Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
765 commits
Select commit Hold shift + click to select a range
9c36d1f
Move gjenkins to maintainer
gjenkins8 Sep 27, 2024
f5e7b11
Merge pull request #13353 from helm/dependabot/github_actions/actions…
sabre1041 Sep 28, 2024
d1ede4f
Merge pull request #13355 from gjenkins8/gjenkins_maintainer
mattfarina Sep 30, 2024
eecb848
Merge pull request #13301 from NathanBaulch/typos
mattfarina Sep 30, 2024
663a4e6
Merge pull request #13338 from yardenshoham/issues/13320
mattfarina Oct 1, 2024
b2286c4
Merge pull request #13328 from robertsirc/adjusting-go-setup-check-la…
mattfarina Oct 1, 2024
159844e
Merge pull request #13349 from TerryHowe/format-chart-name
mattfarina Oct 1, 2024
7925733
Bump golang/govulncheck-action from 1.0.3 to 1.0.4
dependabot[bot] Oct 1, 2024
090f8bb
Merge pull request #13360 from helm/dependabot/github_actions/golang/…
mattfarina Oct 1, 2024
d5df067
Bump the k8s-io group with 7 updates
dependabot[bot] Oct 2, 2024
36f0b42
updating owners file
robertsirc Oct 3, 2024
9e192b2
Bump golangci/golangci-lint-action from 6.1.0 to 6.1.1
dependabot[bot] Oct 3, 2024
d1557b2
Merge pull request #13371 from helm/dependabot/github_actions/golangc…
mattfarina Oct 4, 2024
0b46e35
Merge pull request #13369 from robertsirc/updating-oweners.md
robertsirc Oct 4, 2024
7ad3097
Merge pull request #13344 from AdamKorcz/fuzzzz1
mattfarina Oct 4, 2024
2da76a0
Merge pull request #13345 from AdamKorcz/fuzzzzz2
mattfarina Oct 4, 2024
cdbef2b
Revering change unrelated to issue #13176
bb-Ricardo Aug 14, 2024
c0328b2
Merge pull request #13333 from helm/dependabot/go_modules/k8s-io-1467…
mattfarina Oct 4, 2024
145d12f
Merge pull request #13177 from bb-Ricardo/main
mattfarina Oct 4, 2024
4c54d15
Bump golang.org/x/crypto from 0.27.0 to 0.28.0
dependabot[bot] Oct 4, 2024
02ef83f
fix: Use chart archive modifed time for OCI push
gjenkins8 Oct 5, 2024
f5fcae8
verbs
gjenkins8 Oct 5, 2024
076bb1f
Move jdolitsky to emeritus
jdolitsky Oct 5, 2024
4ede1c9
Merge branch 'helm:main' into main
Mar 9, 2024
51fd63d
Merge pull request #13377 from jdolitsky/jdolitsky-emeritus
mattfarina Oct 7, 2024
30de3bb
Doc: add Flox as an installation option.
bryanhonof Jul 31, 2024
dc9b8ec
Merge pull request #13219 from bryanhonof/main
robertsirc Oct 7, 2024
d517450
Bump actions/checkout from 4.2.0 to 4.2.1
dependabot[bot] Oct 7, 2024
f9183a5
Merge branch 'helm:main' into main
vtrenton Oct 8, 2024
ab3c589
chore: Make retryingRoundTripper type public
luisdavim Oct 8, 2024
5af4707
Merge pull request #13383 from luisdavim/retryingrt
mattfarina Oct 9, 2024
54be551
Merge pull request #12788 from vtrenton/main
mattfarina Oct 9, 2024
140a376
chore(deps): bump actions/stale from 3.0.14 to 9.0.0
dependabot[bot] Oct 9, 2024
04dca47
Merge pull request #13379 from helm/dependabot/github_actions/actions…
mattfarina Oct 9, 2024
a2cffa6
Merge pull request #13373 from helm/dependabot/go_modules/golang.org/…
mattfarina Oct 9, 2024
b45680c
Bump github.com/cyphar/filepath-securejoin from 0.3.1 to 0.3.4
dependabot[bot] Oct 9, 2024
75c124a
chore: Add Evans to OWNERS file
banjoh Oct 11, 2024
474a743
Merge pull request #13384 from helm/dependabot/go_modules/github.com/…
mattfarina Oct 11, 2024
8b85934
Reorder triage ids
banjoh Oct 13, 2024
231b0a9
Merge pull request #13385 from banjoh/em/update-owners
mattfarina Oct 14, 2024
fe4d0d9
Bump github.com/containerd/containerd from 1.7.12 to 1.7.23
dependabot[bot] Oct 14, 2024
ca58464
minor spelling fix
sequitor-jon Oct 11, 2024
53aaedf
Merge pull request #13390 from helm/dependabot/go_modules/github.com/…
mattfarina Oct 15, 2024
d7c7d15
Merge pull request #13386 from sequitor-jon/minor_spelling
mattfarina Oct 15, 2024
79a1f2c
fix(helm): Retry Conflict error for createResource, deleteResource
andreaskaris May 18, 2021
8f59c8e
Merge pull request #9713 from andreaskaris/issue9710
mattfarina Oct 17, 2024
999b851
adding test coverage for ready.go
robertsirc Oct 18, 2024
0b68393
Merge pull request #13397 from robertsirc/add-test-ready.go
robertsirc Oct 19, 2024
4a15cc3
Cleanup redundant GO11MODULE
gjenkins8 Oct 21, 2024
a205af7
adding more unit test
robertsirc Oct 22, 2024
3a5805e
chore: Check tar is installed install script
banjoh Oct 22, 2024
323f889
Merge remote-tracking branch 'origin/main' into em/password-to-oci-re…
banjoh Oct 22, 2024
d25b0d9
Remove unnecessary function arguments
banjoh Oct 22, 2024
910edd3
Merge pull request #13399 from gjenkins8/rm_GO111MODULE
mattfarina Oct 22, 2024
3c4d0bb
Fix failing tests
banjoh Oct 22, 2024
bdaa93b
Ensure test fails without causing panic
banjoh Oct 22, 2024
16a4e37
fixing unit test as per Matt
robertsirc Oct 23, 2024
7e6b34d
removing duplicate empty test
robertsirc Oct 23, 2024
0f5c33e
Merge pull request #13402 from robertsirc/adding-more-test-for-pkg-kube
robertsirc Oct 23, 2024
e4304bd
Bump the k8s-io group with 7 updates
dependabot[bot] Oct 23, 2024
de9e138
chore: fix some function names in comment
wangjingcun Oct 24, 2024
c867af8
Bump actions/setup-go from 5.0.2 to 5.1.0
dependabot[bot] Oct 24, 2024
85499b2
Merge pull request #13400 from wangjingcun/main
gjenkins8 Oct 25, 2024
39ca9bf
Merge pull request #13410 from helm/dependabot/github_actions/actions…
robertsirc Oct 25, 2024
f983342
