Commit Graph

859 Commits

Author SHA1 Message Date
TrueCharts Bot 3351bef118 chore(flux): update image metrics-server 3.12.2 → 3.13.0 (clustertool) (#37794) 2025-07-27 20:06:59 +02:00
TrueCharts Bot 094652e3ad chore(flux): update image kube-prometheus-stack 75.10.0 → 75.15.0 (clustertool) (#37793)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
|
[kube-prometheus-stack](https://redirect.github.com/prometheus-operator/kube-prometheus)
([source](https://redirect.github.com/prometheus-community/helm-charts))
| minor | `75.10.0` -> `75.15.0` |

---

### Release Notes

<details>
<summary>prometheus-community/helm-charts
(kube-prometheus-stack)</summary>

###
[`v75.15.0`](https://redirect.github.com/prometheus-community/helm-charts/releases/tag/kube-prometheus-stack-75.15.0)

[Compare
Source](https://redirect.github.com/prometheus-community/helm-charts/compare/kube-prometheus-stack-75.14.0...kube-prometheus-stack-75.15.0)

kube-prometheus-stack collects Kubernetes manifests, Grafana dashboards,
and Prometheus rules combined with documentation and scripts to provide
easy to operate end-to-end Kubernetes cluster monitoring with Prometheus
using the Prometheus Operator.

#### What's Changed

- \[kube-prometheus-stack] Update
https://github.com/kubernetes-monitoring/kubernetes-mixin digest to
[`1da53ae`](https://redirect.github.com/prometheus-community/helm-charts/commit/1da53ae)
by [@&#8203;renovate](https://redirect.github.com/renovate)\[bot]
in[https://github.com/prometheus-community/helm-charts/pull/5975](https://redirect.github.com/prometheus-community/helm-charts/pull/5975)5

**Full Changelog**:
https://github.com/prometheus-community/helm-charts/compare/prom-label-proxy-0.14.0...kube-prometheus-stack-75.15.0

###
[`v75.14.0`](https://redirect.github.com/prometheus-community/helm-charts/releases/tag/kube-prometheus-stack-75.14.0)

[Compare
Source](https://redirect.github.com/prometheus-community/helm-charts/compare/kube-prometheus-stack-75.13.0...kube-prometheus-stack-75.14.0)

kube-prometheus-stack collects Kubernetes manifests, Grafana dashboards,
and Prometheus rules combined with documentation and scripts to provide
easy to operate end-to-end Kubernetes cluster monitoring with Prometheus
using the Prometheus Operator.

#### What's Changed

- \[kube-prometheus-stack] Update kube-prometheus-stack dependency
non-major updates by
[@&#8203;renovate](https://redirect.github.com/renovate)\[bot]
in[https://github.com/prometheus-community/helm-charts/pull/5973](https://redirect.github.com/prometheus-community/helm-charts/pull/5973)3

**Full Changelog**:
https://github.com/prometheus-community/helm-charts/compare/prometheus-kafka-exporter-2.13.0...kube-prometheus-stack-75.14.0

###
[`v75.13.0`](https://redirect.github.com/prometheus-community/helm-charts/releases/tag/kube-prometheus-stack-75.13.0)

[Compare
Source](https://redirect.github.com/prometheus-community/helm-charts/compare/kube-prometheus-stack-75.12.0...kube-prometheus-stack-75.13.0)

kube-prometheus-stack collects Kubernetes manifests, Grafana dashboards,
and Prometheus rules combined with documentation and scripts to provide
easy to operate end-to-end Kubernetes cluster monitoring with Prometheus
using the Prometheus Operator.

#### What's Changed

- \[kube-prometheus-stack] Update kube-prometheus-stack dependency
non-major updates by
[@&#8203;renovate](https://redirect.github.com/renovate)\[bot]
in[https://github.com/prometheus-community/helm-charts/pull/5964](https://redirect.github.com/prometheus-community/helm-charts/pull/5964)4

**Full Changelog**:
https://github.com/prometheus-community/helm-charts/compare/prometheus-windows-exporter-0.12.0...kube-prometheus-stack-75.13.0

###
[`v75.12.0`](https://redirect.github.com/prometheus-community/helm-charts/releases/tag/kube-prometheus-stack-75.12.0)

[Compare
Source](https://redirect.github.com/prometheus-community/helm-charts/compare/kube-prometheus-stack-75.11.0...kube-prometheus-stack-75.12.0)

kube-prometheus-stack collects Kubernetes manifests, Grafana dashboards,
and Prometheus rules combined with documentation and scripts to provide
easy to operate end-to-end Kubernetes cluster monitoring with Prometheus
using the Prometheus Operator.

#### What's Changed

- \[CI] Update super-linter/super-linter action to v8 by
[@&#8203;renovate](https://redirect.github.com/renovate)\[bot]
in[https://github.com/prometheus-community/helm-charts/pull/5913](https://redirect.github.com/prometheus-community/helm-charts/pull/5913)3
- \[kube-prometheus-stack] Update kube-prometheus-stack dependency
non-major updates by
[@&#8203;renovate](https://redirect.github.com/renovate)\[bot]
in[https://github.com/prometheus-community/helm-charts/pull/5912](https://redirect.github.com/prometheus-community/helm-charts/pull/5912)2

**Full Changelog**:
https://github.com/prometheus-community/helm-charts/compare/prometheus-nginx-exporter-1.9.3...kube-prometheus-stack-75.12.0

###
[`v75.11.0`](https://redirect.github.com/prometheus-community/helm-charts/releases/tag/kube-prometheus-stack-75.11.0)

[Compare
Source](https://redirect.github.com/prometheus-community/helm-charts/compare/kube-prometheus-stack-75.10.0...kube-prometheus-stack-75.11.0)

kube-prometheus-stack collects Kubernetes manifests, Grafana dashboards,
and Prometheus rules combined with documentation and scripts to provide
easy to operate end-to-end Kubernetes cluster monitoring with Prometheus
using the Prometheus Operator.

#### What's Changed

- \[kube-prometheus-stack] Update kube-prometheus-stack dependency
non-major updates by
[@&#8203;renovate](https://redirect.github.com/renovate)\[bot]
in[https://github.com/prometheus-community/helm-charts/pull/5890](https://redirect.github.com/prometheus-community/helm-charts/pull/5890)0

**Full Changelog**:
https://github.com/prometheus-community/helm-charts/compare/prometheus-operator-crds-22.0.0...kube-prometheus-stack-75.11.0

</details>

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL21pbm9yIl19-->
2025-07-27 20:06:52 +02:00
TrueCharts Bot 28eb045c34 fix(deps): update module sigs.k8s.io/kustomize/api v0.20.0 → v0.20.1 (clustertool) (#37787)
This PR contains the following updates:

| Package | Change | Age | Confidence |
|---|---|---|---|
|
[sigs.k8s.io/kustomize/api](https://redirect.github.com/kubernetes-sigs/kustomize)
| `v0.20.0` -> `v0.20.1` |
[![age](https://developer.mend.io/api/mc/badges/age/go/sigs.k8s.io%2fkustomize%2fapi/v0.20.1?slim=true)](https://docs.renovatebot.com/merge-confidence/)
|
[![confidence](https://developer.mend.io/api/mc/badges/confidence/go/sigs.k8s.io%2fkustomize%2fapi/v0.20.0/v0.20.1?slim=true)](https://docs.renovatebot.com/merge-confidence/)
|

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
2025-07-27 18:06:32 +00:00
TrueCharts Bot d45863961b chore(flux): update image cloudnative-pg 0.24.0 → 0.25.0 (clustertool) (#37792)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
| [cloudnative-pg](https://cloudnative-pg.io)
([source](https://redirect.github.com/cloudnative-pg/charts)) | minor |
`0.24.0` -> `0.25.0` |

---

### Release Notes

<details>
<summary>cloudnative-pg/charts (cloudnative-pg)</summary>

###
[`v0.25.0`](https://redirect.github.com/cloudnative-pg/charts/releases/tag/cloudnative-pg-v0.25.0)

[Compare
Source](https://redirect.github.com/cloudnative-pg/charts/compare/cloudnative-pg-v0.24.0...cloudnative-pg-v0.25.0)

CloudNativePG Operator Helm Chart

#### What's Changed

- fix(cloudnative-pg): add ImageCatalogs to view and edit ClusterRoles
by [@&#8203;icekom](https://redirect.github.com/icekom) in
[https://github.com/cloudnative-pg/charts/pull/467](https://redirect.github.com/cloudnative-pg/charts/pull/467)
- ci(security): set workflows permission to read-all by default by
[@&#8203;sxd](https://redirect.github.com/sxd) in
[https://github.com/cloudnative-pg/charts/pull/594](https://redirect.github.com/cloudnative-pg/charts/pull/594)
- fix(cluster): update backup template to use conditional encryption va…
by [@&#8203;5h4k4r](https://redirect.github.com/5h4k4r) in
[https://github.com/cloudnative-pg/charts/pull/614](https://redirect.github.com/cloudnative-pg/charts/pull/614)
- feat( cluster ): Advanced configuration for monitoring queries by
[@&#8203;itay-grudev](https://redirect.github.com/itay-grudev) in
[https://github.com/cloudnative-pg/charts/pull/585](https://redirect.github.com/cloudnative-pg/charts/pull/585)
- chore(deps): update actions/setup-python action to v5.6.0 by
[@&#8203;renovate](https://redirect.github.com/renovate)\[bot]
in[https://github.com/cloudnative-pg/charts/pull/565](https://redirect.github.com/cloudnative-pg/charts/pull/565)5
- chore(deps): update sigstore/cosign-installer action to v3.9.1 by
[@&#8203;renovate](https://redirect.github.com/renovate)\[bot]
in[https://github.com/cloudnative-pg/charts/pull/564](https://redirect.github.com/cloudnative-pg/charts/pull/564)4
- Release cloudnative-pg-v0.25.0 by
[@&#8203;github-actions](https://redirect.github.com/github-actions)\[bot]
in[https://github.com/cloudnative-pg/charts/pull/626](https://redirect.github.com/cloudnative-pg/charts/pull/626)6

#### New Contributors

- [@&#8203;icekom](https://redirect.github.com/icekom) made their first
contribution in
[https://github.com/cloudnative-pg/charts/pull/467](https://redirect.github.com/cloudnative-pg/charts/pull/467)
- [@&#8203;5h4k4r](https://redirect.github.com/5h4k4r) made their first
contribution in
[https://github.com/cloudnative-pg/charts/pull/614](https://redirect.github.com/cloudnative-pg/charts/pull/614)

**Full Changelog**:
https://github.com/cloudnative-pg/charts/compare/cloudnative-pg-v0.24.0...cloudnative-pg-v0.25.0

</details>

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL21pbm9yIl19-->
2025-07-27 12:31:40 +00:00
TrueCharts Bot 2c7d2ba255 fix(deps): update module sigs.k8s.io/kustomize/kyaml v0.20.0 → v0.20.1 (clustertool) (#37788)
This PR contains the following updates:

| Package | Change | Age | Confidence |
|---|---|---|---|
|
[sigs.k8s.io/kustomize/kyaml](https://redirect.github.com/kubernetes-sigs/kustomize)
| `v0.20.0` -> `v0.20.1` |
[![age](https://developer.mend.io/api/mc/badges/age/go/sigs.k8s.io%2fkustomize%2fkyaml/v0.20.1?slim=true)](https://docs.renovatebot.com/merge-confidence/)
|
[![confidence](https://developer.mend.io/api/mc/badges/confidence/go/sigs.k8s.io%2fkustomize%2fkyaml/v0.20.0/v0.20.1?slim=true)](https://docs.renovatebot.com/merge-confidence/)
|

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
2025-07-27 14:31:24 +02:00
TrueCharts Bot 1da12d805c fix(deps): update module github.com/budimanjojo/talhelper/v3 v3.0.30 → v3.0.31 (clustertool) (#37785)
This PR contains the following updates:

| Package | Change | Age | Confidence |
|---|---|---|---|
|
[github.com/budimanjojo/talhelper/v3](https://redirect.github.com/budimanjojo/talhelper)
| `v3.0.30` -> `v3.0.31` |
[![age](https://developer.mend.io/api/mc/badges/age/go/github.com%2fbudimanjojo%2ftalhelper%2fv3/v3.0.31?slim=true)](https://docs.renovatebot.com/merge-confidence/)
|
[![confidence](https://developer.mend.io/api/mc/badges/confidence/go/github.com%2fbudimanjojo%2ftalhelper%2fv3/v3.0.30/v3.0.31?slim=true)](https://docs.renovatebot.com/merge-confidence/)
|

---

### Release Notes

<details>
<summary>budimanjojo/talhelper
(github.com/budimanjojo/talhelper/v3)</summary>

###
[`v3.0.31`](https://redirect.github.com/budimanjojo/talhelper/releases/tag/v3.0.31)

[Compare
Source](https://redirect.github.com/budimanjojo/talhelper/compare/v3.0.30...v3.0.31)

