Skip to content

chore: Helm chart 0.11.0-rc.1 release#1098

Merged
fabriziosestito merged 8 commits intomainfrom
updatecli_main_bf52360c67a655d2cfab8230a4495b4bd0b6775d7acb811509efd0922bda81de
May 5, 2026
Merged

chore: Helm chart 0.11.0-rc.1 release#1098
fabriziosestito merged 8 commits intomainfrom
updatecli_main_bf52360c67a655d2cfab8230a4495b4bd0b6775d7acb811509efd0922bda81de

Conversation

@kubewarden-auth-token-generator
Copy link
Copy Markdown
Contributor

Automatic Helm chart 0.12.0 update.
This PR has been created by the automation used to automatically update the Helm charts when SBOMscanner is released or helm chart content is updated.
REMEMBER IF YOU WANT TO MERGE IN A SINGLE COMMIT CHANGES AND VERSION BUMP, YOU MUST SQUASH THE COMMIT BEFORE MERGING THIS PR!


Update SBOMscanner chart versions

Update Helm chart controller version

change detected: * key "$.controller.image.tag" updated from "v0.11.0-alpha1" to "v0.11.0-rc.1", in file "charts/sbomscanner/values.yaml"

v0.11.0-rc.1
- fix(ci): sbom digest parsing (#1097)
- docs(user-guide): add ScanJob target documentation (#1096)
- ci: harden run blocks against template injection (#1079)
- fix(storage): wait for NATS subscription before publishing in watcher (#1094)
- ci(govulncheck): upload results as SARIF to the security tab rather than failing (#1081)
- fix: several typos and old names (#1076)
- docs: use absolute links in README.md (#1074)
- fix: publisher formatting (#1063)
- fix: stream name for nats queue (#1025)
- chore: Helm chart support Rancher v2.15 (#1044)
- ci: add mcp image bump to helm chart update (#1023)
- build: bump to golang 1.26.2 (#1020)
- ci: govulncheck use the right version of go (#1018)
- ci: govulncheck ensure the proper version of Go is used (#1015)
- ci: allow jsonv2 when using govulncheck (#1013)
- ci: fix zizmor complain (#1012)
- ci: fix govulncheck GHA (#1011)

## 🚀 Features

- feat(helm): expose CNPG Cluster imageName (#1075)
- feat: ScanJob target (#1056)
- feat: mcp server (#1004)

## 🐛 Bug Fixes

- fix(deps): update github.com/aquasecurity/trivy-db digest to bd11dd4 (#1090)
- fix(deps): update k8s.io/kube-openapi digest to b7f5293 (#1091)
- fix(storage): avoid dropping ADD events after a concurrent store delete (#1082)
- fix(deps): update github.com/aquasecurity/trivy-db digest to 722777b (#1068)
- fix(deps): update k8s.io/kube-openapi digest to ec9c827 (#1051)
- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)

## 🧰 Maintenance

- chore(helm): add nameOverride and fullnameOverride value placeholders (#1095)
- chore: bump github.com/stephenafamo/bob from 0.42.0 to 0.43.0 (#1086)
- chore: bump github.com/docker/cli from 29.4.1+incompatible to 29.4.2+incompatible (#1088)
- chore: bump release-drafter/release-drafter from 7.2.0 to 7.2.1 (#1084)
- chore: bump github.com/modelcontextprotocol/go-sdk from 1.5.0 to 1.6.0 (#1085)
- fix(deps): update github.com/aquasecurity/trivy-db digest to bd11dd4 (#1090)
- fix(deps): update k8s.io/kube-openapi digest to b7f5293 (#1091)
- chore: bump github.com/nats-io/nats-server/v2 from 2.12.8 to 2.14.0 (#1087)
- build(deps): update all dependencies updates (major) (#1093)
- build(deps): update all dependencies updates (#1069)
- chore: bump modernc.org/sqlite from 1.49.1 to 1.50.0 (#1077)
- chore: bump github.com/nats-io/nats-server/v2 from 2.12.7 to 2.12.8 (#1080)
- chore: bump github.com/onsi/ginkgo/v2 from 2.28.1 to 2.28.2 (#1078)
- chore: bump github.com/aws/smithy-go from 1.25.0 to 1.25.1 (#1067)
- build(deps): update module github.com/avast/retry-go/v4 to v5 (#1070)
- fix(deps): update github.com/aquasecurity/trivy-db digest to 722777b (#1068)
- fix(deps): update k8s.io/kube-openapi digest to ec9c827 (#1051)
- build(deps): update all dependencies updates (#1053)
- chore: bump github.com/go-git/go-git/v5 from 5.17.1 to 5.18.0 (#1050)
- chore: bump modernc.org/sqlite from 1.48.2 to 1.49.1 (#1058)
- chore: bump github.com/jackc/pgx/v5 from 5.9.1 to 5.9.2 (#1059)
- chore: bump updatecli/updatecli-action from 3.1.1 to 3.1.3 (#1060)
- chore: bump sigs.k8s.io/e2e-framework from 0.6.0 to 0.7.0 (#1061)
- chore: bump github.com/docker/cli from 29.4.0+incompatible to 29.4.1+incompatible (#1062)
- build(deps): update module github.com/avast/retry-go/v4 to v5 (#1054)
- chore: bump the kubernetes group across 1 directory with 6 updates (#1045)
- chore: bump github.com/moby/spdystream from 0.5.0 to 0.5.1 (#1048)
- chore: bump github.com/nats-io/nats-server/v2 from 2.12.6 to 2.12.7 (#1042)
- chore: bump zizmorcore/zizmor-action from 0.5.2 to 0.5.3 (#1040)
- chore: bump actions/cache from 5.0.4 to 5.0.5 (#1041)
- chore: bump github.com/sigstore/timestamp-authority/v2 from 2.0.3 to 2.0.6 (#1039)
- build(deps): update all dependencies updates (major) (#994)
- chore: bump actions/github-script from 8.0.0 to 9.0.0 (#1029)
- chore: bump helm.sh/helm/v3 from 3.20.1 to 3.20.2 (#1035)
- build(deps): update all dependencies updates (#1037)
- chore: bump github.com/hashicorp/go-getter from 1.8.5 to 1.8.6 (#1036)
- chore: Helm chart 0.11.0 release (#1022)
- build(deps): update module github.com/modelcontextprotocol/go-sdk to v1.4.1 [security] (#1017)
- chore(deps): update github.com/alegrey91/trivy digest to bda9710 (#969)
- chore: bump go.opentelemetry.io/otel/sdk from 1.41.0 to 1.43.0 (#1005)
- build(deps): update all dependencies updates (#993)
- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)
- chore: bump modernc.org/sqlite from 1.48.0 to 1.48.1 (#995)
- chore: bump github.com/aws/aws-sdk-go-v2/service/s3 from 1.96.0 to 1.99.0 (#1001)
- chore: bump golang from 1.26.1 to 1.26.2 (#1002)
- chore: bump github.com/google/cel-go from 0.27.0 to 0.28.0 (#1003)
- chore: Helm chart 0.10.4 release (#997)
v0.11.0-alpha1
- build: bump to golang 1.26.2 (#1020)
- ci: govulncheck use the right version of go (#1018)
- ci: govulncheck ensure the proper version of Go is used (#1015)
- ci: allow jsonv2 when using govulncheck (#1013)
- ci: fix zizmor complain (#1012)
- ci: fix govulncheck GHA (#1011)

