<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Patch Window</title>
    <link>https://patchwindow.serverdigital.net</link>
    <description>Linux, networking, containers, DevOps, and AI in production environments.</description>
    <language>en</language>
    <managingEditor>daniel@serverdigital.net (Daniel Gustafsson)</managingEditor>
    <webMaster>daniel@serverdigital.net (Daniel Gustafsson)</webMaster>
    <atom:link href="https://patchwindow.serverdigital.net/feed.xml" rel="self" type="application/rss+xml" />
    
    <item>
      <title>grill-me for AI agent teams: using it as a delegation gate in 2026</title>
      <link>https://patchwindow.serverdigital.net/deep-dive/grill-me-ai-agents-multi-agent-workflow</link>
      <guid isPermaLink="true">https://patchwindow.serverdigital.net/deep-dive/grill-me-ai-agents-multi-agent-workflow</guid>
      <pubDate>Tue, 05 May 2026 08:00:00 GMT</pubDate>
      <description>grill-me was designed as rubber ducking for solo devs. I use it as a gate that blocks briefs from reaching downstream agents until the vague parts are gone.</description>
      <category>deep-dive</category>
    </item>
    <item>
      <title>AI SEO Audit Tools: Reliable for Pass/Fail, Not for Counting</title>
      <link>https://patchwindow.serverdigital.net/deep-dive/ai-seo-audit-tools-pass-fail-vs-counting</link>
      <guid isPermaLink="true">https://patchwindow.serverdigital.net/deep-dive/ai-seo-audit-tools-pass-fail-vs-counting</guid>
      <pubDate>Fri, 01 May 2026 08:00:00 GMT</pubDate>
      <description>We ran Cogny against our site. It said 44 out of 100. We fixed what it flagged. We ran it again. It said 85. Then we ran Lighthouse and SEOptimer in the same 30-minute window. Here is what each tool got right, what it still gets wrong, and what changed.</description>
      <category>deep-dive</category>
    </item>
    <item>
      <title>Vault Enterprise 2.0 released April 2026: not the major release you think it is</title>
      <link>https://patchwindow.serverdigital.net/brief/vault-2-0-released</link>
      <guid isPermaLink="true">https://patchwindow.serverdigital.net/brief/vault-2-0-released</guid>
      <pubDate>Thu, 30 Apr 2026 10:00:00 GMT</pubDate>
      <description>HashiCorp Vault Enterprise 2.0 went GA on 13 April 2026, jumping from 1.21 to 2.0. The major bump is administrative, driven by IBM&apos;s support model. The breaking changes for operators are smaller than the version number suggests, but they will trip rekey automation.</description>
      <category>brief</category>
    </item>
    <item>
      <title>Trivy 0.70.0 released April 2026: first release after the supply chain incident</title>
      <link>https://patchwindow.serverdigital.net/brief/trivy-0-70-0-released</link>
      <guid isPermaLink="true">https://patchwindow.serverdigital.net/brief/trivy-0-70-0-released</guid>
      <pubDate>Thu, 30 Apr 2026 09:00:00 GMT</pubDate>
      <description>Trivy 0.70.0 shipped 17 April 2026, the first release after the March supply chain incident. It bundles new features, but the change that breaks CI silently is the rotated GPG key for deb/rpm.</description>
      <category>brief</category>
    </item>
    <item>
      <title>Traefik 3.6.14 released April 2026: five CVEs and a percent-encoded auth bypass</title>
      <link>https://patchwindow.serverdigital.net/brief/traefik-3-6-14-released</link>
      <guid isPermaLink="true">https://patchwindow.serverdigital.net/brief/traefik-3-6-14-released</guid>
      <pubDate>Thu, 30 Apr 2026 08:00:00 GMT</pubDate>
      <description>Traefik 3.6.14 shipped 21 April 2026 with patches for five CVEs. One of them, CVE-2026-40912, lets unauthenticated requests bypass ForwardAuth, BasicAuth, and DigestAuth via percent-encoded prefix tricks.</description>
      <category>brief</category>
    </item>
    <item>
      <title>Wazuh 4.14.5 released April 2026: a security patch they didn&apos;t call a security patch</title>
      <link>https://patchwindow.serverdigital.net/brief/wazuh-4-14-5-released</link>
      <guid isPermaLink="true">https://patchwindow.serverdigital.net/brief/wazuh-4-14-5-released</guid>
      <pubDate>Thu, 30 Apr 2026 07:00:00 GMT</pubDate>
      <description>Wazuh 4.14.5 shipped 23 April 2026. The release notes read like routine maintenance. Five GitHub security advisories published five days later say otherwise.</description>
      <category>brief</category>
    </item>
    <item>
      <title>Local AI in 2026: what&apos;s on the box, and why I built it</title>
