Kubernetes v1.36: Security Defaults Tighten as AI Workload Support Matures
Kubernetes v1.36 (Haru) ships 70 enhancements with GA for User Namespaces, Mutating Admission Policies via CEL, and Fine-Grained Kubelet API Authorization, tightening security defaults. AI workload support matures as DRA Partitionable Devices, Consumable Capacity, and Device Taints/Tolerations reach beta and are enabled by default, replacing integer-GPU device plugins with accelerator partitioning primitives. The release also includes GA for SELinux Volume Labeling and Volume Group Snapshots, contributed by 106 companies.