From c940259545c8edaa5505a38332e217960367dd0a Mon Sep 17 00:00:00 2001 From: gitea_admin Date: Wed, 30 Sep 2026 08:36:32 +0000 Subject: [PATCH 1/7] chore(deps): update helm release opencost to v2 (#50) MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit This PR contains the following updates: | Package | Update | Change | |---|---|---| | [opencost](https://github.com/opencost/opencost-helm-chart) | major | `1.43.2` → `2.5.32` | --- ### Release Notes
opencost/opencost-helm-chart (opencost) ### [`v2.5.32`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.32) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.31...opencost-2.5.32) OpenCost and OpenCost UI #### What's Changed - Upgrade OpenCost Helm Chart to v1.121.3 by [@​cpetersen5](https://github.com/cpetersen5) in [#​385](https://github.com/opencost/opencost-helm-chart/pull/385) **Full Changelog**: ### [`v2.5.31`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.31) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.30...opencost-2.5.31) OpenCost and OpenCost UI #### What's Changed - Release OpenCost v1.121.2 by [@​cpetersen5](https://github.com/cpetersen5) in [#​384](https://github.com/opencost/opencost-helm-chart/pull/384) **Full Changelog**: ### [`v2.5.30`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.30) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.29...opencost-2.5.30) OpenCost and OpenCost UI #### What's Changed - feat: add opencost.exporter.extraEnvFrom to source env from ConfigMap/Secret by [@​ahauserv](https://github.com/ahauserv) in [#​378](https://github.com/opencost/opencost-helm-chart/pull/378) #### New Contributors - [@​ahauserv](https://github.com/ahauserv) made their first contribution in [#​378](https://github.com/opencost/opencost-helm-chart/pull/378) **Full Changelog**: ### [`v2.5.29`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.29) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.28...opencost-2.5.29) OpenCost and OpenCost UI #### What's Changed - Release OpenCost v1.121.1 by [@​cpetersen5](https://github.com/cpetersen5) in [#​377](https://github.com/opencost/opencost-helm-chart/pull/377) **Full Changelog**: ### [`v2.5.28`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.28) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.27...opencost-2.5.28) OpenCost and OpenCost UI #### What's Changed - Inference Cost params added to helm by [@​simanadler](https://github.com/simanadler) in [#​370](https://github.com/opencost/opencost-helm-chart/pull/370) - Release OpenCost v1.121.0 by [@​cpetersen5](https://github.com/cpetersen5) in [#​372](https://github.com/opencost/opencost-helm-chart/pull/372) #### New Contributors - [@​simanadler](https://github.com/simanadler) made their first contribution in [#​370](https://github.com/opencost/opencost-helm-chart/pull/370) **Full Changelog**: ### [`v2.5.27`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.27) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.26...opencost-2.5.27) OpenCost and OpenCost UI #### What's Changed - KCM-5392: Add support for configuring external labels for Opencost installation with Collector data source by [@​avrodrigues5](https://github.com/avrodrigues5) in [#​371](https://github.com/opencost/opencost-helm-chart/pull/371) #### New Contributors - [@​avrodrigues5](https://github.com/avrodrigues5) made their first contribution in [#​371](https://github.com/opencost/opencost-helm-chart/pull/371) **Full Changelog**: ### [`v2.5.26`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.26) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.25...opencost-2.5.26) OpenCost and OpenCost UI #### What's Changed - add timeout configuration for override in probes by [@​aman-kumar29](https://github.com/aman-kumar29) in [#​369](https://github.com/opencost/opencost-helm-chart/pull/369) **Full Changelog**: ### [`v2.5.25`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.25) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.24...opencost-2.5.25) OpenCost and OpenCost UI #### What's Changed - Release OpenCost v1.120.4 by [@​cpetersen5](https://github.com/cpetersen5) in [#​366](https://github.com/opencost/opencost-helm-chart/pull/366) **Full Changelog**: ### [`v2.5.24`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.24) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.23...opencost-2.5.24) OpenCost and OpenCost UI #### What's Changed - fix(service): use opencost.exporter.debugPort for service targetPort by [@​aman-kumar29](https://github.com/aman-kumar29) in [#​364](https://github.com/opencost/opencost-helm-chart/pull/364) #### New Contributors - [@​aman-kumar29](https://github.com/aman-kumar29) made their first contribution in [#​364](https://github.com/opencost/opencost-helm-chart/pull/364) **Full Changelog**: ### [`v2.5.23`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.23) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.22...opencost-2.5.23) OpenCost and OpenCost UI #### What's Changed - feat(gateway-api): Add support for filters by [@​HartmannVolker](https://github.com/HartmannVolker) in [#​356](https://github.com/opencost/opencost-helm-chart/pull/356) #### New Contributors - [@​HartmannVolker](https://github.com/HartmannVolker) made their first contribution in [#​356](https://github.com/opencost/opencost-helm-chart/pull/356) **Full Changelog**: ### [`v2.5.22`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.22) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.21...opencost-2.5.22) OpenCost and OpenCost UI #### What's Changed - Release OpenCost v1.120.3 by [@​cpetersen5](https://github.com/cpetersen5) in [#​357](https://github.com/opencost/opencost-helm-chart/pull/357) **Full Changelog**: ### [`v2.5.21`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.21) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.20...opencost-2.5.21) OpenCost and OpenCost UI #### What's Changed - feat: add extraObjects for tpl-rendered extra manifests by [@​younsl](https://github.com/younsl) in [#​354](https://github.com/opencost/opencost-helm-chart/pull/354) **Full Changelog**: ### [`v2.5.20`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.20) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.19...opencost-2.5.20) OpenCost and OpenCost UI #### What's Changed - Update Helm chart for v1.120.2 by [@​cpetersen5](https://github.com/cpetersen5) in [#​355](https://github.com/opencost/opencost-helm-chart/pull/355) **Full Changelog**: ### [`v2.5.19`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.19) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.18...opencost-2.5.19) OpenCost and OpenCost UI #### What's Changed - Consistent Usage of `opencost.namespace` Helper by [@​ioboi](https://github.com/ioboi) in [#​353](https://github.com/opencost/opencost-helm-chart/pull/353) #### New Contributors - [@​ioboi](https://github.com/ioboi) made their first contribution in [#​353](https://github.com/opencost/opencost-helm-chart/pull/353) **Full Changelog**: ### [`v2.5.18`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.18) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.14...opencost-2.5.18) OpenCost and OpenCost UI #### What's Changed - feat: Add plugins.install.plugins list and existingSecret support (adopts [#​328](https://github.com/opencost/opencost-helm-chart/issues/328)) by [@​ameijer](https://github.com/ameijer) in [#​344](https://github.com/opencost/opencost-helm-chart/pull/344) - feat: add OCI cloud cost configuration example to cloudIntegrationJSON by [@​Kush172005](https://github.com/Kush172005) in [#​345](https://github.com/opencost/opencost-helm-chart/pull/345) - Release Opencost v1.120.1 - Bump Helm Chart by [@​cpetersen5](https://github.com/cpetersen5) in [#​347](https://github.com/opencost/opencost-helm-chart/pull/347) - Fix UI route tls by [@​mittal-ishaan](https://github.com/mittal-ishaan) in [#​352](https://github.com/opencost/opencost-helm-chart/pull/352) #### New Contributors - [@​Kush172005](https://github.com/Kush172005) made their first contribution in [#​345](https://github.com/opencost/opencost-helm-chart/pull/345) **Full Changelog**: ### [`v2.5.14`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.14) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.12...opencost-2.5.14) OpenCost and OpenCost UI #### What's Changed - Release Opencost v1.120.0 by [@​cpetersen5](https://github.com/cpetersen5) in [#​341](https://github.com/opencost/opencost-helm-chart/pull/341) - Cdp/opencost v1.120.0 by [@​cpetersen5](https://github.com/cpetersen5) in [#​343](https://github.com/opencost/opencost-helm-chart/pull/343) **Full Changelog**: ### [`v2.5.12`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.12) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.11...opencost-2.5.12) OpenCost and OpenCost UI #### What's Changed - Create Empty /var/configs dir by [@​HMetcalfeW](https://github.com/HMetcalfeW) in [#​333](https://github.com/opencost/opencost-helm-chart/pull/333) #### New Contributors - [@​HMetcalfeW](https://github.com/HMetcalfeW) made their first contribution in [#​333](https://github.com/opencost/opencost-helm-chart/pull/333) **Full Changelog**: ### [`v2.5.11`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.11) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.10...opencost-2.5.11) OpenCost