Skip to content

Update Helm values non-major updates - #1947

Closed
renovate[bot] wants to merge 11 commits into
masterfrom
renovate/helm-values-non-major-updates
Closed

Update Helm values non-major updates#1947
renovate[bot] wants to merge 11 commits into
masterfrom
renovate/helm-values-non-major-updates

Conversation

@renovate

@renovate renovate Bot commented Jul 30, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Update Change
quay.io/fairwinds/astro minor v1.5.3v1.6.0
us-docker.pkg.dev/fairwinds-ops/oss/goldilocks minor v4.14.1v4.15.1

Warning

Some dependencies could not be looked up. Check the Dependency Dashboard for more information.


Release Notes

FairwindsOps/goldilocks (us-docker.pkg.dev/fairwinds-ops/oss/goldilocks)

v4.15.1

Compare Source

Changelog

  • 3be8f9e Managed by Terraform
  • 93e16c3 fix goreleaser signing on release

You can verify the signatures of both the checksums.txt file and the published docker images using cosign.

cosign verify-blob checksums.txt --bundle=checksums.txt.sigstore.json --key https://artifacts.fairwinds.com/cosign-p256.pub
cosign verify us-docker.pkg.dev/fairwinds-ops/oss/goldilocks:v4.15.1 --key https://artifacts.fairwinds.com/cosign-p256.pub

v4.15.0

Compare Source

Changelog

  • d668d78 INS-2242: Fix goldilocks vulnerabilities (#​849)
  • 41c6607 Managed by Terraform
  • 6e94e03 Managed by Terraform
  • 86aaec6 Managed by Terraform
  • ab42299 add notice to include registry change and immutable images notice on the readme (#​851)
  • b4d579c fix: honor -stderrthreshold when -logtostderr is set (#​850)

You can verify the signatures of both the checksums.txt file and the published docker images using cosign.

cosign verify-blob checksums.txt --signature=checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign-p256.pub
cosign verify us-docker.pkg.dev/fairwinds-ops/oss/goldilocks:v4.15.0 --key https://artifacts.fairwinds.com/cosign-p256.pub

v4.14.18

Compare Source

Changelog

You can verify the signatures of both the checksums.txt file and the published docker images using cosign.

sha256sum -c goldilocks_v4.14.18_checksums.txt --ignore-missing
cosign verify-blob goldilocks_v4.14.18_checksums.txt --signature=goldilocks_v4.14.18_checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub
cosign verify us-docker.pkg.dev/fairwinds-ops/oss/goldilocks:v4 --key https://artifacts.fairwinds.com/cosign.pub

v4.14.10

Compare Source

Changelog

You can verify the signatures of both the checksums.txt file and the published docker images using cosign.

sha256sum -c goldilocks_v4.14.10_checksums.txt --ignore-missing
cosign verify-blob goldilocks_v4.14.10_checksums.txt --signature=goldilocks_v4.14.10_checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub
cosign verify us-docker.pkg.dev/fairwinds-ops/oss/goldilocks:v4 --key https://artifacts.fairwinds.com/cosign.pub

v4.14.9

Compare Source

Changelog

You can verify the signatures of both the checksums.txt file and the published docker images using cosign.

sha256sum -c goldilocks_v4.14.9_checksums.txt --ignore-missing
cosign verify-blob goldilocks_v4.14.9_checksums.txt --signature=goldilocks_v4.14.9_checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub
cosign verify us-docker.pkg.dev/fairwinds-ops/oss/goldilocks:v4 --key https://artifacts.fairwinds.com/cosign.pub

v4.14.8

Compare Source

Changelog

  • ddf3750 INS-1682: goldilocks: Bump go to 1.25.5 for fixing vulnerability (#​813)

You can verify the signatures of both the checksums.txt file and the published docker images using cosign.

sha256sum -c goldilocks_v4.14.8_checksums.txt --ignore-missing
cosign verify-blob goldilocks_v4.14.8_checksums.txt --signature=goldilocks_v4.14.8_checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub
cosign verify us-docker.pkg.dev/fairwinds-ops/oss/goldilocks:v4 --key https://artifacts.fairwinds.com/cosign.pub

v4.14.7

Compare Source

Changelog

You can verify the signatures of both the checksums.txt file and the published docker images using cosign.

sha256sum -c goldilocks_v4.14.7_checksums.txt --ignore-missing
cosign verify-blob goldilocks_v4.14.7_checksums.txt --signature=goldilocks_v4.14.7_checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub
cosign verify us-docker.pkg.dev/fairwinds-ops/oss/goldilocks:v4 --key https://artifacts.fairwinds.com/cosign.pub

v4.14.6

Compare Source

Changelog

  • f50c8b9 fix: match user-supplied UpdateMode with typed values (#​781)

You can verify the signatures of both the checksums.txt file and the published docker images using cosign.

sha256sum -c goldilocks_v4.14.6_checksums.txt --ignore-missing
cosign verify-blob goldilocks_v4.14.6_checksums.txt --signature=goldilocks_v4.14.6_checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub
cosign verify us-docker.pkg.dev/fairwinds-ops/oss/goldilocks:v4 --key https://artifacts.fairwinds.com/cosign.pub

v4.14.5

Compare Source

Changelog

  • fd725f8 Change default onDelete and onUpdate log level to debug (#​800)

You can verify the signatures of both the checksums.txt file and the published docker images using cosign.

