DNSControl
DNSControl is rewriting its record internals in public, one release candidate at a time
A side-by-side editorial comparison of Casdoor and Kaniko — release velocity, themes, recent moves, and the top alternatives to consider.
Casdoor ships a version bump per commit, and the recent run is all tenancy hardening.
Casdoor tags a release on nearly every merge — ten versions between August 4 and August 10, most carrying a single commit. The recent run clusters on two threads: multi-tenant isolation (cross-organization webhook restrictions, organization checks on add APIs, Casbin group rules following user renames) and DingTalk integration repair. Individually each release is small; read together they are a sustained pass over organization boundaries.
Kaniko's release feed stops dead in June 2024 after a patch that undid its own change
Kaniko builds container images inside a container without a Docker daemon, and its release feed reads as a project in late-stage maintenance that then simply stopped. Every entry in this window carries the same boilerplate header of executor, debug and slim image tags, and underneath it the substance is dependency bumps, CVE-driven upgrades, and narrow fixes to ADD and COPY semantics. The last release here, v1.23.1, is a revert of behaviour changed weeks earlier plus documentation clarifying what the flag was supposed to do.
Casdoor tags a release on nearly every merge — ten versions between August 4 and August 10, most carrying a single commit. The recent run clusters on two threads: multi-tenant isolation (cross-organization webhook restrictions, organization checks on add APIs, Casbin group rules following user renames) and DingTalk integration repair. Individually each release is small; read together they are a sustained pass over organization boundaries.
The organization is becoming the unit of configuration. Record retention days, default token format, master-password hashing and LDAP visibility all became per-organization concerns inside a single week. That is the shape of a project hardening for multi-tenant deployment rather than adding end-user features, and the cross-organization webhook restriction in the newest release is the clearest statement of it so far.
Expect the per-organization configuration surface to keep growing and more cross-organization access checks on the remaining endpoints, since the last week has moved steadily in that direction. The per-commit release cadence means this will arrive as another ten small versions rather than one milestone.
Kaniko builds container images inside a container without a Docker daemon, and its release feed reads as a project in late-stage maintenance that then simply stopped. Every entry in this window carries the same boilerplate header of executor, debug and slim image tags, and underneath it the substance is dependency bumps, CVE-driven upgrades, and narrow fixes to ADD and COPY semantics. The last release here, v1.23.1, is a revert of behaviour changed weeks earlier plus documentation clarifying what the flag was supposed to do.
The cadence tells the story: nine releases between December 2023 and June 2024, then nothing at all in the two years since. Even during the active stretch the work was defensive — registry-map compatibility, ECR authentication breakage, tar.gz handling in ADD, vulnerability scanning added to the executor image — rather than any expansion of what Kaniko does. The one recurring theme with forward motion, registry mirror and registry-map support, was about surviving locked-down or mirrored registry environments.
Nothing in these entries points at planned work, and a two-year gap after a revert-and-document patch is the signature of a project no longer being released; anyone depending on it should assume the last published executor image is the last one.
Other Infra & APIs products tracked by Sparkpulse, ranked by recent ship velocity. Each card links to a full editorial trajectory and lets you pivot into a head-to-head comparison with either Casdoor or Kaniko.
DNSControl is rewriting its record internals in public, one release candidate at a time
Fission's release feed carries only RC tags, and none of them say what shipped
mod_auth_openidc audited itself, found eight holes, and broke every session on the way out
Kubernetes CNI maintaining four release branches at once, mostly to carry CVE fixes back.
KeePass-compatible password manager frozen mid-patch-run since 2021.
Overlay network that rewrote its certificate format, then spent a year fixing what it exposed.
See all Casdoor alternatives → · See all Kaniko alternatives →
Latest ship moves from both products, interleaved chronologically. ⚡ = editorial spark.
They serve adjacent needs but don't currently overlap on shipped themes. Casdoor is currently shipping more aggressively (velocity 5.0 vs 0.0), with 0 editorial sparks in the last 30 days against 0. See the at-a-glance table above for a side-by-side breakdown of velocity, recent sparks, and editorial themes.
Sparkpulse doesn't pick a winner — we score release velocity, not feature parity. Casdoor is currently shipping more aggressively (velocity 5.0 vs 0.0), with 0 editorial sparks in the last 30 days against 0. For your specific use case, the alternatives sections above list other Infra & APIs products to evaluate alongside.
Top Casdoor alternatives in Infra & APIs are ranked by recent ship velocity. Browse the "Casdoor alternatives" section above for the current picks, or visit /alternatives/casdoor for the full list with editorial commentary on each.
Top Kaniko alternatives in Infra & APIs are ranked by recent ship velocity. Browse the "Kaniko alternatives" section above for the current picks, or visit /alternatives/kaniko for the full list with editorial commentary on each.