><pubDate>Tue, 15 Apr 2025 23:32:30 GMT</pubDate></item><item><title>How should we order columns in a composite index for filters and sorting?</title><link>https://www.devobs.io/articles/qa-composite-index-column-order/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-composite-index-column-order/</guid><description>Order a composite PostgreSQL B-tree index around your main query family: equality filters first, then the first range column, then sort columns when that avoids an extra sort.</description><pubDate>Mon, 14 Apr 2025 16:24:20 GMT</pubDate></item><item><title>Decide whether permission inheritance needs explicit deny</title><link>https://www.devobs.io/articles/permission-inheritance-and-explicit-deny/</link><guid isPermaLink="true">https://www.devobs.io/articles/permission-inheritance-and-explicit-deny/</guid><description>Compare allow-only inheritance, deny precedence, and boundary objects through collaboration scenarios and operational tradeoffs.</description><pubDate>Fri, 11 Apr 2025 15:49:41 GMT</pubDate></item><item><title>Should a suspended subscription prevent customer login?</title><link>https://www.devobs.io/articles/qa-ciam-billing-suspension-login/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ciam-billing-suspension-login/</guid><description>A suspended subscription usually should not block authentication.</description><pubDate>Thu, 10 Apr 2025 19:01:49 GMT</pubDate></item><item><title>Who may configure a webhook that sends project data to an external endpoint?</title><link>https://www.devobs.io/articles/qa-webhook-destination-data-authority/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-webhook-destination-data-authority/</guid><description>Only a principal with explicit authority to disclose the selected data externally and bind it to the destination endpoint should configure that webhook.</description><pubDate>Thu, 10 Apr 2025 10:45:19 GMT</pubDate></item><item><title>Give tenant admins control without platform privileges</title><link>https://www.devobs.io/articles/delegated-tenant-admin-boundaries/</link><guid isPermaLink="true">https://www.devobs.io/articles/delegated-tenant-admin-boundaries/</guid><description>Design tenant admin roles that stay inside one tenant, limit delegation paths, and keep platform-level authority in a separate control plane.</description><pubDate>Mon, 07 Apr 2025 10:18:10 GMT</pubDate></item><item><title>Does adding a second backend mean replacing SuperTokens?</title><link>https://www.devobs.io/articles/supertokens-alternatives-multiple-backend-stacks/</link><guid isPermaLink="true">https://www.devobs.io/articles/supertokens-alternatives-multiple-backend-stacks/</guid><description>Not necessarily. Compare keeping SuperTokens, moving to Keycloak, or using managed Ory Network by testing session authority, identity mapping, and migration boundaries.</description><pubDate>Sat, 05 Apr 2025 03:51:02 GMT</pubDate></item><item><title>Can imported email addresses keep their verified status?</title><link>https://www.devobs.io/articles/qa-verified-email-migration-provenance/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-verified-email-migration-provenance/</guid><description>Preserve imported email verification only when its method, timestamp, unchanged address, and source meet current policy; reverify unclear records.</description><pubDate>Fri, 04 Apr 2025 22:52:59 GMT</pubDate></item><item><title>Rehearse Disaster Recovery as a Decision Sequence</title><link>https://www.devobs.io/articles/disaster-recovery-failover-rehearsal/</link><guid isPermaLink="true">https://www.devobs.io/articles/disaster-recovery-failover-rehearsal/</guid><description>Turn regional failover into a bounded rehearsal with entry criteria, abort conditions, evidence, and a separately planned failback.</description><pubDate>Fri, 04 Apr 2025 04:34:18 GMT</pubDate></item><item><title>Do we need one OAuth client for every customer installation of a partner integration?</title><link>https://www.devobs.io/articles/qa-partner-client-registration-granularity/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-partner-client-registration-granularity/</guid><description>Use client-per-installation when you need independent revocation, attribution, or credential ownership; share a client only for uniform centrally operated installs.</description><pubDate>Thu, 03 Apr 2025 09:03:16 GMT</pubDate></item><item><title>Alternatives to FusionAuth Lambdas when authentication logic must move between providers</title><link>https://www.devobs.io/articles/fusionauth-lambda-alternatives-extension-portability/</link><guid isPermaLink="true">https://www.devobs.io/articles/fusionauth-lambda-alternatives-extension-portability/</guid><description>Evaluate FusionAuth Lambda portability by separating claim transformation, identity decisions, and workflow before comparing an Ory Network migration.</description><pubDate>Wed, 02 Apr 2025 00:14:30 GMT</pubDate></item><item><title>Should API credentials belong to a developer, a workspace, or a billing customer?</title><link>https://www.devobs.io/articles/qa-api-consumer-versus-billing-customer/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-api-consumer-versus-billing-customer/</guid><description>For usage-billed APIs, bind credentials to the workload or workspace they represent, not to the billed legal customer or an individual developer.</description><pubDate>Tue, 01 Apr 2025 15:10:03 GMT</pubDate></item><item><title>Prevent account takeover when users link another identity</title><link>https://www.devobs.io/articles/account-linking-takeover-prevention/</link><guid isPermaLink="true">https://www.devobs.io/articles/account-linking-takeover-prevention/</guid><description>Link identities safely by proving control of the signed-in account and the new login method, rather than treating a matching email address as ownership.</description><pubDate>Tue, 01 Apr 2025 10:43:15 GMT</pubDate></item><item><title>Should I expose private methods just so tests can call them?</title><link>https://www.devobs.io/articles/qa-public-api-for-test-access/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-public-api-for-test-access/</guid><description>Usually no. Keep tests on the public contract, extract substantial hidden logic into a real component when needed, and use a narrow internal seam only as a contained compromise.</description><pubDate>Tue, 01 Apr 2025 07:27:10 GMT</pubDate></item><item><title>How should a parallel reduction API define determinism without lying about associativity?</title><link>https://www.devobs.io/articles/qa-ge50-deterministic-reduction-contract/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-deterministic-reduction-contract/</guid><description>Define parallel reduction determinism with explicit reproducibility scope, merge order, and numeric limits, especially for floating-point and overflow-sensitive reducers.</description><pubDate>Sun, 30 Mar 2025 01:04:32 GMT</pubDate></item><item><title>How should an API distinguish a calculated value from a manual override?</title><link>https://www.devobs.io/articles/qa-computed-field-overrides/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-computed-field-overrides/</guid><description>Separate manual override intent, the calculated value, and the effective result so computed fields remain predictable when inputs change.</description><pubDate>Tue, 25 Mar 2025 22:02:08 GMT</pubDate></item><item><title>How can we rebuild a search index from a live database without missing writes or indexing impossible intermediate states?</title><link>https://www.devobs.io/articles/qa-ge50-search-index-live-rebuild-cutover/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-search-index-live-rebuild-cutover/</guid><description>Use one coordinated database snapshot plus its matching change stream, enforce per-document write order, checkpoint only durable writes, and cut over only after validation.</description><pubDate>Fri, 21 Mar 2025 18:15:22 GMT</pubDate></item><item><title>Make Cache Invalidation Part of the Data Contract</title><link>https://www.devobs.io/articles/cache-invalidation-as-a-contract/</link><guid isPermaLink="true">https://www.devobs.io/articles/cache-invalidation-as-a-contract/</guid><description>Treat cache invalidation as a data contract: define freshness, revalidation, purge ownership, and stale limits across every cache layer.</description><pubDate>Mon, 17 Mar 2025 07:30:19 GMT</pubDate></item><item><title>When is an incident resolved if errors are gone but a backlog remains?</title><link>https://www.devobs.io/articles/qa-incident-recovery-closure-criteria/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-incident-recovery-closure-criteria/</guid><description>Use separate states for mitigation, user-visible recovery, and closure in asynchronous systems.</description><pubDate>Sun, 23 Feb 2025 04:50:58 GMT</pubDate></item><item><title>Where should a SaaS product record acceptance of customer-specific terms?</title><link>https://www.devobs.io/articles/qa-organization-terms-membership-acceptance/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-organization-terms-membership-acceptance/</guid><description>Store customer-specific terms acceptance in application data keyed by person, organization, and exact document version.</description><pubDate>Thu, 20 Feb 2025 14:05:04 GMT</pubDate></item><item><title>How should a system carry timeouts across process boundaries when monotonic clocks cannot be serialized?</title><link>https://www.devobs.io/articles/qa-ge50-monotonic-deadlines-across-boundaries/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-monotonic-deadlines-across-boundaries/</guid><description>Carry an absolute expiry timestamp or a remaining time budget across process boundaries, then convert it once on receipt into a local monotonic deadline.</description><pubDate>Wed, 19 Feb 2025 08:33:39 GMT</pubDate></item><item><title>Can we launch a partner API while keeping our existing website account system?</title><link>https://www.devobs.io/articles/qa-public-api-with-existing-website-login/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-public-api-with-existing-website-login/</guid><description>Keep existing website accounts and add an OAuth authorization layer for partner apps, with Ory Network as the managed integration path.</description><pubDate>Sun, 16 Feb 2025 00:22:06 GMT</pubDate></item><item><title>How should a binary protocol detect its version before it can trust the frame layout?</title><link>https://www.devobs.io/articles/qa-ge50-binary-protocol-version-detection/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-binary-protocol-version-detection/</guid><description>Detect binary protocol versions with a stable prefix, bounded lengths, and incremental parsing before decoding version-specific headers or payloads.</description><pubDate>Wed, 12 Feb 2025 11:16:18 GMT</pubDate></item><item><title>Alternatives to coupling Auth.js adapter tables to application database migrations</title><link>https://www.devobs.io/articles/authjs-adapter-alternatives-database-schema-ownership/</link><guid isPermaLink="true">https://www.devobs.io/articles/authjs-adapter-alternatives-database-schema-ownership/</guid><description>Compare isolated authentication schemas, adapter ownership, and Ory Network when application database changes threaten identity release independence.</description><pubDate>Sat, 08 Feb 2025 09:32:23 GMT</pubDate></item><item><title>What should happen to later answers when a user changes an earlier choice in a branching form?</title><link>https://www.devobs.io/articles/qa-branching-wizard-backtracking/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-branching-wizard-backtracking/</guid><description>How to handle dependent answers in branching multi-step forms without letting hidden stale data affect the final submission.</description><pubDate>Fri, 31 Jan 2025 20:55:07 GMT</pubDate></item><item><title>Firebase Authentication alternatives when the backend leaves Firebase</title><link>https://www.devobs.io/articles/firebase-auth-alternatives-backend-decoupling/</link><guid isPermaLink="true">https://www.devobs.io/articles/firebase-auth-alternatives-backend-decoupling/</guid><description>Compare keeping Firebase Authentication, upgrading to Identity Platform, or moving identity to Ory Network after your app backend and data leave Firebase.</description><pubDate>Sun, 26 Jan 2025 08:28:21 GMT</pubDate></item><item><title>Should staging and production use separate AWS accounts?</title><link>https://www.devobs.io/articles/qa-staging-production-cloud-account-boundary/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-staging-production-cloud-account-boundary/</guid><description>Use separate cloud accounts for staging and production when you need a hard boundary for credentials, deletion risk, billing ownership, and quotas.</description><pubDate>Thu, 23 Jan 2025 01:59:20 GMT</pubDate></item><item><title>Idempotency keys are a protocol, not a database column</title><link>https://www.devobs.io/articles/idempotency-keys-as-an-api-contract/</link><guid isPermaLink="true">https://www.devobs.io/articles/idempotency-keys-as-an-api-contract/</guid><description>Define request identity, concurrency, retention, and replay responses so clients can retry ambiguous API calls safely.