authentik
authentik 2026.8 ships: Actors, domain-joined Agents, and a push past browser-mediated SSO
A side-by-side editorial comparison of Buildkite and Greenbone Vulnerability Manager — release velocity, themes, recent moves, and the top alternatives to consider.
| Feature | Buildkite | Greenbone Vulnerability Manager |
|---|---|---|
| Sector | Infra & APIs | Infra & APIs |
| Velocity score | 8.8 | 6.3 |
| Sparks · 30d | 0 | 1 |
| Top themes | ci-cd, developer-tools, mcp, observability | vulnerability management, web application scanning, gmp protocol, report modeling |
| Last editorial update | 3h ago | 11d ago |
| Website | — | Visit → |
Buildkite keeps converting hand-rolled agent workarounds into first-class CI primitives.
Buildkite is shipping on two fronts. For agents, the MCP server gained list_tests for suite-wide reliability and duration metrics, and the Test Engine API returns the same aggregates behind a version header. For humans, a native checkout block moved sparse clones, shallow depth and skip-checkout out of plugins and into pipeline YAML, agents can ship job logs to an OpenTelemetry collector, and an organization-wide banner now says when GitHub API rate limits - not Buildkite - are holding up pull request status.
Greenbone's scanner daemon is growing a web-application scanning class beside its network roots.
gvmd releases every week or two, and the changelog splits cleanly in three: a sustained build-out of web application scanning, a rewrite of how reports are modeled and exported, and a long tail of memory-management fixes in the C core. Recent versions added web application scanner preferences, scanner verification, and a Web Application VT subtype with a database migration. The report work moved from ad-hoc XML toward a structured report model addressable through new GMP commands.
Buildkite is shipping on two fronts. For agents, the MCP server gained list_tests for suite-wide reliability and duration metrics, and the Test Engine API returns the same aggregates behind a version header. For humans, a native checkout block moved sparse clones, shallow depth and skip-checkout out of plugins and into pipeline YAML, agents can ship job logs to an OpenTelemetry collector, and an organization-wide banner now says when GitHub API rate limits - not Buildkite - are holding up pull request status.
Buildkite is arguing that CI should be forge-independent, and backing it with coverage: GitHub, GitLab, Bitbucket, and now Cursor's Origin, where it shipped as a launch partner on day one. The agent-facing work follows one pattern - remove the workaround automation used to need, so aggregated test metrics replace assembling individual runs and a rate-limit banner replaces guessing why a status never arrived. Each release turns a behavior teams hand-rolled into a supported primitive.
The read side of the MCP server is now largely covered, so expect write-side tools next - retrying jobs, unblocking builds, editing pipelines from an agent - following the pattern the REST expansion established.
gvmd releases every week or two, and the changelog splits cleanly in three: a sustained build-out of web application scanning, a rewrite of how reports are modeled and exported, and a long tail of memory-management fixes in the C core. Recent versions added web application scanner preferences, scanner verification, and a Web Application VT subtype with a database migration. The report work moved from ad-hoc XML toward a structured report model addressable through new GMP commands.
Greenbone is widening what gvmd can orchestrate. Network and container scanning were the existing surface; web application scanning is being brought to parity, with its own VT class, preferences, validation, and verification path. In parallel the GMP protocol is gaining first-class report retrieval commands, which makes report data consumable by tooling rather than only renderable. The bug-fix stream is dominated by frees and cleanup in long-lived report paths, the signature of a codebase under memory pressure at scale.
Web Application VTs now have a subtype, a migration, and scanner verification, but the audit and scan report commands were added separately; expect the report model work to fold web application results into the same structured retrieval path rather than leaving a parallel one.
Other Infra & APIs products tracked by Sparkpulse, ranked by recent ship velocity. Each card links to a full editorial trajectory and lets you pivot into a head-to-head comparison with either Buildkite or Greenbone Vulnerability Manager.
authentik 2026.8 ships: Actors, domain-joined Agents, and a push past browser-mediated SSO
Rancher's public feed is a build-tag stream: three branches bumped the same Go image on one afternoon
Cursor's agents stop waiting to be asked - they subscribe, and they hold a goal until it's done.
Nexus does the diagnosis; the agent is now reaching into the status page too.
Warp turned its quarter of software-factory essays into infrastructure you can buy.
Okta's developer blog is a Cross App Access campaign, now diluted by advocacy-team storytelling.
See all Buildkite alternatives → · See all Greenbone Vulnerability Manager alternatives →
Latest ship moves from both products, interleaved chronologically. ⚡ = editorial spark.
They serve adjacent needs but don't currently overlap on shipped themes. Buildkite is currently shipping more aggressively (velocity 8.8 vs 6.3), with 0 editorial sparks in the last 30 days against 1. See the at-a-glance table above for a side-by-side breakdown of velocity, recent sparks, and editorial themes.
Sparkpulse doesn't pick a winner — we score release velocity, not feature parity. Buildkite is currently shipping more aggressively (velocity 8.8 vs 6.3), with 0 editorial sparks in the last 30 days against 1. For your specific use case, the alternatives sections above list other Infra & APIs products to evaluate alongside.
Top Buildkite alternatives in Infra & APIs are ranked by recent ship velocity. Browse the "Buildkite alternatives" section above for the current picks, or visit /alternatives/buildkite for the full list with editorial commentary on each.
Top Greenbone Vulnerability Manager alternatives in Infra & APIs are ranked by recent ship velocity. Browse the "Greenbone Vulnerability Manager alternatives" section above for the current picks, or visit /alternatives/greenbone-gvmd for the full list with editorial commentary on each.