## 🚀 Features

- feat: mcp server (#1004)

## 🐛 Bug Fixes

- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)

## 🧰 Maintenance

- build(deps): update module github.com/modelcontextprotocol/go-sdk to v1.4.1 [security] (#1017)
- chore(deps): update github.com/alegrey91/trivy digest to bda9710 (#969)
- chore: bump go.opentelemetry.io/otel/sdk from 1.41.0 to 1.43.0 (#1005)
- build(deps): update all dependencies updates (#993)
- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)
- chore: bump modernc.org/sqlite from 1.48.0 to 1.48.1 (#995)
- chore: bump github.com/aws/aws-sdk-go-v2/service/s3 from 1.96.0 to 1.99.0 (#1001)
- chore: bump golang from 1.26.1 to 1.26.2 (#1002)
- chore: bump github.com/google/cel-go from 0.27.0 to 0.28.0 (#1003)
- chore: Helm chart 0.10.4 release (#997)
Update Helm chart README

1 file(s) updated with "# SBOMscanner\n\n![License](https://img.shields.io/github/license/kubewarden/sbomscanner)\n![GitHub branch check runs](https://img.shields.io/github/check-runs/kubewarden/sbomscanner/main)\n![GitHub contributors](https://img.shields.io/github/contributors/kubewarden/sbomscanner)\n[![Go Report Card](https://goreportcard.com/badge/github.com/kubewarden/sbomscanner)](https://goreportcard.com/report/github.com/kubewarden/sbomscanner)\n[![Go Reference](https://pkg.go.dev/badge/github.com/kubewarden/sbomscanner.svg)](https://pkg.go.dev/github.com/kubewarden/sbomscanner)\n\nA SBOM-centric security scanner for Kubernetes.\n\nThis is still being developed. For additional details, please refer to the [RFC](https://github.com/kubewarden/sbomscanner/tree/main/docs/rfc).\n\n# Documentation\n\n### Installation\n\n- [Quickstart](https://github.com/kubewarden/sbomscanner/blob/main/docs/installation/quickstart.md)\n- [Uninstall](https://github.com/kubewarden/sbomscanner/blob/main/docs/installation/uninstall.md)\n- [Helm Chart Values Configuration](https://github.com/kubewarden/sbomscanner/blob/main/docs/installation/helm-values.md)\n\n### Usage\n\n- [Scanning Registries](https://github.com/kubewarden/sbomscanner/blob/main/docs/user-guide/scanning-registries.md)\n- [Scanning Workloads](https://github.com/kubewarden/sbomscanner/blob/main/docs/user-guide/scanning-workloads.md)\n- [Querying Reports](https://github.com/kubewarden/sbomscanner/blob/main/docs/user-guide/querying-reports.md)\n- [Private Registries](https://github.com/kubewarden/sbomscanner/blob/main/docs/user-guide/private-registries.md)\n- [VEX Support and VEXHub Integration](https://github.com/kubewarden/sbomscanner/blob/main/docs/user-guide/vex.md)\n- [Air Gap Support](https://github.com/kubewarden/sbomscanner/blob/main/docs/user-guide/airgap-support.md)\n- [MCP Server (Experimental)](https://github.com/kubewarden/sbomscanner/blob/main/docs/user-guide/mcp-server.md)\n\n### Troubleshooting\n\n- [Collecting logs](https://github.com/kubewarden/sbomscanner/blob/main/docs/troubleshooting/collecting-logs.md)\n\n### Development\n\n- [Contributing guidelines](https://github.com/kubewarden/sbomscanner/blob/main/CONTRIBUTING.md)\n\n### Contact\n\nGet in touch with us on Slack: join the [`kubewarden` channel](https://kubernetes.slack.com/?redir=%2Fmessages%2Fkubewarden) hosted by the official Kubernetes workspace 👨\u200d💻 💬 👩\u200d💻\n\n# Credits\n\nThe storage API server is based on the [Kubernetes sample-apiserver](https://github.com/kubernetes/sample-apiserver) project.\n": * charts/sbomscanner/README.md

