-
v0.1.56 Stable
released this
2026-07-18 18:08:16 +00:00 | 377 commits to trunk since this releaseAdded
registryStoreseam on the Workflows XRD (platform-collapse Phase 2, gate-prep). Mirrors the
minioStoreseam: the zot registry ExternalSecrets in argo-workflows-base now reference
zot-${REGISTRY_STORE}-registry-credentials, whereREGISTRY_STOREdefaults totenantName(tenants
unchanged) and the Optionalspec.registryStoreoverrides it.instances/workflows-platform.yamlsets
registryStore: aliceso the platform singleton borrowszot-alice-registry-credentialsduring dual-run
(registry/zot is still per-tenantregistry-alice; nozot-platformstore exists until Phase 3). Fixes
theregistry-credentials/zot-admin-credentialsSecretSyncedError in workflows-platform. Requires the
matching seanfarm argo-workflows-base change (zot-${TENANT}-→zot-${REGISTRY_STORE}-).
Included changes (v0.1.55 -> v0.1.56)
b37b5da71e9afeat(workflows): registryStore seam → platform borrows zot-alice store (gate-prep)
Downloads
-
Source code (ZIP)
0 downloads
-
Source code (TAR.GZ)
0 downloads
-
v0.1.55 Stable
released this
2026-07-18 04:20:52 +00:00 | 381 commits to trunk since this releaseChanged
- Incremental release.
Included changes (v0.1.54 -> v0.1.55)
d69c4dbc8733feat(workflows): Workflows/platform singleton claim (platform-collapse P2 A2)
Downloads
-
Source code (ZIP)
0 downloads
-
Source code (TAR.GZ)
0 downloads
-
v0.1.54 Stable
released this
2026-07-18 03:47:23 +00:00 | 385 commits to trunk since this releaseAdded
- Platform workflows MinIO slice +
minioStoreseam (platform-collapse Phase 2, A4).apis/obsbucket
now also creates theplatform-workflows+platform-sccachebuckets (the existingolly-platform
scoped user'ss3:* on platform-*policy covers them) and a scoped ClusterSecretStore
minio-platform-workflows-s3-credentials(conditions: workflows/buildkit/pkg-platform) exposing the
scoped key — NOT the MinIO root storeminio-platform-s3-credentials(deliberately cnpg-scoped per
audit M26/H2). Adds an Optionalspec.minioStoreto XWorkflows + aMINIO_STOREsubstitute on the
argo-workflows-base Kustomization (defaults totenantName), so the platform singleton can point its S3
ExternalSecrets at the scoped store. Additive — alice/bob unaffected (MINIO_STORE=tenantName).
Included changes (v0.1.53 -> v0.1.54)
525efbb73b5ffeat(workflows): platform MinIO slice + minioStore seam (platform-collapse P2 A4)
Downloads
-
Source code (ZIP)
0 downloads
-
Source code (TAR.GZ)
0 downloads
- Platform workflows MinIO slice +
-
v0.1.53 Stable
released this
2026-07-17 20:50:15 +00:00 | 389 commits to trunk since this releaseChanged
- XWorkflows singleton seams (platform-collapse Phase 2, foundation). Add optional
spec.oidcTenant+spec.portalTenantto the XWorkflows XRD and the matching Optional
override patches inapis/workflows/composition.yaml(mirrors the argocd Phase-1 seams), plus a
platform: "1236"key in the BUILDKIT_HOSTPORT map. Purely additive — the alice XR sets neither
field so it re-renders identically; this prepares a futureWorkflows/platformsingleton claim.
Changed
- Wire the argocd-platform browser route (
argocd-platform.sean.farm). After the Phase 1
argocd consolidation droppedargocd-alice, the platform instance's HTTPRoutes dangled on the
nonexistentportal-platformgateway. Add an optionalspec.portalTenanttoXArgoCD
(mirrorsoidcTenant) so the platform instance's routes attach toportal-alice's apex-edge
gateway (instances/argocd-platform.yamlsetsportalTenant: alice), and repoint the
apis/portalargocd listener + cert + tile fromargocd.%stoargocd-platform.%swith
allowedRoutes → theargocd-platformnamespace (mirrors the olly grafana/vm singleton pattern).