Bump actions/checkout from 4.2.1 to 4.2.2
dependabot[bot] Oct 25, 2024
351f552
Merge pull request #13408 from helm/dependabot/github_actions/actions…
robertsirc Oct 25, 2024
3cca969
Merge pull request #13407 from helm/dependabot/go_modules/k8s-io-b013…
robertsirc Oct 25, 2024
86102f0
Merge pull request #13403 from banjoh/em/check-tar
robertsirc Oct 25, 2024
5ae91e1
Merge pull request #13034 from mattclegg/issue-9507
robertsirc Oct 25, 2024
717529a
Merge pull request #13376 from helm/fix_oci_push_timestamp
sabre1041 Oct 27, 2024
a51ea6e
Allow tests to run on loong64
xtlsoft Oct 28, 2024
d2ae7d0
Merge pull request #13412 from xtlsoft/main
robertsirc Oct 29, 2024
f4f4a6b
fix(hooks): correct hooks delete order
idsulik Oct 30, 2024
2848e3d
Merge pull request #13365 from idsulik/issue-13363
mattfarina Oct 30, 2024
029e983
Increasing the size of the runner used for releases.
mattfarina Nov 1, 2024
fab22eb
Merge pull request #13416 from mattfarina/build-release-bigger-runner
mattfarina Nov 1, 2024
261233c
Merge pull request #12620 from helm/dependabot/github_actions/actions…
mattfarina Nov 1, 2024
0cc78c6
Fix typo in pkg/lint/rules/chartfile_test.go
zachburg Nov 5, 2024
9fd943b
Add tests to `helm/pkg/kube/client_test.go` to cover `wait.go`
alex-kattathra-johnson Nov 4, 2024
7b62210
Merge pull request #13420 from zachburg/main
mattfarina Nov 5, 2024
106e2f9
Merge pull request #13418 from alex-kattathra-johnson/issue-13417
robertsirc Nov 6, 2024
6f2f7d4
Updating subchart load error to be more descriptive
tjasko Nov 6, 2024
e4062e7
fix: fix label name
wangjingcun Nov 7, 2024
cf871d2
Merge pull request #13423 from tjasko/bug/subchart-error-messaging
robertsirc Nov 7, 2024
2aba8a1
Merge pull request #13424 from wangjingcun/main
mattfarina Nov 7, 2024
a2d289f
Bump golang.org/x/crypto from 0.28.0 to 0.29.0
dependabot[bot] Nov 8, 2024
b5a83ea
Adding CI for dev-v3 branch
mattfarina Nov 11, 2024
aded0ac
Merge pull request #13432 from mattfarina/ci-for-v3
mattfarina Nov 11, 2024
dd35343
Merge pull request #13428 from helm/dependabot/go_modules/golang.org/…
gjenkins8 Nov 11, 2024
c3a5f27
Add --take-ownership flag for install and upgrade commands
mayankshah1607 Nov 12, 2024
7efa286
Update cmd/helm/install.go
mayankshah1607 Nov 19, 2024
885e938
Update cmd/helm/upgrade.go
mayankshah1607 Nov 19, 2024
7a22dd2
Rename CAFile to CaFile for consistency
banjoh Nov 19, 2024
3c2ab91
Make the authorizer and registry authorizer configurable
rynowak Nov 21, 2023
41b6273
Merge pull request #13483 from banjoh/em/password-to-oci-registries-v3
mattfarina Nov 27, 2024
3fe0bbd
Merge pull request #13480 from rynowak/rynowak/override-authorizer
mattfarina Dec 2, 2024
c40cf00
Shadow ORAS remote.Client interface
gjenkins8 Dec 2, 2024
2541e46
fix upgrade
mayankshah1607 Dec 11, 2024
b9d58a1
fix test
mayankshah1607 Dec 12, 2024
edf7b66
fix test output
mayankshah1607 Dec 13, 2024
ac16258
Bump the k8s-io group with 7 updates
dependabot[bot] Dec 4, 2024
6ba4c6e
Bump golang.org/x/crypto from 0.30.0 to 0.31.0
dependabot[bot] Dec 11, 2024
fc4f95a
Merge pull request #13532 from mattfarina/bump-crypto-0.31.0
gjenkins8 Dec 13, 2024
0a6834f
This commit fixes the issue where the yaml.Unmarshaller converts all …
althafm Dec 14, 2024
038321c
Merge pull request #13531 from mayankshah1607/cli-take-ownership-dev-v3
gjenkins8 Dec 19, 2024
562eb54
Bump github.com/containerd/containerd from 1.7.23 to 1.7.24
dependabot[bot] Dec 20, 2024
9421fac
Bump github.com/stretchr/testify from 1.9.0 to 1.10.0
dependabot[bot] Dec 20, 2024
675bb54
Merge pull request #13557 from helm/dependabot/go_modules/dev-v3/gith…
gjenkins8 Dec 20, 2024
e49dfab
Merge pull request #13560 from helm/dependabot/go_modules/dev-v3/gith…
gjenkins8 Dec 20, 2024
ca61226
Bump github.com/cyphar/filepath-securejoin from 0.3.4 to 0.3.6
dependabot[bot] Dec 20, 2024
c7cd177
Bump github.com/rubenv/sql-migrate from 1.7.0 to 1.7.1
dependabot[bot] Dec 20, 2024
b83fe3b
Merge pull request #13559 from helm/dependabot/go_modules/dev-v3/gith…
mattfarina Dec 21, 2024
35cdbea
Merge pull request #13565 from helm/dependabot/go_modules/dev-v3/gith…
mattfarina Dec 21, 2024
a3a9e4f
Fix dev-v3 from take ownership changes
mattfarina Dec 21, 2024
498d03d
Merge pull request #13566 from mattfarina/fix-dev-v3-from-take-ownership
mattfarina Dec 21, 2024
2042f7d
Run `build-test` action on `dev-v3` branch
gjenkins8 Dec 20, 2024
0a588c2
Merge pull request #13567 from mattfarina/backport-fix-dev-v3-pr-tests
mattfarina Dec 27, 2024
7321579
Add annotations and dependencies to get metadata output
niladrih Sep 19, 2024
ba180a3
ref(create): don't render empty resource fields
dnskr Aug 5, 2024
9f620b8
Update to Go 1.23
mattfarina Dec 19, 2024
037c18a
Update golangci-lint version
mattfarina Dec 19, 2024
2bfcedd
Merge pull request #13580 from mattfarina/go-1.23-v3
mattfarina Dec 30, 2024
391a907
Merge pull request #13512 from gjenkins8/shadow_oras_remoteclient_type
mattfarina Dec 30, 2024
4f0b634
Merge pull request #13575 from gjenkins8/v3_13232
mattfarina Dec 30, 2024
9ade3b5
Merge pull request #13574 from gjenkins8/v3_13343
mattfarina Dec 30, 2024
79993d2
Upgrade golang.org/x/net to v0.33.0 to address CVE-2024-45338
ldlb9527 Dec 29, 2024
c6b8d2b
Merge pull request #13585 from mattfarina/backport-xnet-33-fix