Update Helm chart appVersion

change detected: * key "$.appVersion" updated from "v0.11.0-alpha1" to "v0.11.0-rc.1", in file "charts/sbomscanner/Chart.yaml"

v0.11.0-rc.1
- fix(ci): sbom digest parsing (#1097)
- docs(user-guide): add ScanJob target documentation (#1096)
- ci: harden run blocks against template injection (#1079)
- fix(storage): wait for NATS subscription before publishing in watcher (#1094)
- ci(govulncheck): upload results as SARIF to the security tab rather than failing (#1081)
- fix: several typos and old names (#1076)
- docs: use absolute links in README.md (#1074)
- fix: publisher formatting (#1063)
- fix: stream name for nats queue (#1025)
- chore: Helm chart support Rancher v2.15 (#1044)
- ci: add mcp image bump to helm chart update (#1023)
- build: bump to golang 1.26.2 (#1020)
- ci: govulncheck use the right version of go (#1018)
- ci: govulncheck ensure the proper version of Go is used (#1015)
- ci: allow jsonv2 when using govulncheck (#1013)
- ci: fix zizmor complain (#1012)
- ci: fix govulncheck GHA (#1011)

## 🚀 Features

- feat(helm): expose CNPG Cluster imageName (#1075)
- feat: ScanJob target (#1056)
- feat: mcp server (#1004)

## 🐛 Bug Fixes

- fix(deps): update github.com/aquasecurity/trivy-db digest to bd11dd4 (#1090)
- fix(deps): update k8s.io/kube-openapi digest to b7f5293 (#1091)
- fix(storage): avoid dropping ADD events after a concurrent store delete (#1082)
- fix(deps): update github.com/aquasecurity/trivy-db digest to 722777b (#1068)
- fix(deps): update k8s.io/kube-openapi digest to ec9c827 (#1051)
- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)

## 🧰 Maintenance

- chore(helm): add nameOverride and fullnameOverride value placeholders (#1095)
- chore: bump github.com/stephenafamo/bob from 0.42.0 to 0.43.0 (#1086)
- chore: bump github.com/docker/cli from 29.4.1+incompatible to 29.4.2+incompatible (#1088)
- chore: bump release-drafter/release-drafter from 7.2.0 to 7.2.1 (#1084)
- chore: bump github.com/modelcontextprotocol/go-sdk from 1.5.0 to 1.6.0 (#1085)
- fix(deps): update github.com/aquasecurity/trivy-db digest to bd11dd4 (#1090)
- fix(deps): update k8s.io/kube-openapi digest to b7f5293 (#1091)
- chore: bump github.com/nats-io/nats-server/v2 from 2.12.8 to 2.14.0 (#1087)
- build(deps): update all dependencies updates (major) (#1093)
- build(deps): update all dependencies updates (#1069)
- chore: bump modernc.org/sqlite from 1.49.1 to 1.50.0 (#1077)
- chore: bump github.com/nats-io/nats-server/v2 from 2.12.7 to 2.12.8 (#1080)
- chore: bump github.com/onsi/ginkgo/v2 from 2.28.1 to 2.28.2 (#1078)
- chore: bump github.com/aws/smithy-go from 1.25.0 to 1.25.1 (#1067)
- build(deps): update module github.com/avast/retry-go/v4 to v5 (#1070)
- fix(deps): update github.com/aquasecurity/trivy-db digest to 722777b (#1068)
- fix(deps): update k8s.io/kube-openapi digest to ec9c827 (#1051)
- build(deps): update all dependencies updates (#1053)
- chore: bump github.com/go-git/go-git/v5 from 5.17.1 to 5.18.0 (#1050)
- chore: bump modernc.org/sqlite from 1.48.2 to 1.49.1 (#1058)
- chore: bump github.com/jackc/pgx/v5 from 5.9.1 to 5.9.2 (#1059)
- chore: bump updatecli/updatecli-action from 3.1.1 to 3.1.3 (#1060)
- chore: bump sigs.k8s.io/e2e-framework from 0.6.0 to 0.7.0 (#1061)
- chore: bump github.com/docker/cli from 29.4.0+incompatible to 29.4.1+incompatible (#1062)
- build(deps): update module github.com/avast/retry-go/v4 to v5 (#1054)
- chore: bump the kubernetes group across 1 directory with 6 updates (#1045)
- chore: bump github.com/moby/spdystream from 0.5.0 to 0.5.1 (#1048)
- chore: bump github.com/nats-io/nats-server/v2 from 2.12.6 to 2.12.7 (#1042)
- chore: bump zizmorcore/zizmor-action from 0.5.2 to 0.5.3 (#1040)
- chore: bump actions/cache from 5.0.4 to 5.0.5 (#1041)
- chore: bump github.com/sigstore/timestamp-authority/v2 from 2.0.3 to 2.0.6 (#1039)
- build(deps): update all dependencies updates (major) (#994)
- chore: bump actions/github-script from 8.0.0 to 9.0.0 (#1029)
- chore: bump helm.sh/helm/v3 from 3.20.1 to 3.20.2 (#1035)
- build(deps): update all dependencies updates (#1037)
- chore: bump github.com/hashicorp/go-getter from 1.8.5 to 1.8.6 (#1036)
- chore: Helm chart 0.11.0 release (#1022)
- build(deps): update module github.com/modelcontextprotocol/go-sdk to v1.4.1 [security] (#1017)
- chore(deps): update github.com/alegrey91/trivy digest to bda9710 (#969)
- chore: bump go.opentelemetry.io/otel/sdk from 1.41.0 to 1.43.0 (#1005)
- build(deps): update all dependencies updates (#993)
- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)
- chore: bump modernc.org/sqlite from 1.48.0 to 1.48.1 (#995)
- chore: bump github.com/aws/aws-sdk-go-v2/service/s3 from 1.96.0 to 1.99.0 (#1001)
- chore: bump golang from 1.26.1 to 1.26.2 (#1002)
- chore: bump github.com/google/cel-go from 0.27.0 to 0.28.0 (#1003)
- chore: Helm chart 0.10.4 release (#997)
v0.11.0-alpha1
- build: bump to golang 1.26.2 (#1020)
- ci: govulncheck use the right version of go (#1018)
- ci: govulncheck ensure the proper version of Go is used (#1015)
- ci: allow jsonv2 when using govulncheck (#1013)
- ci: fix zizmor complain (#1012)
- ci: fix govulncheck GHA (#1011)

