{"slug": "we-shipped-ragleap-terraform-v0-1-0-how-a-solo-dev-is-building-devops-for-any", "title": "We Shipped ragleap-terraform v0.1.0: How a Solo Dev is Building DevOps for ANY Software — Live-Verified, Not Hype", "summary": "A solo developer released ragleap-terraform v0.1.0, a Terraform module that provisions a local kind Kubernetes cluster and installs the ragleap-observability Helm chart, verified by applying and destroying it on a real Docker Desktop host with Terraform 1.9.8. The release is the ninth library in the RagLeap project, which the developer now describes as \"DevOps for ANY software,\" and ships with acknowledged limitations including local-kind-only support, plain-text credentials in state and kubeconfig, and postgres-exporter disabled by default.", "body_md": "I shipped `ragleap-terraform v0.1.0` 8 hours ago. It's our 9th library. And it changes what RagLeap is.\n\nRagLeap started as RAG. Now it's **DevOps for ANY software**. Here's the honest breakdown — what's live-verified, what's next, and what we won't claim.\n\n`ragleap-terraform` 0.1.0 — kind cluster + full observability stack via Terraform, verified on a real Docker host\n**What it does:**\n\nA Terraform module that creates a local kind cluster and installs `ragleap-observability` with `helm_release`.\n\n```\nhcl\nmodule \"kind-cluster\" {\n  source = \"your-registry/ragleap-terraform\"\n  cluster_name = \"ragleap-dev\"\n  grafana_admin_password = var.grafana_password\n}\n\n**Variables:** cluster_name, namespace, install_observability, observability_chart_path, grafana_admin_password, install_postgres_exporter (default false), helm_timeout, kubeconfig_path\n\n**What's inside:** examples/kind ships inside the wheel. pip install ragleap-terraform and you have it.\n\n**Verified — Not Mocked:**\n\nApplied and destroyed on a real Docker Desktop host with Terraform 1.9.8. All chart pods Ready. Your kubectl context untouched. This is why I say \"live-verified\".\n\n**Known Limitations (honest):**\n\nLocal kind only. No AWS/GCP/Azure modules yet — those need a real cloud account to verify, not just code.\n\npostgres-exporter off by default — needs ragleap-ops and a Secret no chart creates yet.\n\nState and kubeconfig hold credentials in plain text. Do not interrupt apply/destroy.\n\nThis is v0.1.0 for a reason. It works, it's verified, and we're transparent about gaps.\n\n**\n\n## ✅ What's Done & Live-Verified So Far\n**\n\n**1. ragleap-ops 0.4.1**\n\nHelm chart, SecurityContext, read-only root filesystem (not neo4j), zero-permission ServiceAccounts, NetworkPolicies, Ingress + TLS, multi-env values, Postgres and neo4j backup/restore with RTO, runbooks drilled against broken clusters.\n\nThis wasn't helm install and hope. We broke clusters on purpose and drilled restore.\n\n**2. ragleap-app-chart 0.2.1**\n\nGeneric Helm chart for any developer's services. If you have a service, this deploys it with the same security standards as ragleap-ops. This is the \"ANY software\" part.\n\n**3. ragleap-observability 0.6.0**\n\nPrometheus v3, Grafana 12, Loki 3.6, Promtail, AlertManager, Slack and email receivers (delivery proven against a stand-in), pods-only RBAC, configurable Grafana password, Trivy scans of all images.\n\nWe started at 383 findings. Down to 14 on four images. postgres-exporter still at 48, Promtail at 86 — next bump cycle will fix.\n\n**4. Release Process**\n\nPyPI keywords, TestPyPI → PyPI, tags, GitHub Releases, docs surfaces. Boring but critical.