en
Feedback
DevOps&SRE Library

DevOps&SRE Library

Open in Telegram

Библиотека статей по теме DevOps и SRE. Реклама: @ostinostin Контент: @mxssl РКН: https://www.gosuslugi.ru/snet/67704b536aa9672b963777b3

Show more

📈 Analytical overview of Telegram channel DevOps&SRE Library

Channel DevOps&SRE Library (@devopslibrary) in the English language segment is an active participant. Currently, the community unites 19 758 subscribers, ranking 6 522 in the Technologies & Applications category and 33 382 in the Russia region.

📊 Audience metrics and dynamics

Since its creation on невідомо, the project has demonstrated rapid growth, gathering an audience of 19 758 subscribers.

According to the latest data from 28 August, 2026, the channel demonstrates stable activity. Although there has been a change in the number of participants by 133 over the last 30 days and by 4 over the last 24 hours, overall reach remains high.

  • Verification status: Not verified
  • Engagement rate (ER): The average audience engagement rate is 13.91%. Within the first 24 hours after publication, content typically collects 7.00% reactions from the total number of subscribers.
  • Post reach: On average, each post receives 2 749 views. Within the first day, a publication typically gains 1 383 views.
  • Reactions and interaction: The audience actively supports content: the average number of reactions per post is 0.
  • Thematic interests: Content is focused on key topics such as kubernete, cluster, infrastructure, storage, configuration.

📝 Description and content policy

The author describes the resource as a platform for expressing subjective opinions:
Библиотека статей по теме DevOps и SRE. Реклама: @ostinostin Контент: @mxssl РКН: https://www.gosuslugi.ru/snet/67704b536aa9672b963777b3

Thanks to the high frequency of updates (latest data received on 29 August, 2026), the channel maintains relevance and a high level of publication reach. Analytics show that the audience actively interacts with content, making it an important point of influence in the Technologies & Applications category.

19 758
Subscribers
+424 hours
No data7 days
+13330 days
Posts Archive
How We Reduced Median Memory Estimation Error by 99%, With the Help of AI
When you're running a system that processes hundreds of thousands of compaction jobs, even small inaccuracies in memory usage estimates compound into real operational pain.
https://mixpanel.substack.com/p/how-we-reduced-median-memory-estimation

When upserts don't update but still write: Debugging Postgres performance at scale
At Datadog, we track the life cycle of millions of ephemeral hosts that report telemetry data to our platform. When a host stops emitting data, we eventually need to clean it up to avoid bloating our metadata store. To detect inactive hosts, the Datadog team that manages the host metadata store introduced a new upsert to track the last time a host was seen. We expected this new query to have minimal impact. Each host would be updated at most once a day, so even at 25,000 upserts per second, most queries should have been no-ops. But when we rolled out the new query, disk writes doubled and Write-Ahead Logging (WAL) syncs quadrupled. We discovered that even when an upsert doesn't change any values, it still locks the conflicting row, which is recorded in the WAL. Given that a Postgres cluster can only have a single writer, there's a hard limit to how many writes it can handle. The increase in disk writes introduced by the new query was consuming too much of this limited budget and had to be fixed. In this post, we'll walk through how we diagnosed the unexpected overhead by inspecting Postgres's WAL and how we rewrote the query to eliminate the cost without sacrificing correctness.
https://www.datadoghq.com/blog/engineering/debugging-postgres-performance

agent-vault
An open-source credential broker by Infisical that sits between your agents and the APIs they call. Agents should not possess credentials. Agent Vault eliminates credential exfiltration risk with brokered access.
https://github.com/Infisical/agent-vault

quarkdown
Quarkdown is a modern Markdown-based typesetting system designed for versatility. It allows a single project to compile seamlessly into a print-ready book, academic paper, knowledge base, or interactive presentation. All through an incredibly powerful Turing-complete extension of Markdown, ensuring your ideas flow automatically into paper.
https://github.com/iamgio/quarkdown

goshs
goshs is a single-binary file server built for the moments when you need more than Python's SimpleHTTPServer but don't want to configure Apache. HTTP/S, WebDAV, SFTP, SMB, LDAP/S, basic auth, share links, DNS/SMTP callbacks, NTLM hash capture + cracking — all from one command.
https://github.com/patrickhener/goshs