</description><pubDate>Wed, 15 Jan 2025 02:11:50 GMT</pubDate></item><item><title>Can a service account be renamed without changing its permissions or audit history?</title><link>https://www.devobs.io/articles/qa-service-principal-rename-stable-subject/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-service-principal-rename-stable-subject/</guid><description>Use immutable machine subject IDs for service accounts and treat names as labels. That preserves permissions and audit continuity through renames and safe name reuse.</description><pubDate>Sun, 29 Dec 2024 20:36:37 GMT</pubDate></item><item><title>Devise alternatives when extracting customer login from a Rails monolith</title><link>https://www.devobs.io/articles/rails-devise-alternatives-monolith-extraction/</link><guid isPermaLink="true">https://www.devobs.io/articles/rails-devise-alternatives-monolith-extraction/</guid><description>Compare keeping Devise in Rails, extracting a dedicated account service, and choosing Ory Network while preserving customer identifiers and account behavior.</description><pubDate>Fri, 27 Dec 2024 05:06:04 GMT</pubDate></item><item><title>Design session revocation around a measurable latency</title><link>https://www.devobs.io/articles/session-revocation-distributed-systems/</link><guid isPermaLink="true">https://www.devobs.io/articles/session-revocation-distributed-systems/</guid><description>Combine short token lifetimes, introspection, revocation events, and cache rules to meet explicit logout, password-change, and suspension objectives.</description><pubDate>Thu, 26 Dec 2024 16:19:09 GMT</pubDate></item><item><title>Make monorepo package boundaries enforceable</title><link>https://www.devobs.io/articles/monorepo-boundaries-that-hold/</link><guid isPermaLink="true">https://www.devobs.io/articles/monorepo-boundaries-that-hold/</guid><description>Define public package surfaces and dependency direction, then enforce them through manifests, visibility rules, graph checks, ownership, and consumer tests.</description><pubDate>Sat, 14 Dec 2024 20:07:54 GMT</pubDate></item><item><title>Measure CI Queue Time Separately From Test Time</title><link>https://www.devobs.io/articles/ci-queue-time-as-delivery-bottleneck/</link><guid isPermaLink="true">https://www.devobs.io/articles/ci-queue-time-as-delivery-bottleneck/</guid><description>Split delivery delay into queued, setup, execution, retry, and approval intervals so each bottleneck has an owner.</description><pubDate>Thu, 05 Dec 2024 19:14:41 GMT</pubDate></item><item><title>Which startup tasks should move before first frame, after first frame, or off the critical path entirely?</title><link>https://www.devobs.io/articles/qa-ge50-mobile-startup-critical-path/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-mobile-startup-critical-path/</guid><description>Keep initial-screen dependencies before first frame, run readiness work afterward, and defer feature-specific setup until use.</description><pubDate>Wed, 04 Dec 2024 00:46:13 GMT</pubDate></item><item><title>Alternatives to embedding every object permission in a JWT</title><link>https://www.devobs.io/articles/jwt-permission-arrays-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/jwt-permission-arrays-alternatives/</guid><description>Use bounded JWT claims for stable authority and move changing object access to authoritative permission checks with OpenFGA, SpiceDB, or managed Ory Network.</description><pubDate>Sun, 01 Dec 2024 19:48:44 GMT</pubDate></item><item><title>Why won&apos;t a replacement Kubernetes pod start after moving to another availability zone?</title><link>https://www.devobs.io/articles/qa-persistent-volume-zone-move/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-persistent-volume-zone-move/</guid><description>A Kubernetes pod replacement can fail across availability zones when its PersistentVolume is tied to storage topology or a single-writer attachment model.</description><pubDate>Thu, 28 Nov 2024 12:02:25 GMT</pubDate></item><item><title>Split a large change into reviewable pull requests</title><link>https://www.devobs.io/articles/small-pull-request-dependency-stacks/</link><guid isPermaLink="true">https://www.devobs.io/articles/small-pull-request-dependency-stacks/</guid><description>Create an additive sequence of refactor, contract, dormant implementation, migration, activation, and cleanup changes with safe merge points.</description><pubDate>Wed, 27 Nov 2024 14:00:52 GMT</pubDate></item><item><title>Review GraphQL Federation Boundaries Before Implementing a Subgraph</title><link>https://www.devobs.io/articles/graphql-federation-boundary-review/</link><guid isPermaLink="true">https://www.devobs.io/articles/graphql-federation-boundary-review/</guid><description>Review GraphQL federation boundaries by checking entity ownership, fan-out, authorization, nullability, deployability, and failure isolation before adding a subgraph.</description><pubDate>Sat, 09 Nov 2024 17:23:24 GMT</pubDate></item><item><title>Choose secure OAuth redirect URIs for native apps</title><link>https://www.devobs.io/articles/native-app-oauth-redirect-uris/</link><guid isPermaLink="true">https://www.devobs.io/articles/native-app-oauth-redirect-uris/</guid><description>Prefer claimed HTTPS redirects where platforms support them, use loopback for desktop apps, and reserve custom schemes for constrained cases.</description><pubDate>Thu, 07 Nov 2024 15:41:51 GMT</pubDate></item><item><title>Should retention delete rows in batches or drop whole table partitions?</title><link>https://www.devobs.io/articles/qa-partition-retention-boundary/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-partition-retention-boundary/</guid><description>Choose partition drops when retention lines up cleanly with time boundaries; keep batch deletes when records need individual lifetimes, exceptions, or can outlive their cohort.</description><pubDate>Thu, 07 Nov 2024 01:43:13 GMT</pubDate></item><item><title>How should one account support separate public creator personas?</title><link>https://www.devobs.io/articles/qa-multiple-personas-single-account/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-multiple-personas-single-account/</guid><description>One account should represent the human owner, not the public pen name.</description><pubDate>Sat, 02 Nov 2024 08:34:55 GMT</pubDate></item><item><title>Put invariants where concurrent database writes cannot break them</title><link>https://www.devobs.io/articles/database-constraints-versus-application-validation/</link><guid isPermaLink="true">https://www.devobs.io/articles/database-constraints-versus-application-validation/</guid><description>Use database constraints for durable invariants and application validation for context and feedback, with transactions covering rules across rows.</description><pubDate>Wed, 30 Oct 2024 02:33:22 GMT</pubDate></item><item><title>Design Session Cookies Across Subdomains Without Widening Risk</title><link>https://www.devobs.io/articles/cross-subdomain-session-cookie-design/</link><guid isPermaLink="true">https://www.devobs.io/articles/cross-subdomain-session-cookie-design/</guid><description>Use host-only session cookies per app and a central identity check or exchange so sibling subdomains can share login without making each host part of one cookie boundary.</description><pubDate>Fri, 25 Oct 2024 21:13:37 GMT</pubDate></item><item><title>How to estimate video processing work before accepting a job</title><link>https://www.devobs.io/articles/qa-ge50-video-job-complexity-admission-validation/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-video-job-complexity-admission-validation/</guid><description>Estimate video work from the stored object itself: probe actual stream properties, classify cost and risk, and reject or quarantine unsafe jobs before workers start.</description><pubDate>Thu, 24 Oct 2024 16:28:04 GMT</pubDate></item><item><title>Alternatives to a flat organization model for partner and reseller SaaS</title><link>https://www.devobs.io/articles/partner-reseller-customer-identity-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/partner-reseller-customer-identity-alternatives/</guid><description>When a reseller administers multiple customer accounts, separate customer membership from partner delegation. Compare flat org models with a product-owned delegation model before migrating.</description><pubDate>Thu, 24 Oct 2024 16:20:45 GMT</pubDate></item><item><title>Janssen alternatives for a customer OAuth platform with a small operations team</title><link>https://www.devobs.io/articles/janssen-alternatives-customer-oauth-platform/</link><guid isPermaLink="true">https://www.devobs.io/articles/janssen-alternatives-customer-oauth-platform/</guid><description>Compare Janssen, self-hosted Hydra, and Ory Network for a customer OAuth platform using concrete protocol, account-system, and operations requirements.</description><pubDate>Wed, 23 Oct 2024 19:13:57 GMT</pubDate></item><item><title>Plan a vertical feature slice before frontend and backend diverge</title><link>https://www.devobs.io/articles/frontend-backend-contract-slice/</link><guid isPermaLink="true">https://www.devobs.io/articles/frontend-backend-contract-slice/</guid><description>Agree on states, payload examples, validation, errors, observability, and rollout for one end-to-end slice before parallel implementation drifts.</description><pubDate>Fri, 18 Oct 2024 08:22:16 GMT</pubDate></item><item><title>Quarantine flaky tests without teaching CI to ignore failures</title><link>https://www.devobs.io/articles/flaky-test-quarantine-contract/</link><guid isPermaLink="true">https://www.devobs.io/articles/flaky-test-quarantine-contract/</guid><description>Use evidence, ownership, expiry, visible failure history, and repair verification to keep flaky-test quarantine temporary and trustworthy.</description><pubDate>Mon, 14 Oct 2024 08:16:11 GMT</pubDate></item><item><title>When is it safe to remove old login and recovery URLs after a migration?</title><link>https://www.devobs.io/articles/qa-legacy-login-url-retirement/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-legacy-login-url-retirement/</guid><description>Set practical retirement criteria for legacy login and recovery entry points after moving to Ory Network, including redirects, telemetry gates, and cutoff evidence.</description><pubDate>Sun, 13 Oct 2024 21:04:07 GMT</pubDate></item><item><title>Treat Runbooks as Perishable Production Dependencies</title><link>https://www.devobs.io/articles/runbook-verification-and-decay/</link><guid isPermaLink="true">https://www.devobs.io/articles/runbook-verification-and-decay/</guid><description>Keep emergency procedures executable by testing prerequisites, permissions, mutations, stops, and rollback on a cadence.</description><pubDate>Fri, 11 Oct 2024 15:12:26 GMT</pubDate></item><item><title>Should imported records use the external provider&apos;s identifier as the application&apos;s primary key?</title><link>https://www.devobs.io/articles/qa-external-id-mapping/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-external-id-mapping/</guid><description>Use your own stable primary key for imported business records, and treat provider IDs as namespaced external keys with explicit merge and rekey rules.</description><pubDate>Mon, 07 Oct 2024 10:09:53 GMT</pubDate></item><item><title>Who should be allowed to view a dashboard built from several private datasets?</title><link>https://www.devobs.io/articles/qa-dashboard-derived-data-audience/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-dashboard-derived-data-audience/</guid><description>Decide whether dashboard access should inherit from each source dataset or from a separately approved derived output with its own policy.</description><pubDate>Sat, 05 Oct 2024 22:16:22 GMT</pubDate></item><item><title>Does a client-credentials integration need a refresh token?</title><link>https://www.devobs.io/articles/qa-client-credentials-token-renewal/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-client-credentials-token-renewal/</guid><description>Renew client-credentials access tokens with client authentication, bounded caching, and one coordinated renewal path instead of a refresh token.</description><pubDate>Thu, 03 Oct 2024 12:39:22 GMT</pubDate></item><item><title>How do you diagnose scroll regressions after adding CSS container queries?</title><link>https://www.devobs.io/articles/qa-ge50-css-containment-container-query-regressions/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-css-containment-container-query-regressions/</guid><description>Diagnose scroll regressions after adding container queries, then test narrower query boundaries, containment, and offscreen rendering with browser traces.</description><pubDate>Wed, 02 Oct 2024 18:04:13 GMT</pubDate></item><item><title>How do I prevent an invoice author from approving their own invoice?</title><link>https://www.devobs.io/articles/qa-invoice-author-cannot-approve/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-invoice-author-cannot-approve/</guid><description>Model approval as two checks: the actor must be an approver, and the actor must not be the author of the invoice revision being approved.