Cloudflare has closed a network-performance incident affecting Madrid after reporting a fix on September 30. Its incident timeline records monitoring from 14:06 UTC that day and a resolved update at 05:42 UTC on October 2. The provider classified the incident as minor; its notice does not identify a root cause or quantify customer impact.
Cloudflare marked its Workers build-delay incident resolved at 21:27 UTC on October 1. The company had opened an investigation at 15:33 UTC on September 30, warning of potential effects on multiple customers, then moved to monitoring after implementing a fix at 17:42 UTC on September 30.
Cloudflare reports that an incident involving increased Durable Objects and R2 errors in Amsterdam was resolved on October 1 at 21:18 UTC. Its status history records an investigation beginning at 20:59 UTC and a fix entering monitoring at 21:06 UTC. Those updates do not identify a root cause or quantify affected customers.
In a Google Cloud customer account, PayPal describes migrating analytics workloads from on-premises Hadoop systems to Managed Service for Apache Spark. The company says the move consolidated fragmented workflows, shortened cluster provisioning and improved integration with Cloud Storage and BigQuery. PayPal reports a 25% improvement in core workload processing times, alongside lower operational overhead; those results reflect its own deployment.
Google says the latest Cloud Storage SDKs now enable end-to-end upload checksumming by default, reducing extra work previously required from application developers. The SDKs calculate and send checksums when applications do not supply them, and support verification during downloads. Range reads through the gRPC API also receive integrity checks. Google recommends updating clients to use these protections against accidental data corruption.
Google Cloud is positioning Managed Lustre’s Dynamic Tier as shared storage for AI training and high-performance computing, combining a fast cache with a larger capacity pool. The update also targets developer workloads such as repository operations and library loading, aiming to reduce separate storage environments. Published performance comparisons are Google’s tests, with test configurations supplied for evaluation.
Source Google CloudBy Barak Epstein; Yuval Ehrental
Vercel will end collection of First Input Delay measurements in Speed Insights on November 1. Its responsiveness scoring already relies on Interaction to Next Paint, which replaced FID as a Core Web Vital. Vercel says customers need no configuration changes: existing FID history remains viewable, and the switch will not alter their Real Experience Score.
Source VercelBy Damien Simonin Feugas; Vincent Derks; Chris Widmaier
Google has introduced official Cloud API client libraries for server-side Swift, requiring Swift 6.2 or later. The SDK gives Linux and macOS developers asynchronous access to services such as Cloud Storage and IAM, with built-in authentication and pagination support. Google positions it for backends, containers and automation, and warns developers against embedding these server libraries or administrative credentials in Apple client apps.
Source Google CloudBy Karl Weinmeister; Carlos O'Ryan
Supabase has opened OrioleDB projects to paid plans as part of its public beta, adding features including read replicas, scheduled backups and compute resizing. Projects use the same billing as standard Postgres, but point-in-time recovery remains unavailable. The engine must be selected when creating a project. Supabase still limits the beta to testing, does not recommend production use and provides no SLA.
Artifacts, Cloudflare's versioned file system that speaks Git, is now in open beta. Artifacts is built for scale, so you can create a repository per project, user, session, or task. With Artifacts, you can: Deploy repositories to Workers — Connect an Artifacts repository through Workers Builds. Pushes to the production branch deploy the updated Worker, while other branches create or update Worker Previews. Programmatically manage repositories — Use an Artifacts binding from a Worker to create or fork repos, inspect files and commits, read files by path, and issue repo-scoped Git tokens. React to repository changes — Subscribe to events when a repository is created, imported, forked, deleted, pushed to, cloned, or fetched. Control where repository data is stored — Choose to store and process your data in the US or EU.
Source Cloudflare DevelopersCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
The Workers Web Crypto API now supports ML-KEM-768, ML-KEM-1024, ML-DSA-44, ML-DSA-65, and ML-DSA-87. ML-KEM establishes shared secrets, while ML-DSA signs and verifies data. The opt-in API also adds key encapsulation and decapsulation methods, getPublicKey(), SubtleCrypto.supports(), and JSON Web Keys (JWKs) with the AKP key type.
