Tags
How are Docker digests calculated and are they mutable?
To ensure binary provenance in your software development process you must, among other things, have confidence that the artifact doesnât change. If you use a code review and test result as an âŠ
How Kosli automates Change Management for Kubernetes workloads
If youâre delivering software in a regulated space, and youâre using Kubernetes, youâll know how problematic change management is. On one hand you have a highly dynamic container based system thatâs âŠ
My experience of working remotely with our customers
In my previous blog post I described the onboarding experience at Kosli and how I got started with my colleagues in a remote-first company. This time Iâd like to take this topic further and talk about âŠ
5 reasons why your CI system is a terrible Compliance System of Record
âWhy canât we use our CI system for our Compliance System of Record (CSoR)?â This is a question we get asked a lot when weâre talking about compliance with regulated DevOps teams. And itâs a perfectly âŠ
How to design a DevOps Compliance System of Record
If you deliver software in a regulated industry you have to be able to show that you are following a defined process. And that means being able to produce a record of whatâs going on in your DevOps âŠ
How regulated teams can avoid the DevOps Lite trap with DevOps Change Management
DevOps is being adopted across regulated industries, but old ITIL approaches to change management still create unnecessary lead times and risks. Fortunately, you donât have to fall into the DevOps âŠ
How to secure your software supply chain with Artifact Binary Provenance
In Kosli, we use Artifact Binary Provenance as the foundation for our audit trails. Artifact Binary Provenance is a fancy term, but the idea behind it is really quite simple. All it means is that we âŠ
Kosli 2021 - Making friends with change
A lot can happen in a year, and 2021 was no different. We want to help everyone make friends with change and in 2021 we made a few changes ourselves. Hit play on Eye of the Tiger đ and roll the âŠ
8 reasons why we do ensemble programming
At Kosli we do as much of our work as possible in a group setting, especially (but not limited to) programming. In our experience most tech teams donât do this and we think theyâre missing out on all âŠ
My first week at Kosli - Meet, mobbing, and more!
At the beginning of November I started at Kosli. Itâs not my first job - I have plenty of experience when it comes to starting afresh. In my time as a consultant it felt like I was starting a new job âŠ
Ready to Automate Governance?