mattfarina Dec 31, 2024
33a0ee7
Bump the k8s-io group with 7 updates
dependabot[bot] Dec 31, 2024
fbfbf1a
Merge pull request #13555 from helm/dependabot/go_modules/dev-v3/k8s-…
mattfarina Dec 31, 2024
c3e5217
feat: allow installation by OCI digest
TerryHowe Sep 20, 2024
aba95b9
fix: issue with helm template and oci chart
TerryHowe Sep 20, 2024
949b2e6
fix: make ORAS reference private
TerryHowe Oct 24, 2024
0ac5d28
Merge pull request #13588 from mattfarina/v3-backport-oci-digest
gjenkins8 Jan 2, 2025
83dddb1
feat: Added multi-platform plugin hook support to v3
sabre1041 Dec 4, 2024
60fcce1
Tests for bugfix: Override subcharts with null values #12879
scottrigby Dec 25, 2024
ef2eb55
Add test case for removing an entire object
ryanhockstad Jan 3, 2025
54ffefb
Bump github.com/moby/term from 0.5.0 to 0.5.2
dependabot[bot] Jan 3, 2025
d6db69e
bump version to v3.17.0
mattfarina Jan 6, 2025
99e2544
Merge pull request #13605 from mattfarina/bump-version-3.17
mattfarina Jan 6, 2025
a1c0ae8
Bump golang.org/x/term from 0.27.0 to 0.28.0
dependabot[bot] Jan 6, 2025
da6f9c4
Merge pull request #13606 from helm/dependabot/go_modules/dev-v3/gola…
mattfarina Jan 7, 2025
b029d74
Bump golang.org/x/crypto from 0.31.0 to 0.32.0
dependabot[bot] Jan 7, 2025
2dfb447
Merge pull request #13612 from helm/dependabot/go_modules/dev-v3/gola…
mattfarina Jan 8, 2025
20db222
Merge pull request #13596 from helm/dependabot/go_modules/dev-v3/gith…
robertsirc Jan 8, 2025
a79be7d
Bump github.com/containerd/containerd from 1.7.24 to 1.7.25
dependabot[bot] Jan 10, 2025
fba9d08
Ensuring the file paths are clean prior to passing to securejoin
mattfarina Jan 14, 2025
326c1e3
add test for nullifying nested global value
ryanhockstad Jan 16, 2025
e600cb6
Merge pull request #13620 from helm/dependabot/go_modules/dev-v3/gith…
robertsirc Jan 17, 2025
8e86e76
Bump github.com/cyphar/filepath-securejoin from 0.3.6 to 0.4.0
dependabot[bot] Jan 17, 2025
4840b66
Merge pull request #13631 from helm/dependabot/go_modules/dev-v3/gith…
robertsirc Jan 17, 2025
023d788
Merge pull request #13634 from mattfarina/cleanup-securejoin-v3
robertsirc Jan 17, 2025
2ebce78
fix: check group for resource info match
jiashengz Dec 31, 2024
6ed9d2f
Merge pull request #13592 from stevehipwell/add-plugin-platform-hooks-v3
gjenkins8 Jan 18, 2025
9aff8bd
Merge pull request #13644 from mattfarina/backport-13583
mattfarina Jan 22, 2025
3bc3751
build(deps): bump the k8s-io group with 7 updates
dependabot[bot] Jan 22, 2025
b85e21c
Merge pull request #13645 from helm/dependabot/go_modules/dev-v3/k8s-…
robertsirc Jan 24, 2025
80f87ab
Merge pull request #13654 from ryanhockstad/subchart-null
gjenkins8 Jan 27, 2025
f1db83f
build(deps): bump github.com/evanphx/json-patch
dependabot[bot] Jan 28, 2025
578436d
Merge pull request #13677 from helm/dependabot/go_modules/dev-v3/gith…
robertsirc Jan 31, 2025
03747d9
build(deps): bump github.com/cyphar/filepath-securejoin
dependabot[bot] Jan 31, 2025
7680623
build(deps): bump github.com/spf13/pflag from 1.0.5 to 1.0.6
dependabot[bot] Jan 31, 2025
9b5bca6
Merge pull request #13849 from helm/dependabot/go_modules/dev-v3/gith…
gjenkins8 Feb 3, 2025
c492030
Merge pull request #13676 from helm/dependabot/go_modules/dev-v3/gith…
gjenkins8 Feb 3, 2025
711cef8
build(deps): bump golang.org/x/text from 0.21.0 to 0.22.0
dependabot[bot] Feb 4, 2025
d38aa65
Merge pull request #30195 from helm/dependabot/go_modules/dev-v3/gola…
robertsirc Feb 5, 2025
3a87c68
build(deps): bump golang.org/x/term from 0.28.0 to 0.29.0
dependabot[bot] Feb 5, 2025
606dbe5
Merge pull request #30194 from helm/dependabot/go_modules/dev-v3/gola…
robertsirc Feb 5, 2025
e2c7986
Merge pull request #13534 from althmoha/dev-v3-12987
mattfarina Feb 5, 2025
959d643
build(deps): bump golang.org/x/crypto from 0.32.0 to 0.33.0
dependabot[bot] Feb 10, 2025
b2966d0
Merge pull request #30479 from helm/dependabot/go_modules/dev-v3/gola…
robertsirc Feb 12, 2025
a2413aa
build(deps): bump the k8s-io group with 7 updates
dependabot[bot] Feb 13, 2025
a31c170
Merge pull request #30510 from helm/dependabot/go_modules/dev-v3/k8s-…
mattfarina Feb 18, 2025
4c2f88b
Moving to SetOut and SetErr for Cobra
mattfarina Feb 19, 2025
1868018
Merge pull request #30551 from mattfarina/update-cobra-command-setoutput
robertsirc Feb 19, 2025
d1687ba
build(deps): bump github.com/spf13/cobra from 1.8.1 to 1.9.1
dependabot[bot] Feb 19, 2025
30726d5
Merge pull request #30537 from helm/dependabot/go_modules/dev-v3/gith…
mattfarina Feb 19, 2025
e7fa545
build(deps): bump github.com/distribution/distribution/v3
dependabot[bot] Feb 19, 2025
cedb165
Merge pull request #30490 from helm/dependabot/go_modules/dev-v3/gith…
robertsirc Feb 19, 2025
461197f
feat: Add flags to enable CPU and memory profiling
banjoh Nov 25, 2024
483ebf9
Additional review fixes from PR
banjoh Nov 25, 2024
a32e11b
Update CONTRIBUTING.md
banjoh Dec 11, 2024
3b43f7b
Update CONTRIBUTING.md
banjoh Dec 11, 2024
4c50f01
Move pprof paths to HELM_PPROF env variable
banjoh Dec 11, 2024
b39411a
Fix linter warning
banjoh Dec 11, 2024
c7dfa87
Prefer environment variables to CLI flags
banjoh Jan 27, 2025
af24101
Update CONTRIBUTING guide
banjoh Jan 27, 2025
867c97e
chore: update profiling doc in CONTRIBUTING.md
banjoh Feb 17, 2025
996ad84