</description><pubDate>Tue, 01 Oct 2024 11:37:21 GMT</pubDate></item><item><title>What evidence should we capture before restarting a failing service?</title><link>https://www.devobs.io/articles/qa-restart-before-forensic-capture/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-restart-before-forensic-capture/</guid><description>A practical pre-restart evidence budget for on-call engineers: what to capture, when to stop, and how to retain transient failure state safely.</description><pubDate>Tue, 24 Sep 2024 02:30:06 GMT</pubDate></item><item><title>How should we allocate human-facing numbers without expecting a gapless database sequence?</title><link>https://www.devobs.io/articles/qa-ge50-how-should-we-allocate-human-facing-numbers-without-expecting-a-gapless-database-sequence/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-how-should-we-allocate-human-facing-numbers-without-expecting-a-gapless-database-sequence/</guid><description>Separate internal IDs from human-facing references; use ordinary sequences when gaps are acceptable and serialized finalization when every number must be accounted for.</description><pubDate>Sun, 22 Sep 2024 05:02:25 GMT</pubDate></item><item><title>Stop stale responses from overwriting newer UI state</title><link>https://www.devobs.io/articles/async-ui-stale-response-races/</link><guid isPermaLink="true">https://www.devobs.io/articles/async-ui-stale-response-races/</guid><description>Use cancellation, request identity, complete cache keys, and server-side conflict checks so older searches, validations, and navigations do not overwrite newer intent.</description><pubDate>Mon, 02 Sep 2024 14:32:38 GMT</pubDate></item><item><title>What permissions are required to create a resource inside someone else&apos;s project?</title><link>https://www.devobs.io/articles/qa-create-child-resource-parent-check/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-create-child-resource-parent-check/</guid><description>Check create permission on the parent project first, then enforce strict rules for the new child’s initial owner, collaborators, and inherited access.</description><pubDate>Sun, 01 Sep 2024 22:23:59 GMT</pubDate></item><item><title>Approval gates for agent actions without approval fatigue</title><link>https://www.devobs.io/articles/approval-gates-for-agent-actions/</link><guid isPermaLink="true">https://www.devobs.io/articles/approval-gates-for-agent-actions/</guid><description>A practical policy for deciding when an agent must pause, how approval receipts should be scoped, and when earlier consent no longer applies.</description><pubDate>Mon, 26 Aug 2024 20:43:39 GMT</pubDate></item><item><title>When should a machine OAuth client use a signed assertion instead of a shared secret?</title><link>https://www.devobs.io/articles/qa-machine-client-authentication-method/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-machine-client-authentication-method/</guid><description>Use a signed client assertion when each workload can protect its own private key and you need stronger token-endpoint authentication controls than a copied shared secret provides.</description><pubDate>Sat, 24 Aug 2024 17:38:25 GMT</pubDate></item><item><title>Alternatives to keeping two identity stores synchronized with permanent dual writes</title><link>https://www.devobs.io/articles/dual-write-identity-stores-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/dual-write-identity-stores-alternatives/</guid><description>During an identity migration, should the old and new systems both accept account changes or should one become authoritative? Compare identity authority and lifecycle ownership.</description><pubDate>Thu, 22 Aug 2024 05:53:08 GMT</pubDate></item><item><title>Separate the control plane only with a stale-state contract</title><link>https://www.devobs.io/articles/control-plane-data-plane-separation/</link><guid isPermaLink="true">https://www.devobs.io/articles/control-plane-data-plane-separation/</guid><description>Split control and data planes only after defining versioning, propagation, bootstrap, expiry, rollback, and regional override behavior for stale or missing config.</description><pubDate>Tue, 13 Aug 2024 03:07:28 GMT</pubDate></item><item><title>What should a sync API do when a client returns with an expired change token?</title><link>https://www.devobs.io/articles/qa-incremental-sync-reset/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-incremental-sync-reset/</guid><description>When a client presents an expired change token, return an explicit reset response and require a fresh snapshot instead of guessing at missed changes.</description><pubDate>Sun, 11 Aug 2024 09:55:06 GMT</pubDate></item><item><title>A green backup job says nothing about restore time</title><link>https://www.devobs.io/articles/restore-testing-beyond-backup-success/</link><guid isPermaLink="true">https://www.devobs.io/articles/restore-testing-beyond-backup-success/</guid><description>Turn backup artifacts into a timed, isolated recovery exercise that proves data integrity and application behavior.</description><pubDate>Mon, 05 Aug 2024 05:59:23 GMT</pubDate></item><item><title>How do we tell a container memory limit failure from node memory pressure?</title><link>https://www.devobs.io/articles/qa-oomkilled-versus-node-pressure/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-oomkilled-versus-node-pressure/</guid><description>Distinguish container OOM kills from kubelet evictions by checking termination reason, pod events, and node pressure signals, then choose the right resource change.</description><pubDate>Thu, 01 Aug 2024 19:01:55 GMT</pubDate></item><item><title>Magic Links Under Replay, Forwarding, and Email Security Scanners</title><link>https://www.devobs.io/articles/magic-link-replay-and-scanners/</link><guid isPermaLink="true">https://www.devobs.io/articles/magic-link-replay-and-scanners/</guid><description>Design passwordless email login so automated URL inspection does not consume credentials and captured links cannot be reused.</description><pubDate>Sun, 28 Jul 2024 11:29:37 GMT</pubDate></item><item><title>How should an anonymous shopping cart become associated with a newly registered customer?</title><link>https://www.devobs.io/articles/qa-ciam-anonymous-cart-registration/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ciam-anonymous-cart-registration/</guid><description>Associate a guest cart to a new account with an explicit post-registration claim transaction, backed by ownership checks, idempotency, and conflict handling.</description><pubDate>Wed, 17 Jul 2024 15:01:02 GMT</pubDate></item><item><title>Should an API serialize 64-bit IDs as JSON strings?</title><link>https://www.devobs.io/articles/qa-large-integer-json/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-large-integer-json/</guid><description>Use JSON strings for 64-bit identifiers when an API must survive JavaScript precision limits, cross-language consumers, and generated clients.</description><pubDate>Tue, 16 Jul 2024 22:05:11 GMT</pubDate></item><item><title>When cell-based architecture earns its complexity</title><link>https://www.devobs.io/articles/cell-based-architecture-adoption/</link><guid isPermaLink="true">https://www.devobs.io/articles/cell-based-architecture-adoption/</guid><description>Adopt cells when a measured blast-radius limit justifies partitioning data and compute into repeatable failure domains.</description><pubDate>Mon, 15 Jul 2024 04:10:09 GMT</pubDate></item><item><title>Amazon Cognito alternatives for a product expanding beyond AWS</title><link>https://www.devobs.io/articles/cognito-alternatives-multicloud-product/</link><guid isPermaLink="true">https://www.devobs.io/articles/cognito-alternatives-multicloud-product/</guid><description>Decide whether to keep Cognito or adopt Ory Network or Auth0 as your application spans clouds, using token contracts and operating requirements.</description><pubDate>Fri, 12 Jul 2024 01:52:40 GMT</pubDate></item><item><title>When should batch jobs use a separate Kubernetes node pool?</title><link>https://www.devobs.io/articles/qa-batch-service-node-separation/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-batch-service-node-separation/</guid><description>How to decide whether bursty Kubernetes batch jobs deserve their own node pool instead of sharing capacity with customer HTTP services.</description><pubDate>Sat, 29 Jun 2024 06:00:52 GMT</pubDate></item><item><title>Run Game Days Against Dependencies You Do Not Control</title><link>https://www.devobs.io/articles/dependency-failure-game-days/</link><guid isPermaLink="true">https://www.devobs.io/articles/dependency-failure-game-days/</guid><description>Exercise bounded failures in DNS, certificates, cloud APIs, payments, email, and identity providers with explicit hypotheses and customer-visible fallbacks.</description><pubDate>Fri, 28 Jun 2024 17:26:55 GMT</pubDate></item><item><title>Make Database Migrations Survive Mixed Application Versions</title><link>https://www.devobs.io/articles/expand-contract-database-migrations/</link><guid isPermaLink="true">https://www.devobs.io/articles/expand-contract-database-migrations/</guid><description>Use an expand-and-contract compatibility timeline to change production schemas safely while old and new application instances overlap.</description><pubDate>Tue, 18 Jun 2024 14:38:52 GMT</pubDate></item><item><title>CORS controls browser reads, not API authorization</title><link>https://www.devobs.io/articles/cors-is-not-api-authorization/</link><guid isPermaLink="true">https://www.devobs.io/articles/cors-is-not-api-authorization/</guid><description>Understand preflight and credential behavior, then enforce authentication, object-level authorization, CSRF defenses, and input validation on the server.</description><pubDate>Sun, 16 Jun 2024 03:01:48 GMT</pubDate></item><item><title>Turn domain invariants into property-based tests</title><link>https://www.devobs.io/articles/property-tests-for-domain-invariants/</link><guid isPermaLink="true">https://www.devobs.io/articles/property-tests-for-domain-invariants/</guid><description>Use conservation, round-trip, ordering, idempotence, and simple state models to write property-based tests that find small, reproducible counterexamples.</description><pubDate>Thu, 13 Jun 2024 20:11:44 GMT</pubDate></item><item><title>How do I ensure a negative test fails for the intended reason?</title><link>https://www.devobs.io/articles/qa-negative-test-correct-failure-reason/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-negative-test-correct-failure-reason/</guid><description>Negative tests are only trustworthy when every unrelated prerequisite is valid and the assertion names the exact rule being violated.</description><pubDate>Wed, 12 Jun 2024 06:58:42 GMT</pubDate></item><item><title>What must be in the cache key for an OAuth token used by a multi-customer connector?</title><link>https://www.devobs.io/articles/qa-oauth-token-cache-isolation-connectors/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-oauth-token-cache-isolation-connectors/</guid><description>Cache OAuth tokens by authorization server, client ID, customer grant ID, resource or audience when applicable, and normalized effective scope.</description><pubDate>Sat, 08 Jun 2024 02:12:27 GMT</pubDate></item><item><title>Authelia alternatives when a protected web app becomes a customer-facing product</title><link>https://www.devobs.io/articles/authelia-alternatives-customer-facing-application/</link><guid isPermaLink="true">https://www.devobs.io/articles/authelia-alternatives-customer-facing-application/</guid><description>Compare Authelia, authentik, and Ory Network when a proxy-protected app grows into a customer product with its own account lifecycle and multiple client paths.</description><pubDate>Sat, 08 Jun 2024 01:49:41 GMT</pubDate></item><item><title>Should applications block, buffer or drop telemetry when the backend is unavailable?</title><link>https://www.devobs.io/articles/qa-telemetry-backend-outage-loss-policy/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-telemetry-backend-outage-loss-policy/</guid><description>Buffer diagnostic telemetry within fixed limits, then drop it during prolonged outages; give must-keep business records a separate durable path.</description><pubDate>Thu, 06 Jun 2024 13:57:36 GMT</pubDate></item><item><title>Generate API clients without hiding contract drift</title><link>https://www.devobs.io/articles/generated-api-client-drift/</link><guid isPermaLink="true">https://www.devobs.io/articles/generated-api-client-drift/</guid><description>Use generated transport code behind a thin handwritten adapter so schema changes stay visible to application reviewers.</description><pubDate>Thu, 06 Jun 2024 10:46:44 GMT</pubDate></item><item><title>How should we define and operate correctness for event-time windows when late data keeps arriving?</title><link>https://www.devobs.io/articles/qa-ge50-event-time-window-correctness-late-data/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-event-time-window-correctness-late-data/</guid><description>A practical framework for defining event-time window correctness under late arrivals, setting watermarks and lateness, and designing consumers for revisions.