# Multi-tenancy

Published articles for Multi-tenancy.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## Data Engineering Weekly #287

DevFeed: [Data Engineering Weekly #287](<https://devfeed.tech/articles/data-engineering-weekly-287-18267.md>)

Original publisher: [Read original article](<https://www.dataengineeringweekly.com/p/data-engineering-weekly-287>)

Author: Ananth Packkildurai

Published: 2026-09-14T02:52:23Z

Content type: article

Language: en

Sources: [Data Engineering Weekly](<https://devfeed.tech/sources/data-engineering-weekly.md>)

Topics: [data-engineering](<https://devfeed.tech/topics/data-engineering.md>), [Kafka](<https://devfeed.tech/topics/kafka.md>), [data observability](<https://devfeed.tech/topics/data-observability.md>), [Embeddings](<https://devfeed.tech/topics/embeddings.md>), [Multi-tenancy](<https://devfeed.tech/topics/multi-tenancy.md>), [Event-Streaming](<https://devfeed.tech/topics/event-streaming.md>), [OpenAI](<https://devfeed.tech/topics/openai.md>), [Library](<https://devfeed.tech/topics/library.md>), [Code](<https://devfeed.tech/topics/code.md>)

Tags: [architecture](<https://devfeed.tech/tags/architecture.md>), [architectures](<https://devfeed.tech/tags/architectures.md>), [data-engineering](<https://devfeed.tech/tags/data-engineering.md>), [data-quality](<https://devfeed.tech/tags/data-quality.md>), [embedding](<https://devfeed.tech/tags/embedding.md>), [engineering](<https://devfeed.tech/tags/engineering.md>), [kafka](<https://devfeed.tech/tags/kafka.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [object-storage](<https://devfeed.tech/tags/object-storage.md>), [observability](<https://devfeed.tech/tags/observability.md>), [openai](<https://devfeed.tech/tags/openai.md>), [streaming](<https://devfeed.tech/tags/streaming.md>), [vector](<https://devfeed.tech/tags/vector.md>)

### AI overview

Data Engineering Weekly #287 covers building data platforms from scratch, including composable architectures, data quality, and observability. It also previews talks on governed machine-executable ontologies for marketing activation and fair, order-preserving Kafka consumption for many tenants. The issue links to OpenAI's storage platform scaling for ChatGPT and Pinterest's embedding retrieval platform.

### Source excerpt

The Weekly Data Engineering Newsletter

## Red Hat AI 3.5 tackles the GPU queue that can stall AI pilots

DevFeed: [Red Hat AI 3.5 tackles the GPU queue that can stall AI pilots](<https://devfeed.tech/articles/red-hat-ai-3-5-tackles-the-gpu-queue-that-can-stall-ai-pilots-8486.md>)

Original publisher: [Read original article](<https://thenewstack.io/red-hat-ai-multitenancy/>)

Author: Adrian Bridgwater

Published: 2026-09-10T17:01:36Z

Content type: news

Language: en

Sources: [The New Stack](<https://devfeed.tech/sources/the-new-stack.md>)

Topics: [Multi-tenancy](<https://devfeed.tech/topics/multi-tenancy.md>), [AI Platform](<https://devfeed.tech/topics/ai-platform.md>), [GPU](<https://devfeed.tech/topics/gpu.md>), [benchmarking](<https://devfeed.tech/topics/benchmarking.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [ai-operations](<https://devfeed.tech/tags/ai-operations.md>), [ai-platform](<https://devfeed.tech/tags/ai-platform.md>), [gpu](<https://devfeed.tech/tags/gpu.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [observability](<https://devfeed.tech/tags/observability.md>), [platform-engineering](<https://devfeed.tech/tags/platform-engineering.md>)

### AI overview

Red Hat AI 3.5 adds multi-tenancy, isolation, priority-aware GPU scheduling, safety benchmarking, observability, and GPU resource management for enterprise AI workloads.

### Source excerpt

Red Hat released Red Hat AI 3.5 this week, a move designed to let software engineering teams run AI with The post Red Hat AI 3.5 tackles the GPU queue that can stall AI pilots appeared first on The New Stack.

## Fewer lockouts, less manual work: What's new for 1Password EPM admins

DevFeed: [Fewer lockouts, less manual work: What's new for 1Password EPM admins](<https://devfeed.tech/articles/fewer-lockouts-less-manual-work-what-s-new-for-1password-epm-admins-1972.md>)

Original publisher: [Read original article](<https://1password.com/blog/whats-new-for-1password-epm-admins>)

Author: info@1password.com (Jairo Camacho)

Published: 2026-08-26T00:00:00Z

Content type: release

Language: en

Sources: [Blog on 1Password Blog](<https://devfeed.tech/sources/blog-on-1password-blog.md>)

Topics: [Provisioning](<https://devfeed.tech/topics/provisioning.md>), [Multi-tenancy](<https://devfeed.tech/topics/multi-tenancy.md>), [Entra ID](<https://devfeed.tech/topics/entra-id.md>), [releases](<https://devfeed.tech/topics/releases.md>), [Single sign-on (SSO)](<https://devfeed.tech/topics/sso.md>)

Tags: [documentation](<https://devfeed.tech/tags/documentation.md>), [entra-id](<https://devfeed.tech/tags/entra-id.md>), [identity](<https://devfeed.tech/tags/identity.md>), [integration](<https://devfeed.tech/tags/integration.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [news](<https://devfeed.tech/tags/news.md>), [outage](<https://devfeed.tech/tags/outage.md>), [releases](<https://devfeed.tech/tags/releases.md>), [scale](<https://devfeed.tech/tags/scale.md>), [security](<https://devfeed.tech/tags/security.md>)

### AI overview

1Password announces releases for EPM admins focused on reducing lockouts and automating provisioning at scale. The updates include Entra ID secret-expiration tracking with reminders and guided rotation, integration between Multi-Tenancy and Automated Provisioning, and Vault Migrations for populating shared vaults in linked accounts.

### Source excerpt

As a company grows, more employees join, but the size of the IT team overseeing critical systems often doesn't grow at the same pace. Admins have to be intentional about prioritizing their efforts to meet the needs of a growing organization. That's why we're excited to announce several releases aimed at helping admins optimize their organization's use of 1Password in two important areas: reducing lockouts and automating provisioning at scale. Preventing avoidable lockouts Entra ID Secret Expiration Most 1Password Business accounts sign in via SSO through an identity provider like Microsoft Entra ID. Admins rely on a secret provisioned by Entra to establish connectivity with 1Password. However, it comes with an expiration date. Once it expires, the connection breaks, preventing anyone from signing in. This was one of the most common and disruptive patterns we'd observe with customers. Entra ID Secret Expiration now tracks it for you. Simply record the expiration date, and 1Password will send escalating reminders across in-app banners, emails, and login prompts at a fixed cadence (e.g., 90/60/30 days). Once it's time to rotate the secret, follow the guided flow in the Admin Console, confirm it's working as intended, and the countdown resets automatically. A predictable secret expiration date should never become an outage, and now it doesn't have to. Standing up new parts of the business quickly Multi-Tenancy and Automated Provisioning integration Earlier this year we released Multi-Tenancy and Automated Provisioning, hosted by 1Password, two critical features for admins to manage provisioning, deprovisioning, and parent/child accounts at scale. Now admins can use these features in tandem, so enterprises with multi-tenant setups can take advantage of Automated Provisioning. To get started, check out our detailed documentation for setting up the Multi-Tenancy and Automated Provisioning integration To get started, check out our detailed documentation for setting up the M

