66ea9f6e9d
feat: fix service
renovate / renovate (push) Waiting to run
lint-test-helm / lint-helm (push) Successful in 26s
render-manifests-push / render-manifests-push (push) Successful in 39s
2026-03-10 16:21:08 -05:00
bb2eb87f04
feat: add movie-routelette
lint-test-docker / lint-docker-compose (push) Successful in 18s
lint-test-helm / lint-helm (push) Successful in 29s
render-manifests-push / render-manifests-push (push) Successful in 51s
renovate / renovate (push) Successful in 2m46s
2026-03-10 16:05:21 -05:00
fc4489c280
chore(deps): update goharbor/harbor-exporter docker tag to v2.14.3 ( #4605 )
...
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 22s
renovate / renovate (push) Successful in 2m5s
This PR contains the following updates:
| Package | Update | Change |
|---|---|---|
| goharbor/harbor-exporter | patch | `v2.14.2` → `v2.14.3` |
---
### Configuration
📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 **Automerge**: Enabled.
♻ **Rebasing**: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 **Ignore**: Close this PR and you won't be reminded about this update again.
---
- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box
---
This PR has been generated by [Renovate Bot](https://github.com/renovatebot/renovate ).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0My41OS4yIiwidXBkYXRlZEluVmVyIjoiNDMuNTkuMiIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOlsiYXV0b21lcmdlIiwiaW1hZ2UiXX0=-->
Reviewed-on: #4605
Co-authored-by: Renovate Bot <renovate-bot@alexlebens.net >
Co-committed-by: Renovate Bot <renovate-bot@alexlebens.net >
2026-03-10 20:15:39 +00:00
bba5b244a4
chore(deps): update goharbor/registry-photon docker tag to v2.14.3 ( #4610 )
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 28s
renovate / renovate (push) Successful in 2m12s
2026-03-10 20:12:04 +00:00
a9222afe69
chore(deps): update goharbor/harbor-registryctl docker tag to v2.14.3 ( #4609 )
lint-test-helm / lint-helm (push) Has been cancelled
render-manifests-push / render-manifests-push (push) Has been cancelled
renovate / renovate (push) Has been cancelled
2026-03-10 20:12:00 +00:00
b5984a21c3
chore(deps): update goharbor/harbor-portal docker tag to v2.14.3 ( #4608 )
lint-test-helm / lint-helm (push) Has been cancelled
render-manifests-push / render-manifests-push (push) Has been cancelled
renovate / renovate (push) Has been cancelled
2026-03-10 20:11:36 +00:00
4083a71d11
chore(deps): update goharbor/harbor-jobservice docker tag to v2.14.3 ( #4607 )
renovate / renovate (push) Has been cancelled
2026-03-10 20:11:28 +00:00
d909ba3edd
chore(deps): update goharbor/harbor-jobservice docker tag to v2.14.3 ( #4607 )
lint-test-helm / lint-helm (push) Has been cancelled
render-manifests-push / render-manifests-push (push) Has been cancelled
renovate / renovate (push) Has been cancelled
2026-03-10 20:11:21 +00:00
f95e1987cf
chore(deps): update goharbor/harbor-core docker tag to v2.14.3 ( #4604 )
lint-test-helm / lint-helm (push) Has been cancelled
render-manifests-push / render-manifests-push (push) Has been skipped
renovate / renovate (push) Has been cancelled
2026-03-10 20:10:59 +00:00
9a9198fa40
chore(deps): update ghcr.io/siderolabs/talosctl docker tag to v1.12.5 ( #4603 )
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Has been cancelled
renovate / renovate (push) Has been cancelled
2026-03-10 20:10:45 +00:00
fd4e5349f8
chore(deps): update dependency goharbor/harbor to v2.14.3 ( #4602 )
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 15s
renovate / renovate (push) Has been cancelled
2026-03-10 20:10:18 +00:00
b5ecdf7cc9
chore(deps): update gitroomhq/postiz-app to v2.20.2 ( #4600 )
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 26s
renovate / renovate (push) Successful in 2m23s
2026-03-10 19:27:38 +00:00
def594a753
chore(deps): update vectorim/element-web docker tag to v1.12.12 ( #4596 )
...
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 14s
renovate / renovate (push) Has been cancelled
This PR contains the following updates:
| Package | Update | Change |
|---|---|---|
| [vectorim/element-web](https://github.com/element-hq/element-web ) | patch | `v1.12.11` → `v1.12.12` |
---
### Release Notes
<details>
<summary>element-hq/element-web (vectorim/element-web)</summary>
### [`v1.12.12`](https://github.com/element-hq/element-web/releases/tag/v1.12.12 )
[Compare Source](https://github.com/element-hq/element-web/compare/v1.12.11...v1.12.12 )
#### ✨ Features
- Add stable support for MSC4380 invite blocking ([#​31966](https://github.com/element-hq/element-web/pull/31966 )). Contributed by [@​richvdh](https://github.com/richvdh ).
- Hide the names of banned users behind a spoiler tag ([#​32424](https://github.com/element-hq/element-web/pull/32424 )). Contributed by [@​andybalaam](https://github.com/andybalaam ).
- Room list: remove bold effect on selected room ([#​32593](https://github.com/element-hq/element-web/pull/32593 )). Contributed by [@​florianduros](https://github.com/florianduros ).
- Use Compound buttons in auth screens ([#​32562](https://github.com/element-hq/element-web/pull/32562 )). Contributed by [@​t3chguy](https://github.com/t3chguy ).
- Track room list sorting algorithm changes ([#​32556](https://github.com/element-hq/element-web/pull/32556 )). Contributed by [@​MidhunSureshR](https://github.com/MidhunSureshR ).
- Update `sso_redirect_options` to work for Native OIDC ([#​32537](https://github.com/element-hq/element-web/pull/32537 )). Contributed by [@​t3chguy](https://github.com/t3chguy ).
#### 🐛 Bug Fixes
- Room list: avoid excessive re-renders on room list store update or filter change ([#​32663](https://github.com/element-hq/element-web/pull/32663 )). Contributed by [@​florianduros](https://github.com/florianduros ).
- Room list: listen to call event to check number of participants ([#​32677](https://github.com/element-hq/element-web/pull/32677 )). Contributed by [@​florianduros](https://github.com/florianduros ).
