Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Honestly as a long term customer please polish what you have. By that I mean:

- Teams are still the only proper way to segment environments and access control. Yet you charge team member, I am still mad about that because even after 1+ year we need to use multiple teams.

- Metrics are still locked to your platform, I want to use my telemetry provider because you guys dont have alerts, dashboard creation, etc.

- Control over the subnets, we use tailscale to give access to private services right now its all 10.205.X.X and we dont control it

- Allow us to turn off cloudflare. You said during last outage that being reliant on cloudflare was an issue and we are yet 1+ later without progress.

I could go on. I do like the product and simplicity but it is lacking control when you actually outgrow the "get it out the door fast" phase. I am not even sure one could pass an ISO27001 by being on Render.



* You can now block private network traffic from crossing environment boundaries (https://render.com/docs/projects#blocking-cross-environment-...). We also just launched an invite-only feature that creates a high-level Organizational structure with multiple teams, where each team member is only charged once.

* Otel exports are in development and should be live in early access in a few weeks!

* Heard on subnet IPs

* There's ongoing work to remove a major Cloudflare dependency; it should also go live in a few weeks.

We'll keep polishing and pushing the envelope on control and flexibility. Thanks for being a vocal customer.


Thanks for the reply. I never understood the appeal of the network traffic split since it didnt come with user access control. Not everybody in a team needs access to all environments and even within an environment not everybody needs access to every service and/or secrets of those services.

Couple of other things while I do have you:

- More control on the instance sizing similar to how you have us control of the postgres instances

- A proper write-only secrets system ala AWS Secret Manager. The current environment variables isn't passing an audit for sure if anybody on the team can log in and see them plaintext

Your support team is really good I do want to say, it is probably the one thing that kept me a customer.


- Completely agree on more instance sizes similar out our Postgres

- More granular secret access (and, in general, more granular RBAC) are on the list for 2025

- Render is now ISO 27001 certified [1], and we help you pass SOC 2/ISO 27001 audits.

Thanks for the support team shoutout!

[1] https://render.com/blog/render-iso-27001-and-document-center


Agreeing with your points, especially regarding Cloudflare! For the record: we did pass ISO 27001 and we use Render.


I agree here. Render is nice now, not bloated.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: