RSSAmplifier

Blog

Joe Karlsson

Developer Marketing Engineer. Writing about databases, smart homes, developer tools, and the things I build.

joekarlsson.comRSS feed ↗154 posts

Latest posts

I Finally Stopped Managing My Homelab by Hand (Everything Just Kept Breaking)

How I migrated 62 Proxmox containers to OpenTofu with a self-hosted MinIO state backend - the audit, the wave migration, the stack, and whether immutable infrastructure is actually worth it.

What I Learned Running DevRel in 2026

Lessons from running DevRel in 2026: why data gets you buy-in, why LLMs are a third distribution surface, and what I actually do in the first 90 days.

I Built a Fully Local Voice Assistant for Home Assistant (With GPU, No Cloud Required)

How I built a GPU-accelerated local voice pipeline for Home Assistant using faster-whisper, Piper TTS, and Ollama - zero cloud required, and the failures that got me here.

Two GPUs, Two Nodes, Seven Services: GPU Workload Distribution on Proxmox

How I distribute GPU workloads across two Proxmox nodes using LXC device binding - VRAM strategy, LXC passthrough config, and Tdarr distributed encoding.

My Personal Claude Code Skills Repo Accidentally Became Internal Tooling

I built a few Claude Code skills for myself because I was tired of copy-pasting the same prompts. Then my coworkers started asking questions. Here is what happened when a personal productivity tool became team infrastructure.

How I Reversed a Traffic Death Spiral (And the Weekly Ritual That's Doing It)

Our traffic was declining. Impressions down, clicks down. I'm a Developer Advocate who somehow also owns our web presence - and diagnosing it revealed two completely different problems that needed two different fixes. Real numbers, the weekly audit workflow, and what's actually working in 2026.

AWS IAM Identity Center (Formerly AWS SSO): The Complete 2026 Guide

AWS IAM Identity Center replaced AWS SSO in 2022. Learn how to set it up, configure permission sets, use the AWS CLI, and audit access with CloudQuery.

CWPP vs CNAPP: What Cloud Security Teams Need to Know in 2026

CWPP protects cloud workloads at runtime. CNAPP unifies CWPP, CSPM, and CIEM into one platform. Learn when each makes sense and how they compare.

What Is Attack Surface Management? A Technical Guide for Cloud Teams

Attack surface management finds exposed cloud assets before attackers do. Learn how ASM differs from CSPM and vulnerability management, with SQL examples.

What Is Cloud Governance? The Complete Guide for Platform Engineering Teams

The policies and controls that keep cloud infrastructure secure, compliant, and cost-efficient. Learn the 6 pillars of cloud governance and how to implement them.

AWS Pinpoint Is Being Deprecated: How to Assess Your Migration Scope

AWS Pinpoint reaches end of support October 2026. Query your Pinpoint usage across all accounts to find what needs migrating before the deadline.

How to get started with Home Assistant in 2026

Are you looking to turn your home into a smart home? With the help of Home Assistant, you can easily automate tasks and make your home more efficient.

Self-Hosted Music Still Sucks in 2026

The *arr ecosystem perfected video automation but music remains stuck with album-centric workflows. Current tools like Lidarr force complete album downloads when users want individual tracks.

CloudQuery Sync Performance: A Practical Troubleshooting Guide

Why CloudQuery syncs slow down (especially after a plugin upgrade), how to diagnose expensive tables, and the CLI command that replaces the tables wildcard with an explicit list.

Did Gemini Just Make Your Google API Keys a Security Risk?

Google API keys safe to embed publicly now authenticate to Gemini. Here's how to audit your GCP projects with CloudQuery to find the exposure.

My Homelab Two Years Later: From Desktop Tower to Server Rack

How my homelab grew from a $200 ThinkServer to a dual R730 server rack with 60+ containers, 10G networking, GPU-accelerated AI, and real power monitoring data from Home Assistant.

Implementing MikroTik's Binary API Protocol in Python from Scratch

A deep dive into implementing MikroTik's proprietary RouterOS binary API protocol in Python - variable-length encoding, sentence-based messaging, and programmatic network infrastructure control. Zero dependencies, 137 lines.

Cloud Operations Metrics and ROI for Leadership

Track the five metric categories that prove cloud operations ROI to leadership. Includes a one-page scorecard template with before-and-after targets.

A 90-Day Roadmap to Cloud Operations Maturity

A week-by-week plan from first inventory sync to automated governance. Three phases, clear milestones, and metrics to prove ROI to leadership.

What Makes a Cloud Data Layer AI-Ready

AI for cloud operations is only as good as the data behind it. Learn what makes a cloud data layer AI-ready and which use cases it enables first.

Mapping SOC 2 and CIS Controls to SQL for Continuous Compliance

Map SOC 2 and CIS controls to SQL queries that run daily. Replace quarterly audit scrambles with continuous compliance evidence generation.

Writing Cloud Security Posture Checks in SQL

Write cloud security checks in SQL instead of proprietary policy languages. See practical queries for public buckets, MFA, encryption, and more.

Beyond Deploy-Time Checks: Continuous Cloud Governance

Deploy-time policy checks miss console changes, configuration drift, and external changes. Continuous governance catches what CI/CD pipelines cannot.

Visibility-First Cloud Governance: Why You Should Start with Data

Most governance models fail because they enforce rules about infrastructure they cannot see. The Visibility-First model starts with a queryable foundation.

Calculating the True Cost of Cloud Operations Toil

Engineering toil from fragmented cloud visibility costs $47K-$90K per engineer yearly. Use our calculator to measure the real cost at your organization.

Why Cloud Compliance Audit Prep Still Takes Weeks

Most teams spend weeks preparing for audits that should take hours. Learn why compliance scrambles persist and how queryable data eliminates them.