- Fix invite-specific join errors not being shown ([#​32621](https://github.com/element-hq/element-web/pull/32621 )). Contributed by [@​Half-Shot](https://github.com/Half-Shot ).
- Prevent logging lots of "Browser unsupported" lines ([#​32647](https://github.com/element-hq/element-web/pull/32647 )). Contributed by [@​Half-Shot](https://github.com/Half-Shot ).
- Update critical gradient for room status bar ([#​32575](https://github.com/element-hq/element-web/pull/32575 )). Contributed by [@​Half-Shot](https://github.com/Half-Shot ).
- Room list: avoid header overflowing when too long ([#​32645](https://github.com/element-hq/element-web/pull/32645 )). Contributed by [@​florianduros](https://github.com/florianduros ).
- Room list: center focus outline of room list item ([#​32637](https://github.com/element-hq/element-web/pull/32637 )). Contributed by [@​florianduros](https://github.com/florianduros ).
- Fix misaligned cross in complete security dialog ([#​32614](https://github.com/element-hq/element-web/pull/32614 )). Contributed by [@​dbkr](https://github.com/dbkr ).
- Room list: fix keyboard navigation ([#​32585](https://github.com/element-hq/element-web/pull/32585 )). Contributed by [@​florianduros](https://github.com/florianduros ).
- Don't show empty privacy section ([#​32582](https://github.com/element-hq/element-web/pull/32582 )). Contributed by [@​dbkr](https://github.com/dbkr ).
- Disable room list image dragging ([#​32590](https://github.com/element-hq/element-web/pull/32590 )). Contributed by [@​florianduros](https://github.com/florianduros ).
- Update UserMenu theme toggle to use IconButton ([#​32591](https://github.com/element-hq/element-web/pull/32591 )). Contributed by [@​t3chguy](https://github.com/t3chguy ).
- Room list: make room list item scales with large font size ([#​32523](https://github.com/element-hq/element-web/pull/32523 )). Contributed by [@​florianduros](https://github.com/florianduros ).
</details>
---
### Configuration
📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 **Automerge**: Enabled.
♻ **Rebasing**: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 **Ignore**: Close this PR and you won't be reminded about this update again.
---
- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box
---
This PR has been generated by [Renovate Bot](https://github.com/renovatebot/renovate ).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0My41OS4yIiwidXBkYXRlZEluVmVyIjoiNDMuNTkuMiIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOlsiYXV0b21lcmdlIiwiaW1hZ2UiXX0=-->
Reviewed-on: #4596
Co-authored-by: Renovate Bot <renovate-bot@alexlebens.net >
Co-committed-by: Renovate Bot <renovate-bot@alexlebens.net >
2026-03-10 19:24:51 +00:00
3ed423c486
chore(deps): update dependency rancher/local-path-provisioner to v0.0.35 ( #4585 )
...
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 13s
renovate / renovate (push) Has been cancelled
This PR contains the following updates:
| Package | Update | Change |
|---|---|---|
| [rancher/local-path-provisioner](https://github.com/rancher/local-path-provisioner ) | patch | `v0.0.34` → `v0.0.35` |
---
### Release Notes
<details>
<summary>rancher/local-path-provisioner (rancher/local-path-provisioner)</summary>
### [`v0.0.35`](https://github.com/rancher/local-path-provisioner/releases/tag/v0.0.35 ): Local Path Provisioner v0.0.35
[Compare Source](https://github.com/rancher/local-path-provisioner/compare/v0.0.34...v0.0.35 )
#### What's Changed
- Add FOSSA scanning workflow by [@​macedogm](https://github.com/macedogm ) in [#​551](https://github.com/rancher/local-path-provisioner/pull/551 )
- Build linux/ppc64le images through build on GitHub Actions by [@​kishen-v](https://github.com/kishen-v ) in [#​554](https://github.com/rancher/local-path-provisioner/pull/554 )
- updated golang to 1.26.0 by [@​jgoodall](https://github.com/jgoodall ) in [#​557](https://github.com/rancher/local-path-provisioner/pull/557 )
- feat: Allow custom node affinity keys by [@​ipantchev](https://github.com/ipantchev ) in [#​559](https://github.com/rancher/local-path-provisioner/pull/559 )
- chore: update golang to 1.26.1 by [@​derekbit](https://github.com/derekbit ) in [#​561](https://github.com/rancher/local-path-provisioner/pull/561 )
- chore(release): bump to v0.0.35 by [@​derekbit](https://github.com/derekbit ) in [#​562](https://github.com/rancher/local-path-provisioner/pull/562 )
#### New Contributors
- [@​macedogm](https://github.com/macedogm ) made their first contribution in [#​551](https://github.com/rancher/local-path-provisioner/pull/551 )
- [@​jgoodall](https://github.com/jgoodall ) made their first contribution in [#​557](https://github.com/rancher/local-path-provisioner/pull/557 )
- [@​ipantchev](https://github.com/ipantchev ) made their first contribution in [#​559](https://github.com/rancher/local-path-provisioner/pull/559 )
**Full Changelog**: <https://github.com/rancher/local-path-provisioner/compare/v0.0.34...v0.0.35 >
</details>
---
### Configuration
📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 **Automerge**: Enabled.
♻ **Rebasing**: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 **Ignore**: Close this PR and you won't be reminded about these updates again.
