Digest #201: Heroku Shutdown, GitLab at Scale, DDoS with Golang, and AI Agents Security
Heroku’s effective shutdown, how GitLab deploys at massive scale, why Postgres postmaster doesn’t scale, scaling Kubernetes from zero, AWS Cost Categories, Terraform PR reviews and AI agents security.
Welcome to this week’s edition of the DevOps Bulletin.
In this week’s news, we look at what Heroku’s “sustaining engineering” announcement really means for teams still running production workloads there, how GitLab deploys the largest GitLab instance in the world 12x a day, and why Postgres’ postmaster model becomes a scaling bottleneck under extreme concurrency. We also cover ChatGPT Containers now running bash and installing packages, a developer accidentally DDoS-ing their own laptop while learning Go concurrency, and fresh data from the 2025 State of Cloud Security report.
This week’s tutorials go deep into orchestrating specialized AI agent teams, implementing hierarchical AWS Cost Categories for better financial visibility, reducing Kubernetes cold-start latency when scaling nodes from zero, testing whether LLMs can detect hidden backdoors in binaries, building a fully serverless CI/CD pipeline with GitHub Actions and Terraform, understanding Postgres locks visually and conceptually, simplifying Control Tower governance with enhanced CloudFormation Hooks, building a local-first Obsidian RAG with DuckDB and MotherDuck, and generating readable Terraform plan reports for pull request reviews.
The open-source picks include a Kubernetes-native database provisioning platform, a lightweight real-time Docker log viewer, a modern JavaScript-based load testing tool, a GitHub-style diff pager for your terminal, and a security scanner that analyzes AI agent skills for prompt injection and data exfiltration risks.
All this and more in this week’s DevOps Bulletin, don’t miss out!
Newsworthy stories
Tutorials of the week
Orchestrating specialized agent teams for compound engineering
Improve cost visibility and observability with AWS cost categories
Enjoying the Bulletin? Consider supporting it with a paid subscription. You’ll keep the free Friday issues and get extras like bonus deep-dives, templates, and the full archive.
Simplify AWS Control Tower governance with enhanced AWS CloudFormation Hooks
Create readable Terraform plans for pull request reviews with tfplan2md
Videos of the week
Projects of the week
A platform to provision, manage, scale, and back up databases such as MySQL, PostgreSQL, and MongoDB using Helm or a CLI.
Lightweight web UI to stream and search Docker container logs in real time across single or multiple hosts.
A developer-focused load testing tool that lets you write performance tests in JavaScript and run them locally, in CI, or at scale.
A git diff pager based on delta but with a file tree, à la GitHub.
Security scanner that analyzes AI agent skills for prompt injection, data exfiltration, and malicious code using static rules, dataflow analysis, and optional LLM review.
Meme of the week
If you have feedback to share or are interested in sponsoring this newsletter, feel free to reach out via LinkedIn or simply reply to this email.




