Runtimez reads every connected cluster read-only and tells you exactly what the next Kubernetes version breaks — which workloads, which owners, and how long until the upgrade is forced on you.
one helm install · get, list, watch only · first score in under an hour
Everything below runs off the same read-only sweep — correlated per workload, not stitched together by you.
The differentiator: findings are not two backlogs. A critical CVE sitting on the same deployment that blocks your 1.31 upgrade surfaces as one item, ranked first, because one change retires both risks.
Deprecated and removed APIs, CRD coverage and runtime usage per workload — with the forced-upgrade clock and extended-support exposure on every cluster.
Ephemeral in-cluster jobs read running images and config where they live. Images and pull secrets never leave. CIS and NSA scorecards per cluster.
Healthy, degraded, awaiting verification or rolled back — with a pass rate computed over verified rollouts only, and an alert the moment one degrades.
Requests sized against real p95 usage per namespace, workload and cluster. Over-provisioned and idle workloads carry a monthly number; unowned spend gets named.
Questions answered from your own fleet — inventory, findings, posture — with a confidence score and a deep link into the cluster the answer came from. In Slack or in console.
Every rollout is verified against live signals after it lands. A degraded release becomes the first row of the queue, not a Slack thread someone missed.
Ask in Slack or in the console. Answers come from your own inventory, findings and posture — with a confidence score and a link back to the cluster.
Blockers, owners and order of work before you book the window — plus a countdown on every cluster approaching forced upgrade.
Degraded rollouts first, then blocked gates, then the CVEs riding along with them. Ask runtimez from the channel you are already in.
One fleet score with a level, compliance posture per cluster, and cost attributed to teams — reported without a dashboard project.
Free for your first cluster. Read-only by default. Uninstall is one helm command.