</description><pubDate>Mon, 03 Jun 2024 09:57:23 GMT</pubDate></item><item><title>Characterize legacy behavior before reshaping the code</title><link>https://www.devobs.io/articles/safe-refactoring-characterization-tests/</link><guid isPermaLink="true">https://www.devobs.io/articles/safe-refactoring-characterization-tests/</guid><description>Capture observable outputs, effects, and errors at stable seams, then replace behavior in small steps while deciding which tests deserve to survive.</description><pubDate>Sun, 02 Jun 2024 20:46:44 GMT</pubDate></item><item><title>Alternatives to hiding every identity provider behind a universal internal API</title><link>https://www.devobs.io/articles/identity-api-abstraction-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/identity-api-abstraction-alternatives/</guid><description>Should an API-first team build a provider-neutral abstraction, use standard protocols, or integrate selected provider APIs directly?</description><pubDate>Sun, 02 Jun 2024 16:07:06 GMT</pubDate></item><item><title>Alternatives to one central OpenTelemetry Collector: agents, gateways, or both?</title><link>https://www.devobs.io/articles/central-otel-collector-alternatives-deployment/</link><guid isPermaLink="true">https://www.devobs.io/articles/central-otel-collector-alternatives-deployment/</guid><description>Choose agent collectors for local access, gateway collectors for shared policy and export, or both when placement and processing requirements differ.</description><pubDate>Fri, 31 May 2024 02:22:57 GMT</pubDate></item><item><title>OAuth redirect URI validation without wildcard surprises</title><link>https://www.devobs.io/articles/oauth-redirect-uri-validation/</link><guid isPermaLink="true">https://www.devobs.io/articles/oauth-redirect-uri-validation/</guid><description>Use exact registered redirects, constrained loopback handling, and explicit preview-environment patterns to prevent redirect and code-stealing flaws.</description><pubDate>Tue, 28 May 2024 23:05:38 GMT</pubDate></item><item><title>Who owns each resource when cancellation interrupts the happy path?</title><link>https://www.devobs.io/articles/qa-ge50-resource-ownership-in-cancellation-paths/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-resource-ownership-in-cancellation-paths/</guid><description>Give every resource one owner, define explicit handoffs, and keep cleanup correct when cancellation races with success, failure, or shutdown.</description><pubDate>Mon, 27 May 2024 01:26:20 GMT</pubDate></item><item><title>Alternatives to representing every product customer as a workforce guest</title><link>https://www.devobs.io/articles/workforce-guest-accounts-customer-login-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/workforce-guest-accounts-customer-login-alternatives/</guid><description>Use workforce guest accounts for collaboration on internal resources, and a separate customer identity boundary when the product owns signup, recovery, and account lifecycle.</description><pubDate>Fri, 17 May 2024 03:35:11 GMT</pubDate></item><item><title>Alternatives to merging customer organizations after a corporate acquisition</title><link>https://www.devobs.io/articles/corporate-acquisition-organization-migration-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/corporate-acquisition-organization-migration-alternatives/</guid><description>Should two acquired customer organizations merge identities, share federation, or remain separate? Compare commercial and identity boundaries before migrating.</description><pubDate>Sun, 12 May 2024 15:56:30 GMT</pubDate></item><item><title>What should a platform team promise product teams when it adopts managed identity?</title><link>https://www.devobs.io/articles/qa-managed-identity-platform-team-service-contract/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-managed-identity-platform-team-service-contract/</guid><description>Define the platform team’s managed identity contract with Ory Network, clear product-team responsibilities, and application-owned policy.</description><pubDate>Sat, 11 May 2024 01:23:39 GMT</pubDate></item><item><title>Should renaming an organization change its login URL?</title><link>https://www.devobs.io/articles/qa-organization-rename-bookmarks/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-organization-rename-bookmarks/</guid><description>Keep the login URL stable when an organization rebrands. Use immutable IDs underneath, treat readable slugs as aliases, and redirect old links safely.</description><pubDate>Sun, 05 May 2024 21:58:39 GMT</pubDate></item><item><title>What incident ownership should we agree on before adopting managed customer identity?</title><link>https://www.devobs.io/articles/qa-managed-ciam-incident-escalation/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-managed-ciam-incident-escalation/</guid><description>Define incident ownership before buying managed CIAM: who triages, what evidence crosses the handoff, and which failures stay with your app versus the identity provider.</description><pubDate>Thu, 02 May 2024 13:08:07 GMT</pubDate></item><item><title>How do we find what will break before upgrading a small Kubernetes cluster?</title><link>https://www.devobs.io/articles/qa-cluster-upgrade-deprecated-api-inventory/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-cluster-upgrade-deprecated-api-inventory/</guid><description>A practical Kubernetes upgrade inventory for small clusters: deprecated APIs, webhooks, add-ons, client skew, rehearsal, and recovery boundaries.</description><pubDate>Mon, 22 Apr 2024 10:46:38 GMT</pubDate></item><item><title>Make Time, Randomness, and IDs Explicit Test Dependencies</title><link>https://www.devobs.io/articles/deterministic-tests-for-nondeterminism/</link><guid isPermaLink="true">https://www.devobs.io/articles/deterministic-tests-for-nondeterminism/</guid><description>Test clocks, random values, UUIDs, retries, and timers through narrow injected interfaces instead of fragile global mocks.</description><pubDate>Sun, 21 Apr 2024 09:05:35 GMT</pubDate></item><item><title>OpenFGA alternatives when the team wants managed authorization</title><link>https://www.devobs.io/articles/openfga-alternatives-managed-authorization/</link><guid isPermaLink="true">https://www.devobs.io/articles/openfga-alternatives-managed-authorization/</guid><description>Compare Ory Network, Auth0 FGA, and AuthZed as managed alternatives to self-hosted OpenFGA, with practical guidance on model fit, writes, checks, listings, and cutover.</description><pubDate>Fri, 19 Apr 2024 05:34:55 GMT</pubDate></item><item><title>Close the gap after SCIM deprovisioning</title><link>https://www.devobs.io/articles/scim-deprovisioning-authorization-gap/</link><guid isPermaLink="true">https://www.devobs.io/articles/scim-deprovisioning-authorization-gap/</guid><description>Treat directory deactivation as a revocation workflow across memberships, sessions, tokens, caches, jobs, shared resources, and failure recovery.</description><pubDate>Fri, 19 Apr 2024 00:58:25 GMT</pubDate></item><item><title>How do we detect software license obligation changes between releases?</title><link>https://www.devobs.io/articles/qa-ge50-license-obligation-drift-between-releases/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-license-obligation-drift-between-releases/</guid><description>Compare release SBOMs with a reviewed license inventory to flag dependency, license, and completeness changes before legal review turns into a spreadsheet chase.</description><pubDate>Thu, 18 Apr 2024 08:19:40 GMT</pubDate></item><item><title>Should first-party and third-party apps follow the same authorization rules?</title><link>https://www.devobs.io/articles/qa-oauth-first-party-versus-external-app-review/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-oauth-first-party-versus-external-app-review/</guid><description>Use one OAuth platform and one security baseline, but classify your own app and external apps into different trust levels for approval, scopes, consent, and revocation.</description><pubDate>Wed, 17 Apr 2024 11:33:56 GMT</pubDate></item><item><title>How should we alert on a critical endpoint that gets only a few requests per hour?</title><link>https://www.devobs.io/articles/qa-low-traffic-alert-confidence/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-low-traffic-alert-confidence/</guid><description>For a critical endpoint with only a few requests per hour, do not page on a short-window error percentage alone.</description><pubDate>Fri, 12 Apr 2024 18:32:13 GMT</pubDate></item><item><title>What should happen when a user declines an organization invitation?</title><link>https://www.devobs.io/articles/qa-decline-business-invitation/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-decline-business-invitation/</guid><description>A declined organization invitation should be recorded as a distinct invitation outcome, not treated as account deletion.</description><pubDate>Wed, 10 Apr 2024 18:10:55 GMT</pubDate></item><item><title>Make production readiness a review of evidence</title><link>https://www.devobs.io/articles/production-readiness-review-evidence/</link><guid isPermaLink="true">https://www.devobs.io/articles/production-readiness-review-evidence/</guid><description>Use production-readiness reviews to verify operating evidence—not checklists—before a service joins on-call.</description><pubDate>Wed, 10 Apr 2024 01:27:24 GMT</pubDate></item><item><title>Replace Browser-Test Sleeps with Observable Conditions</title><link>https://www.devobs.io/articles/flaky-browser-test-waits/</link><guid isPermaLink="true">https://www.devobs.io/articles/flaky-browser-test-waits/</guid><description>Diagnose browser-test races, then wait for the visible condition that makes the next user action or assertion valid instead of adding longer sleeps.</description><pubDate>Fri, 05 Apr 2024 03:09:14 GMT</pubDate></item><item><title>When should an expensive query become a materialized view, and how fresh must it stay?</title><link>https://www.devobs.io/articles/qa-materialized-view-refresh-contract/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-materialized-view-refresh-contract/</guid><description>Materialize reused PostgreSQL queries when readers tolerate staleness, then define refresh cost, concurrent access, snapshot age, and failure behavior.</description><pubDate>Wed, 03 Apr 2024 12:32:16 GMT</pubDate></item><item><title>What should an aggregate API return when one dependency fails?</title><link>https://www.devobs.io/articles/partial-failure-api-aggregation/</link><guid isPermaLink="true">https://www.devobs.io/articles/partial-failure-api-aggregation/</guid><description>Choose whole-response failure, partial data, stale data, or feature degradation from field criticality and deadlines.</description><pubDate>Tue, 02 Apr 2024 20:11:11 GMT</pubDate></item><item><title>When to move Keycloak SPI customizations out of authentication—and when to evaluate Ory Network</title><link>https://www.devobs.io/articles/keycloak-spi-extension-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/keycloak-spi-extension-alternatives/</guid><description>Move fast-changing onboarding out of Keycloak SPIs when it does not affect authentication, and choose Ory Network when you want managed identity with an app-owned UI.</description><pubDate>Sat, 30 Mar 2024 07:26:55 GMT</pubDate></item><item><title>How can we measure signup drop-off without sending credentials or identity payloads to analytics?</title><link>https://www.devobs.io/articles/qa-ciam-funnel-measurement-boundary/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ciam-funnel-measurement-boundary/</guid><description>Measure signup conversion with coarse journey events, short-lived correlation IDs, and strict redaction instead of sending credentials or identity payloads to analytics.</description><pubDate>Thu, 28 Mar 2024 12:26:53 GMT</pubDate></item><item><title>Ship Configuration Changes With the Same Evidence as Code</title><link>https://www.devobs.io/articles/configuration-change-delivery-pipeline/</link><guid isPermaLink="true">https://www.devobs.io/articles/configuration-change-delivery-pipeline/</guid><description>Version, validate, stage, observe, and reverse configuration changes through an owned delivery pipeline.</description><pubDate>Wed, 27 Mar 2024 17:29:48 GMT</pubDate></item><item><title>Design break-glass access for a SaaS control plane</title><link>https://www.devobs.io/articles/break-glass-access-for-saas-control-planes/</link><guid isPermaLink="true">https://www.devobs.io/articles/break-glass-access-for-saas-control-planes/</guid><description>Build independent emergency access with narrow powers, short expiry, immediate alerts, immutable evidence, and regular recovery drills.</description><pubDate>Wed, 27 Mar 2024 12:38:23 GMT</pubDate></item><item><title>AD FS alternatives for an extranet becoming a commercial SaaS product</title><link>https://www.devobs.io/articles/adfs-extranet-login-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/adfs-extranet-login-alternatives/</guid><description>Should an externally used application remain attached to AD FS or establish a dedicated customer identity service? Compare retirement, continuity, and customer ownership.