## 🚀 Features

- feat: mcp server (#1004)

## 🐛 Bug Fixes

- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)

## 🧰 Maintenance

- build(deps): update module github.com/modelcontextprotocol/go-sdk to v1.4.1 [security] (#1017)
- chore(deps): update github.com/alegrey91/trivy digest to bda9710 (#969)
- chore: bump go.opentelemetry.io/otel/sdk from 1.41.0 to 1.43.0 (#1005)
- build(deps): update all dependencies updates (#993)
- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)
- chore: bump modernc.org/sqlite from 1.48.0 to 1.48.1 (#995)
- chore: bump github.com/aws/aws-sdk-go-v2/service/s3 from 1.96.0 to 1.99.0 (#1001)
- chore: bump golang from 1.26.1 to 1.26.2 (#1002)
- chore: bump github.com/google/cel-go from 0.27.0 to 0.28.0 (#1003)
- chore: Helm chart 0.10.4 release (#997)
Update Helm chart storage version

change detected: * key "$.storage.image.tag" updated from "v0.11.0-alpha1" to "v0.11.0-rc.1", in file "charts/sbomscanner/values.yaml"

v0.11.0-rc.1
- fix(ci): sbom digest parsing (#1097)
- docs(user-guide): add ScanJob target documentation (#1096)
- ci: harden run blocks against template injection (#1079)
- fix(storage): wait for NATS subscription before publishing in watcher (#1094)
- ci(govulncheck): upload results as SARIF to the security tab rather than failing (#1081)
- fix: several typos and old names (#1076)
- docs: use absolute links in README.md (#1074)
- fix: publisher formatting (#1063)
- fix: stream name for nats queue (#1025)
- chore: Helm chart support Rancher v2.15 (#1044)
- ci: add mcp image bump to helm chart update (#1023)
- build: bump to golang 1.26.2 (#1020)
- ci: govulncheck use the right version of go (#1018)
- ci: govulncheck ensure the proper version of Go is used (#1015)
- ci: allow jsonv2 when using govulncheck (#1013)
- ci: fix zizmor complain (#1012)
- ci: fix govulncheck GHA (#1011)

## 🚀 Features

- feat(helm): expose CNPG Cluster imageName (#1075)
- feat: ScanJob target (#1056)
- feat: mcp server (#1004)

## 🐛 Bug Fixes

- fix(deps): update github.com/aquasecurity/trivy-db digest to bd11dd4 (#1090)
- fix(deps): update k8s.io/kube-openapi digest to b7f5293 (#1091)
- fix(storage): avoid dropping ADD events after a concurrent store delete (#1082)
- fix(deps): update github.com/aquasecurity/trivy-db digest to 722777b (#1068)
- fix(deps): update k8s.io/kube-openapi digest to ec9c827 (#1051)
- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)