      <link>https://patchwindow.serverdigital.net/deep-dive/local-ai-2026-on-the-box</link>
      <guid isPermaLink="true">https://patchwindow.serverdigital.net/deep-dive/local-ai-2026-on-the-box</guid>
      <pubDate>Wed, 29 Apr 2026 08:00:00 GMT</pubDate>
      <description>Local AI on a single RTX 3060: Ollama, SillyTavern, and Stable Diffusion WebUI Forge. What&apos;s on the box, why those choices, and what changed in 2026.</description>
      <category>deep-dive</category>
    </item>
    <item>
      <title>We built a telemetry stack to measure our AI agents, then used it to cut prompt costs</title>
      <link>https://patchwindow.serverdigital.net/deep-dive/agent-telemetry-optimization</link>
      <guid isPermaLink="true">https://patchwindow.serverdigital.net/deep-dive/agent-telemetry-optimization</guid>
      <pubDate>Sun, 19 Apr 2026 08:00:00 GMT</pubDate>
      <description>A Python parser, Prometheus, and Grafana running locally gives per-agent cache hit rates and cost-per-session data. Here is what we did with it.</description>
      <category>deep-dive</category>
    </item>
    <item>
      <title>@holmdigital/engine: WCAG failures mapped to national law</title>
      <link>https://patchwindow.serverdigital.net/deep-dive/holmdigital-engine-wcag-compliance-tool</link>
      <guid isPermaLink="true">https://patchwindow.serverdigital.net/deep-dive/holmdigital-engine-wcag-compliance-tool</guid>
      <pubDate>Fri, 17 Apr 2026 08:00:00 GMT</pubDate>
      <description>Axe tells you which WCAG criterion you failed. @holmdigital/engine tells you which law you broke and which authority can fine you.</description>
      <category>deep-dive</category>
    </item>
    <item>
      <title>Stop Calling It an AI Assistant. Build a Team.</title>
      <link>https://patchwindow.serverdigital.net/deep-dive/stop-calling-it-an-ai-assistant-build-a-team</link>
      <guid isPermaLink="true">https://patchwindow.serverdigital.net/deep-dive/stop-calling-it-an-ai-assistant-build-a-team</guid>
      <pubDate>Fri, 17 Apr 2026 07:00:00 GMT</pubDate>
      <description>Single-agent prompts collapse under their own weight. How to design Claude Code agent teams that hold up: org chart first, profiles second, budget last.</description>
      <category>deep-dive</category>
    </item>
    <item>
      <title>Your pipeline skills are not your identity</title>
      <link>https://patchwindow.serverdigital.net/hot-take/your-pipeline-skills-are-not-your-identity</link>
      <guid isPermaLink="true">https://patchwindow.serverdigital.net/hot-take/your-pipeline-skills-are-not-your-identity</guid>
      <pubDate>Thu, 16 Apr 2026 00:00:00 GMT</pubDate>
      <description>The shift to internal developer platforms and AIOps is real. The reason DevOps engineers are angry about it is worth looking at honestly.</description>
      <category>hot-take</category>
    </item>
    <item>
      <title>K3s on Proxmox: what actually breaks in production</title>
      <link>https://patchwindow.serverdigital.net/deep-dive/k3s-on-proxmox-production-lessons</link>
      <guid isPermaLink="true">https://patchwindow.serverdigital.net/deep-dive/k3s-on-proxmox-production-lessons</guid>
      <pubDate>Wed, 15 Apr 2026 09:00:00 GMT</pubDate>
      <description>Running K3s inside Proxmox VMs with real workloads exposed problems that the quick-start guides don&apos;t mention. Here&apos;s what I found.</description>
      <category>deep-dive</category>
    </item>
    <item>
      <title>Cursor is fine, but it&apos;s not the terminal</title>
      <link>https://patchwindow.serverdigital.net/hot-take/cursor-is-fine-but-its-not-the-terminal</link>
      <guid isPermaLink="true">https://patchwindow.serverdigital.net/hot-take/cursor-is-fine-but-its-not-the-terminal</guid>
      <pubDate>Wed, 15 Apr 2026 08:00:00 GMT</pubDate>
      <description>AI editors are useful. They are also not a replacement for knowing what you&apos;re doing at the prompt.</description>
      <category>hot-take</category>
    </item>
    <item>
      <title>Wazuh 5.0 beta1 released April 2026: new agent layer, rewritten indexer</title>
      <link>https://patchwindow.serverdigital.net/brief/wazuh-5-released</link>
      <guid isPermaLink="true">https://patchwindow.serverdigital.net/brief/wazuh-5-released</guid>
      <pubDate>Wed, 15 Apr 2026 07:00:00 GMT</pubDate>
      <description>Wazuh 5.0 beta1 shipped April 2026 with a rewritten agent communication layer and a new built-in indexer. Upgrade from 4.x requires a full stack restart.</description>
      <category>brief</category>
    </item>
  </channel>
</rss>