hetzner-k3s
https://github.com/vitobotta/hetzner-k3s
This is a CLI tool designed to make it incredibly fast and easy to create and manage Kubernetes clusters on Hetzner Cloud using k3s, a lightweight Kubernetes distribution from Rancher. In a test run, I created a 500-node highly available cluster (3 masters, 497 worker nodes) in just under 11 minutes - though this was with only the public network, as private networks are limited to 100 instances per network. I think this might be a world record!
https://github.com/vitobotta/hetzner-k3s
cloudflare-tunnel-ingress-controller
https://github.com/STRRL/cloudflare-tunnel-ingress-controller
TLDR; This project simplifies exposing Kubernetes services to the internet easily and securely using Cloudflare Tunnel.
https://github.com/STRRL/cloudflare-tunnel-ingress-controller
go-ansible
https://github.com/apenella/go-ansible
Go-ansible is a Go package that allows executing Ansible commands, such as ansible-playbook, ansible-inventory, or ansible, directly from Golang applications. It offers a variety of options for each command, facilitating seamless integration of Ansible functionality into your projects. It is important to highlight that go-ansible is not an alternative implementation of Ansible, but rather a wrapper around the Ansible commands. Let's dive in and explore the capabilities of go-ansible together.
https://github.com/apenella/go-ansible
Turning Non-Prod Incidents into Resilience-Building Opportunities
https://uptimelabs.io/turning-non-prod-incidents-into-resilience-building-opportunities
https://uptimelabs.io/turning-non-prod-incidents-into-resilience-building-opportunities
How Should You Compensate Your Employees for Being On Call?
https://www.pagerduty.com/blog/how-should-you-compensate-your-employees
https://www.pagerduty.com/blog/how-should-you-compensate-your-employees
Secure Terraform Deployments on Azure with Workload Identity Federation
https://engineering.cloudeteer.de/blog/2025/secure-terraform-deployments-on-azure-with-workload-identity-federation
https://engineering.cloudeteer.de/blog/2025/secure-terraform-deployments-on-azure-with-workload-identity-federation
Why do we do blameless incident reviews?
https://fgj.codes/posts/why-do-we-do-blameless-incident-reviews
https://fgj.codes/posts/why-do-we-do-blameless-incident-reviews
The Dark Side of Terraform: Drifts, Chaos, and the Headaches They Bring
https://engineering.razorpay.com/the-dark-side-of-terraform-drifts-chaos-and-the-headaches-they-bring-186ce3a068b6
https://engineering.razorpay.com/the-dark-side-of-terraform-drifts-chaos-and-the-headaches-they-bring-186ce3a068b6
Why Pull Base Images When You Can Build Your Own?
https://dev.to/ironmanav3000/why-pull-base-images-when-you-can-build-your-own-22ml
https://dev.to/ironmanav3000/why-pull-base-images-when-you-can-build-your-own-22ml
Kubernetes configuration linting tools
https://itnext.io/kubernetes-configuration-linting-tools-699ddeedaeec
https://itnext.io/kubernetes-configuration-linting-tools-699ddeedaeec
Git Happens: How Argo CD took over our deployments
https://mirakl.tech/git-happens-how-argo-cd-took-over-our-deployments-e214343e1532
https://mirakl.tech/git-happens-how-argo-cd-took-over-our-deployments-e214343e1532
Patroni Backups: When pgBackRest and ArgoCD Have Your Back (Literally)
https://medium.com/@yatzikziv/patroni-backups-when-pgbackrest-and-argocd-have-your-back-literally-091afa98be50
https://medium.com/@yatzikziv/patroni-backups-when-pgbackrest-and-argocd-have-your-back-literally-091afa98be50
(Yet) Another Take on Integrating Terraform with Argo CD
https://akuity.io/blog/yet-another-take-on-integrating-terraform-with-argo-cd
https://akuity.io/blog/yet-another-take-on-integrating-terraform-with-argo-cd
DBaaS in 2024: Which PostgreSQL operator for Kubernetes to select for your platform? Part 4
https://medium.com/@davidpech_39825/dbaas-in-2024-which-kubernetes-postgresql-operator-part-4-crunchys-pgo-9225d518c71d
https://medium.com/@davidpech_39825/dbaas-in-2024-which-kubernetes-postgresql-operator-part-4-crunchys-pgo-9225d518c71d
300,000+ Prometheus Servers and Exporters Exposed to DoS Attacks
https://www.aquasec.com/blog/300000-prometheus-servers-and-exporters-exposed-to-dos-attacks
https://www.aquasec.com/blog/300000-prometheus-servers-and-exporters-exposed-to-dos-attacks
Connecting Kubernetes K3s cluster to external router using BGP with MetalLB and Nginx Ingress
https://medium.com/@nikoolayy1/connecting-kubernetes-k3s-cluster-to-external-router-using-bgp-with-metallb-bgp-nginx-as-ingress-9bb767dcecd2
https://medium.com/@nikoolayy1/connecting-kubernetes-k3s-cluster-to-external-router-using-bgp-with-metallb-bgp-nginx-as-ingress-9bb767dcecd2
silver-surfer
https://github.com/devtron-labs/silver-surfer
Api-Version Compatibility Checker & Provides Migration Path for K8s Objects
https://github.com/devtron-labs/silver-surfer
kubectl-klock
https://github.com/applejag/kubectl-klock
A kubectl plugin to render the kubectl get pods --watch output in a much more readable fashion.
Think of it as running watch kubectl get pods, but instead of polling, it uses the regular watch feature to stream updates as soon as they occur.
https://github.com/applejag/kubectl-klock
1