Update cmd/helm/profiling.go
banjoh Feb 17, 2025
a9e2075
chore: use []error instead of []string
banjoh Feb 17, 2025
ca90972
Add hook annotations to output pod logs to client on success and fail
Bez625 Jan 7, 2022
20f859c
Tidy up imports
Bez625 May 3, 2023
4cb639e
Fix lint
Bez625 Aug 28, 2024
3c44515
Update based on review comments
Bez625 Jan 14, 2025
5367001
Update based on review comments
Bez625 Jan 14, 2025
3cd6afe
add short circuit return
scottrigby Feb 20, 2025
c77f4ec
remove comments about previous functionality
scottrigby Feb 20, 2025
2f79afb
fix err check
scottrigby Feb 20, 2025
97b0e11
clarify fix error message
scottrigby Feb 20, 2025
b8e1387
Add HookOutputFunc and generic yaml unmarshaller
Bez625 Feb 21, 2025
5739197
Refactor based on review comment
Bez625 Feb 21, 2025
2aa90b8
Refactor based on review comment
Bez625 Feb 21, 2025
bcb83e4
Fix cherry-pick helm.sh/helm/v4 -> helm.sh/helm/v3
scottrigby Feb 22, 2025
fc94f1a
Merge pull request #30552 from scottrigby/dev-v3-backport-13481
scottrigby Feb 22, 2025
6d64160
build(deps): bump golang.org/x/crypto from 0.33.0 to 0.35.0
dependabot[bot] Feb 24, 2025
e8256c3
Merge pull request #30581 from helm/dependabot/go_modules/dev-v3/gola…
robertsirc Feb 24, 2025
8d038b5
Merge pull request #30570 from scottrigby/dev-v3-backport-10309
scottrigby Feb 25, 2025
89361c9
build(deps): bump github.com/containerd/containerd from 1.7.25 to 1.7.26
dependabot[bot] Feb 27, 2025
f292ef7
Merge pull request #30605 from helm/dependabot/go_modules/dev-v3/gith…
robertsirc Feb 28, 2025
2f22d55
build(deps): bump github.com/opencontainers/image-spec
dependabot[bot] Mar 3, 2025
ec09e4f
Merge pull request #30620 from helm/dependabot/go_modules/dev-v3/gith…
robertsirc Mar 4, 2025
0911b9c
build(deps): bump golang.org/x/crypto from 0.35.0 to 0.36.0
dependabot[bot] Mar 5, 2025
98dbe1a
Merge pull request #30626 from helm/dependabot/go_modules/dev-v3/gola…
scottrigby Mar 6, 2025
0648918
build(deps): bump the k8s-io group with 7 updates
dependabot[bot] Mar 12, 2025
2b12490
Updating to 0.37.0 for x/net
mattfarina Mar 13, 2025
24d73fe
Merge pull request #30666 from mattfarina/bump-x-net-0.36.0-v3
mattfarina Mar 13, 2025
950efff
Merge pull request #30659 from helm/dependabot/go_modules/dev-v3/k8s-…
robertsirc Mar 13, 2025
c188441
chore(oci): upgrade to ORAS v2
TerryHowe Jan 2, 2025
674e882
automatic fallback to http
TerryHowe Feb 7, 2025
1435ec7
Update pkg/registry/fallback.go
TerryHowe Mar 13, 2025
009da9e
Merge pull request #30296 from TerryHowe/orasv2-v3-backport
gjenkins8 Mar 14, 2025
dcc286c
build(deps): bump github.com/containerd/containerd from 1.7.26 to 1.7.27
dependabot[bot] Mar 17, 2025
07a57c6
Merge pull request #30678 from helm/dependabot/go_modules/dev-v3/gith…
robertsirc Mar 18, 2025
5e7f12d
Report as debug log, the time spent waiting for resources
benoittgt Mar 19, 2025
422c58e
Fix typo
benoittgt Mar 20, 2025
78a052c
Merge pull request #30689 from benoittgt/report-time-waited-v3
mattfarina Mar 21, 2025
3ce10e4
Unarchiving fix
mattfarina Apr 7, 2025
f494115
Merge commit from fork
mattfarina Apr 9, 2025
4ad1ccd
Bumps github.com/distribution/distribution/v3 from 3.0.0-rc.3 to 3.0.0
benoittgt Apr 11, 2025
6667252
Permit more Go version and not only 1.23.8
benoittgt Apr 11, 2025
3d490e1
Merge pull request #30740 from benoittgt/bump-distribution-v3
robertsirc Apr 11, 2025
017f9fa
Testing text bump
benoittgt Apr 11, 2025
0109c05
Merge pull request #30745 from benoittgt/testing-vuln
robertsirc Apr 13, 2025
741b5be
build(deps): bump golang.org/x/term from 0.30.0 to 0.31.0
dependabot[bot] Apr 13, 2025
0c106e7
Merge pull request #30750 from helm/dependabot/go_modules/dev-v3/gola…
robertsirc Apr 14, 2025
6fa95c8
build(deps): bump golang.org/x/crypto from 0.36.0 to 0.37.0
dependabot[bot] Apr 14, 2025
63dd569
Merge pull request #30753 from helm/dependabot/go_modules/dev-v3/gola…
mattfarina Apr 15, 2025
3538c2a
build(deps): bump github.com/rubenv/sql-migrate from 1.7.1 to 1.7.2
dependabot[bot] Apr 15, 2025
9dbc049
Merge pull request #30756 from helm/dependabot/go_modules/dev-v3/gith…
robertsirc Apr 15, 2025
4ee3a19
Fix --take-ownership
p-se Mar 21, 2025
0906fe7
Add install test for TakeOwnership flag
banjoh Apr 17, 2025
5df2f30
build(deps): bump github.com/rubenv/sql-migrate from 1.7.2 to 1.8.0
dependabot[bot] Apr 17, 2025
2a5f83b
backport #30677to dev3
dongjiang1989 Apr 18, 2025
85ec62f
Merge pull request #30769 from helm/dependabot/go_modules/dev-v3/gith…
robertsirc Apr 18, 2025
9180072
Merge pull request #30771 from dongjiang1989/backport-30677-to-dev-v3
mattfarina Apr 18, 2025
087fa18
Bump toml
benoittgt Apr 19, 2025
845fb3e
Merge pull request #30776 from benoittgt/bump-dev-tom-dev-v3
gjenkins8 Apr 19, 2025
e4bc4a3
Merge pull request #30768 from banjoh/em/fix-take-ownership
scottrigby Apr 21, 2025
f9ab8f7
Bump net package to avoid CVE on dev-v3
benoittgt Apr 23, 2025
5339003
Merge pull request #30791 from benoittgt/fix-30780
robertsirc Apr 23, 2025
3ea4938
Merge remote-tracking branch 'upstream/dev-v3' into lcabrol/update-he…
lelithium Apr 28, 2025
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
The table of contents is too big for display.
Diff view
Diff view
  •  
  •  
  •  
14 changes: 0 additions & 14 deletions .circleci/config.yml