#### Changelog

-
[`53ab3b8`](https://redirect.github.com/budimanjojo/talhelper/commit/53ab3b8537dffff44d645c373d86880db5442802)
chore(container): update alpine docker tag to v3.22.1
-
[`1c5d9d6`](https://redirect.github.com/budimanjojo/talhelper/commit/1c5d9d68bfef5d7d1c07689d3d0d45372b316018)
chore(container): update golangci/golangci-lint docker tag to v2.2.2
-
[`fbf6089`](https://redirect.github.com/budimanjojo/talhelper/commit/fbf6089203b3556b0a929f742985997630859f47)
chore(container): update golangci/golangci-lint docker tag to v2.3.0
-
[`3e4be60`](https://redirect.github.com/budimanjojo/talhelper/commit/3e4be60a99947186b55237ca7237e472ef3280a1)
chore(container): update goreleaser/goreleaser docker tag to v2.11.0
-
[`b73876e`](https://redirect.github.com/budimanjojo/talhelper/commit/b73876efeaadf076dbf1a91aa54b9a782c458083)
chore(container): update
mcr.microsoft.com/devcontainers/go:1.24-bookworm docker digest to
[`1202710`](https://redirect.github.com/budimanjojo/talhelper/commit/1202710)
([#&#8203;1085](https://redirect.github.com/budimanjojo/talhelper/issues/1085))
-
[`81b9082`](https://redirect.github.com/budimanjojo/talhelper/commit/81b9082f6e231c86d547f8a73c4bf4d3f13261fa)
chore(container): update registry.k8s.io/kubectl docker tag to v1.33.3
-
[`83e4388`](https://redirect.github.com/budimanjojo/talhelper/commit/83e4388702a9d9d81cd8732bd81bc725eec8c0c1)
chore(github-action): update renovatebot/github-action action to v43.0.3
-
[`a931b91`](https://redirect.github.com/budimanjojo/talhelper/commit/a931b91cd929b4aaa3aa48c0c94be9bd08cc2405)
chore(github-action): update renovatebot/github-action action to v43.0.4
-
[`d179e2a`](https://redirect.github.com/budimanjojo/talhelper/commit/d179e2abffac58050c935bd7cf6f9047b8b6cb23)
chore(schema): update talconfig.yaml JSON schema
([#&#8203;1100](https://redirect.github.com/budimanjojo/talhelper/issues/1100))
-
[`ab4eba6`](https://redirect.github.com/budimanjojo/talhelper/commit/ab4eba668934ddade8afc2d739a7d517b9effc58)
chore(schema): update talos-extensions.yaml JSON schema
-
[`0f7d528`](https://redirect.github.com/budimanjojo/talhelper/commit/0f7d528c0386cede2b0d4bbfd6dcd2dd28f0af79)
chore(schema): update talos-extensions.yaml JSON schema
-
[`1499623`](https://redirect.github.com/budimanjojo/talhelper/commit/14996236c5412ed3aadebadb251193b0585414c7)
chore(schema): update talos-extensions.yaml JSON schema
([#&#8203;1087](https://redirect.github.com/budimanjojo/talhelper/issues/1087))
-
[`c2389a1`](https://redirect.github.com/budimanjojo/talhelper/commit/c2389a1d344c51bfc460b96a175ddad8041ddec0)
chore(schema): update talos-extensions.yaml JSON schema
([#&#8203;1090](https://redirect.github.com/budimanjojo/talhelper/issues/1090))
-
[`e16629e`](https://redirect.github.com/budimanjojo/talhelper/commit/e16629ecf0373c295c2b4de818937ac4571be17c)
chore(schema): update talos-extensions.yaml JSON schema
([#&#8203;1093](https://redirect.github.com/budimanjojo/talhelper/issues/1093))
-
[`94ff3f0`](https://redirect.github.com/budimanjojo/talhelper/commit/94ff3f07923b635a7ae698accd064fb649426e5a)
chore(schema): update talos-extensions.yaml JSON schema
([#&#8203;1094](https://redirect.github.com/budimanjojo/talhelper/issues/1094))
-
[`0465066`](https://redirect.github.com/budimanjojo/talhelper/commit/046506632386bf385242f24312f662346ddc5e6a)
feat(config): add `encryption` field for `userVolumes`
-
[`6347dd9`](https://redirect.github.com/budimanjojo/talhelper/commit/6347dd9e9a4af2650aceadf75c5a6007e1d7984b)
feat: update Scoop for talhelper version v3.0.30
-
[`f9a56fb`](https://redirect.github.com/budimanjojo/talhelper/commit/f9a56fbed0083816803cebcbe21d9df8bc93fec3)
feat: update flake
([#&#8203;1079](https://redirect.github.com/budimanjojo/talhelper/issues/1079))
-
[`90a2ba6`](https://redirect.github.com/budimanjojo/talhelper/commit/90a2ba608dbfdacd35ef671b68a3af44a68fcb03)
fix(deps): update module github.com/budimanjojo/talhelper/v3 to v3.0.30
-
[`82bc96e`](https://redirect.github.com/budimanjojo/talhelper/commit/82bc96ef245a703a3c4c724cb796aa77fce7ad78)
fix(deps): update module golang.org/x/mod to v0.26.0

</details>

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
2025-07-27 14:23:50 +02:00
TrueCharts Bot 86eb81df12 fix(deps): update module github.com/siderolabs/talos/pkg/machinery v1.11.0-alpha.3 → v1.11.0-beta.0 (clustertool) (#37786)
This PR contains the following updates:

| Package | Change | Age | Confidence |
|---|---|---|---|
|
[github.com/siderolabs/talos/pkg/machinery](https://redirect.github.com/siderolabs/talos)
| `v1.11.0-alpha.3` -> `v1.11.0-beta.0` |
[![age](https://developer.mend.io/api/mc/badges/age/go/github.com%2fsiderolabs%2ftalos%2fpkg%2fmachinery/v1.11.0-beta.0?slim=true)](https://docs.renovatebot.com/merge-confidence/)
|
[![confidence](https://developer.mend.io/api/mc/badges/confidence/go/github.com%2fsiderolabs%2ftalos%2fpkg%2fmachinery/v1.11.0-alpha.3/v1.11.0-beta.0?slim=true)](https://docs.renovatebot.com/merge-confidence/)
|

---

### Release Notes

<details>
<summary>siderolabs/talos
(github.com/siderolabs/talos/pkg/machinery)</summary>

###
[`v1.11.0-beta.0`](https://redirect.github.com/siderolabs/talos/releases/tag/v1.11.0-beta.0)

[Compare
Source](https://redirect.github.com/siderolabs/talos/compare/v1.11.0-alpha.3...v1.11.0-beta.0)

#### [Talos
1.11.0-beta.0](https://redirect.github.com/siderolabs/talos/releases/tag/v1.11.0-beta.0)
(2025-07-22)

Welcome to the v1.11.0-beta.0 release of Talos!\
*This is a pre-release of Talos*

Please try out the release binaries and report any issues at
https://github.com/siderolabs/talos/issues.

##### Azure

Talos on Azure now defaults to MTU of 1400 bytes for the `eth0`
interface to avoid packet fragmentation issues.
The default MTU can be overriden with machine configuration.

##### Boot

Talos increases the boot partition size to 2 GiB to accommodate larger
images (with many system extensions included).

##### Kernel Command Line

Talos now exposes the kernel command line as a KernelCmdline resource
(`talosctl get cmdline`).

##### Disk Wipe

Talos now supports `talosctl disk wipe` command in maintenance mode
(`talosctl disk wipe <disk> --insecure`).

##### ETCD v3.6.x

Talos won't default to ETCD v3.6.x in the next release due to bug in the
v3.6.x series that causes data corruption in some cases.
The default version will be kept at v3.5.x for now, but users can still
use v3.6.x by explicitly specifying it in the configuration.

See
[https://github.com/etcd-io/etcd/issues/20340](https://redirect.github.com/etcd-io/etcd/issues/20340)

##### ETCD downgrade API

Added ETCD downgrade API mimicking the ETCD API and etcdctl interfaces.
This API allows to downgrade ETCD cluster (storage format) to a previous
version.

##### IMA support removed

Talos now drops the IMA (Integrity Measurement Architecture) support.
This feature was not used in Talos for any meaningful security purpose
and has historically caused performance issues. See
[#&#8203;11133](https://redirect.github.com/siderolabs/talos/issues/11133)
for more details.

##### Kubernetes Version Validation

Talos now validates Kubernetes version in the image submitted in the
machine configuration.
Previously this check was performed only on upgrade, but now it is
consistently applied to upgrade, initial provisioning, and machine
configuration updates.

This implies that all image references should contain the tag, even if
the image is pinned by digest.

##### Qemu provisioner on MacOS

On MacOS `talosctl cluster create` command now supports the Qemu
provisioner in addition to the Docker provisioner.

##### Kernel Modules

Talosctl now returns the loaded modules, not the modules configured to
be loaded (`talosctl get modules`).

##### SBOM

Talos now publishes Software Bill of Materials (SBOM) in the SPDX
format.
The SBOM is available in the `/usr/share/sbom` directory on the machine
and can be retrieved using `talosctl get sbom`.

##### Swap Suport

Talos now supports swap on block devices.
This feature can be enable by using
[SwapVolumeConfig](https://www.talos.dev/v1.11/reference/configuration/block/swapvolumeconfig/)
document in the machine configuration.

##### Component Updates

Linux: 6.12.38
Kubernetes: 1.34.0-beta.0
runc: 1.3.0
containerd: 2.1.3
Flannel CNI plugin: 1.7.1-flannel1
Flannel: 0.27.2
CoreDNS: 1.12.2
xfsprogs: 6.15.0
systemd-udevd and systemd-boot: 257.7
lvm2: 2.03.33
cryptsetup: 2.8.0

Talos is built with Go 1.24.5.

##### VMware

Talos VMWare platform now supports `arm64` architecture in addition to
`amd64`.

##### Volumes

Talos now supports [raw user
volumes](https://www.talos.dev/v1.11/talos-guides/configuration/disk-management/raw/),
allowing to allocate unformatted disk space as partition.
In addition to that, support for [existing
volumes](https://www.talos.dev/v1.11/talos-guides/configuration/disk-management/existing/)
has been added, allowing to mount existing partitions without formatting
them.

##### Zswap Support

Talos now supports zswap, a compressed cache for swap pages.
This feature can be enabled by using
[ZswapConfig](https://www.talos.dev/v1.11/reference/configuration/block/zswapconfig/)
document in the machine configuration.

##### Contributors

- Andrey Smirnov
- Noel Georgi
- Dmitrii Sharshakov
- Orzelius
- Mateusz Urbanek
- Orzelius
- Justin Garrison
- Spencer Smith
- Steve Francis
- Till Hoffmann
- Utku Ozdemir
- Artem Chernyshev
- Michael Robbins
- Alexandre GV
- Andrew Longwill
- Marat Bakeev
- Olav Thoresen
- Thibault VINCENT
- Alvaro "Chamo" Linares Cabre
- Brian Brookman
- Bryan Mora
- Clément Nussbaumer
- Damien
- David R
- Dennis Marttinen
- Dmitriy Matrenichev
- Joakim Nohlgård
- Jorik Jonker
- Justin Seely
- Luke Cousins
- Marco Mihai Condrache
- Markus Reiter
- Martyn Ranyard
- Michael Moerz
- Mike
- Oguz Kilcan
- Tan Siewert
- Tom Keur
- jvanthienen-gluo
- killcity
- yashutanu