\n\n**\n\n## 🔜 What's Next — Ordered by Level\n**\n\nI organize everything by solo → team → corporate. You only need what you need.\n\n#**## SOLO DEVELOPER (Next 2 weeks):**\n\n* Finish Loki retention → ship 0.6.1\n* Real Slack/email send — right now only stand-in is proven\n* Automate postgres-exporter Secret + DB role — no chart does it today, it's manual\n* ragleap-ansible for VPS bootstrap (never started)\n* Image bumps\n\n**\n\n## TEAM (Next month — needs your sign-off):\n**\n\n* HPA and PodDisruptionBudgets in ragleap-ops + app-chart\n* Helm chart testing in CI (ct) + scheduled Trivy job — both edit CI files\n* GitOps (ArgoCD or Flux) — this is the blocker for canary and blue-green\n* SLO and SLI dashboards\n* ServiceAccounts, RBAC and PDBs for app-chart\n\n**\n\n## CORPORATE (Later — needs cloud accounts & audits):\n**\n\n* Cloud Terraform modules (AWS, GCP, Azure) — they'd be unverified without an account, so I won't fake it\n* Multi-AZ, multi-node, cluster autoscaling (blocked — kind is one node)\n* Ingress rate limiting + WAF, audit logging, image SBOM + provenance\n* Tracing, SSO for Grafana, chaos testing\n* Compliance (SOC 2) — needs external audit, not just engineering\n\n## Suggested Order:\n\nLoki retention → 0.6.1 → HPA/PDB → Ansible → Trivy/ct in CI → GitOps\n\n**\n\n## 🎯 The Honest Claim\n**\n\nThis is important. Even with every item done, the accurate claim is:\n\n**\n\n## \"enterprise-grade foundations, live-verified\"\n**\n\nIt is NOT \"proven at global scale\". Everything has run on one node, with single-fault tests.\n\nI'm a solo dev building in public from Chennai. I won't claim what I haven't tested. Many startups claim \"enterprise-ready\" after one Helm chart. I drilled backup/restore against broken clusters before claiming RTO.\n\n**\n\n## 📦 Where We Are\n**\n\n46 AI Employees — modular RAG & self-thinking intelligent agents\n9 Libraries — 8 Python + 1 Java\n45k+ Downloads\nMIT Licensed, Self-Hosted, BYOK — 17 LLMs + Ollama local\n45+ Vector DBs\n\nLinks:\n\nCore: github.com/antonyrag/ragleap-core (17 stars, help us reach 50?)\nDocs: docs.ragleap.com\nPackages: packages.ragleap.com\nPyPI: pypi.org/project/ragleap-terraform\n\nIf you want DevOps that doesn't hide behind marketing, try:\n\npip install ragleap-terraform\n\nFeedback welcome. Issues welcome. Stars appreciated.\n\nBuilding in public. Shipping truth.\n\n— Antony\n```\n\n", "url": "https://wpnews.pro/news/we-shipped-ragleap-terraform-v0-1-0-how-a-solo-dev-is-building-devops-for-any", "canonical_source": "https://dev.to/ragleap/we-shipped-ragleap-terraform-v010-how-a-solo-dev-is-building-devops-for-any-software--2ljh", "published_at": "2026-10-06 06:42:49+00:00", "updated_at": "2026-10-06 06:47:37.566054+00:00", "lang": "en", "topics": ["mlops", "ai-infrastructure", "developer-tools"], "entities": ["RagLeap", "ragleap-terraform", "ragleap-observability", "ragleap-ops", "ragleap-app-chart", "Terraform", "Kubernetes", "Grafana"], "also_reported_by": [], "alternates": {"html": "https://wpnews.pro/news/we-shipped-ragleap-terraform-v0-1-0-how-a-solo-dev-is-building-devops-for-any", "markdown": "https://wpnews.pro/news/we-shipped-ragleap-terraform-v0-1-0-how-a-solo-dev-is-building-devops-for-any.md", "text": "https://wpnews.pro/news/we-shipped-ragleap-terraform-v0-1-0-how-a-solo-dev-is-building-devops-for-any.txt", "jsonld": "https://wpnews.pro/news/we-shipped-ragleap-terraform-v0-1-0-how-a-solo-dev-is-building-devops-for-any.jsonld"}}