DevOps.com: "CNCF elevates SPIFFE spec to secure app services"
The Technical Oversight Committee (TOC) of the Cloud Native Computing Foundation (CNCF) announced that the open source Secure Production Identity Framework For Everyone (SPIFFE) specification and the SPIFFE Runtime Environment (SPIRE) have become incubation-level hosted projects.
TOC Approves SPIFFE and SPIRE to Incubation
Today, the CNCF Technical Oversight Committee (TOC) voted to accept SPIFFE and SPIRE as incubation-level hosted projects. The SPIFFE (Secure Production Identity Framework For Everyone) specification defines a standard to authenticate software services in cloud native…
eWeek: "CNCF expands cloud security capabilities with SPIFFE, OPA projects"
The Cloud Native Computing Foundation (CNCF) announced on March 29 that it is adding the Open Policy Agent (OPA) and the Secure Production Identity Framework for Everyone (SPIFFE) projects to its hosted projects roster. .
CNCF to host the SPIFFE Project
Today, the Cloud Native Computing Foundation accepted SPIFFE into the CNCF Sandbox, a home for early stage and evolving cloud native projects. Also known as the Secure Production Identity Framework For Everyone, the SPIFFE project is…
Cilium 1.20: Gateway API ExternalAuth, TCPRoute/UDPRoute, ENI IPAM for IPv6, and more
Cilium 1.20, the second major open source Cilium release of 2026 after Cilium 1.19, is finally here. Three themes stand out in this release: Thank you to every contributor, reviewer and maintainer who made Cilium 1.20…
KubeCon + CloudNativeCon North America 2026: Your Week in Salt Lake City
This November, the cloud native community is heading to Salt Lake City. From November 9–12, 2026, KubeCon + CloudNativeCon North America will bring together adopters and technologists from across open source and cloud native communities for…
Cloud Native platform sovereignty through multi-plane architecture
When people talk about cloud sovereignty, the conversation often starts with regions: where a workload runs and where its data is stored. But choosing a region is only part of the story. The architecture of the…
Shadow AI in CI/CD: Threat-modeling the path from developer laptop to Kubernetes
Artificial intelligence is becoming part of daily software delivery, often before it becomes part of the security architecture. That gap has a name: Shadow AI. It is any AI tool, model, agent, extension, or integration used…
KeycloakCon Japan 2026: Navigating cloud native identity and the AI frontier
The countdown is officially on. In just a few weeks, the cloud-native ecosystem meets in Yokohama for KubeCon + CloudNativeCon Japan 2026. Taking place on Tuesday, July 28 from 09:00 – 12:30, KeycloakCon Japan brings together…
Agent Auth: A lawyer’s day in court
I’ve always thought about AI agents as microservices+. They need everything a traditional microservice needs, and: When thinking about agent auth, I found myself reflecting on a traffic lawyer I hired years ago after receiving a…