##### Changes

<details><summary>222 commits</summary>
<p>

-
[@&#8203;`85e7989`](https://redirect.github.com/siderolabs/talos/commit/85e7989cf)
release(v1.11.0-beta.0): prepare release
-
[@&#8203;`3039162`](https://redirect.github.com/siderolabs/talos/commit/3039162dc)
feat: update Flannel to v0.27.2
-
[@&#8203;`7e6052e`](https://redirect.github.com/siderolabs/talos/commit/7e6052e63)
feat: increase boot partition to 2 GiB
-
[@&#8203;`cb7ca17`](https://redirect.github.com/siderolabs/talos/commit/cb7ca17bb)
feat: implement ExistingVolumeConfig
-
[@&#8203;`a857c69`](https://redirect.github.com/siderolabs/talos/commit/a857c696f)
chore(machined): remove deprecated Endpoints
-
[@&#8203;`a60101c`](https://redirect.github.com/siderolabs/talos/commit/a60101c55)
fix: fill serial using helpers
-
[@&#8203;`5420e99`](https://redirect.github.com/siderolabs/talos/commit/5420e9979)
refactor: output default selection for profiles
-
[@&#8203;`023a24c`](https://redirect.github.com/siderolabs/talos/commit/023a24cd4)
test: use Grype to scan SBOM for vulnerabilities
-
[@&#8203;`96896fd`](https://redirect.github.com/siderolabs/talos/commit/96896fddb)
chore: build less images by default
-
[@&#8203;`75b5dec`](https://redirect.github.com/siderolabs/talos/commit/75b5dec06)
fix: sd-boot kexec with disk images
-
[@&#8203;`10546d6`](https://redirect.github.com/siderolabs/talos/commit/10546d6f8)
feat: update Kuberentes 1.34.0-beta.0
-
[@&#8203;`3f35b83`](https://redirect.github.com/siderolabs/talos/commit/3f35b83ae)
fix: ignore absent extensions SBOM directory
-
[@&#8203;`9920da3`](https://redirect.github.com/siderolabs/talos/commit/9920da3e1)
feat: add etcd downgrade API
-
[@&#8203;`c386822`](https://redirect.github.com/siderolabs/talos/commit/c38682279)
feat: bump pkgs and tools, read extensions' SBOMs, rekres
-
[@&#8203;`9c0d270`](https://redirect.github.com/siderolabs/talos/commit/9c0d2706c)
docs: add release notes about v3.6.x bug
-
[@&#8203;`d219942`](https://redirect.github.com/siderolabs/talos/commit/d21994210)
test: refactor various merge controller tests
-
[@&#8203;`da5a444`](https://redirect.github.com/siderolabs/talos/commit/da5a4449f)
feat: implement raw volume support
-
[@&#8203;`41adda1`](https://redirect.github.com/siderolabs/talos/commit/41adda1cf)
docs: add secure boot setup mode note for Xen
-
[@&#8203;`993b4ad`](https://redirect.github.com/siderolabs/talos/commit/993b4ade8)
docs: fix typo in hugo config: pre-releaase
-
[@&#8203;`130b7fd`](https://redirect.github.com/siderolabs/talos/commit/130b7fd6e)
test: fix flaky TestDNS
-
[@&#8203;`35b45ae`](https://redirect.github.com/siderolabs/talos/commit/35b45ae6e)
feat(talosctl): support tpm operation on mac
-
[@&#8203;`24628db`](https://redirect.github.com/siderolabs/talos/commit/24628db20)
feat: update Kubernetes to v1.34.0-alpha.3
-
[@&#8203;`ff68286`](https://redirect.github.com/siderolabs/talos/commit/ff68286d1)
feat: include hwrandom modules
-
[@&#8203;`a5b07c9`](https://redirect.github.com/siderolabs/talos/commit/a5b07c9a5)
test: split tests and lint from the default pipeline
-
[@&#8203;`a957ef4`](https://redirect.github.com/siderolabs/talos/commit/a957ef416)
feat: add SBOMs to the imager container
-
[@&#8203;`506212a`](https://redirect.github.com/siderolabs/talos/commit/506212a71)
feat: include AMD encrypted mem modules into base
-
[@&#8203;`a966321`](https://redirect.github.com/siderolabs/talos/commit/a966321cc)
fix: add more bootloader probe logs on upgrade
-
[@&#8203;`b38fa56`](https://redirect.github.com/siderolabs/talos/commit/b38fa568a)
feat: add validation for secrets bundle
-
[@&#8203;`2d89bcc`](https://redirect.github.com/siderolabs/talos/commit/2d89bcc71)
feat: bump Linux, Go and other packages
-
[@&#8203;`0b8c180`](https://redirect.github.com/siderolabs/talos/commit/0b8c180b8)
fix: rename instances to referenceCount
-
[@&#8203;`378fe4f`](https://redirect.github.com/siderolabs/talos/commit/378fe4f2f)
feat: support writing EFI boot order
-
[@&#8203;`9f07926`](https://redirect.github.com/siderolabs/talos/commit/9f0792632)
fix: improve volume provisioning errors
-
[@&#8203;`b8fcf3c`](https://redirect.github.com/siderolabs/talos/commit/b8fcf3c71)
fix: change module instance evaluation
-
[@&#8203;`d680e56`](https://redirect.github.com/siderolabs/talos/commit/d680e560d)
docs: create FUNDING.yml
-
[@&#8203;`6415055`](https://redirect.github.com/siderolabs/talos/commit/641505584)
feat: support project quota support for user volumes
-
[@&#8203;`52656cc`](https://redirect.github.com/siderolabs/talos/commit/52656cc3c)
feat: allow taloscl disk wipe in maintenance mode
-
[@&#8203;`8505794`](https://redirect.github.com/siderolabs/talos/commit/850579448)
feat: export SBOM as resources
-
[@&#8203;`4f3a2ff`](https://redirect.github.com/siderolabs/talos/commit/4f3a2ffab)
test: update unit-test runner
-
[@&#8203;`d531b68`](https://redirect.github.com/siderolabs/talos/commit/d531b682c)
fix: provide FIPS 140-3 compliance
-
[@&#8203;`3e3129d`](https://redirect.github.com/siderolabs/talos/commit/3e3129d36)
feat: include packages into SBOM
-
[@&#8203;`54bd50b`](https://redirect.github.com/siderolabs/talos/commit/54bd50be3)
fix: talos endpoint might not be created in Kubernetes
-
[@&#8203;`8789a02`](https://redirect.github.com/siderolabs/talos/commit/8789a02c3)
feat: present loaded kernel modules
-
[@&#8203;`33ecbae`](https://redirect.github.com/siderolabs/talos/commit/33ecbaec6)
test: update apply config tests
-
[@&#8203;`7d2fd39`](https://redirect.github.com/siderolabs/talos/commit/7d2fd390c)
chore: bump Talos version in the Image Factory CI pipeline
-
[@&#8203;`de77f21`](https://redirect.github.com/siderolabs/talos/commit/de77f2142)
docs: add example for fluentbit config
-
[@&#8203;`1f1f781`](https://redirect.github.com/siderolabs/talos/commit/1f1f78106)
fix: add limited retries for not found images
-
[@&#8203;`3d6a2c1`](https://redirect.github.com/siderolabs/talos/commit/3d6a2c14e)
chore: generate and upload signatures on release
-
[@&#8203;`3801413`](https://redirect.github.com/siderolabs/talos/commit/380141330)
feat: expose kernel cmdline as a resource
-
[@&#8203;`4c6b3b1`](https://redirect.github.com/siderolabs/talos/commit/4c6b3b14d)
docs: document disabling SELinux
-
[@&#8203;`3a6e5a7`](https://redirect.github.com/siderolabs/talos/commit/3a6e5a71e)
feat: add talosctl mulitarch bundle image
-
[@&#8203;`be671ee`](https://redirect.github.com/siderolabs/talos/commit/be671ee6d)
chore: add sbom step to the release pipeline
-
[@&#8203;`7fd0e8f`](https://redirect.github.com/siderolabs/talos/commit/7fd0e8fc7)
release(v1.11.0-alpha.3): prepare release
-
[@&#8203;`777335f`](https://redirect.github.com/siderolabs/talos/commit/777335f23)
chore: improve cloud image uploader resilience
-
[@&#8203;`14e5eee`](https://redirect.github.com/siderolabs/talos/commit/14e5eee7d)
release(v1.11.0-alpha.2): prepare release
-
[@&#8203;`1e5a008`](https://redirect.github.com/siderolabs/talos/commit/1e5a008f5)
fix: hold user volume mount point across kubelet restarts
-
[@&#8203;`cdad505`](https://redirect.github.com/siderolabs/talos/commit/cdad50590)
docs: user volumes and kubernetes upgrade updates
-
[@&#8203;`c880835`](https://redirect.github.com/siderolabs/talos/commit/c880835c8)
feat: implement zswap support
-
[@&#8203;`7f0300f`](https://redirect.github.com/siderolabs/talos/commit/7f0300f10)
feat: update dependencies, Kubernetes 1.34.0-alpha.2
-
[@&#8203;`61afbe3`](https://redirect.github.com/siderolabs/talos/commit/61afbe3d2)
docs: add vc4 documentation
-
[@&#8203;`b9dbdc8`](https://redirect.github.com/siderolabs/talos/commit/b9dbdc8e7)
fix: etcd recover with multiple advertised addresses
-
[@&#8203;`19d94c3`](https://redirect.github.com/siderolabs/talos/commit/19d94c357)
feat: update Linux to 6.12.35, containerd to 2.1.3
-
[@&#8203;`44a1fc3`](https://redirect.github.com/siderolabs/talos/commit/44a1fc3b7)
fix: treat context canceled as expected error on image pull
-
[@&#8203;`4da2dd5`](https://redirect.github.com/siderolabs/talos/commit/4da2dd537)
feat: enforce Kubernetes version compatibility
-
[@&#8203;`6c7f820`](https://redirect.github.com/siderolabs/talos/commit/6c7f8201a)
fix: set default MTU on Azure to 1400
-
[@&#8203;`091cd69`](https://redirect.github.com/siderolabs/talos/commit/091cd6989)
docs: small yaml typo fix
-
[@&#8203;`66ecbd4`](https://redirect.github.com/siderolabs/talos/commit/66ecbd48f)
docs: update support matrix with omni version
-
[@&#8203;`c948d76`](https://redirect.github.com/siderolabs/talos/commit/c948d7617)
docs: minor fixes for creating kernel modules
-
[@&#8203;`cc14c4a`](https://redirect.github.com/siderolabs/talos/commit/cc14c4a25)
docs: add docs for creating kernel modules
-
[@&#8203;`93bcd3b`](https://redirect.github.com/siderolabs/talos/commit/93bcd3b56)
docs: create SBOM for Go dependencies
-
[@&#8203;`38c4ce4`](https://redirect.github.com/siderolabs/talos/commit/38c4ce415)
feat: add user-space InfiniBand modules
-
[@&#8203;`251dc93`](https://redirect.github.com/siderolabs/talos/commit/251dc934f)
feat: arm64 support for platform vmware
-
[@&#8203;`09b3ad5`](https://redirect.github.com/siderolabs/talos/commit/09b3ad577)
feat: update containerd to 2.1.2
-
[@&#8203;`0767dd0`](https://redirect.github.com/siderolabs/talos/commit/0767dd07b)
chore: enable --with-siderolink-agent on Darwin
-
[@&#8203;`9642198`](https://redirect.github.com/siderolabs/talos/commit/9642198d7)
fix: userspace wireguard library overrides
-
[@&#8203;`208f076`](https://redirect.github.com/siderolabs/talos/commit/208f0763e)
chore: fix talosctl build on non-Linux hosts
-
[@&#8203;`87421af`](https://redirect.github.com/siderolabs/talos/commit/87421af87)
docs: expand documentation description
-
[@&#8203;`d32ccfa`](https://redirect.github.com/siderolabs/talos/commit/d32ccfa59)
feat: implement swap support
-
[@&#8203;`8f5cf81`](https://redirect.github.com/siderolabs/talos/commit/8f5cf81db)
docs: update kvm documentation
-
[@&#8203;`8e84c8b`](https://redirect.github.com/siderolabs/talos/commit/8e84c8b0f)
fix: nil pointer deref in quirk
-
[@&#8203;`6e74a36`](https://redirect.github.com/siderolabs/talos/commit/6e74a3676)
docs: aad ery basic details on how to run on scaleway
-
[@&#8203;`260d1bc`](https://redirect.github.com/siderolabs/talos/commit/260d1bc9a)
fix: correctl close encrypted volumes
-
[@&#8203;`034ef42`](https://redirect.github.com/siderolabs/talos/commit/034ef42af)
fix: update siderolink library for wgtunnel panic fix
-
[@&#8203;`3035744`](https://redirect.github.com/siderolabs/talos/commit/3035744a8)
fix: correctly predict interface name on darwin
-
[@&#8203;`cfcfad3`](https://redirect.github.com/siderolabs/talos/commit/cfcfad3c4)
chore: move `checkUnknownKeys` function to `github.com/siderolabs/gen`
-
[@&#8203;`5ecc53c`](https://redirect.github.com/siderolabs/talos/commit/5ecc53c69)
docs: add macos section to developing-talos.md
-
[@&#8203;`b5b3530`](https://redirect.github.com/siderolabs/talos/commit/b5b35307f)
chore: update Go to 1.24.4
-
[@&#8203;`fde772d`](https://redirect.github.com/siderolabs/talos/commit/fde772d8d)
feat: update Flannel to 0.27.0
-
[@&#8203;`81ca279`](https://redirect.github.com/siderolabs/talos/commit/81ca27949)
release(v1.11.0-alpha.1): prepare release
-
[@&#8203;`58a868e`](https://redirect.github.com/siderolabs/talos/commit/58a868e68)
chore: fix renovate config, add release-gate label
-
[@&#8203;`a59aaee`](https://redirect.github.com/siderolabs/talos/commit/a59aaee84)
feat: bump dependencies, Linux 6.12.31
-
[@&#8203;`e954ee3`](https://redirect.github.com/siderolabs/talos/commit/e954ee30a)
docs: typo correction: LongHorn -> Longhorn
-
[@&#8203;`aab0533`](https://redirect.github.com/siderolabs/talos/commit/aab053394)
fix: mashal resource byte slices as strings in YAML
-
[@&#8203;`c7d4191`](https://redirect.github.com/siderolabs/talos/commit/c7d4191e7)
fix: rework the way CRI config generation is waited for
-
[@&#8203;`0114183`](https://redirect.github.com/siderolabs/talos/commit/0114183de)
docs: update `lastRelease` to 1.10.3
-
[@&#8203;`938b076`](https://redirect.github.com/siderolabs/talos/commit/938b0760a)
docs: update issue template
-
[@&#8203;`2a7b735`](https://redirect.github.com/siderolabs/talos/commit/2a7b735b2)
feat: drop IMA support
-
[@&#8203;`2d5a805`](https://redirect.github.com/siderolabs/talos/commit/2d5a805b0)
fix: typo in DiscoverdVolume spec
-
[@&#8203;`60c12ba`](https://redirect.github.com/siderolabs/talos/commit/60c12bad9)
feat: support nocloud include url userdata directive
-
[@&#8203;`0fd622c`](https://redirect.github.com/siderolabs/talos/commit/0fd622c82)
fix(talosctl): correct --help output for dashboard command
-
[@&#8203;`a90c936`](https://redirect.github.com/siderolabs/talos/commit/a90c936a1)
feat: support qemu provisioner on darwin
-
[@&#8203;`5322ca0`](https://redirect.github.com/siderolabs/talos/commit/5322ca0d3)
docs: update overlay docs
-
[@&#8203;`a60b632`](https://redirect.github.com/siderolabs/talos/commit/a60b6322d)
fix(ci): drop nebula from extensions test
-
[@&#8203;`dbbb59a`](https://redirect.github.com/siderolabs/talos/commit/dbbb59a67)
docs: add note for default `dataDirHostPath` for Rook
-
[@&#8203;`e260543`](https://redirect.github.com/siderolabs/talos/commit/e26054378)
docs: macos qemu provider
-
[@&#8203;`5d02240`](https://redirect.github.com/siderolabs/talos/commit/5d0224093)
docs: use the cilium-cli image repo in the job installation manifest
-
[@&#8203;`ff80e4c`](https://redirect.github.com/siderolabs/talos/commit/ff80e4cca)
docs: fix CIDR name
-
[@&#8203;`a5fd15e`](https://redirect.github.com/siderolabs/talos/commit/a5fd15e8b)
fix(ci): reproducibility test
-
[@&#8203;`8f8963e`](https://redirect.github.com/siderolabs/talos/commit/8f8963e50)
docs: update Nexxen brand
-
[@&#8203;`c6b8687`](https://redirect.github.com/siderolabs/talos/commit/c6b86872d)
fix(ci): iso reproducibility file permissions
-
[@&#8203;`995a1de`](https://redirect.github.com/siderolabs/talos/commit/995a1dec4)
