The Model Context Protocol releases a spec update that drops stateful sessions in favor of stateless HTTP, meaning remote MCP servers no longer ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌  ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ 

TLDR

Together With 1Password

TLDR DevOps 2026-07-31

Automated access doesn't automate permissions. (Sponsor)

Cleaning up forgotten permissions shouldn't be a full-time job. 1Password Privileged Access replaces standing access with just-in-time, just-enough privileges for humans, agents, and machines.

  • Access exists only as long as the work requires it
  • Every access event and session is logged automatically
  • Permissions are created directly in the system's native policy language
  • Integrates directly with AWS, Azure, GCP, Kubernetes, Snowflake, and Databricks

Explore 1Password Privileged Access

📱

News & Trends

Post-quantum authentication to origins is now supported (9 minute read)

Cloudflare's Authenticated Origin Pulls and Custom Origin Trust Store products now support post-quantum authentication via ML-DSA signatures, securing connections between Cloudflare's servers and customer origin servers. The company recommends ML-DSA-44 for most applications, describing it as the most performant option.
MCP is going stateless: What the new spec means for AI agents (7 minute read)

The Model Context Protocol releases a spec update that drops stateful sessions in favor of stateless HTTP, meaning remote MCP servers no longer require sticky sessions, shared session stores, or instance coordination to function behind a load balancer. Each request now carries its own context in a metadata object, so any server instance can handle any request. The update also replaces MCP's proprietary logging channel with OpenTelemetry and formally standardizes request tracking using W3C Trace Context, letting teams correlate agent tool calls with the rest of their application stack in a single observability backend.
🚀

Opinions & Tutorials

Automate CI/CD troubleshooting with AWS DevOps Agent and GitHub (5 minute read)

AWS demonstrates an autonomous CI/CD troubleshooting workflow that integrates AWS DevOps Agent with GitHub and MCP Server to investigate failures, identify root causes, and create remediation pull requests, reducing manual debugging effort and accelerating incident resolution.
Dogfooding at scale: migrating cdnjs to Cloudflare's Developer Platform (7 minute read)

Cloudflare has migrated cdnjs, a free JavaScript and CSS CDN used on roughly 12% of all websites, to run entirely on its Developer Platform as of June 23. The service handles an average of 108,000 requests per second across more than 330 data centers, with a 98.6% cache hit rate. The new architecture replaces a hybrid setup spanning GCP Functions and a VM, with R2 now serving as the single source of truth for file content and Cloudflare Workflows running the publishing pipeline.
PostgreSQL's MVCC Is Bad: So Is Everyone Else's (24 minute read)

PostgreSQL's MVCC creates write amplification, table bloat, vacuum pressure, and transaction-ID maintenance by storing old row versions in the table, but competing designs merely move those costs elsewhere. Oracle and InnoDB charge writers and historical readers through undo logs, SQL Server pressures its version store, MongoDB consumes cache and history storage, and LSM databases defer cleanup to compaction, making MVCC a choice about who pays rather than a problem any engine has eliminated.
🧑‍💻

Resources & Tools

Build Open Source AI Agent Skills. Win Up to $5K! (Sponsor)

Your skill could ship in OpenSearch. For real!

Build production-grade agentic IDE skills for OpenSearch observability, search, or migration. Ship real code upstream, claim your share of $5,000 in prizes.

Ends Aug 17.

Ready to build your agent skill? Join the Agent Skills Hackathon

Delightful integration tests in Rust (GitHub Repo)

Rust integration tests can leverage RAII and the testcontainers-rs crate to automatically provision and tear down Docker containers like RabbitMQ, Postgres, and Redis, enabling isolated, parallelizable tests without manual setup or global state.
Tuicr (GitHub Repo)

Tuicr is a terminal-based code review tool with vim keybindings that lets developers write inline comments and submit them directly to GitHub or GitLab. Users navigate with j/k, add comments with the c key, then push reviews with a :submit command that supports approvals, change requests, and draft reviews. Reviews can also be copied as structured markdown and pasted into coding agents like Claude, Codex, or Cursor.
🎁

Miscellaneous

From pilot to production: The platform team's playbook for scaling AI coding agents in regulated industries (6 minute read)

Regulated organizations can move AI coding agents from experimentation to production by building governance foundations around visibility, controlled environments, audit trails, and policy enforcement to enable secure, scalable adoption.
Your Azure DevOps pipelines have a 2027 deadline, and the clock has just started (5 minute read)

Azure DevOps is deprecating its workload identity federation issuer by July 2027, requiring bulk migration of older Service Connections to the Microsoft Entra issuer via a PowerShell script that pre-creates federated credentials before calling the undocumented MigrateToEntraIssuer REST operation, while excluding multitenant apps from conversion.
Code Review Responses: Add Context When It Counts (4 minute read)

Code review replies should include a brief explanation when the resulting code does not make the resolution obvious, multiple valid approaches existed, or important decisions happened outside the review thread. Explaining what changed and why helps reviewers verify fixes faster while preserving a useful record of technical decisions for future contributors.

Quick Links

Amazon EKS now supports EFA and placement groups on Amazon EKS Auto Mode and Karpenter (2 minute read)

Amazon EKS adds support for EC2 placement groups and Elastic Fabric Adapter configuration in EKS Auto Mode and Karpenter node pools, enabling teams to optimize Kubernetes workloads for distributed computing performance, network efficiency, availability, and fault isolation.
Stacked Pull Requests Are Now In Public Preview (3 minute read)

GitHub's stacked pull requests split large changes into ordered, narrowly scoped PRs that can be reviewed in parallel while preserving existing checks and branch protections.

Love TLDR? Tell your friends and get rewards!

Share your referral link below with friends to get free TLDR swag!
Track your referrals here.

Want to advertise in TLDR? 📰

If your company is interested in reaching an audience of devops professionals and decision makers, you may want to advertise with us.

Want to work at TLDR? 💼

Apply here, create your own role or send a friend's resume to jobs@tldr.tech and get $1k if we hire them! TLDR is one of Inc.'s Best Bootstrapped businesses of 2025.

If you have any comments or feedback, just respond to this email!

Thanks for reading,
Kunal Desai & Martin Hauskrecht


Manage your subscriptions to our other newsletters on tech, startups, and programming. Or if TLDR DevOps isn't for you, please unsubscribe.