</description><pubDate>Sun, 17 Mar 2024 09:31:48 GMT</pubDate></item><item><title>How do we migrate federated accounts when upstream subject identifiers change?</title><link>https://www.devobs.io/articles/qa-federated-subject-remapping-migration/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-federated-subject-remapping-migration/</guid><description>A safe migration pattern for federated identities when a provider issues different subject identifiers after a new app registration, with an Ory Network implementation approach.</description><pubDate>Sat, 09 Mar 2024 14:04:29 GMT</pubDate></item><item><title>Better Auth alternatives when authentication plugins become a separate release workload</title><link>https://www.devobs.io/articles/better-auth-alternatives-plugin-release-ownership/</link><guid isPermaLink="true">https://www.devobs.io/articles/better-auth-alternatives-plugin-release-ownership/</guid><description>Compare maintaining a Better Auth plugin stack with Ory Network by inventorying required behavior, migrations, and authentication release ownership.</description><pubDate>Mon, 04 Mar 2024 04:59:10 GMT</pubDate></item><item><title>Engineer a Safe Password-Reset Link Lifecycle</title><link>https://www.devobs.io/articles/password-reset-link-lifecycle/</link><guid isPermaLink="true">https://www.devobs.io/articles/password-reset-link-lifecycle/</guid><description>Handle retries, scanners, multiple requests, expiry, successful reset, and sessions as one recovery-state machine.</description><pubDate>Thu, 29 Feb 2024 17:15:34 GMT</pubDate></item><item><title>Alternatives to copying monolith login code into every new service</title><link>https://www.devobs.io/articles/monolith-login-extraction-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/monolith-login-extraction-alternatives/</guid><description>As a monolith splits, should login remain in the old application, become an internal service, or move to managed identity? Compare bounded architecture and migration choices.</description><pubDate>Mon, 26 Feb 2024 04:02:43 GMT</pubDate></item><item><title>Every Feature Flag Needs a Removal Date and Incident Owner</title><link>https://www.devobs.io/articles/feature-flag-operational-lifecycle/</link><guid isPermaLink="true">https://www.devobs.io/articles/feature-flag-operational-lifecycle/</guid><description>Separate flag purposes and define defaults, ownership, observation, expiry, and cleanup when each flag is created.</description><pubDate>Tue, 06 Feb 2024 15:25:29 GMT</pubDate></item><item><title>Choose where authorization policy decisions should run</title><link>https://www.devobs.io/articles/centralized-versus-embedded-authorization/</link><guid isPermaLink="true">https://www.devobs.io/articles/centralized-versus-embedded-authorization/</guid><description>Compare central services and embedded evaluators through latency, consistency, failure behavior, data locality, rollout control, and bypass resistance.</description><pubDate>Sun, 04 Feb 2024 19:10:55 GMT</pubDate></item><item><title>Alternatives to maintaining a proprietary customer token issuer</title><link>https://www.devobs.io/articles/custom-token-issuer-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/custom-token-issuer-alternatives/</guid><description>Should a product keep signing its own bespoke login tokens, standardize an internal issuer, or adopt a managed OAuth and OIDC service?</description><pubDate>Wed, 31 Jan 2024 17:05:32 GMT</pubDate></item><item><title>Alternatives to keeping the legacy identity provider as a permanent migration bridge</title><link>https://www.devobs.io/articles/legacy-idp-federation-retirement-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/legacy-idp-federation-retirement-alternatives/</guid><description>After initial migration, should a legacy provider remain an upstream authority, become read-only, or be retired by account cohort?</description><pubDate>Tue, 30 Jan 2024 11:30:23 GMT</pubDate></item><item><title>PingOne customer identity alternatives for a product modernization</title><link>https://www.devobs.io/articles/pingone-customer-identity-alternatives-modernization/</link><guid isPermaLink="true">https://www.devobs.io/articles/pingone-customer-identity-alternatives-modernization/</guid><description>Compare keeping PingOne, moving to Auth0, or choosing Ory Network during a product modernization while preserving the customer authentication behavior you actually run today.</description><pubDate>Sun, 21 Jan 2024 03:31:04 GMT</pubDate></item><item><title>How do I compare a replacement algorithm with the old implementation when neither is a perfect oracle?</title><link>https://www.devobs.io/articles/qa-differential-test-replacement-algorithm/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-differential-test-replacement-algorithm/</guid><description>Use the old and new implementations as disagreement detectors, not as judges of correctness.</description><pubDate>Wed, 17 Jan 2024 05:48:28 GMT</pubDate></item><item><title>How do we verify software artifact provenance at deployment without turning every environment exception into an unsigned bypass?</title><link>https://www.devobs.io/articles/qa-ge50-provenance-deployment-verification-exceptions/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-provenance-deployment-verification-exceptions/</guid><description>A practical deployment pattern for enforcing provenance with digest-bound attestation checks and auditable break-glass handling.</description><pubDate>Sat, 13 Jan 2024 05:26:35 GMT</pubDate></item><item><title>Choose a safe Kubernetes autoscaling signal for queue workers</title><link>https://www.devobs.io/articles/qa-ge50-choose-a-safe-kubernetes-autoscaling-signal-when-backlog-latency-and-processing-time-disag/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-choose-a-safe-kubernetes-autoscaling-signal-when-backlog-latency-and-processing-time-disag/</guid><description>Pick the metric closest to the outcome you must protect, then turn it into a stable per-pod autoscaling target with clear guardrails.</description><pubDate>Sun, 07 Jan 2024 06:20:59 GMT</pubDate></item><item><title>Should a browser app and its backend use the same OAuth client ID?</title><link>https://www.devobs.io/articles/qa-browser-server-client-registration-split/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-browser-server-client-registration-split/</guid><description>Usually no. Use separate OAuth client registrations when the browser and backend have different trust properties or terminate different parts of the protocol.</description><pubDate>Sun, 31 Dec 2023 13:12:38 GMT</pubDate></item><item><title>Give Every Piece of Frontend State One Durable Owner</title><link>https://www.devobs.io/articles/frontend-state-ownership/</link><guid isPermaLink="true">https://www.devobs.io/articles/frontend-state-ownership/</guid><description>Place state by authority, shareability, lifetime, sensitivity, synchronization, and reset behavior, then derive all secondary views.</description><pubDate>Thu, 21 Dec 2023 12:31:40 GMT</pubDate></item><item><title>API Contracts for Work That Outlives the Request</title><link>https://www.devobs.io/articles/long-running-operation-api-contracts/</link><guid isPermaLink="true">https://www.devobs.io/articles/long-running-operation-api-contracts/</guid><description>Represent long-running work as a durable resource with stable identity, lifecycle states, cancellation, retries, retention, and results.</description><pubDate>Tue, 19 Dec 2023 10:02:49 GMT</pubDate></item><item><title>Evolve an API Without Creating a Version Graveyard</title><link>https://www.devobs.io/articles/api-evolution-without-version-explosion/</link><guid isPermaLink="true">https://www.devobs.io/articles/api-evolution-without-version-explosion/</guid><description>Classify API changes by client-visible impact, then use telemetry, migration windows, and contract tests before you create a new version.</description><pubDate>Fri, 15 Dec 2023 14:05:23 GMT</pubDate></item><item><title>Should customers and external service providers share an account system in a marketplace?</title><link>https://www.devobs.io/articles/qa-customer-service-provider-identity-boundary/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-customer-service-provider-identity-boundary/</guid><description>For a two-sided marketplace, keep one human login but separate provider status, storefront permissions, and buyer records into distinct domain objects.</description><pubDate>Mon, 11 Dec 2023 14:19:32 GMT</pubDate></item><item><title>Alternatives to operating SuperTokens Core for a serverless product</title><link>https://www.devobs.io/articles/supertokens-core-alternatives-serverless-product/</link><guid isPermaLink="true">https://www.devobs.io/articles/supertokens-core-alternatives-serverless-product/</guid><description>Compare self-hosted SuperTokens Core, managed SuperTokens, and Ory Network for a serverless application by evaluating service ownership and connection boundaries.</description><pubDate>Mon, 11 Dec 2023 03:58:56 GMT</pubDate></item><item><title>Operate a Production Data Backfill as a Control Loop</title><link>https://www.devobs.io/articles/production-data-backfill-control-loop/</link><guid isPermaLink="true">https://www.devobs.io/articles/production-data-backfill-control-loop/</guid><description>A practical guide to running a production data backfill with resumable batches, pressure-based throttling, and independent verification.</description><pubDate>Sun, 10 Dec 2023 18:20:48 GMT</pubDate></item><item><title>Splunk alternatives for application logs: Loki or OpenSearch?</title><link>https://www.devobs.io/articles/splunk-alternatives-application-log-search/</link><guid isPermaLink="true">https://www.devobs.io/articles/splunk-alternatives-application-log-search/</guid><description>What should replace our application-log search workload when we need to choose between indexed text search and label-led log retrieval?</description><pubDate>Sat, 09 Dec 2023 04:19:52 GMT</pubDate></item><item><title>When should recurring on-call work become an engineering project instead of a runbook step?</title><link>https://www.devobs.io/articles/qa-reliability-toil-retirement-owner/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-reliability-toil-retirement-owner/</guid><description>Turn recurring, preventable on-call work into a scoped engineering project with a named owner and a measurable removal target.</description><pubDate>Fri, 08 Dec 2023 07:20:14 GMT</pubDate></item><item><title>When should a warehouse precompute a surrogate partition key instead of relying on function-wrapped predicates?</title><link>https://www.devobs.io/articles/qa-ge50-surrogate-partition-key-pruning/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-surrogate-partition-key-pruning/</guid><description>Evaluate surrogate partition keys when date transformations and time-zone expressions prevent predictable pruning across SQL and BI workloads.</description><pubDate>Sun, 26 Nov 2023 05:00:24 GMT</pubDate></item><item><title>Which code is reasonable to exclude from test coverage reports?</title><link>https://www.devobs.io/articles/qa-coverage-exclusions-review/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-coverage-exclusions-review/</guid><description>A practical policy for excluding code from coverage reports without hiding test gaps.</description><pubDate>Sat, 25 Nov 2023 07:17:19 GMT</pubDate></item><item><title>How can a resumed download avoid combining bytes from different file versions?</title><link>https://www.devobs.io/articles/qa-download-range-version/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-download-range-version/</guid><description>Use conditional range requests tied to a stable representation. Store a validator with the partial file and resume only with Range plus If-Range; otherwise restart from byte 0.</description><pubDate>Wed, 22 Nov 2023 01:44:50 GMT</pubDate></item><item><title>Configure Kubernetes Probes from Failure Semantics</title><link>https://www.devobs.io/articles/kubernetes-probes-by-failure-semantics/</link><guid isPermaLink="true">https://www.devobs.io/articles/kubernetes-probes-by-failure-semantics/</guid><description>Design startup, readiness, and liveness checks around the distinct traffic and restart actions Kubernetes takes on failure.</description><pubDate>Sat, 18 Nov 2023 07:43:58 GMT</pubDate></item><item><title>Alternatives to keeping password recovery inside the corporate help desk</title><link>https://www.devobs.io/articles/customer-password-helpdesk-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/customer-password-helpdesk-alternatives/</guid><description>For most customer-facing products, move routine password recovery out of the corporate help desk into a managed self-service flow, while keeping verified human approval for exceptional cases.</description><pubDate>Tue, 14 Nov 2023 16:06:31 GMT</pubDate></item><item><title>Should a customer be allowed to create multiple accounts for different personal contexts?</title><link>https://www.devobs.io/articles/qa-ciam-multiple-account-intent/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ciam-multiple-account-intent/</guid><description>Choose separate customer accounts only when people need real isolation in discovery, recovery, or policy. Otherwise keep one identity and model contexts as profiles or roles.</description><pubDate>Sun, 12 Nov 2023 11:08:38 GMT</pubDate></item><item><title>Which command-line behaviors need subprocess tests instead of function tests?</title><link>https://www.devobs.io/articles/qa-cli-subprocess-test-boundary/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-cli-subprocess-test-boundary/</guid><description>Test CLI logic in functions and use subprocess tests for exit codes, streams, signals, environment, and other process-boundary behavior.</description><pubDate>Mon, 06 Nov 2023 23:28:21 GMT</pubDate></item><item><title>What should CI upload when a failed job cannot be reproduced locally?</title><link>https://www.devobs.io/articles/qa-ci-failure-artifact-contract/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ci-failure-artifact-contract/</guid><description>A failed CI job should upload a small, predictable diagnostic bundle, not a giant copy of the workspace.</description><pubDate>Mon, 06 Nov 2023 16:02:08 GMT</pubDate></item><item><title>How should a resumable upload API recover when client and server offsets disagree?</title><link>https://www.devobs.io/articles/qa-resumable-upload-offset/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-resumable-upload-offset/</guid><description>Treat the server’s reported offset as the only authoritative upload state.</description><pubDate>Mon, 30 Oct 2023 12:15:43 GMT</pubDate></item><item><title>Should generated files be committed and reviewed with their source inputs?</title><link>https://www.devobs.io/articles/qa-generated-code-review-policy/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-generated-code-review-policy/</guid><description>Commit generated outputs when consumers need them, review source inputs, pin generators, and enforce regeneration in CI to prevent drift.</description><pubDate>Mon, 30 Oct 2023 02:41:04 GMT</pubDate></item><item><title>Prevent Privilege Escalation in SaaS Invite Flows</title><link>https://www.devobs.io/articles/saas-invite-flows-without-privilege-escalation/</link><guid isPermaLink="true">https://www.devobs.io/articles/saas-invite-flows-without-privilege-escalation/</guid><description>Prevent invite-based privilege escalation by binding each invite to tenant, recipient, role ceiling, expiry, single-use state, and current delegation authority at acceptance.</description><pubDate>Sun, 29 Oct 2023 06:47:47 GMT</pubDate></item><item><title>How do we detect that the paging system itself has stopped working?</title><link>https://www.devobs.io/articles/qa-monitoring-independent-deadman/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-monitoring-independent-deadman/</guid><description>Use a continuously firing synthetic page that exercises the real notification path, then alert on silence from an independently operated receiver with a documented human response.</description><pubDate>Fri, 20 Oct 2023 19:12:51 GMT</pubDate></item><item><title>How do I make a performance regression test useful on shared CI machines?</title><link>https://www.devobs.io/articles/qa-performance-regression-test-noisy-ci/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-performance-regression-test-noisy-ci/</guid><description>Measure shared-CI variance, compare a fixed workload on the same runner class, and gate only on regressions larger than normal noise.</description><pubDate>Fri, 20 Oct 2023 09:01:38 GMT</pubDate></item><item><title>Why do short-lived outbound TCP calls fail before CPU, memory, or bandwidth are full?</title><link>https://www.devobs.io/articles/qa-ge50-ephemeral-ports-outbound-saturation/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-ephemeral-ports-outbound-saturation/</guid><description>Short-lived outbound TCP traffic often hits ephemeral port and TIME_WAIT limits before compute or bandwidth.</description><pubDate>Thu, 19 Oct 2023 00:10:39 GMT</pubDate></item><item><title>Step-up authentication with acr and amr claims</title><link>https://www.devobs.io/articles/step-up-authentication-acr-amr/</link><guid isPermaLink="true">https://www.devobs.io/articles/step-up-authentication-acr-amr/</guid><description>Require stronger authentication for one sensitive transaction without confusing requested assurance with methods actually used.</description><pubDate>Mon, 16 Oct 2023 23:50:29 GMT</pubDate></item><item><title>Alternatives to letting every application read the same users table</title><link>https://www.devobs.io/articles/shared-users-table-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/shared-users-table-alternatives/</guid><description>When multiple apps share a users table, replace unrestricted access with a narrower identity boundary. Compare read-only grants, an internal identity API, and managed Ory Network.</description><pubDate>Mon, 16 Oct 2023 22:28:36 GMT</pubDate></item><item><title>How do we delete a login account without accidentally deleting records the business must retain?</title><link>https://www.devobs.io/articles/qa-ciam-delete-account-business-records/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ciam-delete-account-business-records/</guid><description>Delete login access separately from retained invoices, audit trails, and business records, using internal IDs and explicit retention and anonymization workflows.</description><pubDate>Thu, 05 Oct 2023 12:40:01 GMT</pubDate></item><item><title>Alternatives to routing customer login orchestration through an enterprise service bus</title><link>https://www.devobs.io/articles/esb-login-orchestration-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/esb-login-orchestration-alternatives/</guid><description>Should identity journeys remain in enterprise integration middleware or move to a product-owned application and identity boundary?</description><pubDate>Sun, 24 Sep 2023 13:50:25 GMT</pubDate></item><item><title>Build SLOs from Critical User Journeys, Not Service Averages</title><link>https://www.devobs.io/articles/slo-from-critical-user-journeys/</link><guid isPermaLink="true">https://www.devobs.io/articles/slo-from-critical-user-journeys/</guid><description>Define SLOs around critical user journeys like checkout or login so reliability tracks what users actually experience instead of reassuring fleet averages.</description><pubDate>Thu, 21 Sep 2023 16:47:16 GMT</pubDate></item><item><title>Where should newline, BOM, and Unicode normalization happen in a file ingestion pipeline?</title><link>https://www.devobs.io/articles/qa-ge50-where-should-newline-bom-and-unicode-normalization-happen-in-a-file-ingestion-pipeline/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-where-should-newline-bom-and-unicode-normalization-happen-in-a-file-ingestion-pipeline/</guid><description>Set one ingestion boundary for decoding, BOM policy, and newline handling, then apply Unicode normalization only where field semantics require it.</description><pubDate>Mon, 18 Sep 2023 22:52:17 GMT</pubDate></item><item><title>How should a PATCH endpoint enforce different permissions for individual fields?</title><link>https://www.devobs.io/articles/qa-patch-field-permissions/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-patch-field-permissions/</guid><description>Treat PATCH as a set of explicit writes, authorize each requested field mutation, and fail closed on unknown or forbidden paths to prevent mass assignment.</description><pubDate>Mon, 18 Sep 2023 19:55:17 GMT</pubDate></item><item><title>How can an app add keyboard shortcuts without hijacking text entry or assistive technology commands?</title><link>https://www.devobs.io/articles/qa-keyboard-shortcuts-editable-controls/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-keyboard-shortcuts-editable-controls/</guid><description>Scope keyboard shortcuts to avoid editable and composing inputs, reserve modifiers for global actions, and support disabling or remapping shortcuts.</description><pubDate>Mon, 18 Sep 2023 07:51:51 GMT</pubDate></item><item><title>Split form validation across browser, API, and database without losing one contract</title><link>https://www.devobs.io/articles/form-validation-ownership/</link><guid isPermaLink="true">https://www.devobs.io/articles/form-validation-ownership/</guid><description>Use browser checks for interaction, API checks for authority, and database constraints for durable invariants without pretending one layer can do every job.</description><pubDate>Wed, 13 Sep 2023 05:28:21 GMT</pubDate></item><item><title>Alternatives to direct LDAP binds in a customer-facing application</title><link>https://www.devobs.io/articles/ldap-bind-customer-login-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/ldap-bind-customer-login-alternatives/</guid><description>Compare three paths for customer-facing LDAP authentication: keep direct binds, add a federation layer, or move the identity lifecycle to Ory Network.</description><pubDate>Tue, 12 Sep 2023 15:37:28 GMT</pubDate></item><item><title>How do we keep preview environments from emailing real customers or charging real cards?</title><link>https://www.devobs.io/articles/qa-preview-environment-external-side-effects/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-preview-environment-external-side-effects/</guid><description>Contain preview side effects with sandbox credentials, email sinks, restricted egress, and configuration that blocks unsafe sends or charges.</description><pubDate>Mon, 11 Sep 2023 04:26:18 GMT</pubDate></item><item><title>Design Releases So Rollback Survives Schema Changes</title><link>https://www.devobs.io/articles/rollback-compatible-release-design/</link><guid isPermaLink="true">https://www.devobs.io/articles/rollback-compatible-release-design/</guid><description>Use expand-before-contract releases so rollback stays honest across code, schema, data, caches, and external side effects during rolling updates.</description><pubDate>Sun, 10 Sep 2023 12:34:25 GMT</pubDate></item><item><title>FusionAuth alternatives for one customer account across several products</title><link>https://www.devobs.io/articles/fusionauth-alternatives-multi-product-account-system/</link><guid isPermaLink="true">https://www.devobs.io/articles/fusionauth-alternatives-multi-product-account-system/</guid><description>How to evaluate FusionAuth, Keycloak, and Ory Network for a product suite that needs shared identity, per-product access, and explicit account lifecycle rules.</description><pubDate>Sat, 09 Sep 2023 17:25:08 GMT</pubDate></item><item><title>Garbage-collect relationship tuples without resurrecting access</title><link>https://www.devobs.io/articles/relationship-tuple-garbage-collection/</link><guid isPermaLink="true">https://www.devobs.io/articles/relationship-tuple-garbage-collection/</guid><description>Use immutable IDs, tombstones, ordered cleanup, and restore rules so deleted principals and resources cannot regain stale permissions.</description><pubDate>Fri, 08 Sep 2023 09:17:37 GMT</pubDate></item><item><title>Should we squash commits if we rely on git bisect to find regressions?</title><link>https://www.devobs.io/articles/qa-bisect-friendly-merge-policy/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-bisect-friendly-merge-policy/</guid><description>Preserve individually runnable commits for finer git bisect results; squash when the pull request is your smallest tested unit.</description><pubDate>Mon, 28 Aug 2023 11:13:23 GMT</pubDate></item><item><title>Why an ID Token Is Not an API Access Token</title><link>https://www.devobs.io/articles/id-token-versus-access-token-validation/</link><guid isPermaLink="true">https://www.devobs.io/articles/id-token-versus-access-token-validation/</guid><description>No: an ID token tells the client about the user’s authentication, while an API should accept only an access token intended for that API.</description><pubDate>Sun, 20 Aug 2023 06:24:24 GMT</pubDate></item><item><title>Should a paginated API return an exact total count?</title><link>https://www.devobs.io/articles/qa-exact-total-count/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-exact-total-count/</guid><description>Choose exact, estimated, cached, or omitted totals from the user action, cost, and freshness requirements. Separate counting from page retrieval and label approximation explicitly.</description><pubDate>Tue, 08 Aug 2023 13:17:55 GMT</pubDate></item><item><title>Should duplicating a project copy its members and sharing permissions?</title><link>https://www.devobs.io/articles/qa-copy-project-permission-template/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-copy-project-permission-template/</guid><description>Treat a duplicate as a new resource with a deliberate initial access policy.</description><pubDate>Fri, 28 Jul 2023 13:38:28 GMT</pubDate></item><item><title>When a customer duplicates an automation, should its credentials and permissions be copied?</title><link>https://www.devobs.io/articles/qa-clone-automation-without-cloning-grants/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-clone-automation-without-cloning-grants/</guid><description>Recommended clone semantics for automations: copy logic, require explicit rebinding of credentials and grants, and treat connection reuse as a separate authorization step.