and OpenCost UI #### What's Changed - add admin token infra support by [@​ameijer](https://github.com/ameijer) in [#​339](https://github.com/opencost/opencost-helm-chart/pull/339) **Full Changelog**: ### [`v2.5.10`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.10) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.9...opencost-2.5.10) OpenCost and OpenCost UI #### What's Changed - Add cloudIntegrationJSON support by [@​thomasvn](https://github.com/thomasvn) in [#​337](https://github.com/opencost/opencost-helm-chart/pull/337) **Full Changelog**: ### [`v2.5.9`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.9) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.8...opencost-2.5.9) OpenCost and OpenCost UI #### What's Changed - Fix collectorDataSource retention env var conditions by [@​dag-andersen](https://github.com/dag-andersen) in [#​336](https://github.com/opencost/opencost-helm-chart/pull/336) #### New Contributors - [@​dag-andersen](https://github.com/dag-andersen) made their first contribution in [#​336](https://github.com/opencost/opencost-helm-chart/pull/336) **Full Changelog**: ### [`v2.5.8`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.8) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.7...opencost-2.5.8) OpenCost and OpenCost UI #### What's Changed - Opencost v1.119.2 Changes by [@​cpetersen5](https://github.com/cpetersen5) in [#​334](https://github.com/opencost/opencost-helm-chart/pull/334) **Full Changelog**: ### [`v2.5.7`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.7) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.6...opencost-2.5.7) OpenCost and OpenCost UI #### What's Changed - fix: fix csv export condition in deployment by [@​meroupatate](https://github.com/meroupatate) in [#​330](https://github.com/opencost/opencost-helm-chart/pull/330) #### New Contributors - [@​meroupatate](https://github.com/meroupatate) made their first contribution in [#​330](https://github.com/opencost/opencost-helm-chart/pull/330) **Full Changelog**: ### [`v2.5.6`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.6) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.5...opencost-2.5.6) OpenCost and OpenCost UI #### What's Changed - Do not grant permissions on nodes/proxy by default by [@​Farenjihn](https://github.com/Farenjihn) in [#​329](https://github.com/opencost/opencost-helm-chart/pull/329) #### New Contributors - [@​Farenjihn](https://github.com/Farenjihn) made their first contribution in [#​329](https://github.com/opencost/opencost-helm-chart/pull/329) **Full Changelog**: ### [`v2.5.5`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.5) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.4...opencost-2.5.5) OpenCost and OpenCost UI #### What's Changed - Add PRICING\_CONFIGMAP\_NAME env to achnowledge configmapName helm value by [@​mittal-ishaan](https://github.com/mittal-ishaan) in [#​316](https://github.com/opencost/opencost-helm-chart/pull/316) **Full Changelog**: ### [`v2.5.4`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.4) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.3...opencost-2.5.4) OpenCost and OpenCost UI #### What's Changed - feat(opencost): add Gateway API HTTPRoute support by [@​younsl](https://github.com/younsl) in [#​322](https://github.com/opencost/opencost-helm-chart/pull/322) #### New Contributors - [@​younsl](https://github.com/younsl) made their first contribution in [#​322](https://github.com/opencost/opencost-helm-chart/pull/322) **Full Changelog**: ### [`v2.5.3`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.3) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.2...opencost-2.5.3) OpenCost and OpenCost UI #### What's Changed - Add configurable nginx proxy timeouts to helm chart by [@​peatey](https://github.com/peatey) in [#​326](https://github.com/opencost/opencost-helm-chart/pull/326) #### New Contributors - [@​peatey](https://github.com/peatey) made their first contribution in [#​326](https://github.com/opencost/opencost-helm-chart/pull/326) **Full Changelog**: ### [`v2.5.2`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.2) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.1...opencost-2.5.2) OpenCost and OpenCost UI #### What's Changed - Update cloud-integration secret path by [@​thomasvn](https://github.com/thomasvn) in [#​324](https://github.com/opencost/opencost-helm-chart/pull/324) #### New Contributors - [@​thomasvn](https://github.com/thomasvn) made their first contribution in [#​324](https://github.com/opencost/opencost-helm-chart/pull/324) **Full