werf
Three release channels at once as werf 3 takes shape beside a still-shipping 2.75.
A side-by-side editorial comparison of Dokku and GLAuth — release velocity, themes, recent moves, and the top alternatives to consider.
Dokku ships patches weekly, and quietly grows a Kubernetes backend under its single-host roots.
Dokku releases on a near-weekly patch cadence, and most entries are dominated by Dependabot bumps to test fixtures. The real content is thin but consistent: a command injection fix in docker options evaluation, per-app Let's Encrypt emails on k3s, atomic buildpack list replacement, custom chown values, and JSON output added to apps:list, ps:scale and docker-options reports. Several tags in early July were published within minutes of each other and out of version order.
A small LDAP server that grew OpenTelemetry tracing, embedded plugins and RISC-V builds.
GLAuth's 2.5.0 in April was the substantial release: OpenTelemetry tracing wired through the handler and plugin packages plus otelsql, embedded plugins, RISC-V platform support, StartTLS and LDAPS brought to feature parity, and LDAP paging compatibility when proxying. The two releases since are corrective — rejecting disabled users on all backends during Bind, an arbitrary-password issue, and a release-time plugin compatibility check.
Dokku releases on a near-weekly patch cadence, and most entries are dominated by Dependabot bumps to test fixtures. The real content is thin but consistent: a command injection fix in docker options evaluation, per-app Let's Encrypt emails on k3s, atomic buildpack list replacement, custom chown values, and JSON output added to apps:list, ps:scale and docker-options reports. Several tags in early July were published within minutes of each other and out of version order.
Two threads carry through. The scheduler-k3s plugin keeps accumulating what a real platform needs — helm chart previews, autoscaling auth state, control-plane node matching, per-app certificate configuration — which pushes Dokku beyond the single-host Docker tool it started as. The second is machine readability: command after command gains --format json, turning the CLI into something automation can consume rather than parse.
Expect JSON output to keep spreading command by command until it is the norm rather than a flag, and expect the k3s scheduler to stay the destination for new capability while the Docker scheduler receives fixes. The patch train shows no sign of consolidating into a minor release.
GLAuth's 2.5.0 in April was the substantial release: OpenTelemetry tracing wired through the handler and plugin packages plus otelsql, embedded plugins, RISC-V platform support, StartTLS and LDAPS brought to feature parity, and LDAP paging compatibility when proxying. The two releases since are corrective — rejecting disabled users on all backends during Bind, an arbitrary-password issue, and a release-time plugin compatibility check.
The direction in 2.5.0 is toward being operable in production rather than merely functional: distributed tracing, a config watcher that notices files added to a directory, credentials no longer leaking at INFO log level, and a legacy behaviour mode so existing deployments can upgrade without changing semantics. The patches since suggest the authentication paths are getting scrutiny they had not previously had, with disabled-user handling inconsistent across backends until 2.5.1 fixed it.
Expect the 2.5 line to keep taking small authentication-correctness fixes, with the embedded plugin mechanism and the release-time compatibility check pointing toward more attention on how third-party backends are built and shipped.
Other Infra & APIs products tracked by Sparkpulse, ranked by recent ship velocity. Each card links to a full editorial trajectory and lets you pivot into a head-to-head comparison with either Dokku or GLAuth.
Three release channels at once as werf 3 takes shape beside a still-shipping 2.75.
Volatility 3 caught up with Volatility 2, then started reorganising itself.
OctoPrint 2.0 turns serial into one connector among several, and breaks plugins doing it.
Patch tags land monthly with release notes that itemize nothing.
A self-hosted PaaS spending its releases on secrets, injection fixes and plan limits.
One release a year, each one a filesystem or networking rewrite you must plan for.
See all Dokku alternatives → · See all GLAuth alternatives →
Latest ship moves from both products, interleaved chronologically. ⚡ = editorial spark.
They serve adjacent needs but don't currently overlap on shipped themes. Dokku and GLAuth are shipping at a similar cadence (velocity 5.0 vs 5.0, both within Sparkpulse's "active" band). See the at-a-glance table above for a side-by-side breakdown of velocity, recent sparks, and editorial themes.
Sparkpulse doesn't pick a winner — we score release velocity, not feature parity. Dokku and GLAuth are shipping at a similar cadence (velocity 5.0 vs 5.0, both within Sparkpulse's "active" band). For your specific use case, the alternatives sections above list other Infra & APIs products to evaluate alongside.
Top Dokku alternatives in Infra & APIs are ranked by recent ship velocity. Browse the "Dokku alternatives" section above for the current picks, or visit /alternatives/dokku for the full list with editorial commentary on each.
Top GLAuth alternatives in Infra & APIs are ranked by recent ship velocity. Browse the "GLAuth alternatives" section above for the current picks, or visit /alternatives/glauth for the full list with editorial commentary on each.