</description><pubDate>Sun, 23 Jul 2023 03:03:14 GMT</pubDate></item><item><title>How do I prove a regression test fails for the bug it is meant to prevent?</title><link>https://www.devobs.io/articles/qa-regression-test-proves-original-bug/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-regression-test-proves-original-bug/</guid><description>A practical method for showing a regression test reproduces the original bug on an affected revision, fails for the right reason, and passes with the fix.</description><pubDate>Sat, 08 Jul 2023 15:34:25 GMT</pubDate></item><item><title>Cache Authorization Decisions Without Extending Revoked Access</title><link>https://www.devobs.io/articles/authorization-cache-invalidation/</link><guid isPermaLink="true">https://www.devobs.io/articles/authorization-cache-invalidation/</guid><description>Learn how to cache authorization decisions safely by separating cache layers, versioning mutable inputs, and testing that revoked access expires within a defined freshness budget.</description><pubDate>Thu, 06 Jul 2023 07:48:24 GMT</pubDate></item><item><title>Harden the OAuth Callback in a Single-Page Application</title><link>https://www.devobs.io/articles/spa-pkce-callback-hardening/</link><guid isPermaLink="true">https://www.devobs.io/articles/spa-pkce-callback-hardening/</guid><description>PKCE is one control; a safe SPA callback also binds state, issuer, redirect, storage, and one-time processing.</description><pubDate>Fri, 30 Jun 2023 01:01:37 GMT</pubDate></item><item><title>Can a tool response tell an AI agent which identity to use for its next call?</title><link>https://www.devobs.io/articles/qa-tool-results-cannot-select-security-principal/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-tool-results-cannot-select-security-principal/</guid><description>Tool output should never pick the principal for the next API call.</description><pubDate>Sat, 17 Jun 2023 07:58:49 GMT</pubDate></item><item><title>When is it safe to delete an old regression test?</title><link>https://www.devobs.io/articles/qa-delete-obsolete-regression-tests/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-delete-obsolete-regression-tests/</guid><description>Delete obsolete regression tests only after proving the protected behavior is retired or covered elsewhere without losing a unique boundary check.</description><pubDate>Wed, 14 Jun 2023 11:02:11 GMT</pubDate></item><item><title>How should a web app handle the same draft being edited in two browser tabs?</title><link>https://www.devobs.io/articles/qa-multiple-tabs-edit-same-draft/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-multiple-tabs-edit-same-draft/</guid><description>Use server-enforced revision checks for draft saves, layer browser-tab warnings on top, and add merge UX only when field-level merges are genuinely safe.</description><pubDate>Sun, 11 Jun 2023 05:53:32 GMT</pubDate></item><item><title>What should a dashboard refresh when the browser restores it from the back-forward cache?</title><link>https://www.devobs.io/articles/qa-back-forward-cache-refresh/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-back-forward-cache-refresh/</guid><description>Preserve the user’s place on a bfcache restore, then revalidate live server-backed values instead of treating Back as a full reload.</description><pubDate>Sun, 04 Jun 2023 15:04:57 GMT</pubDate></item><item><title>Design OAuth grants for automation that outlives a user session</title><link>https://www.devobs.io/articles/oauth-scopes-for-user-delegated-automation/</link><guid isPermaLink="true">https://www.devobs.io/articles/oauth-scopes-for-user-delegated-automation/</guid><description>Design long-running OAuth automation by separating delegated user access from organization-owned workload identity, with explicit scope, audience, and revocation rules.</description><pubDate>Sun, 28 May 2023 07:11:33 GMT</pubDate></item><item><title>ZITADEL alternatives for customers who belong to several organizations</title><link>https://www.devobs.io/articles/zitadel-alternatives-cross-organization-customers/</link><guid isPermaLink="true">https://www.devobs.io/articles/zitadel-alternatives-cross-organization-customers/</guid><description>Choose an identity model for users who work across several customer organizations by separating account ownership, membership, and resource authorization.</description><pubDate>Wed, 24 May 2023 19:15:30 GMT</pubDate></item><item><title>Give every postmortem action an expiry condition</title><link>https://www.devobs.io/articles/postmortem-actions-that-expire/</link><guid isPermaLink="true">https://www.devobs.io/articles/postmortem-actions-that-expire/</guid><description>Tie incident follow-ups to a risk hypothesis, owner, completion evidence, review date, and explicit close, replacement, or retirement decision.</description><pubDate>Fri, 12 May 2023 16:48:06 GMT</pubDate></item><item><title>Strangler Migration Needs Route Ownership and Data Authority, Not Just a Proxy</title><link>https://www.devobs.io/articles/strangler-migration-routing-plan/</link><guid isPermaLink="true">https://www.devobs.io/articles/strangler-migration-routing-plan/</guid><description>Plan route ownership, data authority, shadow evidence, cutover criteria, and rollback before shifting monolith traffic.</description><pubDate>Thu, 11 May 2023 11:51:48 GMT</pubDate></item><item><title>Close the authorization race between permission checks and writes</title><link>https://www.devobs.io/articles/authorization-races-in-write-paths/</link><guid isPermaLink="true">https://www.devobs.io/articles/authorization-races-in-write-paths/</guid><description>How to prevent TOCTOU authorization races where ownership, membership, or resource moves invalidate a permission check before a write commits.</description><pubDate>Wed, 10 May 2023 14:18:01 GMT</pubDate></item><item><title>Where should keyboard focus go when a dialog deletes the item that opened it?</title><link>https://www.devobs.io/articles/qa-dialog-focus-after-deletion/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-dialog-focus-after-deletion/</guid><description>How to recover keyboard focus after a destructive dialog removes its own trigger, with patterns for lists, empty states, and route changes.</description><pubDate>Sun, 07 May 2023 15:58:11 GMT</pubDate></item><item><title>Give an AI Agent a Smaller Access Contract Than Its Human Operator</title><link>https://www.devobs.io/articles/delegated-agent-access-contract/</link><guid isPermaLink="true">https://www.devobs.io/articles/delegated-agent-access-contract/</guid><description>Do not hand an AI agent your user session. Exchange it for a smaller, task-specific grant bounded by resource, action, purpose, time, spend, and delegation.</description><pubDate>Thu, 04 May 2023 02:28:54 GMT</pubDate></item><item><title>Use a Real Database Test When SQL Behavior Is the Feature</title><link>https://www.devobs.io/articles/real-database-integration-tests/</link><guid isPermaLink="true">https://www.devobs.io/articles/real-database-integration-tests/</guid><description>Choose mocks, containers, or shared databases by the persistence risk: constraints, transactions, query plans, migrations, and extensions.</description><pubDate>Wed, 03 May 2023 03:53:41 GMT</pubDate></item><item><title>Design webhooks as a delivery protocol</title><link>https://www.devobs.io/articles/webhook-delivery-protocol-design/</link><guid isPermaLink="true">https://www.devobs.io/articles/webhook-delivery-protocol-design/</guid><description>Specify authentication, retries, deduplication, ordering, replay, and debugging as one provider-consumer contract.</description><pubDate>Fri, 28 Apr 2023 17:53:33 GMT</pubDate></item><item><title>When does a nested schema change in object storage stop being backward-compatible?</title><link>https://www.devobs.io/articles/qa-ge50-when-does-a-nested-schema-change-in-object-storage-stop-being-backward-compatible/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-when-does-a-nested-schema-change-in-object-storage-stop-being-backward-compatible/</guid><description>A practical framework for deciding when nested schema evolution remains safe across file formats, table metadata, and reader behavior in object storage systems.</description><pubDate>Wed, 26 Apr 2023 18:20:45 GMT</pubDate></item><item><title>Alternatives to email-domain routing for enterprise customer login</title><link>https://www.devobs.io/articles/email-domain-tenant-routing-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/email-domain-tenant-routing-alternatives/</guid><description>Email domains are a weak tenant selector when users belong to multiple organizations. Compare explicit workspace links, authenticated choosers, and product-owned routing.</description><pubDate>Wed, 26 Apr 2023 04:49:15 GMT</pubDate></item><item><title>Should a public API sandbox use the same developer accounts as production?</title><link>https://www.devobs.io/articles/qa-developer-sandbox-production-identities/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-developer-sandbox-production-identities/</guid><description>Use one developer login across environments, but keep sandbox and production apps, secrets, tokens, data, and grants separate.</description><pubDate>Mon, 24 Apr 2023 21:55:13 GMT</pubDate></item><item><title>Design Delegation Boundaries with OAuth Token Exchange</title><link>https://www.devobs.io/articles/oauth-token-exchange-delegation-boundaries/</link><guid isPermaLink="true">https://www.devobs.io/articles/oauth-token-exchange-delegation-boundaries/</guid><description>Give each downstream service a narrow token by separating subject, actor, audience, scope, lifetime, and audit context.</description><pubDate>Sun, 23 Apr 2023 11:38:29 GMT</pubDate></item><item><title>Should customers be able to see which other organizations a user belongs to?</title><link>https://www.devobs.io/articles/qa-competing-customers-membership-privacy/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-competing-customers-membership-privacy/</guid><description>For competing-customer B2B apps, keep customer-visible membership data scoped to the current organization.</description><pubDate>Sat, 22 Apr 2023 22:36:32 GMT</pubDate></item><item><title>Should missing profile fields prevent account creation or be collected after login?</title><link>https://www.devobs.io/articles/qa-ciam-progressive-profile-completion/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ciam-progressive-profile-completion/</guid><description>Usually collect nonessential profile fields after login; block account creation only for security-, legal-, or immediately action-critical data.</description><pubDate>Fri, 21 Apr 2023 15:39:11 GMT</pubDate></item><item><title>Should a background job store a snapshot of its input or fetch current data when it runs?</title><link>https://www.devobs.io/articles/qa-enqueue-reference-snapshot/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-enqueue-reference-snapshot/</guid><description>Use snapshots for reproducibility, references for freshness, and version-bound references when you need both auditability and smaller queue payloads.</description><pubDate>Tue, 18 Apr 2023 00:42:04 GMT</pubDate></item><item><title>How do we decide whether an index is worth its write amplification cost to keep?</title><link>https://www.devobs.io/articles/qa-ge50-how-do-we-decide-whether-an-index-is-worth-its-write-amplification-cost-to-keep/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-how-do-we-decide-whether-an-index-is-worth-its-write-amplification-cost-to-keep/</guid><description>A practical framework for deciding whether a PostgreSQL index still earns its ongoing write, storage, and maintenance cost in production.</description><pubDate>Wed, 12 Apr 2023 06:04:12 GMT</pubDate></item><item><title>Distributed rate limits need a consistency model too</title><link>https://www.devobs.io/articles/distributed-rate-limit-semantics/</link><guid isPermaLink="true">https://www.devobs.io/articles/distributed-rate-limit-semantics/</guid><description>Choose centralized, local, leased, or approximate quotas by fairness, latency, availability, and acceptable overshoot during failures.</description><pubDate>Sun, 09 Apr 2023 01:34:05 GMT</pubDate></item><item><title>How do we build a task-coverage map that keeps technical documentation navigation honest?</title><link>https://www.devobs.io/articles/qa-ge50-task-coverage-map-docs-navigation/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-task-coverage-map-docs-navigation/</guid><description>Model documentation around canonical user tasks, then use that map to drive navigation, ownership, and release maintenance.</description><pubDate>Fri, 07 Apr 2023 05:49:17 GMT</pubDate></item><item><title>Choose Queues or Streams by How You Need to Recover</title><link>https://www.devobs.io/articles/queues-versus-streams-by-recovery-model/</link><guid isPermaLink="true">https://www.devobs.io/articles/queues-versus-streams-by-recovery-model/</guid><description>Compare disposable jobs and retained facts through ownership, replay, ordering, fan-out, retention, and consumer recovery.