---
- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box
---
This PR has been generated by [Renovate Bot](https://github.com/renovatebot/renovate ).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0My41OS4yIiwidXBkYXRlZEluVmVyIjoiNDMuNTkuMiIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOlsiYXV0b21lcmdlIiwiaW1hZ2UiXX0=-->
Reviewed-on: #4585
Co-authored-by: Renovate Bot <renovate-bot@alexlebens.net >
Co-committed-by: Renovate Bot <renovate-bot@alexlebens.net >
2026-03-10 19:24:26 +00:00
4f5ee67cad
chore(deps): update kube-prometheus-stack docker tag to v82.10.3 ( #4595 )
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 39s
renovate / renovate (push) Successful in 2m16s
2026-03-10 19:03:26 +00:00
87e5e348e9
chore(deps): update helm release local-path-provisioner to v0.0.36 ( #4593 )
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 15s
renovate / renovate (push) Has been cancelled
2026-03-10 19:00:55 +00:00
89d2cc51e2
chore(deps): update helm release argo-cd to v9.4.10 ( #4591 )
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 9s
renovate / renovate (push) Successful in 2m43s
2026-03-10 18:58:52 +00:00
63c72c1384
chore(deps): update helm release alloy to v1.6.2 ( #4589 )
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 30s
renovate / renovate (push) Has been cancelled
2026-03-10 18:57:08 +00:00
a6cc4bbb91
chore(deps): update g33kphr33k/musicgrabber docker tag to v2.3.5 ( #4586 )
renovate / renovate (push) Has been cancelled
2026-03-10 18:54:15 +00:00
07fd0da730
chore(deps): update g33kphr33k/musicgrabber docker tag to v2.3.5 ( #4586 )
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 14s
renovate / renovate (push) Successful in 2m18s
2026-03-10 18:54:06 +00:00
0deb5b636a
chore(deps): update dependency element-hq/element-web to v1.12.12 ( #4584 )
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 9s
renovate / renovate (push) Has been cancelled
2026-03-10 18:51:52 +00:00
9c88efb755
chore(deps): update helm release cert-manager to v1.20.0 ( #4582 )
...
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 16s
renovate / renovate (push) Has been cancelled
This PR contains the following updates:
| Package | Update | Change |
|---|---|---|
| [cert-manager](https://cert-manager.io ) ([source](https://github.com/cert-manager/cert-manager )) | minor | `v1.19.4` → `v1.20.0` |
---
### Release Notes
<details>
<summary>cert-manager/cert-manager (cert-manager)</summary>
### [`v1.20.0`](https://github.com/cert-manager/cert-manager/releases/tag/v1.20.0 )
[Compare Source](https://github.com/cert-manager/cert-manager/compare/v1.19.4...v1.20.0 )
cert-manager is the easiest way to automatically manage certificates in Kubernetes and OpenShift clusters.
v1.20.0 adds support for the new ListenerSet resource, adds support for Azure Private DNS; parentRefs are no longer required when using ACME with Gateway API, and OtherNames was promoted to Beta.
#### Changes by Kind
##### Feature
- Added a set of flags to permit setting NetworkPolicy across all deployed containers. Remove redundant global IP ranges from example policies. ([#​8370](https://github.com/cert-manager/cert-manager/issues/8370 ), [@​jcpunk](https://github.com/jcpunk ))
- Added selectable fields to custom resource definitions for .spec.issuerRef.{group, kind, name} ([#​8256](https://github.com/cert-manager/cert-manager/issues/8256 ), [@​tareksha](https://github.com/tareksha ))
- Added support for specifying `imagePullSecrets` in the `startupapicheck-job` Helm template to enable pulling images from private registries. ([#​8186](https://github.com/cert-manager/cert-manager/issues/8186 ), [@​mathieu-clnk](https://github.com/mathieu-clnk ))
- Added 'extraContainers' helm chart value, allowing the deployment of arbitrary sidecar containers within the cert-manager operator pod. This can be used to support, for e.g., AWS IAM Roles Anywhere for Route53 DNS01 verification. ([#​8355](https://github.com/cert-manager/cert-manager/issues/8355 ), [@​dancmeyers](https://github.com/dancmeyers ))
- Added `parentRef` override annotations on the Certificate resource. ([#​8518](https://github.com/cert-manager/cert-manager/issues/8518 ), [@​hjoshi123](https://github.com/hjoshi123 ))
- Added support for azure private zones for dns01 issuer. ([#​8494](https://github.com/cert-manager/cert-manager/issues/8494 ), [@​hjoshi123](https://github.com/hjoshi123 ))
- Added support for configuring PEM decoding size limits, allowing operators to handle larger certificates and keys. ([#​7642](https://github.com/cert-manager/cert-manager/issues/7642 ), [@​robertlestak](https://github.com/robertlestak ))
- Added support for unhealthyPodEvictionPolicy in PodDisruptionBudget ([#​7728](https://github.com/cert-manager/cert-manager/issues/7728 ), [@​jcpunk](https://github.com/jcpunk ))
- For Venafi provider, read `venafi.cert-manager.io/custom-fields` annotation on Issuer/ClusterIssuer and use it as base with override/append capabilities on Certificate level. ([#​8301](https://github.com/cert-manager/cert-manager/issues/8301 ), [@​k0da](https://github.com/k0da ))
- Improve error message when CA issuers are misconfigured to use a clashing secret name ([#​8374](https://github.com/cert-manager/cert-manager/issues/8374 ), [@​majiayu000](https://github.com/majiayu000 ))
- Introduce a new Ingress annotation `acme.cert-manager.io/http01-ingress-ingressclassname` to override `http01.ingress.ingressClassName` field in HTTP-01 challenge solvers. ([#​8244](https://github.com/cert-manager/cert-manager/issues/8244 ), [@​lunarwhite](https://github.com/lunarwhite ))
- Update `global.nodeSelector` to helm chart to perform a `merge` and allow for a single `nodeSelector` to be set across all services. ([#​8195](https://github.com/cert-manager/cert-manager/issues/8195 ), [@​StingRayZA](https://github.com/StingRayZA ))
- Vault issuers will now include the Vault server address as one of the default audiences on generated service account tokens. ([#​8228](https://github.com/cert-manager/cert-manager/issues/8228 ), [@​terinjokes](https://github.com/terinjokes ))
- Added experimental `XListenerSet` feature gate ([#​8394](https://github.com/cert-manager/cert-manager/issues/8394 ), [@​hjoshi123](https://github.com/hjoshi123 ))
##### Documentation
- Add GWAPI documentation to NOTES.TXT in helm chart ([#​8353](https://github.com/cert-manager/cert-manager/issues/8353 ), [@​jaxels10](https://github.com/jaxels10 ))
##### Bug or Regression
- Adds logs for cases when acme server returns us a fatal error in the order controller ([#​8199](https://github.com/cert-manager/cert-manager/issues/8199 ), [@​Peac36](https://github.com/Peac36 ))