This file was deleted.

12 changes: 7 additions & 5 deletions .github/dependabot.yml
Original file line number Diff line number Diff line change
Expand Up @@ -8,11 +8,13 @@ updates:
groups:
k8s.io:
patterns:
- "k8s.io/*"
exclude-patterns:
- "k8s.io/utils"
- "k8s.io/klog/v2"
- "k8s.io/kube-openapi"
- "k8s.io/api"
- "k8s.io/apiextensions-apiserver"
- "k8s.io/apimachinery"
- "k8s.io/apiserver"
- "k8s.io/cli-runtime"
- "k8s.io/client-go"
- "k8s.io/kubectl"
- package-ecosystem: "github-actions"
directory: "/"
schedule:
Expand Down
2 changes: 2 additions & 0 deletions .github/env
Original file line number Diff line number Diff line change
@@ -0,0 +1,2 @@
GOLANG_VERSION=1.24
GOLANGCI_LINT_VERSION=v1.64
2 changes: 1 addition & 1 deletion .github/pull_request_template.md
Original file line number Diff line number Diff line change
Expand Up @@ -7,6 +7,6 @@
**Special notes for your reviewer**:

**If applicable**:
- [ ] this PR contains documentation
- [ ] this PR contains user facing changes (the `docs needed` label should be applied if so)
- [ ] this PR contains unit tests
- [ ] this PR has been tested for backwards compatibility
18 changes: 0 additions & 18 deletions .github/workflows/asset-transparency.yaml