## Build a multi-user Claude Agent SDK app that acts as each of your users

DevFeed: [Build a multi-user Claude Agent SDK app that acts as each of your users](<https://devfeed.tech/articles/build-a-multi-user-claude-agent-sdk-app-that-acts-as-each-of-your-users-16006.md>)

Original publisher: [Read original article](<https://workos.com/blog/build-multi-user-claude-agent-sdk-app>)

Author: WorkOS

Published: 2026-08-24T00:00:00Z

Content type: tutorial

Language: en

Sources: [WorkOS Blog](<https://devfeed.tech/sources/workos-blog.md>)

Topics: [Claude](<https://devfeed.tech/topics/claude.md>), [SDKs](<https://devfeed.tech/topics/sdks.md>), [Multitenancy](<https://devfeed.tech/topics/multitenancy.md>), [Next.js](<https://devfeed.tech/topics/next-js.md>), [Model Context Protocol](<https://devfeed.tech/topics/model-context-protocol.md>), [anthropic](<https://devfeed.tech/topics/anthropic.md>)

Tags: [agent](<https://devfeed.tech/tags/agent.md>), [build](<https://devfeed.tech/tags/build.md>), [claude](<https://devfeed.tech/tags/claude.md>), [how-to](<https://devfeed.tech/tags/how-to.md>), [mcp](<https://devfeed.tech/tags/mcp.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [next-js](<https://devfeed.tech/tags/next-js.md>), [sdk](<https://devfeed.tech/tags/sdk.md>)

### AI overview

This tutorial explains how to build a multi-user Claude Agent SDK application whose tool calls run with the signed-in user's identity. It recommends constructing the tool surface per request, capturing the acting user in a closure, and exposing no tool parameter that lets the model choose another user.

### Source excerpt

Follow the official Agent SDK examples and every user's agent runs on one shared token, which is usually yours. Here is how to bind each tool call to the signed-in user instead, using AuthKit and Pipes relay.

## Multi-tenancy at Scale: How to Give Every User Their Own Database

DevFeed: [Multi-tenancy at Scale: How to Give Every User Their Own Database](<https://devfeed.tech/articles/multi-tenancy-at-scale-how-to-give-every-user-their-own-database-6006.md>)

Original publisher: [Read original article](<https://turso.tech/blog/multi-tenancy-at-scale>)

Author: Jeff Olson

Published: 2026-08-17T00:00:00Z

Content type: article

Language: en

Sources: [Turso Blog](<https://devfeed.tech/sources/turso-blog.md>)

Topics: [Multi-tenancy](<https://devfeed.tech/topics/multi-tenancy.md>), [Databases](<https://devfeed.tech/topics/databases.md>), [SQLite](<https://devfeed.tech/topics/sqlite.md>), [Turso](<https://devfeed.tech/topics/turso.md>), [MySQL](<https://devfeed.tech/topics/mysql.md>), [PostgreSQL](<https://devfeed.tech/topics/postgresql.md>)

Tags: [database](<https://devfeed.tech/tags/database.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [mysql](<https://devfeed.tech/tags/mysql.md>), [platform-api](<https://devfeed.tech/tags/platform-api.md>), [postgresql](<https://devfeed.tech/tags/postgresql.md>), [saas](<https://devfeed.tech/tags/saas.md>), [scale](<https://devfeed.tech/tags/scale.md>), [software-architecture](<https://devfeed.tech/tags/software-architecture.md>), [sqlite](<https://devfeed.tech/tags/sqlite.md>), [turso](<https://devfeed.tech/tags/turso.md>)

### AI overview

This article argues that database-per-tenant architecture becomes practical at scale when each tenant database is a SQLite file rather than a continuously running PostgreSQL or MySQL server process. It contrasts the cost, connection-pooling, and backup challenges of server-based databases with SQLite's low-cost, file-based model, using Turso as the relevant platform context.

### Source excerpt

The warnings against giving every tenant their own database assume a database is a server process. When a database is a file, the tradeoffs look completely different.

## The hyperscale blueprint: Why cloud giants prioritize VMs for Kubernetes over bare metal

DevFeed: [The hyperscale blueprint: Why cloud giants prioritize VMs for Kubernetes over bare metal](<https://devfeed.tech/articles/the-hyperscale-blueprint-why-cloud-giants-prioritize-vms-for-kubernetes-over-bare-metal-12238.md>)

Original publisher: [Read original article](<https://platformengineering.org/blog/the-hyperscale-blueprint-why-cloud-giants-prioritize-vms-for-kubernetes-over-bare-metal>)

Author: Jack Wallen

Published: 2026-07-23T05:40:01Z

Content type: article

Language: en

Sources: [Platform Engineering Blog](<https://devfeed.tech/sources/platform-engineering-blog.md>)

Topics: [virtualization](<https://devfeed.tech/topics/virtualization.md>), [Kubernetes](<https://devfeed.tech/topics/kubernetes.md>), [Containers](<https://devfeed.tech/topics/containers.md>), [Scalability](<https://devfeed.tech/topics/scalability.md>), [Security](<https://devfeed.tech/topics/security.md>), [Amazon Web Services](<https://devfeed.tech/topics/aws.md>), [Nitro System](<https://devfeed.tech/topics/nitro-system.md>), [Multi-tenancy](<https://devfeed.tech/topics/multi-tenancy.md>)

Tags: [aws](<https://devfeed.tech/tags/aws.md>), [containers](<https://devfeed.tech/tags/containers.md>), [kubernetes](<https://devfeed.tech/tags/kubernetes.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [nitro-system](<https://devfeed.tech/tags/nitro-system.md>), [scalability](<https://devfeed.tech/tags/scalability.md>), [security](<https://devfeed.tech/tags/security.md>), [virtual-machines](<https://devfeed.tech/tags/virtual-machines.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>)

### AI overview

Cloud providers generally run Kubernetes and other containerized workloads on virtual machines rather than bare metal because virtualization offers security, isolation, flexibility, scalability, and near-bare-metal performance. AWS Nitro and Firecracker help reduce virtualization overhead, while bare metal remains reserved for specialized performance or hardware-access requirements.

### Source excerpt

Why do cloud giants use VMs for Kubernetes? Learn why AWS, Azure, and Google prioritize Virtual Machines for containerized workloads over bare metal, focusing on security and scalability.

## Building AI Agent Databases: A Complete Guide to Database-per-Agent Architecture

DevFeed: [Building AI Agent Databases: A Complete Guide to Database-per-Agent Architecture](<https://devfeed.tech/articles/building-ai-agent-databases-a-complete-guide-to-database-per-agent-architecture-5873.md>)

Original publisher: [Read original article](<https://turso.tech/blog/a-complete-guide-to-database-per-agent-architecture>)

Author: Jeff Olson

Published: 2026-07-20T00:00:00Z

Content type: tutorial

Language: en

Sources: [Turso Blog](<https://devfeed.tech/sources/turso-blog.md>)

Topics: [AI Agent](<https://devfeed.tech/topics/ai-agent.md>), [Turso](<https://devfeed.tech/topics/turso.md>), [Database](<https://devfeed.tech/topics/database.md>), [Architecture & Design](<https://devfeed.tech/topics/architecture-design.md>), [Multi-tenancy](<https://devfeed.tech/topics/multi-tenancy.md>)

Tags: [agent](<https://devfeed.tech/tags/agent.md>), [ai-agent](<https://devfeed.tech/tags/ai-agent.md>), [ai-agents](<https://devfeed.tech/tags/ai-agents.md>), [architecture](<https://devfeed.tech/tags/architecture.md>), [autonomous](<https://devfeed.tech/tags/autonomous.md>), [building](<https://devfeed.tech/tags/building.md>), [database](<https://devfeed.tech/tags/database.md>), [databases](<https://devfeed.tech/tags/databases.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [software-architecture](<https://devfeed.tech/tags/software-architecture.md>), [turso](<https://devfeed.tech/tags/turso.md>)

### AI overview

This guide explains why giving each AI agent its own dedicated database can be preferable to shared multi-tenant designs. It presents Turso as a lightweight option for creating isolated databases whose storage, lifecycle, and cleanup can be managed independently.