- Fixed an issue where kind or group in the issuerRef of a Certificate was omitted, upgrading to 1.19.x incorrectly caused the certificate to be renewed ([#​8160](https://github.com/cert-manager/cert-manager/issues/8160 ), [@​inteon](https://github.com/inteon ))
- Changes to the Duration and RenewBefore annotations on ingress and gateway-api resources will now trigger certificate updates. ([#​8232](https://github.com/cert-manager/cert-manager/issues/8232 ), [@​eleanor-merry](https://github.com/eleanor-merry ))
- Fix an issue where ACME challenge TXT records are not cleaned up when there are many resource records in CloudDNS. ([#​8456](https://github.com/cert-manager/cert-manager/issues/8456 ), [@​tkna](https://github.com/tkna ))
- Fix unregulated retries with the DigitalOcean DNS-01 solver
Add full detailed DNS-01 errors to the events attached to the Challenge, for easier debugging ([#​8221](https://github.com/cert-manager/cert-manager/issues/8221 ), [@​wallrj-cyberark](https://github.com/wallrj-cyberark ))
- Fixed an infinite re-issuance loop that could occur when an issuer returns a certificate with a public key that doesn't match the CSR. The issuing controller now validates the certificate before storing it and fails with backoff on mismatch. ([#​8403](https://github.com/cert-manager/cert-manager/issues/8403 ), [@​calm329](https://github.com/calm329 ))
- Fixed an issue where HTTP-01 challenges failed when the Host header contains an IPv6 address. This means that users can now issue IP address certificates for IPv6 address subjects. ([#​8424](https://github.com/cert-manager/cert-manager/issues/8424 ), [@​SlashNephy](https://github.com/SlashNephy ))
- Fixed the HTTP-01 Gateway solver creating invalid HTTPRoutes by not setting spec.hostnames when the challenge DNSName is an IP address. ([#​8443](https://github.com/cert-manager/cert-manager/issues/8443 ), [@​alviss7](https://github.com/alviss7 ))
- Revert API defaults for issuer reference kind and group introduced in 0.19.0 ([#​8173](https://github.com/cert-manager/cert-manager/issues/8173 ), [@​erikgb](https://github.com/erikgb ))
- Security (MODERATE): Fix a potential panic in the cert-manager controller when a DNS response in an unexpected order was cached. If an attacker was able to modify DNS responses (or if they controlled the DNS server) it was possible to cause denial of service for the cert-manager controller. ([#​8469](https://github.com/cert-manager/cert-manager/issues/8469 ), [@​SgtCoDFish](https://github.com/SgtCoDFish ))
- Update Go to `v1.25.5` to fix `CVE-2025-61727` and `CVE-2025-61729` ([#​8290](https://github.com/cert-manager/cert-manager/issues/8290 ), [@​octo-sts](https://github.com/octo-sts )\[bot])
- When Prometheus monitoring is enabled, the metrics label is now set to the intended value of `cert-manager`. Previously, it was set depending on various factors (namespace cert-manager is installed in and/or Helm release name). ([#​8162](https://github.com/cert-manager/cert-manager/issues/8162 ), [@​LiquidPL](https://github.com/LiquidPL ))
##### Other (Cleanup or Flake)
- Promoted the OtherNames feature to Beta and enabled it by default ([#​8288](https://github.com/cert-manager/cert-manager/issues/8288 ), [@​wallrj-cyberark](https://github.com/wallrj-cyberark ))
- Promoting `xlistenerset` feature gate to `listenerset` ([#​8501](https://github.com/cert-manager/cert-manager/issues/8501 ), [@​hjoshi123](https://github.com/hjoshi123 ))
- Rebranding of the Venafi Issuer to CyberArk ([#​8215](https://github.com/cert-manager/cert-manager/issues/8215 ), [@​iossifbenbassat123](https://github.com/iossifbenbassat123 ))
- Switched to SSA for challenge finalizer updates ([#​8519](https://github.com/cert-manager/cert-manager/issues/8519 ), [@​inteon](https://github.com/inteon ))
- The default container user (UID) is now 65532 (previously 1000) and the default container group (GID) is now 65532 (previously 0) ([#​8408](https://github.com/cert-manager/cert-manager/issues/8408 ), [@​wallrj-cyberark](https://github.com/wallrj-cyberark ))
- The feature-gate DefaultPrivateKeyRotationPolicyAlways moved from Beta to GA and can no longer be disabled. ([#​8287](https://github.com/cert-manager/cert-manager/issues/8287 ), [@​wallrj-cyberark](https://github.com/wallrj-cyberark ))
- Update cert-manager's ACME client, forked from golang/x/crypto ([#​8268](https://github.com/cert-manager/cert-manager/issues/8268 ), [@​SgtCoDFish](https://github.com/SgtCoDFish ))
- Use the latest version of Kyverno (1.16.2) in the best-practice installation tests ([#​8389](https://github.com/cert-manager/cert-manager/issues/8389 ), [@​wallrj-cyberark](https://github.com/wallrj-cyberark ))
- We stopped testing with Coutour due to it not supporting the new XListenerSet resource, and moved to kgateway. ([#​8426](https://github.com/cert-manager/cert-manager/issues/8426 ), [@​hjoshi123](https://github.com/hjoshi123 ))
</details>
---
### Configuration
📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied.
♻ **Rebasing**: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 **Ignore**: Close this PR and you won't be reminded about this update again.
---
- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box
---
This PR has been generated by [Renovate Bot](https://github.com/renovatebot/renovate ).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0My41OS4yIiwidXBkYXRlZEluVmVyIjoiNDMuNTkuMiIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOlsiY2hhcnQiXX0=-->
Reviewed-on: https://gitea.alexlebens.dev/alexlebens/infrastructure/pulls/4582
Co-authored-by: Renovate Bot <renovate-bot@alexlebens.net >
Co-committed-by: Renovate Bot <renovate-bot@alexlebens.net >
2026-03-10 18:49:17 +00:00
b108a9702c
chore(deps): update dependency cert-manager/cert-manager to v1.20.0 ( #4581 )
...
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 8s
renovate / renovate (push) Has been cancelled
This PR contains the following updates:
| Package | Update | Change |
|---|---|---|
| [cert-manager/cert-manager](https://github.com/cert-manager/cert-manager ) | minor | `v1.19.4` → `v1.20.0` |
---
### Release Notes
<details>
<summary>cert-manager/cert-manager (cert-manager/cert-manager)</summary>
### [`v1.20.0`](https://github.com/cert-manager/cert-manager/releases/tag/v1.20.0 )
[Compare Source](https://github.com/cert-manager/cert-manager/compare/v1.19.4...v1.20.0 )
cert-manager is the easiest way to automatically manage certificates in Kubernetes and OpenShift clusters.
v1.20.0 adds support for the new ListenerSet resource, adds support for Azure Private DNS; parentRefs are no longer required when using ACME with Gateway API, and OtherNames was promoted to Beta.
