
Your AI Agent Is a Contractor. Treat It Like One.
I have been the contractor and I have been the team that inherits the contractor's work. AI agents bring the same problems, and platform engineering is how you deal with them.

The AI-Native Internal Developer Platform
IDP adoption has always been hard. AI coding assistants change that — and force us to rethink who the platform's customers actually are.

Centralized AWS Observability: Practical Guide (Part 2)
Step-by-step configuration and code snippets for centralizing AWS metrics and logs using OAM, Terraform, and the observability stack introduced in part one.

Centralized AWS Observability: theoretical justification (part 1)
Series of blog posts that will describe comprehensive observability solution for cloud and on-premise

Enforcing AWS AMI images with OPA
Allow or Disallow AMI IDs using OPA policies

Enforcing AWS Resource Tags with OPA
Using OPA policies to enforce resource tags and corresponding values

Static site with S3 and CloudFront
Learn how I use Hugo, Terraform, GitHub Actions, and AWS services (S3 + CloudFront + Lambda@Edge) to deploy a fast, secure, and scalable static site.

First policy as code using OPA
Using OPA policies to catch dangerous actions during Terraform plan phase

How I Learned the Hard Way That Terraform Needs Policy as Code
Case study: a deleted Terraform state bucket forced a rebuild of 15 AWS accounts. How that incident became a policy-as-code guardrail that stops dangerous changes at plan time.

Using Shift Left paradigm to manage cloud cost
Using OPA policies, Terracost to leverage Shift Left paradigm and have guardrails on pipeline level