### Source excerpt

Most database scaling advice breaks when you're dealing with AI agents. Here's why giving each agent its own database works, and four patterns for building it on Turso.

## Build an EKS Environment Factory with Pulumi and vCluster

DevFeed: [Build an EKS Environment Factory with Pulumi and vCluster](<https://devfeed.tech/articles/build-an-eks-environment-factory-with-pulumi-and-vcluster-18998.md>)

Original publisher: [Read original article](<https://www.pulumi.com/blog/eks-vcluster-ephemeral-environments-with-pulumi/>)

Author: Pablo Seibelt

Published: 2026-06-04T00:00:00Z

Content type: tutorial

Language: en

Sources: [Pulumi](<https://devfeed.tech/sources/pulumi.md>)

Topics: [Amazon EKS](<https://devfeed.tech/topics/amazon-eks.md>), [Multitenancy](<https://devfeed.tech/topics/multitenancy.md>), [Kubernetes](<https://devfeed.tech/topics/kubernetes.md>), [Provisioning](<https://devfeed.tech/topics/provisioning.md>), [Architecture & Design](<https://devfeed.tech/topics/architecture-design.md>), [Amazon Web Services](<https://devfeed.tech/topics/aws.md>), [CI/CD](<https://devfeed.tech/topics/cicd.md>)

Tags: [amazon-eks](<https://devfeed.tech/tags/amazon-eks.md>), [architecture](<https://devfeed.tech/tags/architecture.md>), [aws](<https://devfeed.tech/tags/aws.md>), [ci-cd](<https://devfeed.tech/tags/ci-cd.md>), [infrastructure](<https://devfeed.tech/tags/infrastructure.md>), [kubernetes](<https://devfeed.tech/tags/kubernetes.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [platform-engineering](<https://devfeed.tech/tags/platform-engineering.md>), [provisioning](<https://devfeed.tech/tags/provisioning.md>), [pulumi](<https://devfeed.tech/tags/pulumi.md>), [tutorials](<https://devfeed.tech/tags/tutorials.md>)

### AI overview

A tutorial shows how to build an ephemeral Kubernetes environment factory with Pulumi, Amazon EKS Auto Mode, and vCluster. It uses a shared host cluster with virtual tenant clusters to reduce environment sprawl, provisioning delays, and operational overhead while preserving tenant isolation controls.

### Source excerpt

AWS reports in an AWS Architecture Blog case study that Deloitte's move to a virtual cluster model on Amazon EKS resulted in 89% faster testing environment provisioning. By consolidating dozens of disparate clusters into a single host cluster with over 50 vCluster instances, the case study says Deloitte saved about 500 QA hours per year. This "Environment Factory" pattern allows platform teams to provide isolated, ephemeral Kubernetes environments on demand without the cost or lag of full cluster provisioning. This post adapts that general architecture with Pulumi to orchestrate Amazon EKS Auto Mode and vCluster. The problem: environment sprawl and provisioning lag Traditional development workflows often rely on one full EKS cluster per developer or feature branch. While this provides strong isolation, it introduces major pain points. Provisioning a full cluster can take 15 minutes or more, which slows down CI/CD pipelines. Managing dozens of clusters also leads to high costs and significant operational overhead. Platform teams need a "soft multi-tenancy" model. This model should feel like a dedicated cluster to the developer but run on shared infrastructure to keep costs low and startup times fast. Architecture overview: the host and the tenants The environment factory architecture consists of two main layers. Host cluster: A single, reliable EKS cluster managed with EKS Auto Mode. This cluster provides the underlying compute, networking, and storage. Tenant environments: Virtual clusters (vCluster) running as pods within host namespaces. According to the vCluster architecture, the virtual control plane handles API requests while a syncer maps virtual resources to the host cluster. This separation allows tenants to manage their own CRDs, namespaces, and RBAC while platform teams use quotas, NetworkPolicies, pod security, IAM boundaries, and node isolation controls to protect the host and other tenants. Implementation: the EKS Auto Mode host EKS Auto Mode simplifies

## Isovalent Networking for Virtualization: Enterprise-Grade Network Segmentation and Multi-Tenancy for VMs in Kubernetes

DevFeed: [Isovalent Networking for Virtualization: Enterprise-Grade Network Segmentation and Multi-Tenancy for VMs in Kubernetes](<https://devfeed.tech/articles/isovalent-networking-for-virtualization-enterprise-grade-network-segmentation-and-multi-tenancy-for-vms-in-kubernetes-31332.md>)

Original publisher: [Read original article](<https://isovalent.com/blog/post/isovalent-networking-for-virtualization/>)

Author: Marcos Hernandez

Published: 2026-06-02T12:59:28Z

Content type: release

Language: en

Sources: [Isovalent - The latest articles covering eBPF-based Networking, Observability, and Security](<https://devfeed.tech/sources/isovalent-the-latest-articles-covering-ebpf-based-networking-observability-and-security.md>)

Topics: [virtualization](<https://devfeed.tech/topics/virtualization.md>), [Network Segmentation](<https://devfeed.tech/topics/network-segmentation.md>), [Multi-tenancy](<https://devfeed.tech/topics/multi-tenancy.md>), [Kubernetes](<https://devfeed.tech/topics/kubernetes.md>)

Tags: [cilium](<https://devfeed.tech/tags/cilium.md>), [ebpf](<https://devfeed.tech/tags/ebpf.md>), [hubble](<https://devfeed.tech/tags/hubble.md>), [isovalent](<https://devfeed.tech/tags/isovalent.md>), [kubernetes](<https://devfeed.tech/tags/kubernetes.md>), [kubernetes-networking](<https://devfeed.tech/tags/kubernetes-networking.md>), [load-balancer](<https://devfeed.tech/tags/load-balancer.md>), [mesh-networking](<https://devfeed.tech/tags/mesh-networking.md>), [migrations](<https://devfeed.tech/tags/migrations.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [network-segmentation](<https://devfeed.tech/tags/network-segmentation.md>), [policy](<https://devfeed.tech/tags/policy.md>), [product](<https://devfeed.tech/tags/product.md>), [runtime-security](<https://devfeed.tech/tags/runtime-security.md>), [tetragon](<https://devfeed.tech/tags/tetragon.md>), [virtualization](<https://devfeed.tech/tags/virtualization.md>), [website](<https://devfeed.tech/tags/website.md>)

### AI overview

Isovalent announced the general availability of Isovalent Networking for Virtualization, a product that provides network segmentation, multi-tenancy, and policy enforcement for virtual machine workloads running in Kubernetes. It also streamlines migrations to KubeVirt.

### Source excerpt

We're formally announcing the General Availability of Isovalent Networking for Virtualization (INV), a purpose-built product that brings full network segmentation, multi-tenancy, and policy enforcement to virtual machine workloads running in Kubernetes, in addition to streamlining migrations to KubeVirt.