Changelog**: ### [`v2.5.1`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.1) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.5.0...opencost-2.5.1) OpenCost and OpenCost UI #### What's Changed - Release Opencost v1.119.1 by [@​cpetersen5](https://github.com/cpetersen5) in [#​325](https://github.com/opencost/opencost-helm-chart/pull/325) **Full Changelog**: ### [`v2.5.0`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.5.0) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.4.1...opencost-2.5.0) OpenCost and OpenCost UI #### What's Changed - Release Opencost v1.119.0 by [@​cpetersen5](https://github.com/cpetersen5) in [#​323](https://github.com/opencost/opencost-helm-chart/pull/323) **Full Changelog**: ### [`v2.4.1`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.4.1) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.4.0...opencost-2.4.1) OpenCost and OpenCost UI #### What's Changed - fix: mcp disable procedure by [@​marijus-ravickas](https://github.com/marijus-ravickas) in [#​319](https://github.com/opencost/opencost-helm-chart/pull/319) #### New Contributors - [@​marijus-ravickas](https://github.com/marijus-ravickas) made their first contribution in [#​319](https://github.com/opencost/opencost-helm-chart/pull/319) **Full Changelog**: ### [`v2.4.0`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.4.0) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.3.2...opencost-2.4.0) OpenCost and OpenCost UI #### What's Changed - added-mcp-config by [@​sneaxhuh](https://github.com/sneaxhuh) in [#​311](https://github.com/opencost/opencost-helm-chart/pull/311) - Update Opencost to v1.118.0 by [@​cpetersen5](https://github.com/cpetersen5) in [#​314](https://github.com/opencost/opencost-helm-chart/pull/314) #### New Contributors - [@​sneaxhuh](https://github.com/sneaxhuh) made their first contribution in [#​311](https://github.com/opencost/opencost-helm-chart/pull/311) **Full Changelog**: ### [`v2.3.2`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.3.2) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.3.1...opencost-2.3.2) OpenCost and OpenCost UI #### What's Changed - fix: use default sc when sc name not specified by [@​cwyl02](https://github.com/cwyl02) in [#​312](https://github.com/opencost/opencost-helm-chart/pull/312) #### New Contributors - [@​cwyl02](https://github.com/cwyl02) made their first contribution in [#​312](https://github.com/opencost/opencost-helm-chart/pull/312) **Full Changelog**: ### [`v2.3.1`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.3.1) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.3.0...opencost-2.3.1) OpenCost and OpenCost UI #### What's Changed - feat: Add option to use cm to set CLUSTER\_ID envvar by [@​gracedo](https://github.com/gracedo) in [#​307](https://github.com/opencost/opencost-helm-chart/pull/307) #### New Contributors - [@​gracedo](https://github.com/gracedo) made their first contribution in [#​307](https://github.com/opencost/opencost-helm-chart/pull/307) **Full Changelog**: ### [`v2.3.0`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.3.0) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.2.9...opencost-2.3.0) OpenCost and OpenCost UI #### What's Changed - Add configs to mount custom ca certs to opencost container by [@​mittal-ishaan](https://github.com/mittal-ishaan) in [#​303](https://github.com/opencost/opencost-helm-chart/pull/303) **Full Changelog**: ### [`v2.2.9`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.2.9) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.2.8...opencost-2.2.9) OpenCost and OpenCost UI #### What's Changed - Add chart installation notes by [@​dejanu](https://github.com/dejanu) in [#​305](https://github.com/opencost/opencost-helm-chart/pull/305) - Release Opencost v1.117.6 by [@​cpetersen5](https://github.com/cpetersen5) in [#​309](https://github.com/opencost/opencost-helm-chart/pull/309) #### New Contributors - [@​dejanu](https://github.com/dejanu) made their first contribution in [#​305](https://github.com/opencost/opencost-helm-chart/pull/305) **Full Changelog**: ### [`v2.2.8`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.2.8) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.2.7...opencost-2.2.8) OpenCost and OpenCost UI #### What's Changed - Release Opencost v1.117.5 by [@​cpetersen5](https://github.com/cpetersen5) in [#​306](https://github.com/opencost/opencost-helm-chart/pull/306) **Full Changelog**: ### [`v2.2.7`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.2.7) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.2.6...opencost-2.2.7) OpenCost and OpenCost