Tag: #policy
Writing on GPUs, LLMs, MLOps, Kubernetes — and mindset · 8 posts
Why Two Projects at the Same Company Reached Opposite Conclusions on AI Contributions
OpenJDK banned contributions made with generative AI outright in April 2026, while GraalVM, under the same Oracle umbrella, explicitly permitted the use of AI coding assistants around the same time. Both projects use the
2026-08-09 · 8 min read #culture#open-source#ai#policy#code-reviewAging Societies — The Challenges and Opportunities of Longer Lives
A layered look at population aging, the great demographic shift humanity is experiencing for the first time. We trace its causes and speed, the strain on pensions and labor, intergenerational support, the cases of Japan
2026-06-21 · 38 min read #society#aging#demographics#policy#cultureKyverno Production Operations: HA, Monitoring, Troubleshooting
Production operations guide for Kyverno. Covers HA deployment (replicas, failurePolicy), PolicyReport/ClusterPolicyReport CRDs, Prometheus metrics and Grafana dashboards, background scanning, PolicyException mechanism, a
2026-03-20 · 2 min read #kyverno#policy#security#open-source-internalsKyverno Architecture Internals: Kubernetes-Native Policy Engine
Deep dive into Kyverno architecture internals. Covers its design as a Kubernetes-native policy engine, Admission Controller/Background Controller/Reports Controller architecture, webhook configuration, ClusterPolicy vs P
2026-03-20 · 2 min read #kyverno#policy#security#open-source-internalsKyverno vs OPA/Gatekeeper: Policy Engine Comparison
Compare Kyverno and OPA/Gatekeeper from architecture, policy language, features, performance, and ecosystem perspectives. Covers YAML/CEL vs Rego, mutation/generation support, image verification, webhook latency, memory
2026-03-20 · 2 min read #kyverno#policy#security#open-source-internalsKyverno Image Verification: Sigstore and Supply Chain Security
Deep dive into Kyverno image verification capabilities. Covers verifyImages rules for cosign signature verification, Notary v2 support, in-toto attestation verification, SLSA provenance checking, Keyless/KMS key manageme
2026-03-20 · 15 min read #kyverno#policy#security#open-source-internalsKyverno Policy Engine Analysis: Validate, Mutate, Generate Rules Deep Dive
Deep dive into Kyverno policy engine internals. Covers match/exclude resource filters, validate rules (pattern matching, deny, CEL, foreach), mutate rules (patchStrategicMerge, patchesJson6902), generate rules (clone, sy
2026-03-20 · 14 min read #kyverno#policy#security#open-source-internalsThe UN AI Governance Era Begins: 2026 Marks a Turning Point in Global AI Regulation
In March 2026, the UN AI Governance Advisory Board released its first global framework, bridging the gap between EU's binding regulations and US self-regulation. The future of global AI safety standards hangs in the bala
2026-03-16 · 7 min read #ai#governance#regulation#eu-ai-act#united-nations