## Scaling Personalized Marketing for Multi-Tenant Commerce Platforms

DevFeed: [Scaling Personalized Marketing for Multi-Tenant Commerce Platforms](<https://devfeed.tech/articles/scaling-personalized-marketing-for-multi-tenant-commerce-platforms-20109.md>)

Original publisher: [Read original article](<https://tech.instacart.com/scaling-personalized-marketing-for-multi-tenant-commerce-platforms-816f0c6a046b?source=rss----587883b5d2ee---4>)

Author: Brent Scheibelhut

Published: 2026-05-14T23:53:27Z

Content type: article

Language: en

Sources: [Instacart](<https://devfeed.tech/sources/instacart.md>)

Topics: [Multi-tenancy](<https://devfeed.tech/topics/multi-tenancy.md>), [personalization](<https://devfeed.tech/topics/personalization.md>)

Tags: [architecture](<https://devfeed.tech/tags/architecture.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [personalization](<https://devfeed.tech/tags/personalization.md>), [platforms](<https://devfeed.tech/tags/platforms.md>)

### AI overview

Instacart describes how it adapted its marketing automation infrastructure for Storefront Pro, a white-label e-commerce platform serving more than 350 retailers. The architecture adds multi-tenancy and scaling capabilities to support personalized, lifecycle, and self-service marketing while preserving retailer branding, tenant isolation, performance, and operational independence.

### Source excerpt

TL;DRBackground: Marketing Across Marketplace and Storefront Instacart operates across two distinct commerce experiences: Instacart Marketplace, our first-party consumer marketplace Storefront Pro, our white-label e-commerce platform for retailers For years, our marketing automation infrastructure was built primarily to support Marketplace use cases. That model worked well in a first-party environment, where the product experience, customer relationship, and brand were all centrally managed by Instacart. Storefront Pro introduced a very different set of requirements. As the platform scaled to more than 350 retailers, we needed to support hundreds of independent brands, each with its own brand identity, customer base, and marketing strategy. Retailers wanted the same level of personalization and lifecycle marketing sophistication that is available on the Instacart Marketplace, but in a way that preserved their own brand and operational independence. That raised a core architectural challenge. How do we deliver Marketplace-grade personalization and lifecycle marketing capabilities to hundreds of retailers without sacrificing tenant isolation, performance, or ease of use? To succeed, the platform needed to let retail marketers: Launch onboarding, winback, and promotional campaigns Customize branding and messaging Target specific customer segments Measure performance and iterate quickly At the same time, we could not simply extend a single-tenant marketing system to a multi-tenant environment without introducing serious risks, including: Cross-retailer data leakage API rate-limit bottlenecks Manual operational overhead Inconsistent brand experiences Tight vendor coupling Solving those constraints required rethinking the architecture so that it could support self-service marketing at scale while preserving the isolation and reliability each retailer expects. Architecture Overview Our solution builds on a third-party marketing automation platform, while adding critical mu

## Table-Per-Tenant vs Shared Table: The Multi-Tenancy Tradeoff in Postgres

DevFeed: [Table-Per-Tenant vs Shared Table: The Multi-Tenancy Tradeoff in Postgres](<https://devfeed.tech/articles/table-per-tenant-vs-shared-table-the-multi-tenancy-tradeoff-in-postgres-39658.md>)

Original publisher: [Read original article](<https://www.gauravsarma.com/posts/2026-04-15_table-per-tenant-vs-shared-table>)

Published: 2026-04-15T00:00:00Z

Content type: tutorial

Language: en

Sources: [Gaurav Sarma's Blog](<https://devfeed.tech/sources/gaurav-sarma-s-blog.md>)

Topics: [Multi-tenancy](<https://devfeed.tech/topics/multi-tenancy.md>), [Database](<https://devfeed.tech/topics/database.md>), [Software as a service](<https://devfeed.tech/topics/saas.md>)

Tags: [customers](<https://devfeed.tech/tags/customers.md>), [database](<https://devfeed.tech/tags/database.md>), [indexes](<https://devfeed.tech/tags/indexes.md>), [isolation](<https://devfeed.tech/tags/isolation.md>), [migration](<https://devfeed.tech/tags/migration.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [orders](<https://devfeed.tech/tags/orders.md>), [postgres](<https://devfeed.tech/tags/postgres.md>), [saas](<https://devfeed.tech/tags/saas.md>), [table](<https://devfeed.tech/tags/table.md>)

### AI overview

This tutorial compares table-per-tenant and shared-table designs for multi-tenant SaaS applications in Postgres. It explains how tenant counts, data size, schema changes, scale, query planning, migrations, monitoring, and data-deletion requirements affect the choice.

### Source excerpt

You are building a SaaS product. Every customer has their own orders, invoices, and documents...

## Multi-Tenant Billing Architecture: Design Patterns for SaaS

DevFeed: [Multi-Tenant Billing Architecture: Design Patterns for SaaS](<https://devfeed.tech/articles/multi-tenant-billing-architecture-design-patterns-for-saas-10091.md>)

Original publisher: [Read original article](<https://dodopayments.com/blogs/multi-tenant-billing-architecture/>)

Author: Ayush Agarwal

Published: 2026-04-15T00:00:00Z

Content type: tutorial

Language: en

Sources: [Dodo Payments Blog](<https://devfeed.tech/sources/dodo-payments-blog.md>)

Topics: [Architecture & Design](<https://devfeed.tech/topics/architecture-design.md>), [Multi-tenancy](<https://devfeed.tech/topics/multi-tenancy.md>), [Software as a service](<https://devfeed.tech/topics/saas.md>), [event driven](<https://devfeed.tech/topics/event-driven.md>)

Tags: [architecture](<https://devfeed.tech/tags/architecture.md>), [design-patterns](<https://devfeed.tech/tags/design-patterns.md>), [event-driven](<https://devfeed.tech/tags/event-driven.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [saas](<https://devfeed.tech/tags/saas.md>), [saas-billing](<https://devfeed.tech/tags/saas-billing.md>), [usage-based-billing](<https://devfeed.tech/tags/usage-based-billing.md>)

### AI overview

A guide to designing billing systems for multi-tenant SaaS applications. It compares centralized billing services, event-driven pipelines, and external billing platforms, and discusses product catalogs, subscription management, usage metering, tenant isolation, and build-versus-buy decisions.

### Source excerpt

Design patterns for building multi-tenant billing systems in SaaS. Covers tenant isolation, metering, event-driven billing, and when to build vs buy billing infrastructure.

## Automated Provisioning hosted by 1Password: A Simpler, Smarter Way to Manage Access

DevFeed: [Automated Provisioning hosted by 1Password: A Simpler, Smarter Way to Manage Access](<https://devfeed.tech/articles/automated-provisioning-hosted-by-1password-a-simpler-smarter-way-to-manage-access-1903.md>)

Original publisher: [Read original article](<https://1password.com/blog/automated-provisioning-hosted-by-1password>)

Author: info@1password.com (Allie Dusome)

Published: 2026-03-17T00:00:00Z

Content type: news

Language: en

Sources: [Blog on 1Password Blog](<https://devfeed.tech/sources/blog-on-1password-blog.md>)

Topics: [Provisioning](<https://devfeed.tech/topics/provisioning.md>), [Security](<https://devfeed.tech/topics/security.md>), [API](<https://devfeed.tech/topics/api.md>), [Multi-tenancy](<https://devfeed.tech/topics/multi-tenancy.md>), [Confidential Computing](<https://devfeed.tech/topics/confidential-computing.md>), [Single sign-on (SSO)](<https://devfeed.tech/topics/sso.md>), [zero-knowledge](<https://devfeed.tech/topics/zero-knowledge.md>), [Software as a service](<https://devfeed.tech/topics/saas.md>)

Tags: [api](<https://devfeed.tech/tags/api.md>), [building-1password](<https://devfeed.tech/tags/building-1password.md>), [developer](<https://devfeed.tech/tags/developer.md>), [enterprise](<https://devfeed.tech/tags/enterprise.md>), [infrastructure](<https://devfeed.tech/tags/infrastructure.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [news](<https://devfeed.tech/tags/news.md>), [oauth](<https://devfeed.tech/tags/oauth.md>), [security](<https://devfeed.tech/tags/security.md>), [zero-knowledge](<https://devfeed.tech/tags/zero-knowledge.md>)

### AI overview

1Password announces Automated Provisioning hosted by 1Password, alongside enterprise multi-tenancy, verified emails, an OAuth-based Users API, and Security Automation integrations for its Enterprise Password Manager.