chore: add a check for unsupported darwin flags
-
[@&#8203;`9db5d0c`](https://redirect.github.com/siderolabs/talos/commit/9db5d0c97)
fix: nocloud metadata for hostname
-
[@&#8203;`3cf3256`](https://redirect.github.com/siderolabs/talos/commit/3cf325654)
feat: modularize more arm64 kernel
-
[@&#8203;`3524745`](https://redirect.github.com/siderolabs/talos/commit/3524745cc)
fix: allow any PKI in Talos API
-
[@&#8203;`f438cdb`](https://redirect.github.com/siderolabs/talos/commit/f438cdb09)
chore: use custom dhcpd server on macos qemu
-
[@&#8203;`11c17fb`](https://redirect.github.com/siderolabs/talos/commit/11c17fb9a)
fix: metal-iso reproducibility
-
[@&#8203;`7fcb89e`](https://redirect.github.com/siderolabs/talos/commit/7fcb89ee3)
chore: add darwin vmnet qemu support
-
[@&#8203;`fc12373`](https://redirect.github.com/siderolabs/talos/commit/fc1237343)
chore: clean up `/usr/bin`
-
[@&#8203;`b551f32`](https://redirect.github.com/siderolabs/talos/commit/b551f32ce)
feat: update containerd to v2.1.1
-
[@&#8203;`67f4154`](https://redirect.github.com/siderolabs/talos/commit/67f4154f9)
docs: update disk-management.md
-
[@&#8203;`0cb137a`](https://redirect.github.com/siderolabs/talos/commit/0cb137ad7)
fix: make disk size check work on old Talos
-
[@&#8203;`7c057ed`](https://redirect.github.com/siderolabs/talos/commit/7c057edd5)
fix: use vmdk-convert istead of qemu-img to create VMDK for OVA files
-
[@&#8203;`cd618da`](https://redirect.github.com/siderolabs/talos/commit/cd618dad0)
chore: update the go-blockdevice package
-
[@&#8203;`0b99631`](https://redirect.github.com/siderolabs/talos/commit/0b99631a0)
fix: bump apid memory limit
-
[@&#8203;`5451f35`](https://redirect.github.com/siderolabs/talos/commit/5451f35b1)
docs: update virtualbox
-
[@&#8203;`bd4d202`](https://redirect.github.com/siderolabs/talos/commit/bd4d202a5)
refactor: bring owned.State from COSI to simplify tests
-
[@&#8203;`0b96df5`](https://redirect.github.com/siderolabs/talos/commit/0b96df574)
feat: update containerd to 2.1.0
-
[@&#8203;`e1a9391`](https://redirect.github.com/siderolabs/talos/commit/e1a939144)
docs: fix formatting in disk encryption
-
[@&#8203;`7a817df`](https://redirect.github.com/siderolabs/talos/commit/7a817df1c)
docs: fix typo
-
[@&#8203;`f35b213`](https://redirect.github.com/siderolabs/talos/commit/f35b213b2)
test: fix DHCP unicast failures in QEMU environment
-
[@&#8203;`7064bbf`](https://redirect.github.com/siderolabs/talos/commit/7064bbf05)
docs: fix vmware factory URL
-
[@&#8203;`78c33bc`](https://redirect.github.com/siderolabs/talos/commit/78c33bcdb)
feat: update default Kubernetes to v1.33.1
-
[@&#8203;`da67952`](https://redirect.github.com/siderolabs/talos/commit/da6795266)
fix: disable automatic MAC assignment to bridge interfaces
-
[@&#8203;`ca34adf`](https://redirect.github.com/siderolabs/talos/commit/ca34adf58)
chore(ci): drop azure keys
-
[@&#8203;`ea5de19`](https://redirect.github.com/siderolabs/talos/commit/ea5de19fa)
fix: selinux detection
-
[@&#8203;`52c76ea`](https://redirect.github.com/siderolabs/talos/commit/52c76ea3a)
fix: consistently apply dynamic grpc proxy dialer
-
[@&#8203;`aa9569e`](https://redirect.github.com/siderolabs/talos/commit/aa9569e5d)
chore: refactor cluster create cmd flags
-
[@&#8203;`1161faa`](https://redirect.github.com/siderolabs/talos/commit/1161faa05)
docs: fix typo in Cilium docs
-
[@&#8203;`164745e`](https://redirect.github.com/siderolabs/talos/commit/164745e44)
docs: remove `preserve` flag mention in upgrade notes
-
[@&#8203;`9a2ecba`](https://redirect.github.com/siderolabs/talos/commit/9a2ecbaaf)
fix: makefile operating system param
-
[@&#8203;`118aa69`](https://redirect.github.com/siderolabs/talos/commit/118aa69d6)
chore: update cloud-image-uploader dependencies
-
[@&#8203;`acdd721`](https://redirect.github.com/siderolabs/talos/commit/acdd721cf)
chore: dump qemu pachine ipam records on darwin
-
[@&#8203;`bb90945`](https://redirect.github.com/siderolabs/talos/commit/bb9094534)
chore: rotate aws iam credentials
-
[@&#8203;`0bfa4ae`](https://redirect.github.com/siderolabs/talos/commit/0bfa4ae1b)
chore: update deps for cloud-image-uploader
-
[@&#8203;`956d7c7`](https://redirect.github.com/siderolabs/talos/commit/956d7c71b)
chore: update sops keys
-
[@&#8203;`e2f819d`](https://redirect.github.com/siderolabs/talos/commit/e2f819d88)
test: fix the process runner log collection
-
[@&#8203;`fdac4cf`](https://redirect.github.com/siderolabs/talos/commit/fdac4cfb9)
fix: upgrade go-kubernetes for DRA flag bug
-
[@&#8203;`09d88e1`](https://redirect.github.com/siderolabs/talos/commit/09d88e1e8)
test: fix some flaky tests
-
[@&#8203;`ec1f41a`](https://redirect.github.com/siderolabs/talos/commit/ec1f41a94)
chore: make qemu config server bind work on darwin
-
[@&#8203;`980f4d2`](https://redirect.github.com/siderolabs/talos/commit/980f4d2b9)
feat: bump dependencies
-
[@&#8203;`9525933`](https://redirect.github.com/siderolabs/talos/commit/95259337e)
fix: k8s 1.32->1.33 upgrade check
-
[@&#8203;`c3c326b`](https://redirect.github.com/siderolabs/talos/commit/c3c326b40)
fix: improve volume mounter automaton
-
[@&#8203;`918b94d`](https://redirect.github.com/siderolabs/talos/commit/918b94d9a)
refactor: rewrite disk size check
-
[@&#8203;`ab7e693`](https://redirect.github.com/siderolabs/talos/commit/ab7e693d7)
chore: make qemu lb address bind work on darwin
-
[@&#8203;`97ceab0`](https://redirect.github.com/siderolabs/talos/commit/97ceab001)
fix: multiple logic issues in platform network config controller
-
[@&#8203;`46349a9`](https://redirect.github.com/siderolabs/talos/commit/46349a9df)
docs: remove azure image gallery instructions
-
[@&#8203;`0cfcdd3`](https://redirect.github.com/siderolabs/talos/commit/0cfcdd3de)
docs: fix search on base talos.dev
-
[@&#8203;`78646b4`](https://redirect.github.com/siderolabs/talos/commit/78646b4e0)
docs: add registryd debug command
-
[@&#8203;`c6824c2`](https://redirect.github.com/siderolabs/talos/commit/c6824c211)
fix: deny apply config requests without v1alpha1 in "normal" mode
-
[@&#8203;`7df0408`](https://redirect.github.com/siderolabs/talos/commit/7df0408e4)
fix: interactive installer config gen
-
[@&#8203;`881c5d6`](https://redirect.github.com/siderolabs/talos/commit/881c5d62b)
fix: suppress duplicate platform config updates
-
[@&#8203;`66d7788`](https://redirect.github.com/siderolabs/talos/commit/66d77888e)
fix: replace downloaded asset paths correctly in cluster create cmd
-
[@&#8203;`6bd6c9b`](https://redirect.github.com/siderolabs/talos/commit/6bd6c9b5a)
fix: generate iso greater than 4 gig
-
[@&#8203;`ac14032`](https://redirect.github.com/siderolabs/talos/commit/ac140324e)
fix: skip PCR extension if TPM1.2 is found
-
[@&#8203;`09ef1f8`](https://redirect.github.com/siderolabs/talos/commit/09ef1f8a4)
fix: ignore http proxy on grpc socket dial
-
[@&#8203;`22a72dc`](https://redirect.github.com/siderolabs/talos/commit/22a72dc80)
chore: split options between three structs
-
[@&#8203;`22c34a5`](https://redirect.github.com/siderolabs/talos/commit/22c34a50f)
fix(ci): provision cron jobs
-
[@&#8203;`b3b20ef`](https://redirect.github.com/siderolabs/talos/commit/b3b20eff3)
fix: containerd crashing with sigsegv
-
[@&#8203;`f7891c3`](https://redirect.github.com/siderolabs/talos/commit/f7891c301)
chore: calculate vmnet interface name preemptively
-
[@&#8203;`ae87edf`](https://redirect.github.com/siderolabs/talos/commit/ae87edffb)
fix: drop libseccomp from rootfs
-
[@&#8203;`f74a805`](https://redirect.github.com/siderolabs/talos/commit/f74a805bb)
fix: do correct backoff for nocloud reconcile
-
[@&#8203;`01bb294`](https://redirect.github.com/siderolabs/talos/commit/01bb294af)
fix(ci): provision tests
-
[@&#8203;`e4945be`](https://redirect.github.com/siderolabs/talos/commit/e4945be3b)
docs: add registryd debug command
-
[@&#8203;`d8c670a`](https://redirect.github.com/siderolabs/talos/commit/d8c670ad3)
release(v1.11.0-alpha.0): prepare release
-
[@&#8203;`ace44ea`](https://redirect.github.com/siderolabs/talos/commit/ace44ea61)
test: update hydrophone to 0.7.0
-
[@&#8203;`3a11636`](https://redirect.github.com/siderolabs/talos/commit/3a1163692)
chore: cross platform qemu preflight checks
-
[@&#8203;`7914fb1`](https://redirect.github.com/siderolabs/talos/commit/7914fb104)
chore: move the create command to it's own package
-
[@&#8203;`c8e6196`](https://redirect.github.com/siderolabs/talos/commit/c8e619608)
chore: prepare for release 1.11
-
[@&#8203;`1299aaa`](https://redirect.github.com/siderolabs/talos/commit/1299aaa45)
chore(ci): add extensions test for Youki runtime
-
[@&#8203;`e50ceb2`](https://redirect.github.com/siderolabs/talos/commit/e50ceb221)
docs: activate Talos 1.10 docs
-
[@&#8203;`9d12aae`](https://redirect.github.com/siderolabs/talos/commit/9d12aaeb1)
test: improve config patch test
-
[@&#8203;`106a656`](https://redirect.github.com/siderolabs/talos/commit/106a656b6)
chore: make qemu provider build on darwin
-
[@&#8203;`8013aa0`](https://redirect.github.com/siderolabs/talos/commit/8013aa06c)
test: replace platform metadata test
-
[@&#8203;`2b89c28`](https://redirect.github.com/siderolabs/talos/commit/2b89c2810)
fix: relax etcd APIs RBAC requirements
-
[@&#8203;`1e67758`](https://redirect.github.com/siderolabs/talos/commit/1e677587c)
fix: preserve kubelet image suffix
-
[@&#8203;`62ab8af`](https://redirect.github.com/siderolabs/talos/commit/62ab8af45)
fix: disk image generation with image cache
-
[@&#8203;`d60626f`](https://redirect.github.com/siderolabs/talos/commit/d60626f01)
fix: handle encryption type mismatch
-
[@&#8203;`a9109eb`](https://redirect.github.com/siderolabs/talos/commit/a9109ebd0)
feat: allow SideroLink unique token in machine config
-
[@&#8203;`2ff3a6e`](https://redirect.github.com/siderolabs/talos/commit/2ff3a6e40)
feat(kernel): add bcache kernel module to core talos
-
[@&#8203;`fa95a21`](https://redirect.github.com/siderolabs/talos/commit/fa95a2146)
fix(ci): bios provision test
-
[@&#8203;`f7c5b86`](https://redirect.github.com/siderolabs/talos/commit/f7c5b86be)
fix: sync PCR extension with volume provisioning lifecycle
-
[@&#8203;`f90c794`](https://redirect.github.com/siderolabs/talos/commit/f90c79474)
chore: show bound driver in pcidevices info
-
[@&#8203;`8db3462`](https://redirect.github.com/siderolabs/talos/commit/8db34624c)
fix: handle correctly changing platform network config
-
[@&#8203;`77c7a07`](https://redirect.github.com/siderolabs/talos/commit/77c7a075b)
feat: update Kubernetes to 1.33.0
-
[@&#8203;`74f0c48`](https://redirect.github.com/siderolabs/talos/commit/74f0c48c7)
feat: add version compatibility for Talos 1.11
-
[@&#8203;`c4fb7da`](https://redirect.github.com/siderolabs/talos/commit/c4fb7dad0)
fix: force DNS runner shutdown on timeout
-
[@&#8203;`c49b483`](https://redirect.github.com/siderolabs/talos/commit/c49b4836e)
docs: hetzner: add note about public iso
-
[@&#8203;`16ea2b1`](https://redirect.github.com/siderolabs/talos/commit/16ea2b113)
docs: add what is new for 1.10
-
[@&#8203;`be3f0c0`](https://redirect.github.com/siderolabs/talos/commit/be3f0c018)
fix: fix Gvisor tests with containerd patch
-
[@&#8203;`37db132`](https://redirect.github.com/siderolabs/talos/commit/37db132b3)
chore(ci): add provision test with bios
-
[@&#8203;`ec60b70`](https://redirect.github.com/siderolabs/talos/commit/ec60b70e7)
fix: set media type to OCI for image cache layer
-
[@&#8203;`a471eb3`](https://redirect.github.com/siderolabs/talos/commit/a471eb31b)
feat: update Linux 6.12.24, containerd 2.0.5
-
[@&#8203;`54ad5b8`](https://redirect.github.com/siderolabs/talos/commit/54ad5b872)
fix: extension services logging to console
-
[@&#8203;`601f036`](https://redirect.github.com/siderolabs/talos/commit/601f036ba)
docs: correct flannel extra args example
-
[@&#8203;`ae94377`](https://redirect.github.com/siderolabs/talos/commit/ae94377d1)
feat: support encryption config for user volumes
-
[@&#8203;`9616f6e`](https://redirect.github.com/siderolabs/talos/commit/9616f6e8d)
docs: add caveat for kubespan and host ports
-
[@&#8203;`a1d08a3`](https://redirect.github.com/siderolabs/talos/commit/a1d08a362)
docs: fixes typo at OpenEBS Mayastor worker patches
-
[@&#8203;`a91e872`](https://redirect.github.com/siderolabs/talos/commit/a91e8726e)
docs: add a dark theme
-
[@&#8203;`c76189c`](https://redirect.github.com/siderolabs/talos/commit/c76189c58)
fix: grub EFI mount point
-
[@&#8203;`4ca985c`](https://redirect.github.com/siderolabs/talos/commit/4ca985c65)
fix: grub efi platform install
-
[@&#8203;`b312602`](https://redirect.github.com/siderolabs/talos/commit/b31260281)
docs: update storage.md
-
[@&#8203;`396a290`](https://redirect.github.com/siderolabs/talos/commit/396a29040)
feat: add new SBCs
-
[@&#8203;`a902f65`](https://redirect.github.com/siderolabs/talos/commit/a902f6580)
feat: update Flannel to v0.26.7
-
[@&#8203;`2bbefec`](https://redirect.github.com/siderolabs/talos/commit/2bbefec1a)
docs: use cache in preview
-
[@&#8203;`6028a8d`](https://redirect.github.com/siderolabs/talos/commit/6028a8d2d)
docs: update kubeprism.md
-
[@&#8203;`e51a8ef`](https://redirect.github.com/siderolabs/talos/commit/e51a8ef8c)
fix: prefer new `MountStatus` resource
-
[@&#8203;`d9c7e79`](https://redirect.github.com/siderolabs/talos/commit/d9c7e7946)
docs: fix search
-
[@&#8203;`b32fa02`](https://redirect.github.com/siderolabs/talos/commit/b32fa029b)
feat: update Kubernetes to 1.33.0-rc.1
-
[@&#8203;`f0ea478`](https://redirect.github.com/siderolabs/talos/commit/f0ea478cb)
feat: support address priority
-
[@&#8203;`8cd3c8d`](https://redirect.github.com/siderolabs/talos/commit/8cd3c8dc7)
test: fix NVIDIA OSS tests
-
[@&#8203;`62f2d27`](https://redirect.github.com/siderolabs/talos/commit/62f2d27cd)
docs: update virtualbox.md
-
[@&#8203;`141326e`](https://redirect.github.com/siderolabs/talos/commit/141326ea3)
docs: fix tabpane styling
-
[@&#8203;`134aa53`](https://redirect.github.com/siderolabs/talos/commit/134aa53cc)
feat: update base CoreDNS code in host DNS to 1.12.1