#### Changes by Kind
##### Feature
- Added a set of flags to permit setting NetworkPolicy across all deployed containers. Remove redundant global IP ranges from example policies. ([#​8370](https://github.com/cert-manager/cert-manager/issues/8370 ), [@​jcpunk](https://github.com/jcpunk ))
- Added selectable fields to custom resource definitions for .spec.issuerRef.{group, kind, name} ([#​8256](https://github.com/cert-manager/cert-manager/issues/8256 ), [@​tareksha](https://github.com/tareksha ))
- Added support for specifying `imagePullSecrets` in the `startupapicheck-job` Helm template to enable pulling images from private registries. ([#​8186](https://github.com/cert-manager/cert-manager/issues/8186 ), [@​mathieu-clnk](https://github.com/mathieu-clnk ))
- Added 'extraContainers' helm chart value, allowing the deployment of arbitrary sidecar containers within the cert-manager operator pod. This can be used to support, for e.g., AWS IAM Roles Anywhere for Route53 DNS01 verification. ([#​8355](https://github.com/cert-manager/cert-manager/issues/8355 ), [@​dancmeyers](https://github.com/dancmeyers ))
- Added `parentRef` override annotations on the Certificate resource. ([#​8518](https://github.com/cert-manager/cert-manager/issues/8518 ), [@​hjoshi123](https://github.com/hjoshi123 ))
- Added support for azure private zones for dns01 issuer. ([#​8494](https://github.com/cert-manager/cert-manager/issues/8494 ), [@​hjoshi123](https://github.com/hjoshi123 ))
- Added support for configuring PEM decoding size limits, allowing operators to handle larger certificates and keys. ([#​7642](https://github.com/cert-manager/cert-manager/issues/7642 ), [@​robertlestak](https://github.com/robertlestak ))
- Added support for unhealthyPodEvictionPolicy in PodDisruptionBudget ([#​7728](https://github.com/cert-manager/cert-manager/issues/7728 ), [@​jcpunk](https://github.com/jcpunk ))
- For Venafi provider, read `venafi.cert-manager.io/custom-fields` annotation on Issuer/ClusterIssuer and use it as base with override/append capabilities on Certificate level. ([#​8301](https://github.com/cert-manager/cert-manager/issues/8301 ), [@​k0da](https://github.com/k0da ))
- Improve error message when CA issuers are misconfigured to use a clashing secret name ([#​8374](https://github.com/cert-manager/cert-manager/issues/8374 ), [@​majiayu000](https://github.com/majiayu000 ))
- Introduce a new Ingress annotation `acme.cert-manager.io/http01-ingress-ingressclassname` to override `http01.ingress.ingressClassName` field in HTTP-01 challenge solvers. ([#​8244](https://github.com/cert-manager/cert-manager/issues/8244 ), [@​lunarwhite](https://github.com/lunarwhite ))
- Update `global.nodeSelector` to helm chart to perform a `merge` and allow for a single `nodeSelector` to be set across all services. ([#​8195](https://github.com/cert-manager/cert-manager/issues/8195 ), [@​StingRayZA](https://github.com/StingRayZA ))
- Vault issuers will now include the Vault server address as one of the default audiences on generated service account tokens. ([#​8228](https://github.com/cert-manager/cert-manager/issues/8228 ), [@​terinjokes](https://github.com/terinjokes ))
- Added experimental `XListenerSet` feature gate ([#​8394](https://github.com/cert-manager/cert-manager/issues/8394 ), [@​hjoshi123](https://github.com/hjoshi123 ))
##### Documentation
- Add GWAPI documentation to NOTES.TXT in helm chart ([#​8353](https://github.com/cert-manager/cert-manager/issues/8353 ), [@​jaxels10](https://github.com/jaxels10 ))
##### Bug or Regression
- Adds logs for cases when acme server returns us a fatal error in the order controller ([#​8199](https://github.com/cert-manager/cert-manager/issues/8199 ), [@​Peac36](https://github.com/Peac36 ))
- Fixed an issue where kind or group in the issuerRef of a Certificate was omitted, upgrading to 1.19.x incorrectly caused the certificate to be renewed ([#​8160](https://github.com/cert-manager/cert-manager/issues/8160 ), [@​inteon](https://github.com/inteon ))
- Changes to the Duration and RenewBefore annotations on ingress and gateway-api resources will now trigger certificate updates. ([#​8232](https://github.com/cert-manager/cert-manager/issues/8232 ), [@​eleanor-merry](https://github.com/eleanor-merry ))
- Fix an issue where ACME challenge TXT records are not cleaned up when there are many resource records in CloudDNS. ([#​8456](https://github.com/cert-manager/cert-manager/issues/8456 ), [@​tkna](https://github.com/tkna ))
- Fix unregulated retries with the DigitalOcean DNS-01 solver
Add full detailed DNS-01 errors to the events attached to the Challenge, for easier debugging ([#​8221](https://github.com/cert-manager/cert-manager/issues/8221 ), [@​wallrj-cyberark](https://github.com/wallrj-cyberark ))
- Fixed an infinite re-issuance loop that could occur when an issuer returns a certificate with a public key that doesn't match the CSR. The issuing controller now validates the certificate before storing it and fails with backoff on mismatch. ([#​8403](https://github.com/cert-manager/cert-manager/issues/8403 ), [@​calm329](https://github.com/calm329 ))
- Fixed an issue where HTTP-01 challenges failed when the Host header contains an IPv6 address. This means that users can now issue IP address certificates for IPv6 address subjects. ([#​8424](https://github.com/cert-manager/cert-manager/issues/8424 ), [@​SlashNephy](https://github.com/SlashNephy ))
- Fixed the HTTP-01 Gateway solver creating invalid HTTPRoutes by not setting spec.hostnames when the challenge DNSName is an IP address. ([#​8443](https://github.com/cert-manager/cert-manager/issues/8443 ), [@​alviss7](https://github.com/alviss7 ))
- Revert API defaults for issuer reference kind and group introduced in 0.19.0 ([#​8173](https://github.com/cert-manager/cert-manager/issues/8173 ), [@​erikgb](https://github.com/erikgb ))
- Security (MODERATE): Fix a potential panic in the cert-manager controller when a DNS response in an unexpected order was cached. If an attacker was able to modify DNS responses (or if they controlled the DNS server) it was possible to cause denial of service for the cert-manager controller. ([#​8469](https://github.com/cert-manager/cert-manager/issues/8469 ), [@​SgtCoDFish](https://github.com/SgtCoDFish ))
- Update Go to `v1.25.5` to fix `CVE-2025-61727` and `CVE-2025-61729` ([#​8290](https://github.com/cert-manager/cert-manager/issues/8290 ), [@​octo-sts](https://github.com/octo-sts )\[bot])