UI #### What's Changed - Add uiPath configuration for OpenCost UI by [@​gustavo-sdo](https://github.com/gustavo-sdo) in [#​298](https://github.com/opencost/opencost-helm-chart/pull/298) #### New Contributors - [@​gustavo-sdo](https://github.com/gustavo-sdo) made their first contribution in [#​298](https://github.com/opencost/opencost-helm-chart/pull/298) **Full Changelog**: ### [`v2.2.6`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.2.6) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.2.5...opencost-2.2.6) OpenCost and OpenCost UI #### What's Changed - Dodizzle/proxy fix by [@​ameijer](https://github.com/ameijer) in [#​301](https://github.com/opencost/opencost-helm-chart/pull/301) - allow: set path for internal prometheus by [@​dodizzle](https://github.com/dodizzle) in [#​271](https://github.com/opencost/opencost-helm-chart/pull/271) #### New Contributors - [@​dodizzle](https://github.com/dodizzle) made their first contribution in [#​271](https://github.com/opencost/opencost-helm-chart/pull/271) **Full Changelog**: ### [`v2.2.5`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.2.5) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.2.4...opencost-2.2.5) OpenCost and OpenCost UI #### What's Changed - Release v1.117.3 of Opencost by [@​cpetersen5](https://github.com/cpetersen5) in [#​300](https://github.com/opencost/opencost-helm-chart/pull/300) **Full Changelog**: ### [`v2.2.4`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.2.4) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.2.3...opencost-2.2.4) OpenCost and OpenCost UI #### What's Changed - Release v1.117.2 of Opencost by [@​cpetersen5](https://github.com/cpetersen5) in [#​299](https://github.com/opencost/opencost-helm-chart/pull/299) **Full Changelog**: ### [`v2.2.3`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.2.3) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.2.2...opencost-2.2.3) OpenCost and OpenCost UI #### What's Changed - Update env var names and values by [@​Sean-Holcomb](https://github.com/Sean-Holcomb) in [#​297](https://github.com/opencost/opencost-helm-chart/pull/297) **Full Changelog**: ### [`v2.2.2`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.2.2) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.2.1...opencost-2.2.2) OpenCost and OpenCost UI #### What's Changed - Advance to Opencost v1.117.0 by [@​mbolt35](https://github.com/mbolt35) in [#​296](https://github.com/opencost/opencost-helm-chart/pull/296) #### New Contributors - [@​mbolt35](https://github.com/mbolt35) made their first contribution in [#​296](https://github.com/opencost/opencost-helm-chart/pull/296) **Full Changelog**: ### [`v2.2.1`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.2.1) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.2.0...opencost-2.2.1) OpenCost and OpenCost UI #### What's Changed - Add `insecureSkipVerify` to `prometheus.external` by [@​charleshu-8](https://github.com/charleshu-8) in [#​294](https://github.com/opencost/opencost-helm-chart/pull/294) #### New Contributors - [@​charleshu-8](https://github.com/charleshu-8) made their first contribution in [#​294](https://github.com/opencost/opencost-helm-chart/pull/294) **Full Changelog**: ### [`v2.2.0`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.2.0) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.1.9...opencost-2.2.0) OpenCost and OpenCost UI #### What's Changed - Bump image tags and chart version by [@​cpetersen5](https://github.com/cpetersen5) in [#​291](https://github.com/opencost/opencost-helm-chart/pull/291) #### New Contributors - [@​cpetersen5](https://github.com/cpetersen5) made their first contribution in [#​291](https://github.com/opencost/opencost-helm-chart/pull/291) **Full Changelog**: ### [`v2.1.9`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.1.9) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.1.8...opencost-2.1.9) OpenCost and OpenCost UI #### What's Changed - Change ETL env variable name by [@​Sean-Holcomb](https://github.com/Sean-Holcomb) in [#​285](https://github.com/opencost/opencost-helm-chart/pull/285) **Full Changelog**: ### [`v2.1.8`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.1.8) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.1.7...opencost-2.1.8) OpenCost and OpenCost UI #### What's Changed - tweak params by [@​ameijer](https://github.com/ameijer) in [#​289](https://github.com/opencost/opencost-helm-chart/pull/289) - add option to override the default container command by [@​nishanthreddydd](https://github.com/nishanthreddydd) in [#​290](https://github.com/opencost/opencost-helm-chart/pull/290) #### New