Fulcrum
Fulcrum is retiring Google Maps for Esri and stabilising the ArcGIS stack behind it.
A side-by-side editorial comparison of Shynet and dbt Core — release velocity, themes, recent moves, and the top alternatives to consider.
Shynet went silent for two and a half years and a security audit is what woke it up.
Shynet's most recent release closes two externally reported vulnerabilities: a wildcard ALLOWED_HOSTS default enabling password reset poisoning, and stored XSS in two template filters, both credited to an outside security firm. It arrived after a gap of roughly two and a half years, and the release before it was a temporary dependency install workaround. The dashboard features people associate with the project — the annotated world map, the map-versus-table toggle — all date from 2021.
Two engines in one repo: the Python 1.x line tightens while Fusion 2.0 goes lakehouse-catalog native
dbt-core is releasing on two tracks at once. The Python line reached 1.12.0 on 16 July after three release candidates, and it is a tightening release: the experimental `dbt login` command and the bundled dbt-state plugin were removed outright, and flags introduced in 1.9 and 1.10 now default to true. The 2.0.0 alpha track is the Fusion engine, and its work is almost entirely about catalogs — read-write Horizon and Unity access over Iceberg REST via DuckDB, a catalogs.yml v2 covering DuckLake, Iceberg REST and local filesystem, plus catalog_database overrides and Redshift catalog generation through SHOW TABLES and SVV_REDSHIFT_COLUMNS.
Shynet's most recent release closes two externally reported vulnerabilities: a wildcard ALLOWED_HOSTS default enabling password reset poisoning, and stored XSS in two template filters, both credited to an outside security firm. It arrived after a gap of roughly two and a half years, and the release before it was a temporary dependency install workaround. The dashboard features people associate with the project — the annotated world map, the map-versus-table toggle — all date from 2021.
The arc is a project that had real community momentum and then stopped. In 2021 releases were arriving monthly and were, by the maintainer's own note, driven entirely by contributors; by 2023 the content was dependabot bumps and build workarounds; after that, nothing until a security report forced a response. Nothing in the recent entry suggests development resumed more broadly — it is a targeted fix release, not a return to cadence.
These entries give no basis for expecting feature work to resume; the realistic expectation is that the next release, whenever it comes, is again driven by an external security report or a dependency that stops installing.
dbt-core is releasing on two tracks at once. The Python line reached 1.12.0 on 16 July after three release candidates, and it is a tightening release: the experimental `dbt login` command and the bundled dbt-state plugin were removed outright, and flags introduced in 1.9 and 1.10 now default to true. The 2.0.0 alpha track is the Fusion engine, and its work is almost entirely about catalogs — read-write Horizon and Unity access over Iceberg REST via DuckDB, a catalogs.yml v2 covering DuckLake, Iceberg REST and local filesystem, plus catalog_database overrides and Redshift catalog generation through SHOW TABLES and SVV_REDSHIFT_COLUMNS.
The division of labour between the two tracks is clear from the entries: 1.x is consolidating and removing experiments, while 2.0 is where the new surface area lands. The 2.0 surface is specifically the lakehouse catalog layer — dbt is moving from a tool that writes to a warehouse toward one that binds to open table catalogs directly, with materialization made catalog-aware. Notably 1.12.0rc1 also teaches the Python engine to tolerate Fusion-specific warn_error_options rather than erroring, so the two engines are being made to coexist in the same projects rather than fork.
The alphas are still expanding catalog coverage adapter by adapter, so expect further catalog integrations and continued catalogs.yml v2 work before 2.0 leaves alpha. On the Python side, with the deprecated flags now defaulted and the experimental commands removed, 1.12 looks like a stabilization point rather than a base for new features.
Other Analytics products tracked by Sparkpulse, ranked by recent ship velocity. Each card links to a full editorial trajectory and lets you pivot into a head-to-head comparison with either Shynet or dbt Core.
Fulcrum is retiring Google Maps for Esri and stabilising the ArcGIS stack behind it.
Power BI's monthly grind: authoring defaults, DAX documentation, and cleaner axes.
BigQuery is making itself agent-callable and pulling inference inside the SQL boundary.
The desktop app builder is pre-1.0, but Plotly Cloud quietly turned into a Dash hosting platform.
Lightdash is turning BI into an app platform its users' coding agents can build against.
TimescaleDB trades new features for lock contention wins and a security patch
See all Shynet alternatives → · See all dbt Core alternatives →
Latest ship moves from both products, interleaved chronologically. ⚡ = editorial spark.
They serve adjacent needs but don't currently overlap on shipped themes. dbt Core is currently shipping more aggressively (velocity 7.5 vs 0.0), with 1 editorial sparks in the last 30 days against 0. See the at-a-glance table above for a side-by-side breakdown of velocity, recent sparks, and editorial themes.
Sparkpulse doesn't pick a winner — we score release velocity, not feature parity. dbt Core is currently shipping more aggressively (velocity 7.5 vs 0.0), with 1 editorial sparks in the last 30 days against 0. For your specific use case, the alternatives sections above list other Analytics products to evaluate alongside.
Top Shynet alternatives in Analytics are ranked by recent ship velocity. Browse the "Shynet alternatives" section above for the current picks, or visit /alternatives/shynet for the full list with editorial commentary on each.
Top dbt Core alternatives in Analytics are ranked by recent ship velocity. Browse the "dbt Core alternatives" section above for the current picks, or visit /alternatives/dbt-core for the full list with editorial commentary on each.