- When Prometheus monitoring is enabled, the metrics label is now set to the intended value of `cert-manager`. Previously, it was set depending on various factors (namespace cert-manager is installed in and/or Helm release name). ([#​8162](https://github.com/cert-manager/cert-manager/issues/8162 ), [@​LiquidPL](https://github.com/LiquidPL ))
##### Other (Cleanup or Flake)
- Promoted the OtherNames feature to Beta and enabled it by default ([#​8288](https://github.com/cert-manager/cert-manager/issues/8288 ), [@​wallrj-cyberark](https://github.com/wallrj-cyberark ))
- Promoting `xlistenerset` feature gate to `listenerset` ([#​8501](https://github.com/cert-manager/cert-manager/issues/8501 ), [@​hjoshi123](https://github.com/hjoshi123 ))
- Rebranding of the Venafi Issuer to CyberArk ([#​8215](https://github.com/cert-manager/cert-manager/issues/8215 ), [@​iossifbenbassat123](https://github.com/iossifbenbassat123 ))
- Switched to SSA for challenge finalizer updates ([#​8519](https://github.com/cert-manager/cert-manager/issues/8519 ), [@​inteon](https://github.com/inteon ))
- The default container user (UID) is now 65532 (previously 1000) and the default container group (GID) is now 65532 (previously 0) ([#​8408](https://github.com/cert-manager/cert-manager/issues/8408 ), [@​wallrj-cyberark](https://github.com/wallrj-cyberark ))
- The feature-gate DefaultPrivateKeyRotationPolicyAlways moved from Beta to GA and can no longer be disabled. ([#​8287](https://github.com/cert-manager/cert-manager/issues/8287 ), [@​wallrj-cyberark](https://github.com/wallrj-cyberark ))
- Update cert-manager's ACME client, forked from golang/x/crypto ([#​8268](https://github.com/cert-manager/cert-manager/issues/8268 ), [@​SgtCoDFish](https://github.com/SgtCoDFish ))
- Use the latest version of Kyverno (1.16.2) in the best-practice installation tests ([#​8389](https://github.com/cert-manager/cert-manager/issues/8389 ), [@​wallrj-cyberark](https://github.com/wallrj-cyberark ))
- We stopped testing with Coutour due to it not supporting the new XListenerSet resource, and moved to kgateway. ([#​8426](https://github.com/cert-manager/cert-manager/issues/8426 ), [@​hjoshi123](https://github.com/hjoshi123 ))
</details>
---
### Configuration
📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied.
♻ **Rebasing**: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 **Ignore**: Close this PR and you won't be reminded about this update again.
---
- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box
---
This PR has been generated by [Renovate Bot](https://github.com/renovatebot/renovate ).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0My41OS4yIiwidXBkYXRlZEluVmVyIjoiNDMuNTkuMiIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOlsiaW1hZ2UiXX0=-->
Reviewed-on: https://gitea.alexlebens.dev/alexlebens/infrastructure/pulls/4581
Co-authored-by: Renovate Bot <renovate-bot@alexlebens.net >
Co-committed-by: Renovate Bot <renovate-bot@alexlebens.net >
2026-03-10 18:46:58 +00:00
159eef86a8
chore(deps): update dependency element-hq/synapse to v1.149.0 ( #4580 )
...
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 10s
renovate / renovate (push) Has been cancelled
This PR contains the following updates:
| Package | Update | Change |
|---|---|---|
| [element-hq/synapse](https://github.com/element-hq/synapse ) | minor | `v1.148.0` → `v1.149.0` |
---
### Release Notes
<details>
<summary>element-hq/synapse (element-hq/synapse)</summary>
### [`v1.149.0`](https://github.com/element-hq/synapse/releases/tag/v1.149.0 )
[Compare Source](https://github.com/element-hq/synapse/compare/v1.148.0...v1.149.0 )
### Synapse 1.149.0 (2026-03-10)
No significant changes since 1.149.0rc1.
### Synapse 1.149.0rc1 (2026-03-03)
#### Features
- Add experimental support for [MSC4388: Secure out-of-band channel for sign in with QR](https://github.com/matrix-org/matrix-spec-proposals/pull/4388 ). ([#​19127](https://github.com/element-hq/synapse/issues/19127 ))
- Add stable support for [MSC4380](https://github.com/matrix-org/matrix-spec-proposals/pull/4380 ) invite blocking. ([#​19431](https://github.com/element-hq/synapse/issues/19431 ))
#### Bugfixes
- Fix the 'Login as a user' Admin API not checking if the user exists before issuing an access token. ([#​18518](https://github.com/element-hq/synapse/issues/18518 ))
- Fix `/sync` missing membership event in `state_after` (experimental [MSC4222](https://github.com/matrix-org/matrix-spec-proposals/pull/4222 ) implementation) in some scenarios. ([#​19460](https://github.com/element-hq/synapse/issues/19460 ))
#### Internal Changes
- Add log to explain when and why we freeze objects in the garbage collector. ([#​19440](https://github.com/element-hq/synapse/issues/19440 ))
- Better instrument `JoinRoomAliasServlet` with tracing. ([#​19461](https://github.com/element-hq/synapse/issues/19461 ))
- Fix Complement CI not running against the code from our PRs. ([#​19475](https://github.com/element-hq/synapse/issues/19475 ))
- Log `docker system info` in CI so we have a plain record of how GitHub runners evolve over time. ([#​19480](https://github.com/element-hq/synapse/issues/19480 ))
- Rename the `test_disconnect` test helper so that pytest doesn't see it as a test. ([#​19486](https://github.com/element-hq/synapse/issues/19486 ))
- Add a log line when we delete devices. Contributed by [@​bradtgmurray](https://github.com/bradtgmurray ) @​ Beeper. ([#​19496](https://github.com/element-hq/synapse/issues/19496 ))
- Pre-allocate the buffer based on the expected `Content-Length` with the Rust HTTP client. ([#​19498](https://github.com/element-hq/synapse/issues/19498 ))
- Cancel long-running sync requests if the client has gone away. ([#​19499](https://github.com/element-hq/synapse/issues/19499 ))
- Try and reduce reactor tick times when under heavy load. ([#​19507](https://github.com/element-hq/synapse/issues/19507 ))
- Simplify Rust HTTP client response streaming and limiting. ([#​19510](https://github.com/element-hq/synapse/issues/19510 ))
- Replace deprecated collection import locations with current locations. ([#​19515](https://github.com/element-hq/synapse/issues/19515 ))
- Bump most locked Python dependencies to their latest versions. ([#​19519](https://github.com/element-hq/synapse/issues/19519 ))
</details>
---
### Configuration
📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied.
