A Managed AI Stack for Developers: Private, Under Your Control, Costed to the Token
Public AI chat quietly leaks IP and breaks NDAs. Deploy a private chat and API on a GPU you own: your data stays home and every token has a known price.
Insights, tutorials, and thoughts on modern DevOps, Kubernetes, and cloud-native technologies.
Subscribe via RSSPublic AI chat quietly leaks IP and breaks NDAs. Deploy a private chat and API on a GPU you own: your data stays home and every token has a known price.
A compose stack on a VM, a Kubernetes cluster on Ankra, and the databases in between. ankra migrate up plans, converts, deploys, dumps and restores, then does it once more for the cutover. Here is what one command has to promise, and how the CLI keeps that promise.
We gave an AI agent one paragraph: build an animated deep sea facts page, wire it to our private GPU, ship it. It came back with a live URL. Here is how.
From an empty UpCloud account to a Kubernetes cluster running a team of AI agents, each with its own personality, chat channel and keys, all building through GitOps.
Two identical cloud VMs measured 2.8x apart on CPU; one failed etcd's fsync bar. A 15-minute in-cluster benchmark suite catches this before production does.
We ran the same k6, iperf3 and fio suite on EKS, GKE and Hetzner and lined the results up against UpCloud, OVH and DigitalOcean. The cheapest node in the test won more than it had any right to.
We ran the same k6, iperf3 and fio suite on identical Kubernetes clusters on UpCloud, OVH and DigitalOcean. The spec sheets matched; the numbers did not.
ingress-nginx is retired and its successor was cancelled before it shipped. A migration path to Gateway API that does not require a big-bang weekend.
The 'never run a database on Kubernetes' rule predates CSI and operators. What production Postgres takes in 2026, and when managed still wins.
Three releases a year, 14 months of patches, and a 6x cluster fee when you lapse. How to turn Kubernetes upgrades from a dreaded project into a routine.
Three weeks ago we called CVE scanners a layer-seven answer for teams who skipped the layer-one work. Then we shipped one. Here is why that is not a contradiction, and what a vulnerability finding has to become before it is worth anything.
Kubermatic KKP is an open source factory for manufacturing Kubernetes clusters at density, and you are the one who runs the factory. Ankra is the platform your team does not have to operate. An honest comparison from a fellow European vendor.