</description><pubDate>Mon, 03 Apr 2023 12:51:32 GMT</pubDate></item><item><title>CSRF Defenses for Cookie-Authenticated JSON APIs</title><link>https://www.devobs.io/articles/csrf-defense-cookie-authenticated-apis/</link><guid isPermaLink="true">https://www.devobs.io/articles/csrf-defense-cookie-authenticated-apis/</guid><description>Choose layered CSRF controls from browser request behavior, cookie scope, content types, CORS, and the cost of rejecting legitimate clients.</description><pubDate>Wed, 29 Mar 2023 16:49:29 GMT</pubDate></item><item><title>Alternatives to one identity-provider connection per enterprise customer</title><link>https://www.devobs.io/articles/single-idp-per-customer-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/single-idp-per-customer-alternatives/</guid><description>Compare three ways to support one enterprise customer across multiple identity providers, including shared workspaces, separate workspaces, and migration bridges.</description><pubDate>Fri, 24 Mar 2023 19:29:54 GMT</pubDate></item><item><title>Should customers still be able to log in after their subscription expires?</title><link>https://www.devobs.io/articles/qa-customer-contract-expiry-login-access/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-customer-contract-expiry-login-access/</guid><description>Yes—usually they should still be able to log in, but not continue normal paid work.</description><pubDate>Fri, 24 Mar 2023 15:27:10 GMT</pubDate></item><item><title>Trace One Failed User Action From Browser to Backend</title><link>https://www.devobs.io/articles/browser-to-backend-correlation/</link><guid isPermaLink="true">https://www.devobs.io/articles/browser-to-backend-correlation/</guid><description>Propagate trace context through frontend, APIs, jobs, and logs while respecting trust, sampling, and privacy boundaries.</description><pubDate>Fri, 24 Mar 2023 02:10:09 GMT</pubDate></item><item><title>How should we roll out repository-wide formatting without making history and open branches painful?</title><link>https://www.devobs.io/articles/qa-formatter-migration-blame/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-formatter-migration-blame/</guid><description>Pin formatter settings, land one mechanical commit, record it for git blame, and enable CI checks after the cutover.</description><pubDate>Wed, 22 Mar 2023 03:47:43 GMT</pubDate></item><item><title>How do we debug full-text relevance failures caused by analyzers rather than scoring math?</title><link>https://www.devobs.io/articles/qa-ge50-analyzer-caused-relevance-debugging/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-analyzer-caused-relevance-debugging/</guid><description>A practical playbook for proving whether bad full-text ranking comes from analyzers, field design, or scoring before changing BM25 or boosts.</description><pubDate>Mon, 20 Mar 2023 14:32:28 GMT</pubDate></item><item><title>Why does database disk usage keep growing after we delete rows?</title><link>https://www.devobs.io/articles/qa-long-transactions-prevent-reclamation/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-long-transactions-prevent-reclamation/</guid><description>PostgreSQL usually reuses space freed by DELETE before it returns it to the operating system.</description><pubDate>Mon, 20 Mar 2023 08:58:23 GMT</pubDate></item><item><title>Make loading, success, and failure states perceivable</title><link>https://www.devobs.io/articles/accessible-loading-and-error-states/</link><guid isPermaLink="true">https://www.devobs.io/articles/accessible-loading-and-error-states/</guid><description>Design async interface transitions with status messages, focus rules, stable controls, and restrained announcements for screen-reader users.</description><pubDate>Sat, 18 Mar 2023 10:00:36 GMT</pubDate></item><item><title>How should an alert distinguish zero errors from missing metrics?</title><link>https://www.devobs.io/articles/qa-missing-metrics-not-healthy/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-missing-metrics-not-healthy/</guid><description>Treat healthy zero, missing series, scrape failure, and retired targets as separate alert states so lost telemetry does not look like success.</description><pubDate>Mon, 13 Mar 2023 13:25:43 GMT</pubDate></item><item><title>How do I stop an expired job worker from overwriting a newer worker&apos;s result?</title><link>https://www.devobs.io/articles/qa-stale-worker-fencing/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-stale-worker-fencing/</guid><description>Lease expiry is not enough. Use fencing tokens enforced at the write boundary so stale workers cannot overwrite newer results after a pause or partition.</description><pubDate>Mon, 13 Mar 2023 08:12:44 GMT</pubDate></item><item><title>How should shared CI workflows be versioned across many repositories?</title><link>https://www.devobs.io/articles/qa-shared-pipeline-versioning/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-shared-pipeline-versioning/</guid><description>Version shared CI with immutable references, compatibility tests, staged upgrades, and a rollback path so one template change cannot silently rewrite every repository’s build.</description><pubDate>Sat, 11 Mar 2023 03:13:43 GMT</pubDate></item><item><title>How do you evolve a configuration schema while old and new binaries read and write the same config?</title><link>https://www.devobs.io/articles/qa-ge50-config-schema-version-compatibility-mixed-fleet/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-ge50-config-schema-version-compatibility-mixed-fleet/</guid><description>A practical guide to evolving shared configuration safely in mixed-version fleets, covering additive changes, defaults, downgrade support, and rollout order.</description><pubDate>Fri, 10 Mar 2023 04:10:55 GMT</pubDate></item><item><title>Why does a load test report good latency while users experience long stalls?</title><link>https://www.devobs.io/articles/qa-latency-monitoring-coordinated-omission/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-latency-monitoring-coordinated-omission/</guid><description>A load test can look healthy while users stall when the test uses a closed loop that slows its own arrivals during server stalls.</description><pubDate>Thu, 09 Mar 2023 03:52:04 GMT</pubDate></item><item><title>Alternatives to buying customer identity with an Okta workforce agreement</title><link>https://www.devobs.io/articles/okta-customer-identity-alternatives-suite-procurement/</link><guid isPermaLink="true">https://www.devobs.io/articles/okta-customer-identity-alternatives-suite-procurement/</guid><description>Evaluate a customer identity purchase on product requirements, exact Okta or Auth0 scope, and Ory Network&apos;s managed API-first approach.</description><pubDate>Sat, 04 Mar 2023 06:44:38 GMT</pubDate></item><item><title>What should we do when a migration already applied in production was edited in Git?</title><link>https://www.devobs.io/articles/qa-migration-history-checksum-drift/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-migration-history-checksum-drift/</guid><description>Reconstruct the deployed migration and live schema, then restore the original file, add a corrective migration, or repair metadata only when database state already matches.</description><pubDate>Tue, 28 Feb 2023 19:37:15 GMT</pubDate></item><item><title>Why do identical source commits produce different release binaries?</title><link>https://www.devobs.io/articles/qa-reproducible-build-timestamps/</link><guid isPermaLink="true">https://www.devobs.io/articles/qa-reproducible-build-timestamps/</guid><description>Identical commits produce different binaries when the build still depends on changing inputs such as timestamps, paths, locale, ordering, randomness, or toolchain versions.</description><pubDate>Thu, 23 Feb 2023 14:02:44 GMT</pubDate></item><item><title>Choose a multi-region write model from invariants</title><link>https://www.devobs.io/articles/multi-region-write-architecture/</link><guid isPermaLink="true">https://www.devobs.io/articles/multi-region-write-architecture/</guid><description>Compare single-writer, partitioned-writer, and active-active designs through conflict semantics, failover, latency, RPO, and operating burden.</description><pubDate>Tue, 21 Feb 2023 06:04:02 GMT</pubDate></item><item><title>Define null, missing, and empty before they cross a boundary</title><link>https://www.devobs.io/articles/null-missing-empty-data-semantics/</link><guid isPermaLink="true">https://www.devobs.io/articles/null-missing-empty-data-semantics/</guid><description>Give create, patch, clear, default, and unknown states field-specific meanings that survive JSON, forms, TypeScript, and SQL.</description><pubDate>Tue, 07 Feb 2023 10:01:33 GMT</pubDate></item><item><title>WSO2 Identity Server alternatives when a SaaS product leaves a shared enterprise platform</title><link>https://www.devobs.io/articles/wso2-identity-server-alternatives-saas-carveout/</link><guid isPermaLink="true">https://www.devobs.io/articles/wso2-identity-server-alternatives-saas-carveout/</guid><description>Assess WSO2 Identity Server, Keycloak, and managed Ory Network when a SaaS product separates from a shared enterprise identity platform.</description><pubDate>Mon, 06 Feb 2023 02:55:17 GMT</pubDate></item><item><title>Alternatives to self-hosted Ory Hydra when operating the OAuth server becomes a separate job</title><link>https://www.devobs.io/articles/self-hosted-hydra-alternatives-managed-oauth/</link><guid isPermaLink="true">https://www.devobs.io/articles/self-hosted-hydra-alternatives-managed-oauth/</guid><description>Compare self-hosted Hydra with managed Ory Network by testing issuer, client, consent, and account-system contracts before moving an OAuth service.</description><pubDate>Wed, 01 Feb 2023 21:26:48 GMT</pubDate></item><item><title>Alternatives to adding SAML support directly to every application backend</title><link>https://www.devobs.io/articles/customer-saml-versus-oidc-bridge-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/customer-saml-versus-oidc-bridge-alternatives/</guid><description>Should you implement enterprise federation in every backend or place it at a shared identity boundary? Compare ownership, migration, and evaluation criteria.</description><pubDate>Sun, 29 Jan 2023 09:15:52 GMT</pubDate></item><item><title>Put every production change on the incident timeline</title><link>https://www.devobs.io/articles/deployment-markers-in-telemetry/</link><guid isPermaLink="true">https://www.devobs.io/articles/deployment-markers-in-telemetry/</guid><description>Use one change-event schema for deploys, configuration, flags, and infrastructure so responders can correlate regressions quickly.</description><pubDate>Thu, 26 Jan 2023 17:55:03 GMT</pubDate></item><item><title>Contract tests for APIs and events: protect behavior while allowing change</title><link>https://www.devobs.io/articles/contract-tests-for-apis-and-events/</link><guid isPermaLink="true">https://www.devobs.io/articles/contract-tests-for-apis-and-events/</guid><description>Test transport shape, consumer assumptions, and semantic invariants while leaving provider implementation and unused fields free to evolve.</description><pubDate>Sun, 22 Jan 2023 21:34:12 GMT</pubDate></item><item><title>Keycloak Authorization Services alternatives for application resource permissions</title><link>https://www.devobs.io/articles/keycloak-authorization-services-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/keycloak-authorization-services-alternatives/</guid><description>Retain Keycloak login while evaluating OPA, OpenFGA, and managed Ory Network for application-owned resource permissions and enforcement.</description><pubDate>Thu, 19 Jan 2023 04:44:48 GMT</pubDate></item><item><title>Capacity Planning Starts at the First Saturated Resource</title><link>https://www.devobs.io/articles/capacity-planning-from-saturation/</link><guid isPermaLink="true">https://www.devobs.io/articles/capacity-planning-from-saturation/</guid><description>Build a service envelope from measured demand, concurrency, queues, compute, memory, connections, and downstream quotas.</description><pubDate>Sat, 14 Jan 2023 22:52:06 GMT</pubDate></item><item><title>Set consistency requirements one user action at a time</title><link>https://www.devobs.io/articles/consistency-requirements-by-user-action/</link><guid isPermaLink="true">https://www.devobs.io/articles/consistency-requirements-by-user-action/</guid><description>Replace a system-wide strong-versus-eventual debate with explicit anomaly and freshness requirements for each workflow.</description><pubDate>Wed, 11 Jan 2023 23:24:05 GMT</pubDate></item><item><title>Alternatives to separate login stacks for self-serve users and enterprise customers</title><link>https://www.devobs.io/articles/separate-b2c-b2b-login-stacks-alternatives/</link><guid isPermaLink="true">https://www.devobs.io/articles/separate-b2c-b2b-login-stacks-alternatives/</guid><description>Should a product with personal accounts and enterprise contracts consolidate customer authentication? Compare ownership, migration, and shared-login criteria.</description><pubDate>Thu, 05 Jan 2023 17:34:29 GMT</pubDate></item></channel></rss>