This file was deleted.

34 changes: 16 additions & 18 deletions .github/workflows/build-test.yml
Original file line number Diff line number Diff line change
Expand Up @@ -2,34 +2,32 @@ name: build-test
on:
push:
branches:
- 'main'
- 'release-**'
- "main"
- "dev-v3"
- "release-**"
pull_request:
branches:
- main
- "main"
- "dev-v3"

permissions:
contents: read

jobs:
build:
runs-on: ubuntu-latest
steps:
- name: Checkout source code
uses: actions/checkout@f43a0e5ff2bd294095638e18286ca9a3d1956744 # pin@v3.6.0
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # pin@v4.2.2
- name: Add variables to environment file
run: cat ".github/env" >> "$GITHUB_ENV"
- name: Setup Go
uses: actions/setup-go@93397bea11091df50f3d7e59dc26a7711a8bcfbe # pin@4.1.0
uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # pin@5.1.0
with:
go-version: '1.20'
- name: Install golangci-lint
run: |
curl -sSLO https://github.com/golangci/golangci-lint/releases/download/v$GOLANGCI_LINT_VERSION/golangci-lint-$GOLANGCI_LINT_VERSION-linux-amd64.tar.gz
shasum -a 256 golangci-lint-$GOLANGCI_LINT_VERSION-linux-amd64.tar.gz | grep "^$GOLANGCI_LINT_SHA256 " > /dev/null
tar -xf golangci-lint-$GOLANGCI_LINT_VERSION-linux-amd64.tar.gz
sudo mv golangci-lint-$GOLANGCI_LINT_VERSION-linux-amd64/golangci-lint /usr/local/bin/golangci-lint
rm -rf golangci-lint-$GOLANGCI_LINT_VERSION-linux-amd64*
env:
GOLANGCI_LINT_VERSION: '1.51.2'
GOLANGCI_LINT_SHA256: '4de479eb9d9bc29da51aec1834e7c255b333723d38dbd56781c68e5dddc6a90b'
- name: Test style
run: make test-style
go-version: '${{ env.GOLANG_VERSION }}'
check-latest: true
- name: Test source headers are present
run: make test-source-headers
- name: Run unit tests
run: make test-coverage
- name: Test build
Expand Down
20 changes: 14 additions & 6 deletions .github/workflows/codeql-analysis.yml
Original file line number Diff line number Diff line change
Expand Up @@ -13,13 +13,21 @@ name: "CodeQL"