The Hidden Cost of Cloud Security Alert Investigation

Security teams spend more time correlating information than fixing problems. See how a single alert costs 45 minutes of manual investigation.

The Cloud Operations Gap in Multi-Cloud Environments

89% of organizations use multiple clouds but only 8% are cloud-mature. Learn what the Cloud Operations Gap is and why it costs teams hours every week.

Cloud Operations Maturity Model: A Six-Dimension Self-Assessment

Score your cloud operations maturity across six dimensions. Only 8% of orgs qualify as highly cloud-mature - here is where most teams actually fall.

How to Detect Public Databases Across AWS, Azure, and GCP with CloudQuery Policies

Detect publicly accessible databases across AWS RDS, Azure, and GCP Cloud SQL. Step-by-step CloudQuery Policies tutorial with copy-paste ClickHouse SQL.

AWS Lambda Python 3.9 End-of-Support: Find and Upgrade Every Affected Function

AWS Lambda Python 3.9 security patches stopped Dec 15, 2025. Find every affected function across all accounts with SQL queries and upgrade to 3.12 or 3.13.

Building a GPU-Accelerated Subtitle Generator for My Video Library

How I built a self-hosted subtitle generation pipeline using GPU-accelerated Whisper AI on my homelab - with parallel workers, VRAM-aware scheduling, automatic language detection, and a multi-layer hallucination filter. A practical faster-whisper guide for video libraries at scale.

Building a Real-Time Digital Graffiti Wall with MongoDB Realm and RGB LEDs

How I built an interactive art installation and collaborative drawing app where multiple users draw on a shared digital canvas that displays their creations live on a physical RGB LED grid, using MongoDB Realm for real-time sync.

Steampipe vs CloudQuery: Architecture and Trade-offs

Steampipe queries cloud APIs live from the terminal. CloudQuery syncs cloud configuration into a persistent inventory. Here is when to use each.

One Year Into DORA: What Actually Worked for ICT Asset Registers

One year into DORA enforcement, 46% of institutions still struggle with asset registers. Learn what worked, common pitfalls, and how to prepare for stricter 2026 enforcement.

CodeBreach Vulnerability: How to Detect If Your AWS CodeBuild Projects Are Affected

Detect CodeBreach vulnerability in your AWS CodeBuild webhook filters. SQL queries to find unanchored ACTOR_ACCOUNT_ID patterns and missing security controls.

AWS + Google Cloud Networking Partnership: Connectivity Solved, Visibility Still Broken

AWS and Google Cloud partnered on multicloud networking, provisioning connections in minutes. But network pipes were the easy problem. Unified visibility across different cloud APIs remains unsolved.

Audit CODEOWNERS Against Okta to Find Orphaned Code Ownership with SQL

Find CODEOWNERS entries for employees who left the company by joining Git file content with your identity provider data. No scripts, just SQL.

Find Commits by Departed Employees Across All Repos with SQL

Identify code changes made by employees who left your organization. Cross-reference git commit authors against your identity provider to find commits needing review.

Find Every repo Missing a LICENSE File with One SQL Query

Identify repositories without LICENSE files across your organization using SQL. No cloning required, no scripts to maintain - just query your git file data.

Find EOL Docker Images, Missing Licenses, and Stale CODEOWNERS Across Thousands of repos with SQL

Query your Dockerfiles, CODEOWNERS, and package.json files across all repos with SQL. No cloning, no custom scripts - just SQL queries that find EOL images, missing licenses, and outdated dependencies in seconds.

Query Your Dockerfiles with SQL: Find EOL Node 18 Images Across All repos

Node 18 reached end-of-life. Find every Dockerfile using Node 18 base images across your organization with a single SQL query - no cloning repos required.

Track React Dependencies Across Your Organization with SQL

Find every package.json using React across all repositories. Query dependency versions, track upgrades, identify outdated packages - all with SQL.

How Unicorne Increased Well-Architected Review Capacity by 60% with CloudQuery

How Unicorne used CloudQuery to automate AWS Well-Architected Framework Reviews and build their FinOps SaaS product Stable - cutting engagement time from 50 to 20 hours.

AWS Lambda Node.js 20 End of Life: Upgrade to Node.js 22 Before April 2026

Node.js 20 on AWS Lambda hits EOL April 30, 2026. Find every affected function across all accounts, fix breaking changes, and upgrade with this step-by-step guide.

6 Cloud CMDB Best Practices for Platform Engineers (2026 Guide)

Cloud CMDB best practices for multi-account environments - automated discovery, tiered sync strategies, SQL-based querying, and historical data retention for compliance.

Building a Claude Code Blog Skill: What I Learned Systematizing Content Creation

I live in the terminal. Like, really live there. As a developer advocate, it’s where I spend most of my time - running commands, testing code, writing docs. Over the past few months, Claude Code...

The Death of Agent-Based CMDB Discovery

Agent-based CMDB discovery fails in cloud environments with containers, serverless, and managed services. API-driven discovery costs 90% less and works everywhere.

The Real-Time Cloud CMDB - Why Ephemeral Infrastructure Killed Traditional Discovery

Traditional CMDBs miss most ephemeral resources because containers live just minutes. Modern cloud CMDBs use tiered sync strategies (15-30 min for critical, hourly for important, daily for baseline). Compare approaches, costs, and learn why ephemeral infrastructure killed traditional discovery.

Cloud CMDB vs Traditional CMDB: A 2026 Comparison

Traditional CMDBs fail 70-80% (Gartner 2024) due to agent-based architecture and rigid ITIL data models. Cloud CMDBs use API-based discovery and native schemas. Compare architecture, implementation time, and technical approaches for 2026.