### Source excerpt

Modern enterprises aren't just adding employees; they're adding subsidiaries, multiple teams, contractors, AI builders, temporary projects, and new SaaS tools every week. And every new addition to a company's ecosystem also brings more credentials to manage. Unfortunately, not all of those credentials can be managed by solutions like single-sign-on (SSO) or privileged access management (PAM). Many of them might be stored in shared spreadsheets, developer environments, browser sessions, and automation workflows that traditional identity security systems were never designed to govern. This results in identity sprawl, operational drag, and an overall widening of the Access-Trust Gap. In the face of this ever-expanding attack surface, security leaders are left struggling to deploy credential security across every team and workflow, without having to build more infrastructure just to manage their infrastructure. In light of these issues, today we're introducing a new evolution for 1Password Enterprise Password Manager (EPM): enterprise-grade provisioning, structure, governance, and security automation built directly into the platform. This launch includes: Automated Provisioning hosted by 1Password Enterprise multi-tenancy Verified emails from 1Password OAuth-based Users API and new Security Automation integrations Together, these capabilities make EPM easier to deploy, easier to scale, and easier to operate as the foundational tool of modern identity security. Introducing Automated Provisioning, hosted by 1Password Automated Provisioning hosted by 1Password is our next-generation provisioning solution, built directly into 1Password. Automated Provisioning requires no servers to deploy, no bridge to maintain, and no ongoing infrastructure burden. In early testing, the response from admins was immediate. "We were done in about five minutes. We set everything up from scratch, added the integration in Okta, and it worked immediately. Adding and removing users was seamless.

## Building transactional voice agents at Nector

DevFeed: [Building transactional voice agents at Nector](<https://devfeed.tech/articles/building-transactional-voice-agents-at-nector-39410.md>)

Original publisher: [Read original article](<https://blog.pranshu-raj.in/posts/nector-voice-agents/>)

Author: Pranshu Raj

Published: 2026-03-07T13:39:58Z

Content type: article

Language: en

Sources: [Pranshu Raj - blog on backend systems, performance and sidequests](<https://devfeed.tech/sources/pranshu-raj-blog-on-backend-systems-performance-and-sidequests.md>)

Topics: [Model Context Protocol](<https://devfeed.tech/topics/model-context-protocol.md>), [Latency](<https://devfeed.tech/topics/latency.md>), [Multi-tenancy](<https://devfeed.tech/topics/multi-tenancy.md>), [Back end](<https://devfeed.tech/topics/backend.md>), [observability](<https://devfeed.tech/topics/observability.md>), [Database](<https://devfeed.tech/topics/database.md>)

Tags: [agents](<https://devfeed.tech/tags/agents.md>), [api](<https://devfeed.tech/tags/api.md>), [backend](<https://devfeed.tech/tags/backend.md>), [database-design](<https://devfeed.tech/tags/database-design.md>), [json-rpc](<https://devfeed.tech/tags/json-rpc.md>), [latency](<https://devfeed.tech/tags/latency.md>), [latency-optimization](<https://devfeed.tech/tags/latency-optimization.md>), [mcp](<https://devfeed.tech/tags/mcp.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [observability](<https://devfeed.tech/tags/observability.md>), [pii](<https://devfeed.tech/tags/pii.md>), [production](<https://devfeed.tech/tags/production.md>), [proxy](<https://devfeed.tech/tags/proxy.md>), [rest-api](<https://devfeed.tech/tags/rest-api.md>), [voice](<https://devfeed.tech/tags/voice.md>)

### AI overview

An engineer describes building customer-facing transactional voice agents for ecommerce at Nector. The article covers a REST-to-JSON-RPC MCP proxy that improved observability, PII control, context reduction, latency, and correctness, plus experiments that reduced one agent's p90 latency from more than 8 seconds to 2 seconds.

### Source excerpt

Building production ready voice agents, latency optimization, multi tenancy, MCP proxies - six months of building customer facing voice agents

## Rails Multi-Tenancy

DevFeed: [Rails Multi-Tenancy](<https://devfeed.tech/articles/rails-multi-tenancy-33513.md>)

Original publisher: [Read original article](<https://dev.37signals.com/rails-multi-tenancy/>)

Author: Mike Dalessio, Kimberly Rhodes, Fernando Olivares

Published: 2026-02-13T18:00:00Z

Content type: article

Language: en

Sources: [37signals Dev](<https://devfeed.tech/sources/37signals-dev.md>)

Topics: [Multi-tenancy](<https://devfeed.tech/topics/multi-tenancy.md>), [Rails](<https://devfeed.tech/topics/rails.md>), [SQLite](<https://devfeed.tech/topics/sqlite.md>), [Databases](<https://devfeed.tech/topics/databases.md>), [MySQL](<https://devfeed.tech/topics/mysql.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>), [Replication](<https://devfeed.tech/topics/replication.md>)

Tags: [active-record](<https://devfeed.tech/tags/active-record.md>), [databases](<https://devfeed.tech/tags/databases.md>), [demo](<https://devfeed.tech/tags/demo.md>), [developer](<https://devfeed.tech/tags/developer.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [mysql](<https://devfeed.tech/tags/mysql.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [rails](<https://devfeed.tech/tags/rails.md>), [replication](<https://devfeed.tech/tags/replication.md>), [sqlite](<https://devfeed.tech/tags/sqlite.md>)

### AI overview

Lead Programmer Mike Dalessio discusses multi-tenancy in Rails, including 37signals' work moving Fizzy toward separate customer databases, the Active Record Tenanted gem, safeguards against accidental data leaks, and challenges involving SQLite replication and failover.

### Source excerpt

Lead Programmer Mike Dalessio shares the benefits of multi-tenant databases and how his work with Fizzy led to the the Active Record Tenanted gem.

## Mastering IAM in Ceph: Multi-Tenancy, Access Control, and Why ACLs Must Die

DevFeed: [Mastering IAM in Ceph: Multi-Tenancy, Access Control, and Why ACLs Must Die](<https://devfeed.tech/articles/mastering-iam-in-ceph-multi-tenancy-access-control-and-why-acls-must-die-12334.md>)

Original publisher: [Read original article](<https://ceph.io/en/news/blog/2026/mastering-iam/>)

Author: Daniel Alexander Parkes, Anthony D'Atri

Published: 2026-01-24T00:00:00Z

Content type: article

Language: en

Sources: [Ceph Blog](<https://devfeed.tech/sources/ceph-blog.md>)

Topics: [IAM](<https://devfeed.tech/topics/iam.md>), [Authorization](<https://devfeed.tech/topics/authorization.md>), [Security](<https://devfeed.tech/topics/security.md>), [Multi-tenancy](<https://devfeed.tech/topics/multi-tenancy.md>), [Amazon S3](<https://devfeed.tech/topics/amazon-s3.md>), [Amazon Web Services](<https://devfeed.tech/topics/aws.md>), [Architecture & Design](<https://devfeed.tech/topics/architecture-design.md>)

Tags: [access-control](<https://devfeed.tech/tags/access-control.md>), [aws](<https://devfeed.tech/tags/aws.md>), [blog-post](<https://devfeed.tech/tags/blog-post.md>), [ceph](<https://devfeed.tech/tags/ceph.md>), [defense-in-depth](<https://devfeed.tech/tags/defense-in-depth.md>), [en-article](<https://devfeed.tech/tags/en-article.md>), [en-blog-post](<https://devfeed.tech/tags/en-blog-post.md>), [iam](<https://devfeed.tech/tags/iam.md>), [identity](<https://devfeed.tech/tags/identity.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [operations](<https://devfeed.tech/tags/operations.md>), [production](<https://devfeed.tech/tags/production.md>), [rgw](<https://devfeed.tech/tags/rgw.md>), [s3](<https://devfeed.tech/tags/s3.md>), [security](<https://devfeed.tech/tags/security.md>)

### AI overview

This article explains why ACLs in Ceph Object Gateway should be disabled in favor of centralized IAM policies. It discusses S3 permission failures, multi-tenant access problems, AWS's ACL-disabled defaults, and defense-in-depth measures such as Block Public Access and explicit denies for ACL operations.

### Source excerpt

Introduction ¶ Introduction: When Security Theater Becomes a Real Disaster ¶ In March 2017, a misconfigured S3 bucket at Verizon exposed the personal information of 14 million customers. The root cause wasn't a sophisticated attack; it was a simple oversight in access permissions. The bucket was set to be publicly accessible due to S3 permission misconfiguration, and no one noticed because ACLs were managed separately from the company's centralized IAM policies. The security team had implemented careful, identity-based access controls, but a resource-level ACL silently bypassed them by granting access to "All Users." This scenario repeats constantly across the industry: ACLs creating invisible access paths that security teams don't know exist, buckets accidentally exposed to the public internet, and contractors uploading data that the bucket owner cannot reliably read or administer, while still consuming capacity. Between 2017 and 2019, major companies exposed hundreds of millions of records via misconfigured S3 permissions (ACLs and/or bucket policies): Verizon (2017): 14 million customers - An AWS S3 bucket configured for public access exposed names, addresses, account PINs Facebook (2019): 540 million records - Third-party apps stored user data in publicly accessible S3 buckets Instagram (2019): 49 million records - Marketing firm left influencer database unprotected in AWS S3 The AWS response was clear: since April 2023, all new S3 buckets default to "ACLs disabled" (BucketOwnerEnforced) and Block Public Access enabled. AWS strongly recommends disabling ACLs on existing buckets and migrating to a pure policy-based model with IAM Accounts architecture. If you're running the Ceph Object Gateway (RGW), you have access to the same IAM Accounts model introduced in Ceph Squid 19.2.0. This post explains why ACLs must be disabled immediately and how to implement modern, secure access control with IAM policies. Do This First (Quick Security Wins) Before reading further,

## The Case for Owning Your Auth

DevFeed: [The Case for Owning Your Auth](<https://devfeed.tech/articles/the-case-for-owning-your-auth-5817.md>)

Original publisher: [Read original article](<https://neon.com/blog/the-case-for-owning-your-auth>)

Author: Bereket Engida

Published: 2025-12-10T18:26:27Z

Content type: opinion

Language: en

Sources: [Blog -- Neon Docs](<https://devfeed.tech/sources/blog-neon-docs.md>)

Topics: [Security, Privacy and Abuse Prevention](<https://devfeed.tech/topics/security-privacy-and-abuse-prevention.md>), [Cryptography](<https://devfeed.tech/topics/cryptography.md>)

Tags: [architecture](<https://devfeed.tech/tags/architecture.md>), [auth](<https://devfeed.tech/tags/auth.md>), [authentication](<https://devfeed.tech/tags/authentication.md>), [community](<https://devfeed.tech/tags/community.md>), [data](<https://devfeed.tech/tags/data.md>), [database](<https://devfeed.tech/tags/database.md>), [identity](<https://devfeed.tech/tags/identity.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [product](<https://devfeed.tech/tags/product.md>), [security](<https://devfeed.tech/tags/security.md>)

### AI overview

The article argues that application teams should keep identity and authentication close to their own data model and architecture. It says external identity boundaries can complicate relationships, ownership rules, permissions, and business logic, while specialized tooling can handle authentication machinery such as sessions and token rotation.

### Source excerpt

Identity is one of those things that sits quietly at the center of most applications. You notice it more as your system grows. It affects permissions, data ownership, multi-tenancy, audit logs, and a good portion of your schema design. It becomes part of your runtime and part of...

## Technology Short Take 189

DevFeed: [Technology Short Take 189](<https://devfeed.tech/articles/technology-short-take-189-10919.md>)

Original publisher: [Read original article](<https://blog.scottlowe.org/2025/10/31/technology-short-take-189/>)

Author: Scott Lowe

Published: 2025-10-31T13:00:00Z

Content type: article

Language: en

Sources: [Scott's Weblog](<https://devfeed.tech/sources/scott-s-weblog.md>)

Topics: [networking](<https://devfeed.tech/topics/networking.md>), [Exploit](<https://devfeed.tech/topics/exploit.md>), [Security](<https://devfeed.tech/topics/security.md>), [Kubernetes](<https://devfeed.tech/topics/kubernetes.md>), [Multi-tenancy](<https://devfeed.tech/topics/multi-tenancy.md>), [evpn](<https://devfeed.tech/topics/evpn.md>), [GitLab](<https://devfeed.tech/topics/gitlab.md>), [VXLAN](<https://devfeed.tech/topics/vxlan.md>), [Cloud](<https://devfeed.tech/topics/cloud.md>), [Hardware](<https://devfeed.tech/topics/hardware.md>), [migration](<https://devfeed.tech/topics/migration.md>)

Tags: [aws](<https://devfeed.tech/tags/aws.md>), [cilium](<https://devfeed.tech/tags/cilium.md>), [cli](<https://devfeed.tech/tags/cli.md>), [cloud](<https://devfeed.tech/tags/cloud.md>), [cni](<https://devfeed.tech/tags/cni.md>), [containers](<https://devfeed.tech/tags/containers.md>), [cri-o](<https://devfeed.tech/tags/cri-o.md>), [devops](<https://devfeed.tech/tags/devops.md>), [digital-ocean](<https://devfeed.tech/tags/digital-ocean.md>), [docker](<https://devfeed.tech/tags/docker.md>), [evpn](<https://devfeed.tech/tags/evpn.md>), [go](<https://devfeed.tech/tags/go.md>), [iac](<https://devfeed.tech/tags/iac.md>), [k8s](<https://devfeed.tech/tags/k8s.md>), [kubernetes](<https://devfeed.tech/tags/kubernetes.md>), [linux](<https://devfeed.tech/tags/linux.md>), [migration](<https://devfeed.tech/tags/migration.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [networking](<https://devfeed.tech/tags/networking.md>), [oci](<https://devfeed.tech/tags/oci.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [security](<https://devfeed.tech/tags/security.md>), [technology](<https://devfeed.tech/tags/technology.md>), [terraform](<https://devfeed.tech/tags/terraform.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>), [vxlan](<https://devfeed.tech/tags/vxlan.md>)

### AI overview

A collection of links covering data center technologies, including EVPN/VXLAN networking, Xeon 6 server availability, the VMScape exploit, F5 appliance vulnerabilities, a Red Hat GitLab breach, multi-tenant Kubernetes, cloud migration, Pulumi resource hooks, and Terraform-related AWS tag management.

### Source excerpt

Welcome to Technology Short Take #189, Halloween Edition! OK, you caught me--this Tech Short Take is not scary. I'll try harder next year. In the meantime, enjoy this collection of links about data center-related technologies. Although this installation is lighter on content than I would prefer, I am publishing anyway in the hopes of trying to get back to a somewhat-regular cadence. Here's hoping you find something useful and informative! Networking Kevin Myers dissects EVPN/VXLAN interoperability with MicroTik and IP Infusion. Ivan Pepelnjak has a new project: open source EVPN/VXLAN labs. I plan to tackle these myself in the near future! Servers/Hardware Kevin Houston takes a look at the availability of Xeon 6 CPUs across blade server vendors. Security Security researchers recently published some research on a new microarchitectural exploit called "VMScape." The TL;DR on VMScape is that it allows hypervisor information to leak from a malicious VM. Oops! Olivier Lambert has a write-up that explains why the Xen hypervisor is not affected by this exploit. (Side note: be sure to read the comments--Olivier shares some useful information there.) The leaking of source code for F5 appliances by a "nation-state affiliated cyber threat actor" has lead the CISA to call on all federal agencies to mitigate vulnerabilities in F5 appliances due to "an imminent threat to federal networks using F5 devices and software." That's not good. In early October of this year, Red Hat confirmed the breach of one of its GitLab instances, leading to the theft of nearly 570GB of data across 28,000 repositories. Oof. Cloud Computing/Cloud Management Iain Smart reviews some common exploit paths when trying to build multi-tenant Kubernetes clusters. As Iain says, multi-tenancy is hard. Digital Society discusses their migration off AWS and Digital Ocean to Hetzner. Just this past week I learned of Pulumi's resource hooks, a feature made available back in June of this year. Hrittik Roy discusses vClus

## Building a Multi-Tenant Architecture Platform to Scale the Emmys

DevFeed: [Building a Multi-Tenant Architecture Platform to Scale the Emmys](<https://devfeed.tech/articles/building-a-multi-tenant-architecture-platform-to-scale-the-emmys-3588.md>)

Original publisher: [Read original article](<https://laravel.com/blog/building-a-multi-tenant-architecture-platform-to-scale-the-emmys>)

Author: Ana Tavares

Published: 2025-06-24T11:40:00Z

Content type: article

Language: en

Sources: [Laravel Blog](<https://devfeed.tech/sources/laravel-blog.md>)

Topics: [web applications](<https://devfeed.tech/topics/web-applications.md>)

Tags: [architecture](<https://devfeed.tech/tags/architecture.md>), [http](<https://devfeed.tech/tags/http.md>), [laravel](<https://devfeed.tech/tags/laravel.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [orm](<https://devfeed.tech/tags/orm.md>), [platform](<https://devfeed.tech/tags/platform.md>), [scale](<https://devfeed.tech/tags/scale.md>)

### AI overview

The article explains how Crowd Favorite built Orthicon, a Laravel-based multi-tenant platform for Emmy competitions. It uses tenant tokens in custom HTTP headers and Laravel middleware to route requests while keeping tenant data and configuration logically isolated.

### Source excerpt

How Crowd Favorite built their multi-tenant Emmy Awards management platform and scaled it to handle user spikes of up to 570%.

## How Neon Solves HIPAA Compliance, Multi-Tenancy, and Scaling for B2B SaaS

DevFeed: [How Neon Solves HIPAA Compliance, Multi-Tenancy, and Scaling for B2B SaaS](<https://devfeed.tech/articles/how-neon-solves-hipaa-compliance-multi-tenancy-and-scaling-for-b2b-saas-5333.md>)

Original publisher: [Read original article](<https://neon.com/blog/hipaa-multitenancy-b2b-saas>)

Author: Carlota Soto

Published: 2025-03-18T02:38:30Z

Content type: article

Language: en

Sources: [Blog -- Neon Docs](<https://devfeed.tech/sources/blog-neon-docs.md>)

Topics: [Database](<https://devfeed.tech/topics/database.md>)

Tags: [architecture](<https://devfeed.tech/tags/architecture.md>), [aws](<https://devfeed.tech/tags/aws.md>), [compliance](<https://devfeed.tech/tags/compliance.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [postgres](<https://devfeed.tech/tags/postgres.md>), [product](<https://devfeed.tech/tags/product.md>), [saas](<https://devfeed.tech/tags/saas.md>), [scalability](<https://devfeed.tech/tags/scalability.md>), [security](<https://devfeed.tech/tags/security.md>)

### AI overview

The article presents Neon as a way for HIPAA-regulated B2B SaaS companies to use region-specific, dedicated Postgres projects per customer rather than a shared database. It contrasts this approach with shared AWS RDS setups and discusses data isolation, residency, performance, and scaling.

### Source excerpt

If you're running a B2B SaaS company that operates across multiple regions and needs to stay HIPAA-compliant, managing your Postgres setup can be a real headache. You need to keep customer data isolated while avoiding performance issues caused by shared resources, all while ensur...

## Building durable cloud control systems with Temporal

DevFeed: [Building durable cloud control systems with Temporal](<https://devfeed.tech/articles/building-durable-cloud-control-systems-with-temporal-35745.md>)

Original publisher: [Read original article](<https://temporal.io/blog/building-durable-cloud-control-systems-with-temporal>)

Author: Sergey Bykov

Published: 2025-01-16T00:00:00Z

Content type: article

Language: en

Sources: [Temporal Blog](<https://devfeed.tech/sources/temporal-blog.md>)

Topics: [Cloud](<https://devfeed.tech/topics/cloud.md>), [Architecture & Design](<https://devfeed.tech/topics/architecture-design.md>), [Cloud Architecture](<https://devfeed.tech/topics/cloud-architecture.md>), [Multi-tenancy](<https://devfeed.tech/topics/multi-tenancy.md>), [control-plane](<https://devfeed.tech/topics/control-plane.md>), [Scalability](<https://devfeed.tech/topics/scalability.md>), [Managed Services](<https://devfeed.tech/topics/managed-services.md>), [reliability](<https://devfeed.tech/topics/reliability.md>), [Resilience](<https://devfeed.tech/topics/resilience.md>)

Tags: [architecture](<https://devfeed.tech/tags/architecture.md>), [cell-based-architecture](<https://devfeed.tech/tags/cell-based-architecture.md>), [cloud](<https://devfeed.tech/tags/cloud.md>), [cloud-services](<https://devfeed.tech/tags/cloud-services.md>), [database](<https://devfeed.tech/tags/database.md>), [high-availability](<https://devfeed.tech/tags/high-availability.md>), [how-to](<https://devfeed.tech/tags/how-to.md>), [low-latency](<https://devfeed.tech/tags/low-latency.md>), [managed-services](<https://devfeed.tech/tags/managed-services.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [reliability](<https://devfeed.tech/tags/reliability.md>), [resilience](<https://devfeed.tech/tags/resilience.md>), [scalability](<https://devfeed.tech/tags/scalability.md>)

### AI overview

Temporal describes how it built Temporal Cloud as a managed service, emphasizing multi-tenancy, durable execution, and a separation between data-plane and control-plane responsibilities. It also explains using cell-based architecture to isolate resources and limit the impact of failures.