♻ **Rebasing**: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 **Ignore**: Close this PR and you won't be reminded about this update again.
---
- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box
---
This PR has been generated by [Renovate Bot](https://github.com/renovatebot/renovate ).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0My41OS4yIiwidXBkYXRlZEluVmVyIjoiNDMuNTkuMiIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOlsiaW1hZ2UiXX0=-->
Reviewed-on: https://gitea.alexlebens.dev/alexlebens/infrastructure/pulls/4580
Co-authored-by: Renovate Bot <renovate-bot@alexlebens.net >
Co-committed-by: Renovate Bot <renovate-bot@alexlebens.net >
2026-03-10 18:45:40 +00:00
2c9310f8d1
chore(deps): update searxng/searxng:latest docker digest to 943c899 ( #4578 )
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 21s
renovate / renovate (push) Successful in 3m44s
2026-03-10 09:05:29 +00:00
38f5fccfec
chore(deps): update valkey docker tag to v0.4.0 ( #4572 )
...
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 15s
render-manifests-dispatch / render-manifests-dispatch (push) Successful in 26m24s
renovate / renovate (push) Successful in 5m9s
This PR contains the following updates:
| Package | Update | Change |
|---|---|---|
| [valkey](https://github.com/valkey-io/valkey ) | minor | `0.3.0` → `0.4.0` |
---
### Configuration
📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied.
♻ **Rebasing**: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 **Ignore**: Close this PR and you won't be reminded about this update again.
---
- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box
---
This PR has been generated by [Renovate Bot](https://github.com/renovatebot/renovate ).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0My41OS4yIiwidXBkYXRlZEluVmVyIjoiNDMuNTkuMiIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOlsiaW1hZ2UiXX0=-->
Reviewed-on: #4572
Co-authored-by: Renovate Bot <renovate-bot@alexlebens.net >
Co-committed-by: Renovate Bot <renovate-bot@alexlebens.net >
2026-03-10 02:32:01 +00:00
9ead85b4a5
chore(deps): update kube-prometheus-stack docker tag to v82.10.2 ( #4574 )
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 22s
renovate / renovate (push) Successful in 3m0s
2026-03-09 23:03:45 +00:00
c5c90f4ea1
chore(deps): update helm release generic-device-plugin to v0.20.21 ( #4573 )
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 15s
renovate / renovate (push) Has been cancelled
2026-03-09 23:03:10 +00:00
ea93e215e4
chore(deps): update cloudflared docker tag to v2.4.0 ( #4571 )
...
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 19s
renovate / renovate (push) Successful in 3m24s
This PR contains the following updates:
| Package | Update | Change |
|---|---|---|
| [cloudflared](https://github.com/cloudflare/cloudflared ) | minor | `2.3.0` → `2.4.0` |
---
### Release Notes
<details>
<summary>cloudflare/cloudflared (cloudflared)</summary>
### [`v2.4.0`](https://github.com/cloudflare/cloudflared/blob/HEAD/CHANGES.md#202240 )
##### Bug Fixes
- `cloudflared tunnel run` no longer logs the Tunnel token or JSON credentials in clear text as those are the secret
that allows to run the Tunnel.
</details>
---
### Configuration
📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied.
♻ **Rebasing**: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 **Ignore**: Close this PR and you won't be reminded about this update again.
---
- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box
---
This PR has been generated by [Renovate Bot](https://github.com/renovatebot/renovate ).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0My41OS4yIiwidXBkYXRlZEluVmVyIjoiNDMuNTkuMiIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOlsiaW1hZ2UiXX0=-->
Reviewed-on: #4571
Co-authored-by: Renovate Bot <renovate-bot@alexlebens.net >
Co-committed-by: Renovate Bot <renovate-bot@alexlebens.net >
2026-03-09 22:52:38 +00:00
3586f61a77
chore(deps): update helm release descheduler to v0.35.1 ( #4569 )
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 18s
renovate / renovate (push) Successful in 10m24s
2026-03-09 21:22:28 +00:00
abfe9fde16
chore(deps): update dependency kubernetes-sigs/descheduler to v0.35.1 ( #4568 )
lint-test-helm / lint-helm (push) Successful in 31s
render-manifests-push / render-manifests-push (push) Has been skipped
renovate / renovate (push) Has been cancelled
2026-03-09 21:18:04 +00:00
dc437c67f1
chore(deps): update ghcr.io/linuxserver/code-server docker tag to v4.110.0 ( #4566 )
...
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 10s
renovate / renovate (push) Has been cancelled
This PR contains the following updates:
| Package | Update | Change |
|---|---|---|
| [ghcr.io/linuxserver/code-server](https://github.com/linuxserver/docker-code-server/packages ) ([source](https://github.com/linuxserver/docker-code-server )) | minor | `4.109.5` → `4.110.0` |
---
### Configuration
📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied.
♻ **Rebasing**: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 **Ignore**: Close this PR and you won't be reminded about this update again.