## 🧰 Maintenance

- chore(helm): add nameOverride and fullnameOverride value placeholders (#1095)
- chore: bump github.com/stephenafamo/bob from 0.42.0 to 0.43.0 (#1086)
- chore: bump github.com/docker/cli from 29.4.1+incompatible to 29.4.2+incompatible (#1088)
- chore: bump release-drafter/release-drafter from 7.2.0 to 7.2.1 (#1084)
- chore: bump github.com/modelcontextprotocol/go-sdk from 1.5.0 to 1.6.0 (#1085)
- fix(deps): update github.com/aquasecurity/trivy-db digest to bd11dd4 (#1090)
- fix(deps): update k8s.io/kube-openapi digest to b7f5293 (#1091)
- chore: bump github.com/nats-io/nats-server/v2 from 2.12.8 to 2.14.0 (#1087)
- build(deps): update all dependencies updates (major) (#1093)
- build(deps): update all dependencies updates (#1069)
- chore: bump modernc.org/sqlite from 1.49.1 to 1.50.0 (#1077)
- chore: bump github.com/nats-io/nats-server/v2 from 2.12.7 to 2.12.8 (#1080)
- chore: bump github.com/onsi/ginkgo/v2 from 2.28.1 to 2.28.2 (#1078)
- chore: bump github.com/aws/smithy-go from 1.25.0 to 1.25.1 (#1067)
- build(deps): update module github.com/avast/retry-go/v4 to v5 (#1070)
- fix(deps): update github.com/aquasecurity/trivy-db digest to 722777b (#1068)
- fix(deps): update k8s.io/kube-openapi digest to ec9c827 (#1051)
- build(deps): update all dependencies updates (#1053)
- chore: bump github.com/go-git/go-git/v5 from 5.17.1 to 5.18.0 (#1050)
- chore: bump modernc.org/sqlite from 1.48.2 to 1.49.1 (#1058)
- chore: bump github.com/jackc/pgx/v5 from 5.9.1 to 5.9.2 (#1059)
- chore: bump updatecli/updatecli-action from 3.1.1 to 3.1.3 (#1060)
- chore: bump sigs.k8s.io/e2e-framework from 0.6.0 to 0.7.0 (#1061)
- chore: bump github.com/docker/cli from 29.4.0+incompatible to 29.4.1+incompatible (#1062)
- build(deps): update module github.com/avast/retry-go/v4 to v5 (#1054)
- chore: bump the kubernetes group across 1 directory with 6 updates (#1045)
- chore: bump github.com/moby/spdystream from 0.5.0 to 0.5.1 (#1048)
- chore: bump github.com/nats-io/nats-server/v2 from 2.12.6 to 2.12.7 (#1042)
- chore: bump zizmorcore/zizmor-action from 0.5.2 to 0.5.3 (#1040)
- chore: bump actions/cache from 5.0.4 to 5.0.5 (#1041)
- chore: bump github.com/sigstore/timestamp-authority/v2 from 2.0.3 to 2.0.6 (#1039)
- build(deps): update all dependencies updates (major) (#994)
- chore: bump actions/github-script from 8.0.0 to 9.0.0 (#1029)
- chore: bump helm.sh/helm/v3 from 3.20.1 to 3.20.2 (#1035)
- build(deps): update all dependencies updates (#1037)
- chore: bump github.com/hashicorp/go-getter from 1.8.5 to 1.8.6 (#1036)
- chore: Helm chart 0.11.0 release (#1022)
- build(deps): update module github.com/modelcontextprotocol/go-sdk to v1.4.1 [security] (#1017)
- chore(deps): update github.com/alegrey91/trivy digest to bda9710 (#969)
- chore: bump go.opentelemetry.io/otel/sdk from 1.41.0 to 1.43.0 (#1005)
- build(deps): update all dependencies updates (#993)
- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)
- chore: bump modernc.org/sqlite from 1.48.0 to 1.48.1 (#995)
- chore: bump github.com/aws/aws-sdk-go-v2/service/s3 from 1.96.0 to 1.99.0 (#1001)
- chore: bump golang from 1.26.1 to 1.26.2 (#1002)
- chore: bump github.com/google/cel-go from 0.27.0 to 0.28.0 (#1003)
- chore: Helm chart 0.10.4 release (#997)
v0.11.0-alpha1
- build: bump to golang 1.26.2 (#1020)
- ci: govulncheck use the right version of go (#1018)
- ci: govulncheck ensure the proper version of Go is used (#1015)
- ci: allow jsonv2 when using govulncheck (#1013)
- ci: fix zizmor complain (#1012)
- ci: fix govulncheck GHA (#1011)

## 🚀 Features

- feat: mcp server (#1004)

## 🐛 Bug Fixes

- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)

## 🧰 Maintenance

- build(deps): update module github.com/modelcontextprotocol/go-sdk to v1.4.1 [security] (#1017)
- chore(deps): update github.com/alegrey91/trivy digest to bda9710 (#969)
- chore: bump go.opentelemetry.io/otel/sdk from 1.41.0 to 1.43.0 (#1005)
- build(deps): update all dependencies updates (#993)
- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)
- chore: bump modernc.org/sqlite from 1.48.0 to 1.48.1 (#995)
- chore: bump github.com/aws/aws-sdk-go-v2/service/s3 from 1.96.0 to 1.99.0 (#1001)
- chore: bump golang from 1.26.1 to 1.26.2 (#1002)
- chore: bump github.com/google/cel-go from 0.27.0 to 0.28.0 (#1003)
- chore: Helm chart 0.10.4 release (#997)
Update Helm chart worker version

change detected: * key "$.worker.image.tag" updated from "v0.11.0-alpha1" to "v0.11.0-rc.1", in file "charts/sbomscanner/values.yaml"

v0.11.0-rc.1
- fix(ci): sbom digest parsing (#1097)
- docs(user-guide): add ScanJob target documentation (#1096)
- ci: harden run blocks against template injection (#1079)
- fix(storage): wait for NATS subscription before publishing in watcher (#1094)
- ci(govulncheck): upload results as SARIF to the security tab rather than failing (#1081)
- fix: several typos and old names (#1076)
- docs: use absolute links in README.md (#1074)
- fix: publisher formatting (#1063)
- fix: stream name for nats queue (#1025)
- chore: Helm chart support Rancher v2.15 (#1044)
- ci: add mcp image bump to helm chart update (#1023)
- build: bump to golang 1.26.2 (#1020)
- ci: govulncheck use the right version of go (#1018)
- ci: govulncheck ensure the proper version of Go is used (#1015)
- ci: allow jsonv2 when using govulncheck (#1013)
- ci: fix zizmor complain (#1012)
- ci: fix govulncheck GHA (#1011)

## 🚀 Features

- feat(helm): expose CNPG Cluster imageName (#1075)
- feat: ScanJob target (#1056)
- feat: mcp server (#1004)

## 🐛 Bug Fixes

- fix(deps): update github.com/aquasecurity/trivy-db digest to bd11dd4 (#1090)
- fix(deps): update k8s.io/kube-openapi digest to b7f5293 (#1091)
- fix(storage): avoid dropping ADD events after a concurrent store delete (#1082)
- fix(deps): update github.com/aquasecurity/trivy-db digest to 722777b (#1068)
- fix(deps): update k8s.io/kube-openapi digest to ec9c827 (#1051)
- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)