sha256sum -c goldilocks_v4.14.5_checksums.txt --ignore-missing
cosign verify-blob goldilocks_v4.14.5_checksums.txt --signature=goldilocks_v4.14.5_checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub
cosign verify us-docker.pkg.dev/fairwinds-ops/oss/goldilocks:v4 --key https://artifacts.fairwinds.com/cosign.pub

v4.14.4

Compare Source

Changelog

You can verify the signatures of both the checksums.txt file and the published docker images using cosign.

sha256sum -c goldilocks_v4.14.4_checksums.txt --ignore-missing
cosign verify-blob goldilocks_v4.14.4_checksums.txt --signature=goldilocks_v4.14.4_checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub
cosign verify us-docker.pkg.dev/fairwinds-ops/oss/goldilocks:v4 --key https://artifacts.fairwinds.com/cosign.pub

v4.14.3

Compare Source

Changelog

You can verify the signatures of both the checksums.txt file and the published docker images using cosign.

sha256sum -c goldilocks_v4.14.3_checksums.txt --ignore-missing
cosign verify-blob goldilocks_v4.14.3_checksums.txt --signature=goldilocks_v4.14.3_checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub
cosign verify us-docker.pkg.dev/fairwinds-ops/oss/goldilocks:v4 --key https://artifacts.fairwinds.com/cosign.pub

v4.14.2

Compare Source

Changelog

You can verify the signatures of both the checksums.txt file and the published docker images using cosign.

sha256sum -c goldilocks_v4.14.2_checksums.txt --ignore-missing
cosign verify-blob goldilocks_v4.14.2_checksums.txt --signature=goldilocks_v4.14.2_checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub
cosign verify us-docker.pkg.dev/fairwinds-ops/oss/goldilocks:v4 --key https://artifacts.fairwinds.com/cosign.pub

Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate
renovate Bot requested a review from sudermanjr as a code owner July 30, 2026 17:35
@fairwinds-insights

Copy link
Copy Markdown

Fairwinds Insights - Auto-scan job has failed ❌

View the full report at insights.fairwinds.com.

Show Logs
found 1 pods for job repo-scan-job-100885
------------------------------------------------
unable to retrieve container logs
Additional info: Repository scan has reached the specified backoff limit; Repository scan has reached the specified backoff limit

@renovate
renovate Bot force-pushed the renovate/helm-values-non-major-updates branch from 69e3706 to b263faa Compare July 30, 2026 19:03
@jdesouza
jdesouza enabled auto-merge (squash) July 30, 2026 19:07
@renovate
renovate Bot force-pushed the renovate/helm-values-non-major-updates branch 4 times, most recently from 33fc856 to d6e1e75 Compare July 30, 2026 19:42
@fairwinds-insights

Copy link
Copy Markdown

Fairwinds Insights - Auto-scan job has failed ❌

View the full report at insights.fairwinds.com.

Show Logs
found 1 pods for job repo-scan-job-100919
------------------------------------------------
unable to retrieve container logs
Additional info: Repository scan has reached the specified backoff limit; Repository scan has reached the specified backoff limit

@renovate
renovate Bot force-pushed the renovate/helm-values-non-major-updates branch from 16db8c9 to 016b1e9 Compare July 30, 2026 20:10
@fairwinds-insights

Copy link
Copy Markdown

Fairwinds Insights - Auto-scan job has failed ❌

View the full report at insights.fairwinds.com.

Show Logs
found 1 pods for job repo-scan-job-100925
------------------------------------------------
unable to retrieve container logs
Additional info: Repository scan has reached the specified backoff limit; Repository scan has reached the specified backoff limit

@renovate
renovate Bot force-pushed the renovate/helm-values-non-major-updates branch from b627d91 to 558e857 Compare July 30, 2026 20:33
@renovate

renovate Bot commented Jul 30, 2026

Copy link
Copy Markdown
Contributor Author

Edited/Blocked Notification

Renovate will not automatically rebase this PR, because it does not recognize the last commit author and assumes somebody else may have edited the PR.

You can manually request rebase by checking the rebase/retry box above.

⚠️ Warning: custom changes will be lost.

@fairwinds-insights

Copy link
Copy Markdown

Fairwinds Insights - Auto-scan job has failed ❌

View the full report at insights.fairwinds.com.

Show Logs
found 1 pods for job repo-scan-job-100933
------------------------------------------------
unable to retrieve container logs
Additional info: Repository scan has reached the specified backoff limit; Repository scan has reached the specified backoff limit

@fairwinds-insights

Copy link
Copy Markdown

Fairwinds Insights - Auto-scan job has failed ❌

View the full report at insights.fairwinds.com.

Show Logs
found 1 pods for job repo-scan-job-100970
------------------------------------------------
unable to retrieve container logs
Additional info: Repository scan has reached the specified backoff limit; Repository scan has reached the specified backoff limit

@sudermanjr

Copy link
Copy Markdown
Member

@renovate rebase

@vitorvezani
vitorvezani self-requested a review as a code owner August 14, 2026 17:54
@fairwinds-insights

Copy link
Copy Markdown

Fairwinds Insights - Auto-scan job has failed ❌

View the full report at insights.fairwinds.com.

Show Logs
found 1 pods for job repo-scan-job-101663

Additional info: Repository scan has reached the specified backoff limit; Repository scan has reached the specified backoff limit

auto-merge was automatically disabled August 14, 2026 18:26

Pull request was closed

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants