DEV Community

Mustafa ERBAY profile picture

Mustafa ERBAY

System architect with 20+ years in infrastructure. Building burncpu.com — an open-source social network. Personal blog: mustafaerbay.com.tr · EN/TR.

Location Bursa, Türkiye Joined Joined on  Personal website https://mustafaerbay.com.tr github website

Work

System architect · DevOps · Open-source builder

Embedding Selection for Turkish: Semantic Search with Multilingual

Embedding Selection for Turkish: Semantic Search with Multilingual

5
Comments
5 min read

Want to connect with Mustafa ERBAY?

Create an account to connect with Mustafa ERBAY. You can also sign in below to proceed if you already have an account.

Already have an account? Sign in
Transcribing Turkish with Whisper: Local Audio‑Text Pipeline

Transcribing Turkish with Whisper: Local Audio‑Text Pipeline

1
Comments
5 min read
Prompt Injection Defense: Protection Patterns for Production

Prompt Injection Defense: Protection Patterns for Production

1
Comments
10 min read
Dependency Automation with Renovate: Grouping and Auto-Merge Strategy

Dependency Automation with Renovate: Grouping and Auto-Merge Strategy

2
Comments
8 min read
Living ADRs: Decisions That Can Prove Themselves Wrong

Living ADRs: Decisions That Can Prove Themselves Wrong

1
Comments
4 min read
GitHub Actions OIDC: Cloud Access Without Secrets

GitHub Actions OIDC: Cloud Access Without Secrets

2
Comments
10 min read
sops + age for Secret Management in Git: Encrypted Config Flow

sops + age for Secret Management in Git: Encrypted Config Flow

2
Comments 1
8 min read
Coolify with Self-Host PaaS Setup: A Current Approach

Coolify with Self-Host PaaS Setup: A Current Approach

1
Comments
6 min read
Hardware Security Keys Instead of SMS 2FA: Balancing Cost

Hardware Security Keys Instead of SMS 2FA: Balancing Cost

1
Comments
7 min read
5 Security Practices Often Overlooked During Self-Hosting

5 Security Practices Often Overlooked During Self-Hosting

1
Comments
11 min read
Security Backlog for Small Teams with NIST CSF 2.0

Security Backlog for Small Teams with NIST CSF 2.0

1
Comments
9 min read
Applying Container Runtime Policies with eBPF Tetragon

Applying Container Runtime Policies with eBPF Tetragon

1
Comments
8 min read
CVE Prioritization with CISA KEV: Exploitation-Focused

CVE Prioritization with CISA KEV: Exploitation-Focused

1
Comments
8 min read
Service-Based Access in Homelab with Tailscale ACL

Service-Based Access in Homelab with Tailscale ACL

6
Comments
12 min read
QR Code Phishing: Secure Scanning and DNS Defense

QR Code Phishing: Secure Scanning and DNS Defense

1
Comments
10 min read
Ceph or ZFS Replication in Proxmox? Small Cluster Decision

Ceph or ZFS Replication in Proxmox? Small Cluster Decision

1
Comments
11 min read
Auditing Browser Extension Permissions: Finding Data Access

Auditing Browser Extension Permissions: Finding Data Access

1
Comments
15 min read
AI Model Serving on Kubernetes: KServe or vLLM?

AI Model Serving on Kubernetes: KServe or vLLM?

6
Comments
12 min read
Kopia or Restic? Choosing a Backup Solution for Large Archives

Kopia or Restic? Choosing a Backup Solution for Large Archives

6
Comments
10 min read
The First 30 Minutes When an API Key Leaks: A Rotation Runbook

The First 30 Minutes When an API Key Leaks: A Rotation Runbook

1
Comments
11 min read
GPU Sharing in Kubernetes: The MIG vs. Time-Slicing Decision

GPU Sharing in Kubernetes: The MIG vs. Time-Slicing Decision

1
Comments
10 min read
Deploying an ML-KEM Hybrid TLS Pilot with Performance Measurement

Deploying an ML-KEM Hybrid TLS Pilot with Performance Measurement

2
Comments
11 min read
Technical Accuracy in LLM Output: Setting Up a Fact-Check Pipeline

Technical Accuracy in LLM Output: Setting Up a Fact-Check Pipeline

2
Comments
10 min read
Debugging OCR Errors and Backing Up Paperless-ngx

Debugging OCR Errors and Backing Up Paperless-ngx

1
Comments
9 min read
Passkey Account Recovery: Avoiding Lockout When Your Device is Lost

Passkey Account Recovery: Avoiding Lockout When Your Device is Lost

1
Comments
9 min read
3-2-1 Backup and Restore Drill for Immich

3-2-1 Backup and Restore Drill for Immich

1
Comments
11 min read
OAuth 2.1 and PKCE: Secure Flow in SPA Sessions

OAuth 2.1 and PKCE: Secure Flow in SPA Sessions

1
Comments 2
11 min read
Reducing LLM Costs by Measuring Prompt Caching

Reducing LLM Costs by Measuring Prompt Caching

2
Comments
13 min read
Pinning GitHub Actions with Commit SHA for Supply Chain Defense

Pinning GitHub Actions with Commit SHA for Supply Chain Defense

1
Comments
11 min read
Transitioning from SBOM to VEX: Reducing False Positives

Transitioning from SBOM to VEX: Reducing False Positives

1
Comments
10 min read
LLM Structured Output: JSON Schema for Reliable Answers

LLM Structured Output: JSON Schema for Reliable Answers

1
Comments
3 min read
The Evidence Layer Must Survive the Framework

The Evidence Layer Must Survive the Framework

1
Comments
5 min read
3-2-1 Backup Design with Proxmox Backup Server

3-2-1 Backup Design with Proxmox Backup Server

1
Comments
11 min read
Safely Shutting Down Your Homelab During a UPS Outage with NUT

Safely Shutting Down Your Homelab During a UPS Outage with NUT

2
Comments
13 min read
Hybrid Search and Reranker in RAG: Enhancing Quality in Turkish

Hybrid Search and Reranker in RAG: Enhancing Quality in Turkish

2
Comments
16 min read
Dependency Confusion: Protecting npm and PyPI Packages

Dependency Confusion: Protecting npm and PyPI Packages

1
Comments
9 min read
RAG Chunking Test: The Right Chunk Size for Turkish Documents

RAG Chunking Test: The Right Chunk Size for Turkish Documents

1
Comments
11 min read
Setting Up SLSA Provenance and GitHub Artifact Attestations

Setting Up SLSA Provenance and GitHub Artifact Attestations

1
Comments
8 min read
pgvector HNSW Index Tuning: Balancing Recall and Memory

pgvector HNSW Index Tuning: Balancing Recall and Memory

1
Comments
6 min read
Migrating to Valkey: Safely Testing Redis Compatibility

Migrating to Valkey: Safely Testing Redis Compatibility

1
Comments
6 min read
Collaborative Attack Defense for Homelab Services with CrowdSec

Collaborative Attack Defense for Homelab Services with CrowdSec

2
Comments
8 min read
AI Agent Observability: Tracing, Cost, and Tool Error Monitoring

AI Agent Observability: Tracing, Cost, and Tool Error Monitoring

5
Comments
10 min read
PostgreSQL 18 Async I/O: What Changes in Real Workloads?

PostgreSQL 18 Async I/O: What Changes in Real Workloads?

1
Comments
11 min read
Single Sign-On for Self-Hosted Services with Authentik

Single Sign-On for Self-Hosted Services with Authentik

10
Comments 2
12 min read
AI Agent Sandbox: Restricting Shell and File Access

AI Agent Sandbox: Restricting Shell and File Access

1
Comments
13 min read
Preventing Secret Leaks in AI Code Agents

Preventing Secret Leaks in AI Code Agents

1
Comments
8 min read
Setting Up Your Own Git and CI Platform with Forgejo Actions

Setting Up Your Own Git and CI Platform with Forgejo Actions

6
Comments
12 min read
OpenBao vs. HashiCorp Vault: Self-Hosted Secret Management

OpenBao vs. HashiCorp Vault: Self-Hosted Secret Management

1
Comments
9 min read
AI Agent Evals: Setting Up a Test Harness to Measure Success

AI Agent Evals: Setting Up a Test Harness to Measure Success

6
Comments
8 min read
AI Code Review: Safely Merging AI-Generated Patches

AI Code Review: Safely Merging AI-Generated Patches

2
Comments
11 min read
Transitioning from Python to Rust or Go: For Which Workload?

Transitioning from Python to Rust or Go: For Which Workload?

3
Comments
8 min read
Everyone Designs the Happy Path. Production Happens at 3 AM.

Everyone Designs the Happy Path. Production Happens at 3 AM.

7
Comments 2
6 min read
OpenTelemetry Zero-Code Instrumentation: Getting Started with eBPF

OpenTelemetry Zero-Code Instrumentation: Getting Started with eBPF

1
Comments
9 min read
Stirling PDF Setup: Process Documents Without Uploading to the Cloud

Stirling PDF Setup: Process Documents Without Uploading to the Cloud

7
Comments 3
11 min read
TypeScript's Rise in 2026: The Impact of AI Code Generation

TypeScript's Rise in 2026: The Impact of AI Code Generation

2
Comments
7 min read
AI Agent Memory: Short-Term and Long-Term Memory Design

AI Agent Memory: Short-Term and Long-Term Memory Design

1
Comments
6 min read
MCP Tool Poisoning: Securely Verifying Tool Definitions

MCP Tool Poisoning: Securely Verifying Tool Definitions

8
Comments 2
9 min read
Actual Budget Setup: Self-Host Your Financial Data

Actual Budget Setup: Self-Host Your Financial Data

3
Comments 3
9 min read
Cilium Gateway API: A Migration Guide from Ingress

Cilium Gateway API: A Migration Guide from Ingress

5
Comments
9 min read
OAuth and Least Privilege Authorization in MCP Servers

OAuth and Least Privilege Authorization in MCP Servers

6
Comments
10 min read
loading...