</p>
</details>

##### Changes since v1.11.0-alpha.3
<details><summary>51 commits</summary>
<p>

-
[@&#8203;`85e7989`](https://redirect.github.com/siderolabs/talos/commit/85e7989cf)
release(v1.11.0-beta.0): prepare release
-
[@&#8203;`3039162`](https://redirect.github.com/siderolabs/talos/commit/3039162dc)
feat: update Flannel to v0.27.2
-
[@&#8203;`7e6052e`](https://redirect.github.com/siderolabs/talos/commit/7e6052e63)
feat: increase boot partition to 2 GiB
-
[@&#8203;`cb7ca17`](https://redirect.github.com/siderolabs/talos/commit/cb7ca17bb)
feat: implement ExistingVolumeConfig
-
[@&#8203;`a857c69`](https://redirect.github.com/siderolabs/talos/commit/a857c696f)
chore(machined): remove deprecated Endpoints
-
[@&#8203;`a60101c`](https://redirect.github.com/siderolabs/talos/commit/a60101c55)
fix: fill serial using helpers
-
[@&#8203;`5420e99`](https://redirect.github.com/siderolabs/talos/commit/5420e9979)
refactor: output default selection for profiles
-
[@&#8203;`023a24c`](https://redirect.github.com/siderolabs/talos/commit/023a24cd4)
test: use Grype to scan SBOM for vulnerabilities
-
[@&#8203;`96896fd`](https://redirect.github.com/siderolabs/talos/commit/96896fddb)
chore: build less images by default
-
[@&#8203;`75b5dec`](https://redirect.github.com/siderolabs/talos/commit/75b5dec06)
fix: sd-boot kexec with disk images
-
[@&#8203;`10546d6`](https://redirect.github.com/siderolabs/talos/commit/10546d6f8)
feat: update Kuberentes 1.34.0-beta.0
-
[@&#8203;`3f35b83`](https://redirect.github.com/siderolabs/talos/commit/3f35b83ae)
fix: ignore absent extensions SBOM directory
-
[@&#8203;`9920da3`](https://redirect.github.com/siderolabs/talos/commit/9920da3e1)
feat: add etcd downgrade API
-
[@&#8203;`c386822`](https://redirect.github.com/siderolabs/talos/commit/c38682279)
feat: bump pkgs and tools, read extensions' SBOMs, rekres
-
[@&#8203;`9c0d270`](https://redirect.github.com/siderolabs/talos/commit/9c0d2706c)
docs: add release notes about v3.6.x bug
-
[@&#8203;`d219942`](https://redirect.github.com/siderolabs/talos/commit/d21994210)
test: refactor various merge controller tests
-
[@&#8203;`da5a444`](https://redirect.github.com/siderolabs/talos/commit/da5a4449f)
feat: implement raw volume support
-
[@&#8203;`41adda1`](https://redirect.github.com/siderolabs/talos/commit/41adda1cf)
docs: add secure boot setup mode note for Xen
-
[@&#8203;`993b4ad`](https://redirect.github.com/siderolabs/talos/commit/993b4ade8)
docs: fix typo in hugo config: pre-releaase
-
[@&#8203;`130b7fd`](https://redirect.github.com/siderolabs/talos/commit/130b7fd6e)
test: fix flaky TestDNS
-
[@&#8203;`35b45ae`](https://redirect.github.com/siderolabs/talos/commit/35b45ae6e)
feat(talosctl): support tpm operation on mac
-
[@&#8203;`24628db`](https://redirect.github.com/siderolabs/talos/commit/24628db20)
feat: update Kubernetes to v1.34.0-alpha.3
-
[@&#8203;`ff68286`](https://redirect.github.com/siderolabs/talos/commit/ff68286d1)
feat: include hwrandom modules
-
[@&#8203;`a5b07c9`](https://redirect.github.com/siderolabs/talos/commit/a5b07c9a5)
test: split tests and lint from the default pipeline
-
[@&#8203;`a957ef4`](https://redirect.github.com/siderolabs/talos/commit/a957ef416)
feat: add SBOMs to the imager container
-
[@&#8203;`506212a`](https://redirect.github.com/siderolabs/talos/commit/506212a71)
feat: include AMD encrypted mem modules into base
-
[@&#8203;`a966321`](https://redirect.github.com/siderolabs/talos/commit/a966321cc)
fix: add more bootloader probe logs on upgrade
-
[@&#8203;`b38fa56`](https://redirect.github.com/siderolabs/talos/commit/b38fa568a)
feat: add validation for secrets bundle
-
[@&#8203;`2d89bcc`](https://redirect.github.com/siderolabs/talos/commit/2d89bcc71)
feat: bump Linux, Go and other packages
-
[@&#8203;`0b8c180`](https://redirect.github.com/siderolabs/talos/commit/0b8c180b8)
fix: rename instances to referenceCount
-
[@&#8203;`378fe4f`](https://redirect.github.com/siderolabs/talos/commit/378fe4f2f)
feat: support writing EFI boot order
-
[@&#8203;`9f07926`](https://redirect.github.com/siderolabs/talos/commit/9f0792632)
fix: improve volume provisioning errors
-
[@&#8203;`b8fcf3c`](https://redirect.github.com/siderolabs/talos/commit/b8fcf3c71)
fix: change module instance evaluation
-
[@&#8203;`d680e56`](https://redirect.github.com/siderolabs/talos/commit/d680e560d)
docs: create FUNDING.yml
-
[@&#8203;`6415055`](https://redirect.github.com/siderolabs/talos/commit/641505584)
feat: support project quota support for user volumes
-
[@&#8203;`52656cc`](https://redirect.github.com/siderolabs/talos/commit/52656cc3c)
feat: allow taloscl disk wipe in maintenance mode
-
[@&#8203;`8505794`](https://redirect.github.com/siderolabs/talos/commit/850579448)
feat: export SBOM as resources
-
[@&#8203;`4f3a2ff`](https://redirect.github.com/siderolabs/talos/commit/4f3a2ffab)
test: update unit-test runner
-
[@&#8203;`d531b68`](https://redirect.github.com/siderolabs/talos/commit/d531b682c)
fix: provide FIPS 140-3 compliance
-
[@&#8203;`3e3129d`](https://redirect.github.com/siderolabs/talos/commit/3e3129d36)
feat: include packages into SBOM
-
[@&#8203;`54bd50b`](https://redirect.github.com/siderolabs/talos/commit/54bd50be3)
fix: talos endpoint might not be created in Kubernetes
-
[@&#8203;`8789a02`](https://redirect.github.com/siderolabs/talos/commit/8789a02c3)
feat: present loaded kernel modules
-
[@&#8203;`33ecbae`](https://redirect.github.com/siderolabs/talos/commit/33ecbaec6)
test: update apply config tests
-
[@&#8203;`7d2fd39`](https://redirect.github.com/siderolabs/talos/commit/7d2fd390c)
chore: bump Talos version in the Image Factory CI pipeline
-
[@&#8203;`de77f21`](https://redirect.github.com/siderolabs/talos/commit/de77f2142)
docs: add example for fluentbit config
-
[@&#8203;`1f1f781`](https://redirect.github.com/siderolabs/talos/commit/1f1f78106)
fix: add limited retries for not found images
-
[@&#8203;`3d6a2c1`](https://redirect.github.com/siderolabs/talos/commit/3d6a2c14e)
chore: generate and upload signatures on release
-
[@&#8203;`3801413`](https://redirect.github.com/siderolabs/talos/commit/380141330)
feat: expose kernel cmdline as a resource
-
[@&#8203;`4c6b3b1`](https://redirect.github.com/siderolabs/talos/commit/4c6b3b14d)
docs: document disabling SELinux
-
[@&#8203;`3a6e5a7`](https://redirect.github.com/siderolabs/talos/commit/3a6e5a71e)
feat: add talosctl mulitarch bundle image
-
[@&#8203;`be671ee`](https://redirect.github.com/siderolabs/talos/commit/be671ee6d)
chore: add sbom step to the release pipeline

</p>
</details>

##### Changes from siderolabs/crypto
<details><summary>5 commits</summary>
<p>

-
[siderolabs/crypto@`62a079b`](https://redirect.github.com/siderolabs/crypto/commit/62a079b)
fix: update TLS config, add tests for TLS interactions
-
[siderolabs/crypto@`c2b4e26`](https://redirect.github.com/siderolabs/crypto/commit/c2b4e26)
fix: remove code duplication and fix
[`Ed25511`](https://redirect.github.com/siderolabs/talos/commit/Ed255119)
CA generation
-
[siderolabs/crypto@`2a07632`](https://redirect.github.com/siderolabs/crypto/commit/2a07632)
fix: enforce FIPS-140-3 compliance
-
[siderolabs/crypto@`17107ae`](https://redirect.github.com/siderolabs/crypto/commit/17107ae)
fix: add generic CSR generator and OpenSSL interop
-
[siderolabs/crypto@`53659fc`](https://redirect.github.com/siderolabs/crypto/commit/53659fc)
refactor: split into files

</p>
</details>

##### Changes from siderolabs/discovery-client
<details><summary>1 commit</summary>
<p>

-
[siderolabs/discovery-client@`71b0c6d`](https://redirect.github.com/siderolabs/discovery-client/commit/71b0c6d)
fix: add FIPS-140-3 strict compliance

</p>
</details>

##### Changes from siderolabs/gen
<details><summary>5 commits</summary>
<p>

-
[siderolabs/gen@`044d921`](https://redirect.github.com/siderolabs/gen/commit/044d921)
feat: add xslices.Deduplicate
-
[siderolabs/gen@`dcb2b74`](https://redirect.github.com/siderolabs/gen/commit/dcb2b74)
feat: add `panicsafe` package
-
[siderolabs/gen@`b36ee43`](https://redirect.github.com/siderolabs/gen/commit/b36ee43)
feat: make `xyaml.CheckUnknownKeys` public
-
[siderolabs/gen@`3e319e7`](https://redirect.github.com/siderolabs/gen/commit/3e319e7)
feat: implement `xyaml.UnmarshalStrict`
-
[siderolabs/gen@`7c0324f`](https://redirect.github.com/siderolabs/gen/commit/7c0324f)
chore: future-proof HashTrieMap

</p>
</details>

##### Changes from siderolabs/go-circular
<details><summary>1 commit</summary>
<p>

-
[siderolabs/go-circular@`5b39ef8`](https://redirect.github.com/siderolabs/go-circular/commit/5b39ef8)
fix: do not log error if chunk zero was never written

</p>
</details>

##### Changes from siderolabs/go-kubernetes
<details><summary>4 commits</summary>
<p>

-
[siderolabs/go-kubernetes@`7887034`](https://redirect.github.com/siderolabs/go-kubernetes/commit/7887034)
feat: add checks for Kubernetes 1.34 removals
-
[siderolabs/go-kubernetes@`657a74b`](https://redirect.github.com/siderolabs/go-kubernetes/commit/657a74b)
feat: prepare for Kubernetes 1.34
-
[siderolabs/go-kubernetes@`9070be4`](https://redirect.github.com/siderolabs/go-kubernetes/commit/9070be4)
fix: remove DynamicResourceAllocation feature gate
-
[siderolabs/go-kubernetes@`8cb588b`](https://redirect.github.com/siderolabs/go-kubernetes/commit/8cb588b)
fix: k8s 1.32->1.33 upgrade check

