
By Bhawani Singh6 min read
Pod-level resources for Tekton TaskRuns
A mutating webhook gives a Tekton build step and Docker-in-Docker sidecar one Pod-level resource budget, then verifies the limits in node cgroups.
Hi, I'm Bhawani
Platform engineer · Creator of dockstat · CI/CD & Kubernetes

A mutating webhook gives a Tekton build step and Docker-in-Docker sidecar one Pod-level resource budget, then verifies the limits in node cgroups.

An out-of-tree kube-scheduler plugin that reserves node capacity across a Tekton PipelineRun's full lifetime, closing a gap none of Tekton's own coschedule modes cover on their own.

Closing the series: what six parts proved, the two scaling questions still untested, and the remaining exec-probe and production-kernel boundaries.

Correlating socket syscalls and kubelet probe attempts into the merged timeline, then fixing a real cgroup-attribution bug that left most of those events unresolved.