---
- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box
---
This PR has been generated by [Renovate Bot](https://github.com/renovatebot/renovate ).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0My41OS4yIiwidXBkYXRlZEluVmVyIjoiNDMuNTkuMiIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOlsiaW1hZ2UiXX0=-->
Reviewed-on: #4566
Co-authored-by: Renovate Bot <renovate-bot@alexlebens.net >
Co-committed-by: Renovate Bot <renovate-bot@alexlebens.net >
2026-03-09 21:16:06 +00:00
8c9ad88639
chore(deps): update g33kphr33k/musicgrabber docker tag to v2.3.4 ( #4564 )
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 13s
renovate / renovate (push) Successful in 3m8s
2026-03-09 20:02:39 +00:00
dc835690be
chore(deps): update dependency argoproj/argo-cd to v3.3.3 ( #4563 )
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 12s
renovate / renovate (push) Successful in 2m11s
2026-03-09 18:03:08 +00:00
c27821f978
chore(deps): update helm release traefik to v39.0.5 ( #4561 )
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 15s
renovate / renovate (push) Successful in 2m40s
2026-03-09 17:05:13 +00:00
efe741e64e
chore(deps): update helm release argo-cd to v9.4.9 ( #4559 )
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 13s
renovate / renovate (push) Has been cancelled
2026-03-09 17:02:18 +00:00
49036d6bb1
chore(deps): update helm release meilisearch to v0.27.0 ( #4557 )
...
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 19s
renovate / renovate (push) Has been cancelled
This PR contains the following updates:
| Package | Update | Change |
|---|---|---|
| [meilisearch](https://github.com/meilisearch/meilisearch-kubernetes/tree/main/charts/meilisearch ) ([source](https://github.com/meilisearch/meilisearch-kubernetes )) | minor | `0.26.0` → `0.27.0` |
---
### Release Notes
<details>
<summary>meilisearch/meilisearch-kubernetes (meilisearch)</summary>
### [`v0.27.0`](https://github.com/meilisearch/meilisearch-kubernetes/releases/tag/meilisearch-0.27.0 )
[Compare Source](https://github.com/meilisearch/meilisearch-kubernetes/compare/meilisearch-0.26.0...meilisearch-0.27.0 )
A Helm chart for the Meilisearch search engine
</details>
---
### Configuration
📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied.
♻ **Rebasing**: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 **Ignore**: Close this PR and you won't be reminded about this update again.
---
- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box
---
This PR has been generated by [Renovate Bot](https://github.com/renovatebot/renovate ).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0My41OS4yIiwidXBkYXRlZEluVmVyIjoiNDMuNTkuMiIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOlsiY2hhcnQiXX0=-->
Reviewed-on: #4557
Co-authored-by: Renovate Bot <renovate-bot@alexlebens.net >
Co-committed-by: Renovate Bot <renovate-bot@alexlebens.net >
2026-03-09 17:00:02 +00:00
d4633363f6
chore(deps): update dependency clidey/whodb to v0.98.0 ( #4554 )
...
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 27s
renovate / renovate (push) Has been cancelled
This PR contains the following updates:
| Package | Update | Change |
|---|---|---|
| [clidey/whodb](https://github.com/clidey/whodb ) | minor | `0.97.0` → `0.98.0` |
---
### Release Notes
<details>
<summary>clidey/whodb (clidey/whodb)</summary>
### [`v0.98.0`](https://github.com/clidey/whodb/releases/tag/0.98.0 )
[Compare Source](https://github.com/clidey/whodb/compare/0.97.0...0.98.0 )
- Fix issue where UUID generation was inconsistent in certain environments
- Remove column type from export to make it possible to reimport
- Fix issue where page size wasn't being respecting in certain situations
- Fix issue where "Enter" key wasn't being respected when changing page size
- Hide NDJSON option in export if the database does not support it
- Fix where importing CSV with empty values for nullable cols fails in certain situations
- Fix where import CSV would fail in override and append modes in certain situations
- Update how the shortcuts are set up as well as remove conflicting ones
- Fix for certain shortcuts not being registered
- Add Merge With Existing Data import option (similar to upsert in SQL)
- Added a generic frontend error boundary check
#### Installation
##### Mac App Store
[Download from the Apple Store](https://apps.apple.com/app/whodb/id6754566536 )
##### Microsoft Store
[Download from the Microsoft Store](https://apps.microsoft.com/detail/9pftx5bv4ds6 )
##### Snap Store
```bash
sudo snap install whodb
```
[View on Snapcraft](https://snapcraft.io/whodb )
##### Docker
```bash
docker pull clidey/whodb:0.98.0
docker pull clidey/whodb:latest
```
##### Direct Downloads
See assets below for platform-specific packages (DMG, MSIX, etc.).
#### Documentation
- [Documentation](https://docs.whodb.com )
- [Report Issues](https://github.com/clidey/whodb/issues )
#### Upgrade Notes
To upgrade from a previous version:
- **Docker**: Pull the latest image and restart your container
- **Snap**: Run `sudo snap refresh whodb`
- **Desktop Apps**: Download and install the new version
***
**Full Changelog**: <https://github.com/clidey/whodb/compare/0.97.0...0.98.0 >
</details>
---
### Configuration
📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied.
♻ **Rebasing**: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 **Ignore**: Close this PR and you won't be reminded about these updates again.
---
- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box
---
This PR has been generated by [Renovate Bot](https://github.com/renovatebot/renovate ).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0My41OS4yIiwidXBkYXRlZEluVmVyIjoiNDMuNTkuMiIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOlsiaW1hZ2UiXX0=-->
Reviewed-on: #4554
Co-authored-by: Renovate Bot <renovate-bot@alexlebens.net >
Co-committed-by: Renovate Bot <renovate-bot@alexlebens.net >
2026-03-09 16:57:45 +00:00
c1674db1ad
feat: add mover context
lint-test-helm / lint-helm (push) Successful in 21s
render-manifests-push / render-manifests-push (push) Successful in 41s
renovate / renovate (push) Has been cancelled
2026-03-09 11:54:06 -05:00
7675968b60
chore(deps): update searxng/searxng:latest docker digest to a973f27 ( #4555 )
render-manifests-push / render-manifests-push (push) Has been skipped
lint-test-helm / lint-helm (push) Successful in 23s
renovate / renovate (push) Successful in 3m14s
2026-03-09 14:03:52 +00:00