Skip to main content

Posts

Featured

Shifting left at enterprise scale: how we manage Cloudflare with Infrastructure as Code

Cloudeflare transitioned its internal operations to an infrastructure as Code (IaC) and "shit left" security model, managing hundreds of production accounts with Terraform and a custom CI/CD pipeline. This approach uses the Open Policy Agent (OPA) framework and Rego to define approximately 50 security polices, ensuring automated compliance checks and peer reviews before deployment to minimize human error.  Read More

Latest Posts

Let's talk about GitHub Actions

No more tokens! Locking down npm Publish Workflows

Data Quality Design Patterns

How to monitor Amazon Bedrock AgentCore AI agent infrastructure in Grafana Cloud

Search Input Query

How we found a bug in Go's arm64 compiler

spock

Gin Web Framework

Building unique, per-customer defenses against advanced bot threats in the AI era