### Source excerpt

Explore how Temporal leverages durable execution, multi-tenancy, and cell-based architecture to build scalable, reliable cloud control systems. Learn key lessons and insights for managed cloud services.

## Grafana Mimir Compaction: From Bottleneck to Savings

DevFeed: [Grafana Mimir Compaction: From Bottleneck to Savings](<https://devfeed.tech/articles/grafana-mimir-compaction-from-bottleneck-to-savings-15452.md>)

Original publisher: [Read original article](<https://medium.com/wise-engineering/grafana-mimir-compaction-from-bottleneck-to-savings-b26c6b0125a6?source=rss----f2565bbe9c46---4>)

Author: Milon James

Published: 2025-01-15T11:55:57Z

Content type: article

Language: en

Sources: [Wise Engineering - Medium](<https://devfeed.tech/sources/wise-engineering-medium.md>)

Topics: [Grafana](<https://devfeed.tech/topics/grafana.md>), [observability](<https://devfeed.tech/topics/observability.md>), [Scalability](<https://devfeed.tech/topics/scalability.md>), [Multi-tenancy](<https://devfeed.tech/topics/multi-tenancy.md>), [Architecture & Design](<https://devfeed.tech/topics/architecture-design.md>), [Latency](<https://devfeed.tech/topics/latency.md>), [Disk image](<https://devfeed.tech/topics/disk-image.md>)

Tags: [architecture](<https://devfeed.tech/tags/architecture.md>), [grafana](<https://devfeed.tech/tags/grafana.md>), [grafana-mimir](<https://devfeed.tech/tags/grafana-mimir.md>), [metrics](<https://devfeed.tech/tags/metrics.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [observability](<https://devfeed.tech/tags/observability.md>), [performance](<https://devfeed.tech/tags/performance.md>), [platform](<https://devfeed.tech/tags/platform.md>), [platform-engineering](<https://devfeed.tech/tags/platform-engineering.md>), [s3](<https://devfeed.tech/tags/s3.md>), [scalability](<https://devfeed.tech/tags/scalability.md>)

### AI overview

This technical article describes Wise's migration from Thanos to Grafana Mimir, the compaction bottleneck that emerged in its metrics infrastructure, and the resulting improvements after the issue was resolved. The reported benefits include S3 storage savings, reduced cross-AZ network transfer, and lower query latency.

### Source excerpt

Intro This technical blog article dives deep into a compaction bottleneck that was silently impacting our metrics infrastructure after we migrated from Thanos to Grafana Mimir. Follow along as we detail the investigation, solution, and the remarkable performance and cost improvements that transformed our metrics pipeline. To give readers some context on the scale of our operations at Wise, our production Mimir stack is currently ingesting approximately a total of 6 million metric samples per second across different tenants at the time of writing -- a testament to the critical role it plays in our observability infrastructure. Write throughput and latency In the world of observability, managing large-scale metric storage systems can be a challenging endeavour. Recently, Wise made a significant shift from Thanos to Grafana Mimir, a decision driven by our growing need for better scalability, feature richness, and operational simplicity. The switch has already yielded several benefits, but a critical issue with Mimir compaction brought new challenges to light. Once resolved, this fix not only improved system reliability but also delivered substantial cost benefits in terms of S3 storage savings, cross-AZ network transfer reductions, and query latency improvements. Here's an overview of our journey -- from the switch to Mimir to resolving compaction issues and reaping the rewards. Why We Switched from Thanos to Mimir Thanos had served us well as a metrics storage and query system, but as our use case evolved, we began to encounter limitations: Scaling Challenges: Managing Thanos components at scale -- especially with the growth in the volume of metrics data -- became operationally complex. Retention and Compaction Flexibility: Thanos's approach to compaction and retention felt rigid for our growing requirements. Feature Set: Mimir provided robust multi-tenancy capabilities, advanced query performance optimisations, and seamless integration with our existing workflows. Benefi

## Multi-Tenant RAG With One Neon Project Per User

DevFeed: [Multi-Tenant RAG With One Neon Project Per User](<https://devfeed.tech/articles/multi-tenant-rag-with-one-neon-project-per-user-5590.md>)

Original publisher: [Read original article](<https://neon.com/blog/multi-tenant-rag>)

Author: Tony Holdstock-Brown

Published: 2024-11-19T18:50:22Z

Content type: tutorial

Language: en

Sources: [Blog -- Neon Docs](<https://devfeed.tech/sources/blog-neon-docs.md>)

Topics: [AI search](<https://devfeed.tech/topics/ai-search.md>), [Per-user Database](<https://devfeed.tech/topics/per-user-database.md>)

Tags: [database](<https://devfeed.tech/tags/database.md>), [llm](<https://devfeed.tech/tags/llm.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [performance](<https://devfeed.tech/tags/performance.md>), [product](<https://devfeed.tech/tags/product.md>), [rag](<https://devfeed.tech/tags/rag.md>), [search](<https://devfeed.tech/tags/search.md>), [security](<https://devfeed.tech/tags/security.md>), [vector](<https://devfeed.tech/tags/vector.md>), [workflow](<https://devfeed.tech/tags/workflow.md>)

### AI overview

A tutorial on a multi-tenant RAG CRM pipeline that isolates each organization's data in dedicated Neon databases and uses workflows to provide capacity isolation.

### Source excerpt

A common SaaS pattern involves deploying a single application environment shared among all users. However, RAG presents additional reliability and security challenges, relying heavily on user-provided information and unpredictable model APIs. This article covers a multi-tenant RA...

## Introducing Offline Writes for Turso

DevFeed: [Introducing Offline Writes for Turso](<https://devfeed.tech/articles/introducing-offline-writes-for-turso-5983.md>)

Original publisher: [Read original article](<https://turso.tech/blog/introducing-offline-writes-for-turso>)

Author: Glauber Costa

Published: 2024-10-25T00:00:00Z

Content type: release

Language: en

Sources: [Turso Blog](<https://devfeed.tech/sources/turso-blog.md>)

Topics: [Database](<https://devfeed.tech/topics/database.md>), [Per-user Database](<https://devfeed.tech/topics/per-user-database.md>)

Tags: [announcement](<https://devfeed.tech/tags/announcement.md>), [cloud](<https://devfeed.tech/tags/cloud.md>), [database](<https://devfeed.tech/tags/database.md>), [embedded-replicas](<https://devfeed.tech/tags/embedded-replicas.md>), [local-first](<https://devfeed.tech/tags/local-first.md>), [multi-tenancy](<https://devfeed.tech/tags/multi-tenancy.md>), [offline](<https://devfeed.tech/tags/offline.md>), [sqlite](<https://devfeed.tech/tags/sqlite.md>), [sync](<https://devfeed.tech/tags/sync.md>), [turso](<https://devfeed.tech/tags/turso.md>)

### AI overview

Turso announces a private beta for Offline Writes, allowing local embedded replicas to accept writes while online or offline and synchronize them to Turso Cloud later.

### Source excerpt

Turso is opening a private beta for Offline Writes, letting you write to local embedded replicas at file speed and sync to Turso Cloud when reconnected.

[Next page](<https://devfeed.tech/tags/multi-tenancy.md?cursor=WyIyMDI0LTEwLTI1VDAwOjAwOjAwKzAwOjAwIiwgIjM0ZmQ2ZmIzLTJhNDMtNGI0OC1iNDdiLTI2MmYyNjMzZGUwMCJd>)