Skip to content
View rootsher's full-sized avatar
🐒
Focusing
🐒
Focusing

Organizations

@closure-poland @ninja-zone @gamfi @stack-quell @Cue-Ball-Network @dillcom

Block or report rootsher

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
rootsher/README.md

$ whoami: Principal Platform & Reliability Architect

skill tree blog

build pods plan argo slo on-call learning
$ kubectl get engineer rootsher -o yaml
apiVersion: humans.rootsher.dev/v1
kind: Engineer
metadata:
  name: rootsher                       # Konrad Kowalski
  namespace: warsaw-pl
  labels:
    role: principal-platform-and-reliability-architect
    traits: terraform-junkie.kubernetes-native.security-minded
  annotations:
    rootsher.dev/motto: "Everything as code. Including this README."
spec:
  replicas: 1                          # horizontal scaling blocked by biology
  scope: git push -> CI -> registry -> GitOps -> cluster -> on-call
  strategy:
    type: RollingUpdate               # never Recreate
    rollingUpdate: { maxUnavailable: 0 }
  resources:
    requests: { coffee: "2", sleep: "6h" }
    limits:   { coffee: none }         # yes, I know what that does to QoS
  readinessProbe:
    exec: { command: ["sh", "-c", "test -n \"$PROBLEM\" && is_hard \"$PROBLEM\""] }
status:
  phase: Running
  conditions:
    - { type: OpenToComplexProblems, status: "True" }
    - { type: WritesItDown,          status: "True", reason: blog.rootsher.dev }
    - { type: AcceptsRollbacks,      status: "True", reason: expand-contract-migrations }

Pipeline

$ make prod
[lint]     tflint, hadolint, eslint ................ passed
[test]     unit, integration, terraform test ....... passed
[scan]     trivy, sbom, cosign verify .............. 0 critical
[plan]     terraform plan .......................... 0 to destroy
[sync]     argocd app sync ......................... Synced, Healthy
[canary]   10% -> 50% -> 100% ...................... error budget intact
[friday]   deploy on a friday? ..................... yes, auto-rollback on SLO burn

Stack

Linux Kubernetes Helm Docker Terraform Argo CD
AWS Azure Google Cloud Cloudflare Prometheus Grafana OpenTelemetry Vault PostgreSQL Redis
TypeScript Node.js React

...and the rest of the manifest at skills.rootsher.dev

Setup

$ fastfetch
rootsher@p14s
-------------
Host:      ThinkPad P14s
CPU:       AMD Ryzen 7 PRO 5850U
Memory:    48 GB
OS:        Fedora Sway Spin, LUKS2
WM:        Sway
Terminal:  foot
Shell:     zsh + Oh My Zsh
Editor:    VS Code / Doom Emacs (Evil Mode)
AI:        Claude Code, agentic coding
Browser:   Chromium over a SOCKS5 proxy
Remote:    GitHub Codespaces
ThinkPad P14s Fedora Sway foot + zsh VS Code Doom Emacs Claude Code Chromium Codespaces

Pinned Loading

  1. platform-delivery platform-delivery Public

    The platform side of a delivery flow on Kubernetes: GitOps with ArgoCD, canary releases with Argo Rollouts, Kyverno admission, CloudNativePG, SLO alerting and Terraform for EKS. Runs end to end on …

    HCL

  2. platform-sample-backend platform-sample-backend Public

    A small Fastify and Postgres service with what a platform expects from it: migrations, tests on real Postgres, a distroless image, SBOM, scans and keyless signing.

    TypeScript

  3. use-sheets-queue use-sheets-queue Public

    A small React hook and provider for managing stacked sheets with a simple LIFO queue. Push and pop sheet components declaratively and control their side and size.

    TypeScript 3 1

  4. service-mesh-lab service-mesh-lab Public

    Linkerd and Istio ambient side by side on kind: mTLS, authorization, canary, header routing, timeouts, retries and circuit breaking, each checked with real requests.

    Shell

  5. react-auto-mosaic react-auto-mosaic Public

    A lightweight React component for building responsive mosaic layouts with tiles of varying heights. Define your grid columns and breakpoints, and let the layout automatically arrange tiles to avoid…

    TypeScript 16

  6. react-hot-wire react-hot-wire Public

    A lightweight React integration for dependency injection with hot-wire. Provide resolved services at the application level and inject selected dependencies into components through a simple declarat…

    JavaScript 11