</p>
</details>

##### Changes from siderolabs/pkgs
<details><summary>53 commits</summary>
<p>

-
[siderolabs/pkgs@`e2fbfb1`](https://redirect.github.com/siderolabs/pkgs/commit/e2fbfb1)
feat: update tools/toolchain to 1.11.0
-
[siderolabs/pkgs@`383bbb4`](https://redirect.github.com/siderolabs/pkgs/commit/383bbb4)
feat: update NVIDIA production to 570.158.01
-
[siderolabs/pkgs@`853cf3a`](https://redirect.github.com/siderolabs/pkgs/commit/853cf3a)
feat: bump e2fsprogs, ipxe, kspp, tools
-
[siderolabs/pkgs@`a3f8281`](https://redirect.github.com/siderolabs/pkgs/commit/a3f8281)
feat: update Linux to 6.12.38
-
[siderolabs/pkgs@`8ed84c5`](https://redirect.github.com/siderolabs/pkgs/commit/8ed84c5)
feat: refactor HW\_RANDOM configuration
-
[siderolabs/pkgs@`108099f`](https://redirect.github.com/siderolabs/pkgs/commit/108099f)
feat: enable AMD encrypted memory
-
[siderolabs/pkgs@`c97d25e`](https://redirect.github.com/siderolabs/pkgs/commit/c97d25e)
fix: remove erroneous PURLs
-
[siderolabs/pkgs@`90f7c65`](https://redirect.github.com/siderolabs/pkgs/commit/90f7c65)
fix: bump bldr
-
[siderolabs/pkgs@`a24b40e`](https://redirect.github.com/siderolabs/pkgs/commit/a24b40e)
feat: update Linux to 6.12.36 and firmware
-
[siderolabs/pkgs@`2537e61`](https://redirect.github.com/siderolabs/pkgs/commit/2537e61)
docs: more SBOM metadata to cover whole Talos
-
[siderolabs/pkgs@`0f4cbbc`](https://redirect.github.com/siderolabs/pkgs/commit/0f4cbbc)
feat: update dependencies
-
[siderolabs/pkgs@`9cec45c`](https://redirect.github.com/siderolabs/pkgs/commit/9cec45c)
feat: add SBOM metadata for some packages
-
[siderolabs/pkgs@`03bb94c`](https://redirect.github.com/siderolabs/pkgs/commit/03bb94c)
feat: update dependencies
-
[siderolabs/pkgs@`c613abd`](https://redirect.github.com/siderolabs/pkgs/commit/c613abd)
fix: iptables url
-
[siderolabs/pkgs@`fae59df`](https://redirect.github.com/siderolabs/pkgs/commit/fae59df)
fix: download and copy hailo8 firmware
-
[siderolabs/pkgs@`fadf1e2`](https://redirect.github.com/siderolabs/pkgs/commit/fadf1e2)
feat: update containerd to 2.1.2
-
[siderolabs/pkgs@`a0b0da1`](https://redirect.github.com/siderolabs/pkgs/commit/a0b0da1)
feat: enable io.latency cgroup controller
-
[siderolabs/pkgs@`0aaa07a`](https://redirect.github.com/siderolabs/pkgs/commit/0aaa07a)
feat: add hailort package
-
[siderolabs/pkgs@`8555e94`](https://redirect.github.com/siderolabs/pkgs/commit/8555e94)
chore: use ftpmirror for GNU sources
-
[siderolabs/pkgs@`9fbe2b4`](https://redirect.github.com/siderolabs/pkgs/commit/9fbe2b4)
feat: update Go to 1.24.4
-
[siderolabs/pkgs@`79bfa9e`](https://redirect.github.com/siderolabs/pkgs/commit/79bfa9e)
feat: update NVIDIA drivers to 570.148.08
-
[siderolabs/pkgs@`c8b8bd8`](https://redirect.github.com/siderolabs/pkgs/commit/c8b8bd8)
feat: bump dependencies
-
[siderolabs/pkgs@`54bf03e`](https://redirect.github.com/siderolabs/pkgs/commit/54bf03e)
feat: update Linux to 6.12.31
-
[siderolabs/pkgs@`93b3aaa`](https://redirect.github.com/siderolabs/pkgs/commit/93b3aaa)
feat: add patch for CephFS IMA performance regression
-
[siderolabs/pkgs@`ebd6627`](https://redirect.github.com/siderolabs/pkgs/commit/ebd6627)
feat: disable IMA support
-
[siderolabs/pkgs@`8aad53b`](https://redirect.github.com/siderolabs/pkgs/commit/8aad53b)
feat: add CONFIG\_NFT\_CONNLIMIT to kernel
-
[siderolabs/pkgs@`7a299fa`](https://redirect.github.com/siderolabs/pkgs/commit/7a299fa)
feat: update Linux to 6.12.30
-
[siderolabs/pkgs@`8c4603e`](https://redirect.github.com/siderolabs/pkgs/commit/8c4603e)
feat: move more configs to modules on arm64
-
[siderolabs/pkgs@`7b1183b`](https://redirect.github.com/siderolabs/pkgs/commit/7b1183b)
feat(kernel): enable IB user-space management and RDMA
-
[siderolabs/pkgs@`1b1430e`](https://redirect.github.com/siderolabs/pkgs/commit/1b1430e)
fix: drop pcre2 binaries
-
[siderolabs/pkgs@`487610c`](https://redirect.github.com/siderolabs/pkgs/commit/487610c)
fix: drop broken symlinks
-
[siderolabs/pkgs@`f31d518`](https://redirect.github.com/siderolabs/pkgs/commit/f31d518)
fix: clean up some binaries
-
[siderolabs/pkgs@`0f74b9b`](https://redirect.github.com/siderolabs/pkgs/commit/0f74b9b)
feat: update containerd to v2.1.1
-
[siderolabs/pkgs@`89b4037`](https://redirect.github.com/siderolabs/pkgs/commit/89b4037)
fix: tenstorrent pkg name
-
[siderolabs/pkgs@`a14b544`](https://redirect.github.com/siderolabs/pkgs/commit/a14b544)
chore: drop qemu-tools vmdk support
-
[siderolabs/pkgs@`2563e47`](https://redirect.github.com/siderolabs/pkgs/commit/2563e47)
feat: add tenstorrent package
-
[siderolabs/pkgs@`2a1c42f`](https://redirect.github.com/siderolabs/pkgs/commit/2a1c42f)
fix(renovate): flannel config
-
[siderolabs/pkgs@`bfa69a8`](https://redirect.github.com/siderolabs/pkgs/commit/bfa69a8)
feat: add open-vmdk package
-
[siderolabs/pkgs@`9f1ba1f`](https://redirect.github.com/siderolabs/pkgs/commit/9f1ba1f)
fix: bring back updated containerd gvisor patch
-
[siderolabs/pkgs@`1567cb6`](https://redirect.github.com/siderolabs/pkgs/commit/1567cb6)
feat: update Linux 6.12.28, firmware
-
[siderolabs/pkgs@`9bc66e6`](https://redirect.github.com/siderolabs/pkgs/commit/9bc66e6)
feat: update containerd to 2.1.0
-
[siderolabs/pkgs@`c6b54e0`](https://redirect.github.com/siderolabs/pkgs/commit/c6b54e0)
feat: enable zswap
-
[siderolabs/pkgs@`4cd7084`](https://redirect.github.com/siderolabs/pkgs/commit/4cd7084)
feat: update dependencies
-
[siderolabs/pkgs@`a3fcbf8`](https://redirect.github.com/siderolabs/pkgs/commit/a3fcbf8)
feat(kernel): enable panthor driver
-
[siderolabs/pkgs@`74d1665`](https://redirect.github.com/siderolabs/pkgs/commit/74d1665)
feat: update ZFS to 2.3.2
-
[siderolabs/pkgs@`ddc866b`](https://redirect.github.com/siderolabs/pkgs/commit/ddc866b)
feat: update Linux to 6.12.27
-
[siderolabs/pkgs@`a347857`](https://redirect.github.com/siderolabs/pkgs/commit/a347857)
fix: build containerd with Go 1.23
-
[siderolabs/pkgs@`74da85c`](https://redirect.github.com/siderolabs/pkgs/commit/74da85c)
fix: containerd build doesn't need seccomp
-
[siderolabs/pkgs@`4effa05`](https://redirect.github.com/siderolabs/pkgs/commit/4effa05)
fix: downgrade libseccomp to 2.5.5
-
[siderolabs/pkgs@`9cea00b`](https://redirect.github.com/siderolabs/pkgs/commit/9cea00b)
feat: update Linux to 6.12.25
-
[siderolabs/pkgs@`cb108a5`](https://redirect.github.com/siderolabs/pkgs/commit/cb108a5)
feat(kernel): enable bcache module
-
[siderolabs/pkgs@`d042432`](https://redirect.github.com/siderolabs/pkgs/commit/d042432)
fix: backport sandbox fix for Gvisor
-
[siderolabs/pkgs@`fa625dc`](https://redirect.github.com/siderolabs/pkgs/commit/fa625dc)
feat: update Linux 6.12.24, containerd 2.0.5

</p>
</details>

##### Changes from siderolabs/siderolink
<details><summary>3 commits</summary>
<p>

-
[siderolabs/siderolink@`5f46f65`](https://redirect.github.com/siderolabs/siderolink/commit/5f46f65)
feat: handle panics in goroutines
-
[siderolabs/siderolink@`d09ff45`](https://redirect.github.com/siderolabs/siderolink/commit/d09ff45)
fix: race in wait value
-
[siderolabs/siderolink@`d2a79e0`](https://redirect.github.com/siderolabs/siderolink/commit/d2a79e0)
fix: clean up device on failure

</p>
</details>

##### Changes from siderolabs/tools
<details><summary>10 commits</summary>
<p>

-
[siderolabs/tools@`1d451f3`](https://redirect.github.com/siderolabs/tools/commit/1d451f3)
feat: update toolchain to 1.11.0
-
[siderolabs/tools@`650b916`](https://redirect.github.com/siderolabs/tools/commit/650b916)
chore: bump toolchain, update names in SBOM
-
[siderolabs/tools@`594704b`](https://redirect.github.com/siderolabs/tools/commit/594704b)
feat: bump dependencies
-
[siderolabs/tools@`4818702`](https://redirect.github.com/siderolabs/tools/commit/4818702)
docs: add SBOM metadata for packages copied to pkgs
-
[siderolabs/tools@`542a03c`](https://redirect.github.com/siderolabs/tools/commit/542a03c)
feat: update dependencies
-
[siderolabs/tools@`0554e87`](https://redirect.github.com/siderolabs/tools/commit/0554e87)
chore: use ftpmirror for GNU sources
-
[siderolabs/tools@`1dfd14b`](https://redirect.github.com/siderolabs/tools/commit/1dfd14b)
feat: update Go to 1.24.4
-
[siderolabs/tools@`af3fd64`](https://redirect.github.com/siderolabs/tools/commit/af3fd64)
feat: update dependencies
-
[siderolabs/tools@`e35234b`](https://redirect.github.com/siderolabs/tools/commit/e35234b)
feat: update dependencies
-
[siderolabs/tools@`c96a4e6`](https://redirect.github.com/siderolabs/tools/commit/c96a4e6)
chore: update toolchain to the latest version

</p>
</details>

##### Dependency Changes

- **cloud.google.com/go/compute/metadata** v0.6.0 -> v0.7.0
- **github.com/Azure/azure-sdk-for-go/sdk/azcore** v1.18.0 -> v1.18.1
- **github.com/Azure/azure-sdk-for-go/sdk/azidentity** v1.9.0 -> v1.10.1
-
**github.com/Azure/azure-sdk-for-go/sdk/security/keyvault/azcertificates**
v1.3.1 -> v1.4.0
- **github.com/Azure/azure-sdk-for-go/sdk/security/keyvault/azkeys**
v1.3.1 -> v1.4.0
- **github.com/aws/aws-sdk-go-v2/config** v1.29.14 -> v1.29.17
- **github.com/aws/aws-sdk-go-v2/feature/ec2/imds** v1.16.30 -> v1.16.32
- **github.com/aws/aws-sdk-go-v2/service/kms** v1.38.3 -> v1.41.2
- **github.com/aws/smithy-go** v1.22.3 -> v1.22.4
- **github.com/containerd/containerd/api** v1.8.0 -> v1.9.0
- **github.com/containerd/containerd/v2** v2.0.5 -> v2.1.3
- **github.com/containernetworking/plugins** v1.6.2 -> v1.7.1
- **github.com/cosi-project/runtime** v0.10.2 -> v1.10.7
- **github.com/detailyang/go-fallocate**
[`432fa64`](https://redirect.github.com/siderolabs/talos/commit/432fa640bd2e)
***new***
- **github.com/docker/cli** v28.0.4 -> v28.3.2
- **github.com/docker/docker** v28.0.4 -> v28.3.2
- **github.com/equinix-ms/go-vmw-guestrpc** v0.1.1 ***new***
- **github.com/foxboron/go-uefi**
[`69fb7db`](https://redirect.github.com/siderolabs/talos/commit/69fb7dba244f)
->
[`a3183a1`](https://redirect.github.com/siderolabs/talos/commit/a3183a1bfc84)
- **github.com/g0rbe/go-chattr** v1.0.1 ***new***
- **github.com/google/cadvisor** v0.52.1 -> v0.53.0
- **github.com/google/cel-go** v0.24.1 -> v0.26.0
- **github.com/google/go-containerregistry** v0.20.3 -> v0.20.6
- **github.com/google/go-tpm** v0.9.3 -> v0.9.5
- **github.com/grpc-ecosystem/go-grpc-middleware/v2** v2.3.1 -> v2.3.2
- **github.com/hetznercloud/hcloud-go/v2** v2.21.0 -> v2.22.0
- **github.com/jsimonetti/rtnetlink/v2** v2.0.3 -> v2.0.5
- **github.com/klauspost/cpuid/v2** v2.2.10 -> v2.3.0
- **github.com/linode/go-metadata** v0.2.1 -> v0.2.2
- **github.com/miekg/dns** v1.1.65 -> v1.1.67
- **github.com/pkg/xattr** v0.4.10 -> v0.4.12
- **github.com/prometheus/procfs** v0.16.0 -> v0.17.0
- **github.com/rivo/tview**
[`949945f`](https://redirect.github.com/siderolabs/talos/commit/949945f8d922)
->
[`a4a78f1`](https://redirect.github.com/siderolabs/talos/commit/a4a78f1e05cb)
- **github.com/safchain/ethtool** v0.5.10 -> v0.6.1
- **github.com/scaleway/scaleway-sdk-go** v1.0.0-beta.33 ->
v1.0.0-beta.34
- **github.com/siderolabs/crypto** v0.5.1 -> v0.6.3
- **github.com/siderolabs/discovery-client** v0.1.11 -> v0.1.12
- **github.com/siderolabs/gen** v0.8.0 -> v0.8.5
- **github.com/siderolabs/go-blockdevice/v2** v2.0.16 -> v2.0.18
- **github.com/siderolabs/go-circular** v0.2.2 -> v0.2.3
- **github.com/siderolabs/go-kubernetes** v0.2.21 -> v0.2.25
- **github.com/siderolabs/pkgs** v1.10.0-5-g48dba3e -> v1.11.0
- **github.com/siderolabs/siderolink** v0.3.13 -> v0.3.15
- **github.com/siderolabs/talos/pkg/machinery** v1.10.0 ->
v1.11.0-beta.0
- **github.com/siderolabs/tools** v1.10.0 -> v1.11.0
- **github.com/spf13/pflag** v1.0.6 -> v1.0.7
- **go.etcd.io/etcd/api/v3** v3.5.21 -> v3.6.2
- **go.etcd.io/etcd/client/pkg/v3** v3.5.21 -> v3.6.2
- **go.etcd.io/etcd/client/v3** v3.5.21 -> v3.6.2
- **go.etcd.io/etcd/etcdutl/v3** v3.5.21 -> v3.6.2
- **golang.org/x/net** v0.39.0 -> v0.42.0
- **golang.org/x/oauth2** v0.29.0 -> v0.30.0
- **golang.org/x/sync** v0.13.0 -> v0.16.0
- **golang.org/x/sys** v0.32.0 -> v0.34.0
- **golang.org/x/term** v0.31.0 -> v0.33.0
- **golang.org/x/text** v0.24.0 -> v0.27.0
- **golang.org/x/time** v0.11.0 -> v0.12.0
- **google.golang.org/grpc** v1.71.1 -> v1.73.0
- **k8s.io/api** v0.33.0 -> v0.34.0-beta.0
- **k8s.io/apimachinery** v0.33.0 -> v0.34.0-beta.0
- **k8s.io/apiserver** v0.33.0 -> v0.34.0-beta.0
- **k8s.io/client-go** v0.33.0 -> v0.34.0-beta.0
- **k8s.io/component-base** v0.33.0 -> v0.34.0-beta.0
- **k8s.io/cri-api** v0.33.0 -> v0.34.0-beta.0
- **k8s.io/kube-scheduler** v0.33.0 -> v0.34.0-beta.0
- **k8s.io/kubectl** v0.33.0 -> v0.34.0-beta.0
- **k8s.io/kubelet** v0.33.0 -> v0.34.0-beta.0
- **k8s.io/pod-security-admission** v0.33.0 -> v0.34.0-beta.0
- **k8s.io/utils**
[`4c0f3b2`](https://redirect.github.com/siderolabs/talos/commit/4c0f3b243397)
***new***
- **sigs.k8s.io/hydrophone**
[`b92baf7`](https://redirect.github.com/siderolabs/talos/commit/b92baf7e0b04)
-> v0.7.0
- **sigs.k8s.io/yaml** v1.4.0 -> v1.5.0

Previous release can be found at
[v1.10.0](https://redirect.github.com/siderolabs/talos/releases/tag/v1.10.0)

#### Images

```
ghcr.io/siderolabs/flannel:v0.27.2
registry.k8s.io/coredns/coredns:v1.12.2
gcr.io/etcd-development/etcd:v3.5.21
registry.k8s.io/kube-apiserver:v1.34.0-beta.0
registry.k8s.io/kube-controller-manager:v1.34.0-beta.0
registry.k8s.io/kube-scheduler:v1.34.0-beta.0
registry.k8s.io/kube-proxy:v1.34.0-beta.0
ghcr.io/siderolabs/kubelet:v1.34.0-beta.0
ghcr.io/siderolabs/installer:v1.11.0-beta.0
registry.k8s.io/pause:3.10
```

</details>

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
2025-07-27 14:14:56 +02:00
TrueCharts Bot 7619ec336a chore(flux): update image longhorn 1.9.0 → 1.9.1 (clustertool) (#37755)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
| longhorn | patch | `1.9.0` -> `1.9.1` |

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
2025-07-26 20:22:11 +02:00
Boemeltrein ec3fab25c4 fix(renovate): repo name change (#37552)
**Description**
<!--
Please include a summary of the change and which issue is fixed. Please
also include relevant motivation and context. List any dependencies that
are required for this change.
-->
⚒️ Fixes  # <!--(issue)-->

**⚙️ Type of change**

- [ ] ⚙️ Feature/App addition
- [x] 🪛 Bugfix
- [ ] ⚠️ Breaking change (fix or feature that would cause existing
functionality to not work as expected)
- [ ] 🔃 Refactor of current code
- [ ] 📜 Documentation Changes

**🧪 How Has This Been Tested?**
<!--
Please describe the tests that you ran to verify your changes. Provide
instructions so we can reproduce. Please also list any relevant details
for your test configuration
-->

**📃 Notes:**
<!-- Please enter any other relevant information here -->

**✔️ Checklist:**

- [ ] ⚖️ My code follows the style guidelines of this project
- [ ] 👀 I have performed a self-review of my own code
- [ ] #️⃣ I have commented my code, particularly in hard-to-understand
areas
- [ ] 📄 I have made changes to the documentation
- [ ] 🧪 I have added tests to this description that prove my fix is
effective or that my feature works
- [ ] ⬆️ I increased versions for any altered app according to semantic
versioning
- [x] I made sure the title starts with `feat(chart-name):`,
`fix(chart-name):`, `chore(chart-name):`, `docs(chart-name):` or
`fix(docs):`

** App addition**

If this PR is an app addition please make sure you have done the
following.