Included changes (v0.1.52 -> v0.1.53)
ec7f9c670854feat(workflows): XWorkflows singleton seams (platform-collapse P2 foundation)
Downloads
-
Source code (ZIP)
0 downloads
-
Source code (TAR.GZ)
0 downloads
- XWorkflows singleton seams (platform-collapse Phase 2, foundation). Add optional
-
v0.1.52 Stable
released this
2026-07-17 20:04:12 +00:00 | 393 commits to trunk since this releaseChanged
- Wire the argocd-platform browser route (
argocd-platform.sean.farm). After the Phase 1
argocd consolidation droppedargocd-alice, the platform instance's HTTPRoutes dangled on the
nonexistentportal-platformgateway. Add an optionalspec.portalTenanttoXArgoCD
(mirrorsoidcTenant) so the platform instance's routes attach toportal-alice's apex-edge
gateway (instances/argocd-platform.yamlsetsportalTenant: alice), and repoint the
apis/portalargocd listener + cert + tile fromargocd.%stoargocd-platform.%swith
allowedRoutes → theargocd-platformnamespace (mirrors the olly grafana/vm singleton pattern).
Included changes (v0.1.51 -> v0.1.52)
70db0f9ac4c6feat(argocd): wire argocd-platform.sean.farm browser route via portal-alice
Downloads
-
Source code (ZIP)
0 downloads
-
Source code (TAR.GZ)
0 downloads
- Wire the argocd-platform browser route (
-
v0.1.51 Stable
released this
2026-07-17 19:44:43 +00:00 | 397 commits to trunk since this releaseChanged
- Drop
XArgoCDfrom the tenant Stack (platform-collapse Phase 1).apis/stack/composition.yaml
no longer renders a per-tenantargocd-{tenant}; the pipelines CD engine now runs on the
cluster-singletonargocd-platform(instances/argocd-platform.yaml). Theapis/argocd
XRD/Composition is retained — it backs that platform instance.
Included changes (v0.1.50 -> v0.1.51)
b72484bf3892feat(stack): drop XArgoCD child — argocd is a platform singleton (P1)
Downloads
-
Source code (ZIP)
0 downloads
-
Source code (TAR.GZ)
0 downloads
- Drop
-
v0.1.50 Stable
released this
2026-07-17 16:08:46 +00:00 | 401 commits to trunk since this releaseChanged
- Incremental release.
Included changes (v0.1.49 -> v0.1.50)
573fb1fc57c4chore(gitmirror): retire seanfarm-workflows
Downloads
-
Source code (ZIP)
0 downloads
-
Source code (TAR.GZ)
0 downloads
-
v0.1.49 Stable
released this
2026-07-17 15:53:24 +00:00 | 405 commits to trunk since this releaseChanged
- Incremental release.
Included changes (v0.1.48 -> v0.1.49)
9852aab15b57chore(staticsite): remove dead someara-resume StaticSite instance
Downloads
-
Source code (ZIP)
0 downloads
-
Source code (TAR.GZ)
0 downloads
-
v0.1.48 Stable
released this
2026-07-17 15:38:41 +00:00 | 409 commits to trunk since this releaseChanged
- Incremental release.
Included changes (v0.1.47 -> v0.1.48)
610286677177fix(registry): mayastor StorageClass -> mayastor-repl5
Downloads
-
Source code (ZIP)
0 downloads
-
Source code (TAR.GZ)
0 downloads
-
v0.1.47 Stable
released this
2026-07-17 12:38:49 +00:00 | 414 commits to trunk since this releaseChanged
- Forgejo app 15.0.3 → 16.0.0-rootless. Bumped the
forgejoVersionXRD default
(apis/forgejo) and the Stack composition value. Verified compatible: shared CNPG is
PG18 (v16 minimum is PG12); no reverse-proxy auth configured (the v16
REVERSE_PROXY_TRUSTED_PROXIESdefault change from*is inert here); forgejo-operator
drives the stable REST API and clears every SDK version gate (Forgejo advertises its
product major at /api/v1/version). Watch on nextmake rebuild: v16's git-mirror SSRF
hardening setshttp.followRedirects=false, so a ForgejoRepository seed from a redirecting
clone URL would fail (codeberg canonical URLs are direct — low risk).
Included changes (v0.1.46 -> v0.1.47)
3825aa3292dbfeat(forgejo): app 15.0.3 -> 16.0.0-rootless
Downloads
-
Source code (ZIP)
0 downloads
-
Source code (TAR.GZ)
0 downloads
- Forgejo app 15.0.3 → 16.0.0-rootless. Bumped the