## 🧰 Maintenance

- chore(helm): add nameOverride and fullnameOverride value placeholders (#1095)
- chore: bump github.com/stephenafamo/bob from 0.42.0 to 0.43.0 (#1086)
- chore: bump github.com/docker/cli from 29.4.1+incompatible to 29.4.2+incompatible (#1088)
- chore: bump release-drafter/release-drafter from 7.2.0 to 7.2.1 (#1084)
- chore: bump github.com/modelcontextprotocol/go-sdk from 1.5.0 to 1.6.0 (#1085)
- fix(deps): update github.com/aquasecurity/trivy-db digest to bd11dd4 (#1090)
- fix(deps): update k8s.io/kube-openapi digest to b7f5293 (#1091)
- chore: bump github.com/nats-io/nats-server/v2 from 2.12.8 to 2.14.0 (#1087)
- build(deps): update all dependencies updates (major) (#1093)
- build(deps): update all dependencies updates (#1069)
- chore: bump modernc.org/sqlite from 1.49.1 to 1.50.0 (#1077)
- chore: bump github.com/nats-io/nats-server/v2 from 2.12.7 to 2.12.8 (#1080)
- chore: bump github.com/onsi/ginkgo/v2 from 2.28.1 to 2.28.2 (#1078)
- chore: bump github.com/aws/smithy-go from 1.25.0 to 1.25.1 (#1067)
- build(deps): update module github.com/avast/retry-go/v4 to v5 (#1070)
- fix(deps): update github.com/aquasecurity/trivy-db digest to 722777b (#1068)
- fix(deps): update k8s.io/kube-openapi digest to ec9c827 (#1051)
- build(deps): update all dependencies updates (#1053)
- chore: bump github.com/go-git/go-git/v5 from 5.17.1 to 5.18.0 (#1050)
- chore: bump modernc.org/sqlite from 1.48.2 to 1.49.1 (#1058)
- chore: bump github.com/jackc/pgx/v5 from 5.9.1 to 5.9.2 (#1059)
- chore: bump updatecli/updatecli-action from 3.1.1 to 3.1.3 (#1060)
- chore: bump sigs.k8s.io/e2e-framework from 0.6.0 to 0.7.0 (#1061)
- chore: bump github.com/docker/cli from 29.4.0+incompatible to 29.4.1+incompatible (#1062)
- build(deps): update module github.com/avast/retry-go/v4 to v5 (#1054)
- chore: bump the kubernetes group across 1 directory with 6 updates (#1045)
- chore: bump github.com/moby/spdystream from 0.5.0 to 0.5.1 (#1048)
- chore: bump github.com/nats-io/nats-server/v2 from 2.12.6 to 2.12.7 (#1042)
- chore: bump zizmorcore/zizmor-action from 0.5.2 to 0.5.3 (#1040)
- chore: bump actions/cache from 5.0.4 to 5.0.5 (#1041)
- chore: bump github.com/sigstore/timestamp-authority/v2 from 2.0.3 to 2.0.6 (#1039)
- build(deps): update all dependencies updates (major) (#994)
- chore: bump actions/github-script from 8.0.0 to 9.0.0 (#1029)
- chore: bump helm.sh/helm/v3 from 3.20.1 to 3.20.2 (#1035)
- build(deps): update all dependencies updates (#1037)
- chore: bump github.com/hashicorp/go-getter from 1.8.5 to 1.8.6 (#1036)
- chore: Helm chart 0.11.0 release (#1022)
- build(deps): update module github.com/modelcontextprotocol/go-sdk to v1.4.1 [security] (#1017)
- chore(deps): update github.com/alegrey91/trivy digest to bda9710 (#969)
- chore: bump go.opentelemetry.io/otel/sdk from 1.41.0 to 1.43.0 (#1005)
- build(deps): update all dependencies updates (#993)
- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)
- chore: bump modernc.org/sqlite from 1.48.0 to 1.48.1 (#995)
- chore: bump github.com/aws/aws-sdk-go-v2/service/s3 from 1.96.0 to 1.99.0 (#1001)
- chore: bump golang from 1.26.1 to 1.26.2 (#1002)
- chore: bump github.com/google/cel-go from 0.27.0 to 0.28.0 (#1003)
- chore: Helm chart 0.10.4 release (#997)
v0.11.0-alpha1
- build: bump to golang 1.26.2 (#1020)
- ci: govulncheck use the right version of go (#1018)
- ci: govulncheck ensure the proper version of Go is used (#1015)
- ci: allow jsonv2 when using govulncheck (#1013)
- ci: fix zizmor complain (#1012)
- ci: fix govulncheck GHA (#1011)

## 🚀 Features

- feat: mcp server (#1004)

## 🐛 Bug Fixes

- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)

## 🧰 Maintenance

- build(deps): update module github.com/modelcontextprotocol/go-sdk to v1.4.1 [security] (#1017)
- chore(deps): update github.com/alegrey91/trivy digest to bda9710 (#969)
- chore: bump go.opentelemetry.io/otel/sdk from 1.41.0 to 1.43.0 (#1005)
- build(deps): update all dependencies updates (#993)
- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)
- chore: bump modernc.org/sqlite from 1.48.0 to 1.48.1 (#995)
- chore: bump github.com/aws/aws-sdk-go-v2/service/s3 from 1.96.0 to 1.99.0 (#1001)
- chore: bump golang from 1.26.1 to 1.26.2 (#1002)
- chore: bump github.com/google/cel-go from 0.27.0 to 0.28.0 (#1003)
- chore: Helm chart 0.10.4 release (#997)
Update Helm chart version

change detected: * key "$.version" updated from "0.11.0-alpha1" to "0.12.0", in file "charts/sbomscanner/Chart.yaml"

Update Helm chart mcp version

change detected: * key "$.mcp.image.tag" updated from "v0.11.0-alpha1" to "v0.11.0-rc.1", in file "charts/sbomscanner/values.yaml"

v0.11.0-rc.1
- fix(ci): sbom digest parsing (#1097)
- docs(user-guide): add ScanJob target documentation (#1096)
- ci: harden run blocks against template injection (#1079)
- fix(storage): wait for NATS subscription before publishing in watcher (#1094)
- ci(govulncheck): upload results as SARIF to the security tab rather than failing (#1081)
- fix: several typos and old names (#1076)
- docs: use absolute links in README.md (#1074)
- fix: publisher formatting (#1063)
- fix: stream name for nats queue (#1025)
- chore: Helm chart support Rancher v2.15 (#1044)
- ci: add mcp image bump to helm chart update (#1023)
- build: bump to golang 1.26.2 (#1020)
- ci: govulncheck use the right version of go (#1018)
- ci: govulncheck ensure the proper version of Go is used (#1015)
- ci: allow jsonv2 when using govulncheck (#1013)
- ci: fix zizmor complain (#1012)
- ci: fix govulncheck GHA (#1011)

## 🚀 Features

- feat(helm): expose CNPG Cluster imageName (#1075)
- feat: ScanJob target (#1056)
- feat: mcp server (#1004)

## 🐛 Bug Fixes

- fix(deps): update github.com/aquasecurity/trivy-db digest to bd11dd4 (#1090)
- fix(deps): update k8s.io/kube-openapi digest to b7f5293 (#1091)
- fix(storage): avoid dropping ADD events after a concurrent store delete (#1082)
- fix(deps): update github.com/aquasecurity/trivy-db digest to 722777b (#1068)
- fix(deps): update k8s.io/kube-openapi digest to ec9c827 (#1051)
- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)

## 🧰 Maintenance

- chore(helm): add nameOverride and fullnameOverride value placeholders (#1095)
- chore: bump github.com/stephenafamo/bob from 0.42.0 to 0.43.0 (#1086)
- chore: bump github.com/docker/cli from 29.4.1+incompatible to 29.4.2+incompatible (#1088)
- chore: bump release-drafter/release-drafter from 7.2.0 to 7.2.1 (#1084)
- chore: bump github.com/modelcontextprotocol/go-sdk from 1.5.0 to 1.6.0 (#1085)
- fix(deps): update github.com/aquasecurity/trivy-db digest to bd11dd4 (#1090)
- fix(deps): update k8s.io/kube-openapi digest to b7f5293 (#1091)
- chore: bump github.com/nats-io/nats-server/v2 from 2.12.8 to 2.14.0 (#1087)
- build(deps): update all dependencies updates (major) (#1093)
- build(deps): update all dependencies updates (#1069)
- chore: bump modernc.org/sqlite from 1.49.1 to 1.50.0 (#1077)
- chore: bump github.com/nats-io/nats-server/v2 from 2.12.7 to 2.12.8 (#1080)
- chore: bump github.com/onsi/ginkgo/v2 from 2.28.1 to 2.28.2 (#1078)
- chore: bump github.com/aws/smithy-go from 1.25.0 to 1.25.1 (#1067)
- build(deps): update module github.com/avast/retry-go/v4 to v5 (#1070)
- fix(deps): update github.com/aquasecurity/trivy-db digest to 722777b (#1068)
- fix(deps): update k8s.io/kube-openapi digest to ec9c827 (#1051)
- build(deps): update all dependencies updates (#1053)
- chore: bump github.com/go-git/go-git/v5 from 5.17.1 to 5.18.0 (#1050)
- chore: bump modernc.org/sqlite from 1.48.2 to 1.49.1 (#1058)
- chore: bump github.com/jackc/pgx/v5 from 5.9.1 to 5.9.2 (#1059)
- chore: bump updatecli/updatecli-action from 3.1.1 to 3.1.3 (#1060)
- chore: bump sigs.k8s.io/e2e-framework from 0.6.0 to 0.7.0 (#1061)
- chore: bump github.com/docker/cli from 29.4.0+incompatible to 29.4.1+incompatible (#1062)
- build(deps): update module github.com/avast/retry-go/v4 to v5 (#1054)
- chore: bump the kubernetes group across 1 directory with 6 updates (#1045)
- chore: bump github.com/moby/spdystream from 0.5.0 to 0.5.1 (#1048)
- chore: bump github.com/nats-io/nats-server/v2 from 2.12.6 to 2.12.7 (#1042)
- chore: bump zizmorcore/zizmor-action from 0.5.2 to 0.5.3 (#1040)
- chore: bump actions/cache from 5.0.4 to 5.0.5 (#1041)
- chore: bump github.com/sigstore/timestamp-authority/v2 from 2.0.3 to 2.0.6 (#1039)
- build(deps): update all dependencies updates (major) (#994)
- chore: bump actions/github-script from 8.0.0 to 9.0.0 (#1029)
- chore: bump helm.sh/helm/v3 from 3.20.1 to 3.20.2 (#1035)
- build(deps): update all dependencies updates (#1037)
- chore: bump github.com/hashicorp/go-getter from 1.8.5 to 1.8.6 (#1036)
- chore: Helm chart 0.11.0 release (#1022)
- build(deps): update module github.com/modelcontextprotocol/go-sdk to v1.4.1 [security] (#1017)
- chore(deps): update github.com/alegrey91/trivy digest to bda9710 (#969)
- chore: bump go.opentelemetry.io/otel/sdk from 1.41.0 to 1.43.0 (#1005)
- build(deps): update all dependencies updates (#993)
- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)
- chore: bump modernc.org/sqlite from 1.48.0 to 1.48.1 (#995)
- chore: bump github.com/aws/aws-sdk-go-v2/service/s3 from 1.96.0 to 1.99.0 (#1001)
- chore: bump golang from 1.26.1 to 1.26.2 (#1002)
- chore: bump github.com/google/cel-go from 0.27.0 to 0.28.0 (#1003)
- chore: Helm chart 0.10.4 release (#997)
v0.11.0-alpha1
- build: bump to golang 1.26.2 (#1020)
- ci: govulncheck use the right version of go (#1018)
- ci: govulncheck ensure the proper version of Go is used (#1015)
- ci: allow jsonv2 when using govulncheck (#1013)
- ci: fix zizmor complain (#1012)
- ci: fix govulncheck GHA (#1011)

## 🚀 Features

- feat: mcp server (#1004)

## 🐛 Bug Fixes

- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)

## 🧰 Maintenance

- build(deps): update module github.com/modelcontextprotocol/go-sdk to v1.4.1 [security] (#1017)
- chore(deps): update github.com/alegrey91/trivy digest to bda9710 (#969)
- chore: bump go.opentelemetry.io/otel/sdk from 1.41.0 to 1.43.0 (#1005)
- build(deps): update all dependencies updates (#993)
- fix(deps): update k8s.io/kube-openapi digest to 16be699 (#992)
- chore: bump modernc.org/sqlite from 1.48.0 to 1.48.1 (#995)
- chore: bump github.com/aws/aws-sdk-go-v2/service/s3 from 1.96.0 to 1.99.0 (#1001)
- chore: bump golang from 1.26.1 to 1.26.2 (#1002)
- chore: bump github.com/google/cel-go from 0.27.0 to 0.28.0 (#1003)
- chore: Helm chart 0.10.4 release (#997)
GitHub Action workflow link
Updatecli logo

Created automatically by Updatecli

Options:

Most of Updatecli configuration is done via its manifest(s).

  • If you close this pull request, Updatecli will automatically reopen it, the next time it runs.
  • If you close this pull request and delete the base branch, Updatecli will automatically recreate it, erasing all previous commits made.

Feel free to report any issues at github.com/updatecli/updatecli.
If you find this tool useful, do not hesitate to star our GitHub repository as a sign of appreciation, and/or to tell us directly on our chat!

Signed-off-by: SBOMscanner bot <sbomscanner-bot@users.noreply.github.com>
Signed-off-by: SBOMscanner bot <sbomscanner-bot@users.noreply.github.com>
Signed-off-by: SBOMscanner bot <sbomscanner-bot@users.noreply.github.com>
Signed-off-by: SBOMscanner bot <sbomscanner-bot@users.noreply.github.com>
Signed-off-by: SBOMscanner bot <sbomscanner-bot@users.noreply.github.com>
Signed-off-by: SBOMscanner bot <sbomscanner-bot@users.noreply.github.com>
Signed-off-by: SBOMscanner bot <sbomscanner-bot@users.noreply.github.com>
Copilot AI review requested due to automatic review settings May 5, 2026 10:46
@kubewarden-auth-token-generator kubewarden-auth-token-generator Bot requested a review from a team as a code owner May 5, 2026 10:46
@kubewarden-auth-token-generator kubewarden-auth-token-generator Bot review requested due to automatic review settings May 5, 2026 10:46
@github-project-automation github-project-automation Bot moved this to Pending Review in SBOMscanner May 5, 2026
@fabriziosestito fabriziosestito changed the title chore: Helm chart 0.12.0 release chore: Helm chart 0.11.0-rc.1 release May 5, 2026
Comment thread charts/sbomscanner/Chart.yaml Outdated
Signed-off-by: Fabrizio Sestito <fabrizio.sestito@suse.com>
Copilot AI review requested due to automatic review settings May 5, 2026 10:52
@fabriziosestito fabriziosestito merged commit bf78c8b into main May 5, 2026
17 of 18 checks passed
@fabriziosestito fabriziosestito deleted the updatecli_main_bf52360c67a655d2cfab8230a4495b4bd0b6775d7acb811509efd0922bda81de branch May 5, 2026 10:53
@github-project-automation github-project-automation Bot moved this from Pending Review to Done in SBOMscanner May 5, 2026
Copy link
Copy Markdown
Contributor

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR updates the sbomscanner Helm chart to deploy the v0.11.0-rc.1 application images and refreshes the chart README from the repository README. In the codebase, this is the automated chart-release path that keeps the published Helm chart aligned with SBOMscanner releases.

Changes:

  • Bump controller, storage, worker, and MCP image tags to v0.11.0-rc.1.
  • Update appVersion to v0.11.0-rc.1 and change the chart version.
  • Refresh charts/sbomscanner/README.md with absolute documentation links.

Reviewed changes

Copilot reviewed 3 out of 3 changed files in this pull request and generated 1 comment.

File Description
charts/sbomscanner/values.yaml Updates default image tags for all chart-managed SBOMscanner components.
charts/sbomscanner/README.md Regenerates the chart README content from the repository README with absolute links.
charts/sbomscanner/Chart.yaml Updates the chart package version and application version metadata.

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

# to the chart and its templates, including the app version.
# Versions are expected to follow Semantic Versioning (https://semver.org/)
version: 0.11.0-alpha1
version: 0.11.0-rc.1
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

Status: Done

Development

Successfully merging this pull request may close these issues.

2 participants