Source Cloudflare DevelopersCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
Vercel has renamed its Edge Requests usage metric to CDN Requests across dashboards, notifications and invoices. The company says pricing, limits and measurement are unchanged, and existing metric identifiers remain valid. Billing integrations that match on the ServiceName field need attention because that displayed name changes; Vercel recommends using the stable SkuId field to avoid depending on future naming changes.
Cloudflare marked its September 30 Los Angeles network incident resolved at 19:18 UTC. The investigation began at 13:49 UTC over possible congestion affecting Vectorize, Durable Objects, R2, Hyperdrive, Stream and Cloudchamber. The company described a regional performance issue and worked to reduce its effect on internet users; it did not establish congestion as the confirmed cause in the notice.
Changes to Cloudflare account roles and permissions were slow to reach some services on September 30. The company said recently edited permissions might not take effect immediately, then reported a fix at 18:04 UTC and closed the incident at 18:10 UTC. Recently submitted changes could therefore take longer to appear across affected services.
Google Cloud’s security advisers argue that cybersecurity startups should build around CISOs’ operational problems before pitching AI features. Their guidance emphasizes customer discovery, evidence for product claims, resistance to prompt injection and data poisoning, and awareness of sector-specific obligations such as data residency. The article offers practitioner advice from Google’s startup program, rather than announcing a new security product or reporting an incident.
Vercel’s CDN now declines to cache origin responses whose Vary header includes Cookie, while continuing to serve those responses normally. The company says cookie-dependent variations often produce cache entries with little reuse. Its guidance distinguishes content that is identical across visitors from personalized responses, recommending private cache controls for the latter. Other supported Vary headers retain their existing caching behavior.
Vercel Sandbox now integrates with Secure Compute for Enterprise teams using that service. Sandboxes can use a dedicated network’s static outbound IP addresses and reach private AWS resources through VPC peering. Networks can be attached or changed through code or the CLI, but an update applies to the next sandbox session; a running session keeps its existing network until it stops.
Source VercelBy Karim Hasebou; Brandon Tuttle; Miroslav Simulcik; Tom Lienard
Supabase has released @supabase/middleware 1.0 on npm and JSR, with semantic versioning governing future breaking changes. The package composes request handlers with shared typed context and checks dependency ordering at compile time. It includes CORS and feature-flag middleware and runs across Fetch-compatible environments, including Supabase Edge Functions, Cloudflare Workers and Node 22 or later, supporting reuse across backend runtimes.
Cloudflare resolved an Asia-Pacific connectivity incident on September 29 after reporting congestion between Tokyo and Singapore linked to multiple subsea cable outages. The company said disruption began September 21, rerouted traffic and worked with outside vendors to restore capacity. Its September 25 update narrowed the remaining effect to intermittent connectivity degradation for a small subset of customers, rather than a region-wide outage.
Vercel Connect now accepts submissions from service providers for its connector directory. Providers describe their service and configure OAuth or API-key connection methods; OAuth methods must be tested by obtaining a real token through a test connector. Vercel reviews submissions before listing them, giving providers a path to integration without waiting for Vercel to build each connector itself.
Cloudflare revised its initial warning about Access one-time PIN emails on September 29. After investigating apparent delivery failures, engineering concluded customers had not experienced elevated failure levels and described the increase as isolated, without widespread impact. The company marked the incident resolved at 20:50 UTC. Its earlier notice also said other authentication methods were operating normally.
Google’s ADK tutorial shows how to turn an agent-driven refund process into an explicit graph of functions, agents and decision points. Independent lookups run together, while policy decisions can stay in deterministic code and ambiguous cases pause for human review. The walkthrough also distinguishes predefined graph routes from Python-driven orchestration that schedules additional work as results arrive.
Google outlines an approach to public-sector security that combines Gemini, Wiz, CodeMender and Mandiant intelligence across software and cloud operations. Its customer examples describe consolidated security monitoring in state governments and AI-assisted workflows at universities. The piece advocates continuous validation and remediation, but its claimed benefits are Google’s account of these deployments; some automation work remains underway.
Vercel's CLI can now search trace spans directly, letting developers and coding agents investigate request errors and latency from the terminal. The command defaults to the newest 100 spans from the past hour, supports time and attribute filters, and can emit one JSON object per span for automation. Vercel directs users to update the CLI before using the new search command.
Original briefs are AI-assisted and checked against the linked source. Publisher excerpts are labeled separately; each story keeps its original date and article link.