otelite
Lightweight OpenTelemetry receiver and dashboard for local development Otelite is a single-binary observability tool that receives OpenTelemetry data (logs, traces, metrics) and provides a web dashboard and terminal UI for viewing it. Designed for local LLM development with minimal resource usage (<100MB memory, <5% CPU), it starts in seconds and requires no external dependencies.
https://github.com/planetf1/otelite

otel-cardinality-processor
An OpenTelemetry Collector processor that catches metric cardinality explosions before they reach your TSDB.
https://github.com/YElayyat/otel-cardinality-processor

How we built a real-world evaluation platform for autonomous SRE agents at scale
Bits AI SRE is Datadog’s autonomous agent for investigating production incidents. It reasons across metrics, logs, traces, infrastructure metadata, network telemetry, monitor configuration, and more to determine, triage, and remediate the root cause of an issue.
https://www.datadoghq.com/blog/engineering/bits-ai-eval-platform

Реклама. Рекламодатель ООО «Авито Тех». erid: 2Vtzqx6K4Ns

Repost from AvitoTech
Эх, захотелось… Но пока работаем с тем, что есть в SRE-реальности ↖️ Ребята с подкаста «В SREду на кухне» посвятили бюджету ошибок целый выпуск — вместе с Кириллом Борисовым, тимлидом из VK, они обсудили: 🔸 что такое Error budget и можно ли жить без него;  🔸 как объяснить бизнесу его необходимость; 🔸как его считать; 🔸 почему идеальная надёжность — это опасная иллюзия и миф; 🔸 как метрики помогают упростить расчёт. Смотрим и слушаем по ссылкам: 📱 YouTube 📱 VK 📱 Rutube #sre

sish
Open source SSH tunneling for HTTP(S), WS(S), TCP, aliases, and SNI. If you like the simplicity of serveo/ngrok-style sharing but want to use plain SSH and run your own infrastructure, sish is built for that.
https://github.com/antoniomika/sish

x509-certificate-exporter
A Prometheus exporter for certificates focusing on expiration monitoring, written in Go. Designed to monitor Kubernetes clusters from inside, it can also be used as a standalone exporter.
https://github.com/enix/x509-certificate-exporter

cpg
Cilium Policy Generator -- because writing CiliumNetworkPolicies by hand in a default-deny cluster is nobody's idea of a good Friday night.
https://github.com/SoulKyu/cpg

kloudlite
Kloudlite provides cloud-based development workspaces with live service connectivity. Think Telepresence meets cloud IDEs — but with per-developer environment ownership, instant environment switching, and cross-team collaboration built in.
https://github.com/kloudlite/kloudlite

aibrix
Cost-efficient and pluggable Infrastructure components for GenAI inference
https://github.com/vllm-project/aibrix

warden
The open-source egress gateway for AI agents — every API call is authenticated, authorized, and audited. No credentials ever reach the agent.
https://github.com/stephnangue/warden

ing-switch: Migrate from Ingress NGINX to Traefik or Gateway API in Minutes, Not Days https://blog.kubesimplify.com/ing-switch-migrate-from-ingress-nginx-to-traefik-or-gateway-api-in-minutes-not-days

Mastering KEDA on GKE: A Deep Dive into Event-Driven Autoscaling
Event Driven Scaling and How to Fix It When It Breaks
https://saeed.hashnode.dev/keda-on-gke

Hardware-Backed TLS Certificates with cert-manager and YubiHSM 2
Your cert-manager CA key is one kubectl get secret away from being stolen. It's a base64-encoded blob sitting in etcd, and anyone with the right RBAC can read it, copy it, and use it to sign certificates for any service in your cluster.
https://charles.dev/blog/yubihsm-cert-manager

Building eBPF-Based Bandwidth Limiting in AWS Network Policy Agent — Why Vibe Coding Isn’t Enough https://medium.com/@jayanthvn_55441/building-ebpf-based-bandwidth-limiting-in-aws-network-policy-agent-why-vibe-coding-isnt-enough-f8c6681aa278