- [ ] 🖼️ I have added an icon in the Chart's root directory called
`icon.png`

---

_Please don't blindly check all the boxes. Read them and only check
those that apply.
Those checkboxes are there for the reviewer to see what is this all
about and
the status of this PR with a quick glance._

---------

Signed-off-by: Boemeltrein <130394941+Boemeltrein@users.noreply.github.com>
2025-07-16 20:24:04 -04:00
TrueCharts Bot 169dbbdfc0 chore(flux): update image docker.io/rancher/system-upgrade-controller v0.15.3 → v0.16.0 (clustertool) (#37502)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
|
[docker.io/rancher/system-upgrade-controller](https://redirect.github.com/rancher/system-upgrade-controller)
| minor | `v0.15.3` -> `v0.16.0` |

---

### Release Notes

<details>
<summary>rancher/system-upgrade-controller
(docker.io/rancher/system-upgrade-controller)</summary>

###
[`v0.16.0`](https://redirect.github.com/rancher/system-upgrade-controller/releases/tag/v0.16.0)

[Compare
Source](https://redirect.github.com/rancher/system-upgrade-controller/compare/v0.15.3...v0.16.0)

#### What's Changed

- added k8s-1.33-support by
[@&#8203;swastik959](https://redirect.github.com/swastik959) in
[https://github.com/rancher/system-upgrade-controller/pull/370](https://redirect.github.com/rancher/system-upgrade-controller/pull/370)

#### New Contributors

- [@&#8203;swastik959](https://redirect.github.com/swastik959) made
their first contribution in
[https://github.com/rancher/system-upgrade-controller/pull/370](https://redirect.github.com/rancher/system-upgrade-controller/pull/370)

**Full Changelog**:
https://github.com/rancher/system-upgrade-controller/compare/v0.15.3...v0.16.0

</details>

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL21pbm9yIl19-->
2025-07-14 02:20:57 +02:00
TrueCharts Bot 58a8bbb671 chore(flux): update image kubernetes-reflector 7.1.0 → 7.1.1 (clustertool) (#37448)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
|
[kubernetes-reflector](https://truecharts.org/charts/system/kubernetes-reflector)
([source](https://ghcr.io/emberstack/kubernetes-reflector)) | patch |
`7.1.0` -> `7.1.1` |

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
2025-07-12 08:08:34 +02:00
TrueCharts Bot 1c6b6ffc24 chore(flux): update image kube-prometheus-stack 75.9.0 → 75.10.0 (clustertool) (#37428) 2025-07-11 20:05:58 +02:00
TrueCharts Bot 602c546009 chore(flux): update image blocky 18.1.0 → 18.2.0 (clustertool) (#37426) 2025-07-11 20:05:55 +02:00
TrueCharts Bot a7964c377e chore(flux): update image cert-manager v1.17.2 → v1.18.2 (clustertool) (#37427) 2025-07-11 20:05:52 +02:00
TrueCharts Bot 76a759eef9 chore(flux): update image spegel 4.0.8 → 4.1.0 (clustertool) (#37417) 2025-07-11 14:20:23 +02:00
TrueCharts Bot 795375b7c5 chore(flux): update image volsync 3.0.8 → 3.1.0 (clustertool) (#37418)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
| [volsync](https://truecharts.org/charts/system/volsync)
([source](https://redirect.github.com/backube/helm-charts)) | minor |
`3.0.8` -> `3.1.0` |

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL21pbm9yIl19-->
2025-07-11 14:20:13 +02:00
TrueCharts Bot ded8a9aef2 chore(flux): update image snapshot-controller 4.0.8 → 4.1.0 (clustertool) (#37416)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
|
[snapshot-controller](https://truecharts.org/charts/system/snapshot-controller)
([source](https://redirect.github.com/kubernetes-csi/external-snapshotter))
| minor | `4.0.8` -> `4.1.0` |

---

### Release Notes

<details>
<summary>kubernetes-csi/external-snapshotter
(snapshot-controller)</summary>

###
[`v4.1.0`](https://redirect.github.com/kubernetes-csi/external-snapshotter/releases/tag/v4.1.0)

### Overall Status

Volume snapshotting has been a GA feature since Kubernetes v1.20.

### Minimum CSI Spec Version

1.0.0

### Maximum CSI Spec Version

1.4.0

### [Minimum Kubernetes
version](https://kubernetes-csi.github.io/docs/kubernetes-compatibility.html#minimum-version)

1.20

### [Recommended Kubernetes
version](https://kubernetes-csi.github.io/docs/kubernetes-compatibility.html#recommended-version)

1.20+

### Container

```
docker pull registry.k8s.io/sig-storage/snapshot-controller:v4.1.0
docker pull registry.k8s.io/sig-storage/csi-snapshotter:v4.1.0
docker pull registry.k8s.io/sig-storage/snapshot-validation-webhook:v4.1.0
```

### Deprecations

- VolumeSnapshot v1beta1 is deprecated and will be removed in a future
release. It is recommended for users to upgrade to VolumeSnapshot CRD
version v1 as soon as possible. Any previously created invalid v1beta1
objects have to be deleted before upgrading to version 4.1.0.
([#&#8203;493](https://redirect.github.com/kubernetes-csi/external-snapshotter/issues/493),
[@&#8203;xing-yang](https://redirect.github.com/xing-yang))

### API Change

- Changes VolumeSnapshot API storage version from v1beta1 to v1;
VolumeSnapshot v1beta1 is deprecated and will be removed in a future
release.
([#&#8203;493](https://redirect.github.com/kubernetes-csi/external-snapshotter/issues/493),
[@&#8203;xing-yang](https://redirect.github.com/xing-yang))

### Bug or Regression

- \--http-endpoint will now correctly be used for the metrics server
address when --metrics-address is not provided.
([#&#8203;496](https://redirect.github.com/kubernetes-csi/external-snapshotter/issues/496),
[@&#8203;ggriffiths](https://redirect.github.com/ggriffiths))
- Add check for v1 CRDs to allow for rolling update of the
snapshot-controller
([#&#8203;504](https://redirect.github.com/kubernetes-csi/external-snapshotter/issues/504),
[@&#8203;mauriciopoppe](https://redirect.github.com/mauriciopoppe))
- VolumeSnapshotContent creation errors can now propagate to the
appropriate VolumeSnapshotContent resource.
([#&#8203;502](https://redirect.github.com/kubernetes-csi/external-snapshotter/issues/502),
[@&#8203;huffmanca](https://redirect.github.com/huffmanca))
- Retain error from CreateSnapshot call
([#&#8203;470](https://redirect.github.com/kubernetes-csi/external-snapshotter/issues/470),
[@&#8203;timoreimann](https://redirect.github.com/timoreimann))

### Uncategorized

- External-snapshotter manifests adjusted to reflect more common
example. Snapshot-controller is deployed as a Deployment rather than a
Statefulset in the example deployment file.
([#&#8203;459](https://redirect.github.com/kubernetes-csi/external-snapshotter/issues/459),
[@&#8203;kvaps](https://redirect.github.com/kvaps))
- Updated runtime (Go 1.16) and dependencies
([#&#8203;483](https://redirect.github.com/kubernetes-csi/external-snapshotter/issues/483),
[@&#8203;pohly](https://redirect.github.com/pohly))

### Full Changelog


https://github.com/kubernetes-csi/external-snapshotter/blob/v4.1.0/CHANGELOG/CHANGELOG-4.1.md

</details>

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL21pbm9yIl19-->
2025-07-11 14:19:20 +02:00
TrueCharts Bot 23dfe7c76c chore(flux): update image kubernetes-dashboard 2.0.9 → 2.1.0 (clustertool) (#37412) 2025-07-11 14:14:55 +02:00
TrueCharts Bot 742252ff37 chore(flux): update image kubernetes-reflector 7.0.10 → 7.1.0 (clustertool) (#37413) 2025-07-11 14:14:52 +02:00
TrueCharts Bot 5aeff92fc1 chore(flux): update image metallb-config 9.0.8 → 9.1.0 (clustertool) (#37414) 2025-07-11 14:14:48 +02:00
TrueCharts Bot 7d8e11deb7 chore(flux): update image kubelet-csr-approver 2.0.8 → 2.1.0 (clustertool) (#37411)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
|
[kubelet-csr-approver](https://truecharts.org/charts/system/kubelet-csr-approver)
([source](https://ghcr.io/postfinance/kubelet-csr-approver)) | minor |
`2.0.8` -> `2.1.0` |

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL21pbm9yIl19-->
2025-07-11 14:10:21 +02:00
TrueCharts Bot 2edcea228e chore(flux): update image clusterissuer 10.0.9 → 10.1.0 (clustertool) (#37410) 2025-07-11 14:10:05 +02:00
TrueCharts Bot 9139fefcd0 chore(flux): update image blocky 18.0.12 → 18.1.0 (clustertool) (#37409)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
| [blocky](https://truecharts.org/charts/premium/blocky)
([source](https://0xerr0r.github.io/blocky/)) | minor | `18.0.12` ->
`18.1.0` |

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL21pbm9yIl19-->
2025-07-11 12:09:54 +00:00
TrueCharts-Bot 778a96750f Commit daily changes
Signed-off-by: TrueCharts-Bot <bot@truecharts.org>
2025-07-11 01:42:41 +00:00
TrueCharts Bot f9e6f2a2ab fix(deps): update module golang.org/x/crypto v0.39.0 → v0.40.0 (clustertool) (#37395)
This PR contains the following updates:

| Package | Change | Age | Confidence |
|---|---|---|---|
| golang.org/x/crypto | `v0.39.0` -> `v0.40.0` |
[![age](https://developer.mend.io/api/mc/badges/age/go/golang.org%2fx%2fcrypto/v0.40.0?slim=true)](https://docs.renovatebot.com/merge-confidence/)
|
[![confidence](https://developer.mend.io/api/mc/badges/confidence/go/golang.org%2fx%2fcrypto/v0.39.0/v0.40.0?slim=true)](https://docs.renovatebot.com/merge-confidence/)
|

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL21pbm9yIl19-->
2025-07-11 02:51:02 +02:00
TrueCharts Bot c06ce9f348 fix(deps): update module github.com/knadh/koanf/v2 v2.2.1 → v2.2.2 (clustertool) (#37394) 2025-07-11 02:21:32 +02:00
TrueCharts Bot 66ae8fae27 chore(flux): update image clusterissuer 10.0.8 → 10.0.9 (clustertool) (#37392) 2025-07-11 02:19:28 +02:00
Boemeltrein 6ad9cfef30 fix(clustertool): nginx proxy-busy-buffers-size (#37389)
**Description**
<!--
Please include a summary of the change and which issue is fixed. Please
also include relevant motivation and context. List any dependencies that
are required for this change.
-->
As according latest ngnix release nginx proxy-busy-buffers-size
included.

⚒️ Fixes  # <!--(issue)-->

**⚙️ Type of change**

- [ ] ⚙️ Feature/App addition
- [x] 🪛 Bugfix
- [ ] ⚠️ Breaking change (fix or feature that would cause existing
functionality to not work as expected)
- [ ] 🔃 Refactor of current code
- [ ] 📜 Documentation Changes

**🧪 How Has This Been Tested?**
<!--
Please describe the tests that you ran to verify your changes. Provide
instructions so we can reproduce. Please also list any relevant details
for your test configuration
-->

**📃 Notes:**
<!-- Please enter any other relevant information here -->

**✔️ Checklist:**

- [ ] ⚖️ My code follows the style guidelines of this project
- [ ] 👀 I have performed a self-review of my own code
- [ ] #️⃣ I have commented my code, particularly in hard-to-understand
areas
- [ ] 📄 I have made changes to the documentation
- [ ] 🧪 I have added tests to this description that prove my fix is
effective or that my feature works
- [ ] ⬆️ I increased versions for any altered app according to semantic
versioning
- [x] I made sure the title starts with `feat(chart-name):`,
`fix(chart-name):`, `chore(chart-name):`, `docs(chart-name):` or
`fix(docs):`

** App addition**

If this PR is an app addition please make sure you have done the
following.

