cloak
buildkit
cloak | buildkit | |
---|---|---|
11 | 53 | |
220 | 7,686 | |
2.7% | 1.0% | |
5.5 | 9.8 | |
about 1 year ago | about 12 hours ago | |
Rust | Go | |
MIT License | Apache License 2.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
cloak
-
Ask HN: Co-Founder? Seeking Co-Founder?
SEEKING FOUNDER CEO | Dev Tools | CEO Co-founder | Worldwide | MVP
Lookign for
Someone with experience taking a product to market, someone willing to trade equity for MAUs.
Idea
https://cloak.software/
Current Progress
Ready to onboard users but still a few issues to iron out.
Contact
https://www.linkedin.com/in/ianpurton
-
Launch HN: Infisical (YC W23) – Open-source secrets manager for developers
Hi. I'm also working on an E2E secrets manager. https://github.com/purton-tech/cloak
A few tips.
1. It looks like I'm able to do account enumeration on your login page. For a secure app you want to make sure this is not possible.
- Ask HN: What are some good examples of Rust code bases to read and learn from?
-
Ask HN: Which CI/CD do you use for a monorepo?
You want to take a look at Earthly. https://earthly.dev/
This gives you a mix of docker and a makefile.
The best bit is you can test your pipeline locally and you are vendor agnostic.
I'm using it here https://github.com/purton-tech/cloak
-
Ask HN: Where do you host images for your blog or landing pages?
I commit to a github repo and that gets deployed to cloudflare pages. https://pages.cloudflare.com/
I use Zola the static site generator. My repo is here https://github.com/purton-tech/cloak/tree/main/www
-
Seeking advice on my AuthZ Implementation for web app.
You can see my migrations to switch on RLS here https://github.com/purton-tech/cloak/blob/main/db/migrations/20220808094314_tenancy_isolation.sql
-
Launch HN: DeploySentinel (YC S22) – End-to-end tests that don't flake
Hi we are running selenium tests in our CI/CD pipeline.
We do actually generate a video of the tests running as an example see here https://github.com/purton-tech/cloak/actions/runs/2787628672
We're not using cypress we use webdriver connected to a selenium docker instance.
Is that something you can connect to?
-
Ask HN: How to find a problem a solo founder could and would want to solve?
I can give you a concrete example if that helps.
I looked at the "secrets automation" space and my background is cryptography and web development.
I'm a solo developer so when I look at a problem I have to make the solution small enough that I can actually build it.
I also have to have an idea about how I will get people to use my product i.e. marketing.
In my case 1Password raised 620million in funding based on their acquisition of Secretshub which for me proves there is a market in secrets automation for developers.
I looked at the secretshub product and I was confident I could build it better with easier to use encryption and make it open source.
As the market is developers I feel writing blog articles about software development will give me a route to market.
So I started about 4 months ago. The product is now here https://cloak.software and source code is here https://github.com/purton-tech/cloak
My first article about web development with rust has already had 16K views so I'm confident with the marketing approach. Now the hard works starts of turning visitors into paying users.
Hope this helps.
-
Ask HN: How does your team manage environment variables?
I've just launched an MVP for a solution to this problem. https://cloak.software/
-
Dagger: a new way to build CI/CD pipelines
I've been using Earthly for about 6 months.
Earthly uses Dockerfile style syntax so I don't have to learn a new language, I can leverage my existing knowledge.
Another advantage is that in Earthly I can run up a docker compose within my pipeline so that I have selenium, envoy and postgres running for integration testing.
You can see my integration tests here https://github.com/purton-tech/cloak/blob/main/Earthfile#L14...
Is that possible in dagger?
buildkit
- ARM vs x86 em Docker
-
The worst thing about Jenkins is that it works
> We are uding docker-in-docker at the moment
You can also run a "less privileged" container with all the features of Docker by using rootless buildkit in Kubernetes. Here are some examples:
https://github.com/moby/buildkit/tree/master/examples/kubern...
https://github.com/moby/buildkit/blob/master/examples/kubern...
It's also possible to run dedicated buildkitd workers and connect to them remotely.
-
Show HN: Dockerfile Explorer
- BuildOp evaluates its input as additional LLB operations to add to the graph to allow for dynamic build graphs (also unused in the Dockerfile frontend)
With the Dockerfile Explorer, we run the Dockerfile frontend[1] that BuildKit uses inside of WASM to parse and produce the LLB output locally in your browser. We then embed the Monaco Editor so that you can change your Dockerfile to see how it impacts the LLB output that BuildKit will use to build your Docker image.
You can see a quick video and read more details on how it all works here: https://depot.dev/blog/dockerfile-explorer.
We'd love any feedback or ideas folks would like around this type of tool!
[0] https://github.com/moby/buildkit#exploring-llb
- macOS Containers v0.0.1
-
Jenkins Agents On Kubernetes
Now since Kubernetes works off of containerd I'll be taking a different approach on handling container builds by using nerdctl and the buildkit that comes bundled with it. I'll do this on the amd64 control plane node since it's beefier than my Raspberry Pi workers for handling builds and build related services. Go ahead and download and unpack the latest nerdctl release as of writing (make sure to check the release page in case there's a new one):
-
Frequent Docker BuildKit cache misses with w/ multi-stage and docker-container
There's a 2-year-old moby/buildkit GitHub issue about frequent build cache misses when using the BuildKit docker-container driver and multi-stage builds. Anyone else in this sub run into this problem and/or have reasonable workarounds? It seems like something that should come up pretty often.
-
A Panic in BuildKit: an Open Source Journey
A couple months ago I encountered a bug in buildkit - when enabling OpenTelemetry tracing, we got occasional panics. With a bit of investigation, we found the cause, fixed and tested in our fork and internal deployments, and pushed to upstream.
-
Is it possible to copy files from a manifest in Dockerfile?
I do some search in the internet and there seems to be no good solution, so I just create a feature request: https://github.com/moby/buildkit/issues/3859
-
Cicada - CI/CD platform written with Rust
Yeah, only Linux containers at the moment, BuildKit is the way we are constructing pipelines and doing caching. Split on if we will support non-linux hosts, but definitely want to find a good solution to not doing Docker-in-Docker.
-
Better support of Docker layer caching in Cargo
Relevant issues are https://github.com/moby/buildkit/issues/3011 and https://github.com/moby/buildkit/issues/1512.