on:
push:
branches: [ main ]
branches:
- main
- dev-v3
pull_request:
# The branches below must be a subset of the branches above
branches: [ main ]
branches:
- main
- dev-v3
schedule:
- cron: '29 6 * * 6'

permissions:
contents: read
security-events: write

jobs:
analyze:
name: Analyze
Expand All @@ -35,11 +43,11 @@ jobs:

steps:
- name: Checkout repository
uses: actions/checkout@f43a0e5ff2bd294095638e18286ca9a3d1956744 # pin@v3.6.0
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # pin@v4.2.2

# Initializes the CodeQL tools for scanning.
- name: Initialize CodeQL
uses: github/codeql-action/init@00e563ead9f72a8461b24876bee2d0c2e8bd2ee8 # pinv2.21.5
uses: github/codeql-action/init@4dd16135b69a43b6c8efb853346f8437d92d3c93 # pinv3.26.6
with:
languages: ${{ matrix.language }}
# If you wish to specify custom queries, you can do so here or in a config file.
Expand All @@ -50,7 +58,7 @@ jobs:
# Autobuild attempts to build any compiled languages (C/C++, C#, or Java).
# If this step fails, then you should remove it and run the build manually (see below)
- name: Autobuild
uses: github/codeql-action/autobuild@00e563ead9f72a8461b24876bee2d0c2e8bd2ee8 # pinv2.21.5
uses: github/codeql-action/autobuild@4dd16135b69a43b6c8efb853346f8437d92d3c93 # pinv3.26.6

# ℹ️ Command-line programs to run using the OS shell.
# 📚 https://git.io/JvXDl
Expand All @@ -64,4 +72,4 @@ jobs:
# make release

- name: Perform CodeQL Analysis
uses: github/codeql-action/analyze@00e563ead9f72a8461b24876bee2d0c2e8bd2ee8 # pinv2.21.5
uses: github/codeql-action/analyze@4dd16135b69a43b6c8efb853346f8437d92d3c93 # pinv3.26.6
30 changes: 30 additions & 0 deletions .github/workflows/golangci-lint.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,30 @@
name: golangci-lint

on:
push:
pull_request:

permissions:
contents: read

jobs:
golangci:
name: golangci-lint
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # pin@v4.2.2

- name: Add variables to environment file
run: cat ".github/env" >> "$GITHUB_ENV"

- name: Setup Go
uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # pin@5.1.0
with:
go-version: '${{ env.GOLANG_VERSION }}'
check-latest: true

- name: golangci-lint
uses: golangci/golangci-lint-action@971e284b6050e8a5849b72094c50ab08da042db8 #pin@6.1.1
with:
version: ${{ env.GOLANGCI_LINT_VERSION }}
26 changes: 26 additions & 0 deletions .github/workflows/govulncheck.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,26 @@
name: govulncheck
on:
push:
paths:
- go.sum
schedule:
- cron: "0 0 * * *"

permissions: read-all

jobs:
govulncheck:
name: govulncheck
runs-on: ubuntu-latest
steps:
- name: Add variables to environment file
run: cat ".github/env" >> "$GITHUB_ENV"
- name: Setup Go
uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # pin@5.1.0
with:
go-version: '${{ env.GOLANG_VERSION }}'
check-latest: true
- name: govulncheck
uses: golang/govulncheck-action@b625fbe08f3bccbe446d94fbf87fcc875a4f50ee # pin@1.0.4
with:
go-package: ./...
56 changes: 46 additions & 10 deletions .github/workflows/release.yml
Original file line number Diff line number Diff line change
Expand Up @@ -7,6 +7,8 @@ on:
branches:
- main

permissions: read-all

# Note the only differences between release and canary-release jobs are:
# - only canary passes --overwrite flag
# - the VERSION make variable passed to 'make dist checksum' is expected to
Expand All @@ -15,24 +17,43 @@ on:
jobs:
release:
if: startsWith(github.ref, 'refs/tags/v')
runs-on: ubuntu-latest
runs-on: ubuntu-latest-16-cores
steps:
- name: Checkout source code
uses: actions/checkout@f43a0e5ff2bd294095638e18286ca9a3d1956744 # pin@v3.6.0
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # pin@v4.2.2
with:
fetch-depth: 0

- name: Add variables to environment file
run: cat ".github/env" >> "$GITHUB_ENV"

- name: Setup Go
uses: actions/setup-go@93397bea11091df50f3d7e59dc26a7711a8bcfbe # pin@4.1.0
uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # pin@5.1.0
with:
go-version: '1.20'
go-version: '${{ env.GOLANG_VERSION }}'

- name: Run unit tests
run: make test-coverage

- name: Build Helm Binaries
run: |
make build-cross
set -eu -o pipefail

make build-cross VERSION="${{ github.ref_name }}"
make dist checksum VERSION="${{ github.ref_name }}"

- name: Set latest version
run: |
set -eu -o pipefail

mkdir -p _dist_versions

# Push the latest semver tag, excluding prerelease tags
LATEST_VERSION="$(git tag | sort -r --version-sort | grep '^v[0-9]' | grep -v '-' | head -n1)"
echo "LATEST_VERSION=${LATEST_VERSION}"
echo "${LATEST_VERSION}" > _dist_versions/helm-latest-version
echo "${LATEST_VERSION}" > _dist_versions/helm3-latest-version

- name: Upload Binaries
uses: bacongobbler/azure-blob-storage-upload@50f7d898b7697e864130ea04c303ca38b5751c50 # pin@3.0.0
env:
Expand All @@ -44,17 +65,32 @@ jobs:
connection_string: ${{ secrets.AZURE_STORAGE_CONNECTION_STRING }}
extra_args: '--pattern helm-*'

- name: Upload Version tag files
uses: bacongobbler/azure-blob-storage-upload@50f7d898b7697e864130ea04c303ca38b5751c50 # pin@3.0.0
env:
AZURE_STORAGE_CONNECTION_STRING: "${{ secrets.AZURE_STORAGE_CONNECTION_STRING }}"
AZURE_STORAGE_CONTAINER_NAME: "${{ secrets.AZURE_STORAGE_CONTAINER_NAME }}"
with:
overwrite: 'true'
source_dir: _dist_versions
container_name: ${{ secrets.AZURE_STORAGE_CONTAINER_NAME }}
connection_string: ${{ secrets.AZURE_STORAGE_CONNECTION_STRING }}

canary-release:
runs-on: ubuntu-latest
runs-on: ubuntu-latest-16-cores
if: github.ref == 'refs/heads/main'
steps:
- name: Checkout source code
uses: actions/checkout@f43a0e5ff2bd294095638e18286ca9a3d1956744 # pin@v3.6.0
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # pin@v4.2.2

- name: Add variables to environment file
run: cat ".github/env" >> "$GITHUB_ENV"

- name: Setup Go
uses: actions/setup-go@93397bea11091df50f3d7e59dc26a7711a8bcfbe # pin@4.1.0
uses: actions/setup-go@41dfa10bad2bb2ae585af6ee5bb4d7d973ad74ed # pin@5.1.0
with:
go-version: '1.20'
go-version: '${{ env.GOLANG_VERSION }}'
check-latest: true

- name: Run unit tests
run: make test-coverage
Expand Down
69 changes: 69 additions & 0 deletions .github/workflows/scorecards.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,69 @@
name: Scorecard supply-chain security
on:
# For Branch-Protection check. Only the default branch is supported. See
# https://github.com/ossf/scorecard/blob/main/docs/checks.md#branch-protection
branch_protection_rule:
# To guarantee Maintained check is occasionally updated. See
# https://github.com/ossf/scorecard/blob/main/docs/checks.md#maintained
schedule:
- cron: '25 7 * * 0'
push:
branches: [ "main" ]

# Declare default permissions as read only.
permissions: read-all

jobs:
analysis:
name: Scorecard analysis
runs-on: ubuntu-latest
permissions:
# Needed to upload the results to code-scanning dashboard.
security-events: write
# Needed to publish results and get a badge (see publish_results below).
id-token: write
# Uncomment the permissions below if installing in a private repository.
# contents: read
# actions: read

steps:
- name: "Checkout code"
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
with:
persist-credentials: false

- name: "Run analysis"
uses: ossf/scorecard-action@62b2cac7ed8198b15735ed49ab1e5cf35480ba46 # v2.4.0
with:
results_file: results.sarif
results_format: sarif
# (Optional) "write" PAT token. Uncomment the `repo_token` line below if:
# - you want to enable the Branch-Protection check on a *public* repository, or
# - you are installing Scorecard on a *private* repository
# To create the PAT, follow the steps in https://github.com/ossf/scorecard-action?tab=readme-ov-file#authentication-with-fine-grained-pat-optional.
# repo_token: ${{ secrets.SCORECARD_TOKEN }}

# Public repositories:
# - Publish results to OpenSSF REST API for easy access by consumers
# - Allows the repository to include the Scorecard badge.
# - See https://github.com/ossf/scorecard-action#publishing-results.
# For private repositories:
# - `publish_results` will always be set to `false`, regardless
# of the value entered here.
publish_results: true

# Upload the results as artifacts (optional). Commenting out will disable uploads of run results in SARIF
# format to the repository Actions tab.
- name: "Upload artifact"
uses: actions/upload-artifact@97a0fba1372883ab732affbe8f94b823f91727db # v3.pre.node20
with:
name: SARIF file
path: results.sarif
retention-days: 5

# Upload the results to GitHub's code scanning dashboard (optional).
# Commenting out will disable upload of results to your repo's Code Scanning dashboard
- name: "Upload to code-scanning"
uses: github/codeql-action/upload-sarif@v3
with:
sarif_file: results.sarif
Loading
Loading