- [ ] 🖼️ I have added an icon in the Chart's root directory called
`icon.png`

---

_Please don't blindly check all the boxes. Read them and only check
those that apply.
Those checkboxes are there for the reviewer to see what is this all
about and
the status of this PR with a quick glance._
2025-07-10 21:51:28 +02:00
TrueCharts Bot 88e3f0ffa3 chore(flux): update image kubernetes-reflector 7.0.9 → 7.0.10 (clustertool) (#37346) 2025-07-10 08:06:47 +02:00
TrueCharts Bot 4858fa9245 chore(flux): update image blocky 18.0.11 → 18.0.12 (clustertool) (#37345)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
| [blocky](https://truecharts.org/charts/premium/blocky)
([source](https://0xerr0r.github.io/blocky/)) | patch | `18.0.11` ->
`18.0.12` |

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
2025-07-10 08:06:40 +02:00
TrueCharts Bot 6831b37f70 chore(flux): update image spegel 4.0.7 → 4.0.8 (clustertool) (#37334)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
| [spegel](https://truecharts.org/charts/system/spegel)
([source](https://ghcr.io/spegel-org/spegel)) | patch | `4.0.7` ->
`4.0.8` |

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
2025-07-10 02:09:12 +02:00
TrueCharts Bot 0d3fbfebfb chore(flux): update image volsync 3.0.7 → 3.0.8 (clustertool) (#37335) 2025-07-10 02:09:05 +02:00
TrueCharts Bot a0d07c7a08 chore(flux): update image snapshot-controller 4.0.7 → 4.0.8 (clustertool) (#37333)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
|
[snapshot-controller](https://truecharts.org/charts/system/snapshot-controller)
([source](https://redirect.github.com/kubernetes-csi/external-snapshotter))
| patch | `4.0.7` -> `4.0.8` |

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
2025-07-10 02:08:59 +02:00
TrueCharts Bot 28971a7431 chore(flux): update image metallb-config 9.0.7 → 9.0.8 (clustertool) (#37331)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
| [metallb-config](https://truecharts.org/charts/premium/metallb-config)
([source](https://redirect.github.com/metallb/metallb)) | patch |
`9.0.7` -> `9.0.8` |

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
2025-07-10 00:08:35 +00:00
TrueCharts Bot a9053f61c6 chore(flux): update image kubernetes-reflector 7.0.8 → 7.0.9 (clustertool) (#37330)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
|
[kubernetes-reflector](https://truecharts.org/charts/system/kubernetes-reflector)
([source](https://ghcr.io/emberstack/kubernetes-reflector)) | patch |
`7.0.8` -> `7.0.9` |

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
2025-07-10 00:08:12 +00:00
TrueCharts Bot c260eaab27 chore(flux): update image clusterissuer 10.0.7 → 10.0.8 (clustertool) (#37327) 2025-07-10 02:07:58 +02:00
TrueCharts Bot 3e52335a41 chore(flux): update image kubelet-csr-approver 2.0.7 → 2.0.8 (clustertool) (#37328) 2025-07-10 02:07:53 +02:00
TrueCharts Bot be8285e371 chore(flux): update image kubernetes-dashboard 2.0.8 → 2.0.9 (clustertool) (#37329) 2025-07-10 02:07:49 +02:00
TrueCharts Bot 63c4126cc2 chore(flux): update image blocky 18.0.10 → 18.0.11 (clustertool) (#37326)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
| [blocky](https://truecharts.org/charts/premium/blocky)
([source](https://0xerr0r.github.io/blocky/)) | patch | `18.0.10` ->
`18.0.11` |

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
2025-07-10 02:07:44 +02:00
TrueCharts-Bot 529dead206 Commit daily changes
Signed-off-by: TrueCharts-Bot <bot@truecharts.org>
2025-07-09 13:31:18 +00:00
TrueCharts Bot 1aa1108eb1 chore(flux): update image kubernetes-reflector 7.0.7 → 7.0.8 (clustertool) (#37314)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
|
[kubernetes-reflector](https://truecharts.org/charts/system/kubernetes-reflector)
([source](https://ghcr.io/emberstack/kubernetes-reflector)) | patch |
`7.0.7` -> `7.0.8` |

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
2025-07-09 08:05:13 +02:00
TrueCharts Bot b3137f747c fix(deps): update module helm.sh/helm/v3 v3.18.3 → v3.18.4 [security] (#37302)
This PR contains the following updates:

| Package | Change | Age | Confidence |
|---|---|---|---|
| [helm.sh/helm/v3](https://redirect.github.com/helm/helm) | `v3.18.3`
-> `v3.18.4` |
[![age](https://developer.mend.io/api/mc/badges/age/go/helm.sh%2fhelm%2fv3/v3.18.4?slim=true)](https://docs.renovatebot.com/merge-confidence/)
|
[![confidence](https://developer.mend.io/api/mc/badges/confidence/go/helm.sh%2fhelm%2fv3/v3.18.3/v3.18.4?slim=true)](https://docs.renovatebot.com/merge-confidence/)
|

### GitHub Vulnerability Alerts

####
[CVE-2025-53547](https://redirect.github.com/helm/helm/security/advisories/GHSA-557j-xg8c-q2mm)

A Helm contributor discovered that a specially crafted `Chart.yaml` file
along with a specially linked `Chart.lock` file can lead to local code
execution when dependencies are updated.

### Impact

Fields in a `Chart.yaml` file, that are carried over to a `Chart.lock`
file when dependencies are updated and this file is written, can be
crafted in a way that can cause execution if that same content were in a
file that is executed (e.g., a `bash.rc` file or shell script). If the
`Chart.lock` file is symlinked to one of these files updating
dependencies will write the lock file content to the symlinked file.
This can lead to unwanted execution. Helm warns of the symlinked file
but did not stop execution due to symlinking.

This affects when dependencies are updated. When using the `helm`
command this happens when `helm dependency update` is run. `helm
dependency build` can write a lock file when one does not exist but this
vector requires one to already exist. This affects the Helm SDK when the
downloader `Manager` performs an update.

### Patches

This issue has been resolved in Helm v3.18.4

### Workarounds

Ensure the `Chart.lock` file in a chart is not a symlink prior to
updating dependencies.

### For more information

Helm's security policy is spelled out in detail in our
[SECURITY](https://redirect.github.com/helm/community/blob/master/SECURITY.md)
document.

### Credits

Disclosed by Jakub Ciolek at AlphaSense.

---

### Release Notes

<details>
<summary>helm/helm (helm.sh/helm/v3)</summary>

###
[`v3.18.4`](https://redirect.github.com/helm/helm/releases/tag/v3.18.4):
Helm v3.18.4

[Compare
Source](https://redirect.github.com/helm/helm/compare/v3.18.3...v3.18.4)

Helm v3.18.4 is a security release. Users are encouraged to upgrade for
the best experience.

The community keeps growing, and we'd love to see you there!

- Join the discussion in [Kubernetes
Slack](https://kubernetes.slack.com):
  - for questions and just to hang out
  - for discussing PRs, code, and bugs
- Hang out at the Public Developer Call: Thursday, 9:30 Pacific via
[Zoom](https://zoom.us/j/696660622)
- Test, debug, and contribute charts:
[ArtifactHub/packages](https://artifacthub.io/packages/search?kind=0)

#### Installation and Upgrading

Download Helm v3.18.4. The common platform binaries are here:

- [MacOS amd64](https://get.helm.sh/helm-v3.18.4-darwin-amd64.tar.gz)
([checksum](https://get.helm.sh/helm-v3.18.4-darwin-amd64.tar.gz.sha256sum)
/ 860a7238285b44b5dc7b3c4dad6194316885d7015d77c34e23177e0e9554af8f)
- [MacOS arm64](https://get.helm.sh/helm-v3.18.4-darwin-arm64.tar.gz)
([checksum](https://get.helm.sh/helm-v3.18.4-darwin-arm64.tar.gz.sha256sum)
/ 041849741550b20710d7ad0956e805ebd960b483fe978864f8e7fdd03ca84ec8)
- [Linux amd64](https://get.helm.sh/helm-v3.18.4-linux-amd64.tar.gz)
([checksum](https://get.helm.sh/helm-v3.18.4-linux-amd64.tar.gz.sha256sum)
/ f8180838c23d7c7d797b208861fecb591d9ce1690d8704ed1e4cb8e2add966c1)
- [Linux arm](https://get.helm.sh/helm-v3.18.4-linux-arm.tar.gz)
([checksum](https://get.helm.sh/helm-v3.18.4-linux-arm.tar.gz.sha256sum)
/ 34ea88aef15fd822e839da262176a36e865bb9cfdb89b1f723811c0cc527f981)
- [Linux arm64](https://get.helm.sh/helm-v3.18.4-linux-arm64.tar.gz)
([checksum](https://get.helm.sh/helm-v3.18.4-linux-arm64.tar.gz.sha256sum)
/ c0a45e67eef0c7416a8a8c9e9d5d2d30d70e4f4d3f7bea5de28241fffa8f3b89)
- [Linux i386](https://get.helm.sh/helm-v3.18.4-linux-386.tar.gz)
([checksum](https://get.helm.sh/helm-v3.18.4-linux-386.tar.gz.sha256sum)
/ 75c2d9858725a5907faf8f19d9fb21c0263e4cb864d27d6df8809f96f147d3c0)
- [Linux ppc64le](https://get.helm.sh/helm-v3.18.4-linux-ppc64le.tar.gz)
([checksum](https://get.helm.sh/helm-v3.18.4-linux-ppc64le.tar.gz.sha256sum)
/ dbd74c59e7710f26e058596723abbf73662b553e01f40dfb08508ffffaeb7b81)
- [Linux s390x](https://get.helm.sh/helm-v3.18.4-linux-s390x.tar.gz)
([checksum](https://get.helm.sh/helm-v3.18.4-linux-s390x.tar.gz.sha256sum)
/ c8bafb34bcebd53494f0223239977e1ff7b487e714598a5843a0cb1788e20075)
- [Linux riscv64](https://get.helm.sh/helm-v3.18.4-linux-riscv64.tar.gz)
([checksum](https://get.helm.sh/helm-v3.18.4-linux-riscv64.tar.gz.sha256sum)
/ f67f39104c7e695cbba04dc3b4507a80a034ce9e5ccbe55c84e91b1553b787bd)
- [Windows amd64](https://get.helm.sh/helm-v3.18.4-windows-amd64.zip)
([checksum](https://get.helm.sh/helm-v3.18.4-windows-amd64.zip.sha256sum)
/ 0af12a2233d71ef4207db1eabbf103b554631206ed5b2b34fc56b73a52596888)
- [Windows arm64](https://get.helm.sh/helm-v3.18.4-windows-arm64.zip)
([checksum](https://get.helm.sh/helm-v3.18.4-windows-arm64.zip.sha256sum)
/ de6bc8fcffeb041f524a92c6026ea22ef6f939118a30e6bb8b996b77a38486b1)

The [Quickstart Guide](https://helm.sh/docs/intro/quickstart/) will get
you going from there. For **upgrade instructions** or detailed
installation notes, check the [install
guide](https://helm.sh/docs/intro/install/). You can also use a [script
to
install](https://raw.githubusercontent.com/helm/helm/main/scripts/get-helm-3)
on any system with `bash`.

#### What's Next

- 3.18.5 is the next patch release and will be on August 13, 2025
- 3.19.0 is the next minor release and will be on September 11, 2025

#### Changelog

- Disabling linter due to unknown issue
[`f20a4ad`](https://redirect.github.com/helm/helm/commit/f20a4ad1d5c953ca0fb3d3b30aa9aa796d472ef1)
(Matt Farina)
- build(deps): bump the k8s-io group with 7 updates
[`563b094`](https://redirect.github.com/helm/helm/commit/563b0947b995c48354319aa054830db61f793a08)
(dependabot\[bot])
- Updating link handling
[`00de613`](https://redirect.github.com/helm/helm/commit/00de613324df4dd930e6d231d9aae7f9dee29c76)
(Matt Farina)

</details>

---

### Configuration

📅 **Schedule**: Branch creation - "" (UTC), Automerge - At any time (no
schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
2025-07-09 02:09:13 +02:00
TrueCharts Bot 9a939501f2 chore(flux): update image blocky 18.0.9 → 18.0.10 (clustertool) (#37298)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
| [blocky](https://truecharts.org/charts/premium/blocky)
([source](https://0xerr0r.github.io/blocky/)) | patch | `18.0.9` ->
`18.0.10` |

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
2025-07-08 20:09:10 +02:00
TrueCharts Bot 56cde99e68 chore(flux): update image kubelet-csr-approver 2.0.6 → 2.0.7 (clustertool) (#37276) 2025-07-08 14:21:29 +02:00
TrueCharts Bot cb513e6dc4 chore(flux): update image kubernetes-reflector 7.0.6 → 7.0.7 (clustertool) (#37278)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
|
[kubernetes-reflector](https://truecharts.org/charts/system/kubernetes-reflector)
([source](https://ghcr.io/emberstack/kubernetes-reflector)) | patch |
`7.0.6` -> `7.0.7` |

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
2025-07-08 14:19:58 +02:00
TrueCharts Bot 5d9121e7eb chore(flux): update image volsync 3.0.6 → 3.0.7 (clustertool) (#37283)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
| [volsync](https://truecharts.org/charts/system/volsync)
([source](https://redirect.github.com/backube/helm-charts)) | patch |
`3.0.6` -> `3.0.7` |

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
2025-07-08 14:17:59 +02:00
TrueCharts Bot 06039db8e0 chore(flux): update image snapshot-controller 4.0.6 → 4.0.7 (clustertool) (#37281)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
|
[snapshot-controller](https://truecharts.org/charts/system/snapshot-controller)
([source](https://redirect.github.com/kubernetes-csi/external-snapshotter))
| patch | `4.0.6` -> `4.0.7` |

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
2025-07-08 14:17:38 +02:00
TrueCharts Bot 57f72f4b4a chore(flux): update image spegel 4.0.6 → 4.0.7 (clustertool) (#37282)
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
| [spegel](https://truecharts.org/charts/system/spegel)
([source](https://ghcr.io/spegel-org/spegel)) | patch | `4.0.6` ->
`4.0.7` |

---

### Configuration

📅 **Schedule**: Branch creation - At any time (no schedule defined),
Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR has been generated by [Renovate
Bot](https://redirect.github.com/renovatebot/renovate).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4yMC4wIiwidXBkYXRlZEluVmVyIjoiNDEuMjAuMCIsInRhcmdldEJyYW5jaCI6Im1hc3RlciIsImxhYmVscyI6WyJhdXRvbWVyZ2UiLCJyZW5vdmF0ZS9jb250YWluZXIiLCJ0eXBlL3BhdGNoIl19-->
2025-07-08 14:16:38 +02:00
TrueCharts Bot d5a3a1e89f chore(flux): update image metallb-config 9.0.6 → 9.0.7 (clustertool) (#37279) 2025-07-08 14:16:09 +02:00
TrueCharts Bot 477922efcb chore(flux): update image kubernetes-dashboard 2.0.7 → 2.0.8 (clustertool) (#37277) 2025-07-08 14:13:01 +02:00