Contributors - [@​nishanthreddydd](https://github.com/nishanthreddydd) made their first contribution in [#​290](https://github.com/opencost/opencost-helm-chart/pull/290) **Full Changelog**: ### [`v2.1.7`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.1.7) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.1.6...opencost-2.1.7) OpenCost and OpenCost UI #### What's Changed - (doc) update readme to easily install unittest by [@​karthik-suresh](https://github.com/karthik-suresh) in [#​284](https://github.com/opencost/opencost-helm-chart/pull/284) - Add ability to configure resolution for prometheus by [@​Sean-Holcomb](https://github.com/Sean-Holcomb) in [#​282](https://github.com/opencost/opencost-helm-chart/pull/282) - Add support for Pod Disruption Budget by [@​josephteddick](https://github.com/josephteddick) in [#​287](https://github.com/opencost/opencost-helm-chart/pull/287) #### New Contributors - [@​karthik-suresh](https://github.com/karthik-suresh) made their first contribution in [#​284](https://github.com/opencost/opencost-helm-chart/pull/284) **Full Changelog**: ### [`v2.1.6`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.1.6) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.1.5...opencost-2.1.6) OpenCost and OpenCost UI #### What's Changed - feat(sec) - customize service account mounting by [@​cpsmx](https://github.com/cpsmx) in [#​283](https://github.com/opencost/opencost-helm-chart/pull/283) #### New Contributors - [@​cpsmx](https://github.com/cpsmx) made their first contribution in [#​283](https://github.com/opencost/opencost-helm-chart/pull/283) **Full Changelog**: ### [`v2.1.5`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.1.5) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.1.4...opencost-2.1.5) OpenCost and OpenCost UI #### What's Changed - Update opencost ui 1.115.0 image by [@​mittal-ishaan](https://github.com/mittal-ishaan) in [#​281](https://github.com/opencost/opencost-helm-chart/pull/281) **Full Changelog**: ### [`v2.1.4`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.1.4) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.1.3...opencost-2.1.4) OpenCost and OpenCost UI #### What's Changed - Bump OC to 1.115.0 by [@​mittal-ishaan](https://github.com/mittal-ishaan) in [#​277](https://github.com/opencost/opencost-helm-chart/pull/277) **Full Changelog**: ### [`v2.1.3`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.1.3) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.1.2...opencost-2.1.3) OpenCost and OpenCost UI #### What's Changed - Promless Config by [@​Sean-Holcomb](https://github.com/Sean-Holcomb) in [#​275](https://github.com/opencost/opencost-helm-chart/pull/275) - Add values examples and notes to values.yaml. Update version numbers by [@​Sean-Holcomb](https://github.com/Sean-Holcomb) in [#​276](https://github.com/opencost/opencost-helm-chart/pull/276) **Full Changelog**: ### [`v2.1.2`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.1.2) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.1.1...opencost-2.1.2) OpenCost and OpenCost UI #### What's Changed - Add support for API Ingress by [@​josephteddick](https://github.com/josephteddick) in [#​255](https://github.com/opencost/opencost-helm-chart/pull/255) #### New Contributors - [@​josephteddick](https://github.com/josephteddick) made their first contribution in [#​255](https://github.com/opencost/opencost-helm-chart/pull/255) **Full Changelog**: ### [`v2.1.1`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.1.1) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.1.0...opencost-2.1.1) OpenCost and OpenCost UI #### What's Changed - Fix for [#​272](https://github.com/opencost/opencost-helm-chart/pull/272) to make feature flag actually work. by [@​tintii](https://github.com/tintii) in [#​274](https://github.com/opencost/opencost-helm-chart/pull/274) **Full Changelog**: ### [`v2.1.0`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.1.0) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.0.2...opencost-2.1.0) OpenCost and OpenCost UI #### What's Changed - Openshift Security Context Constraints and updated ClusterRole with access to internal prometheus. by [@​v0nNemizez](https://github.com/v0nNemizez) in [#​267](https://github.com/opencost/opencost-helm-chart/pull/267) #### New Contributors - [@​v0nNemizez](https://github.com/v0nNemizez) made their first contribution in [#​267](https://github.com/opencost/opencost-helm-chart/pull/267) **Full Changelog**: ### [`v2.0.2`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.0.2) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.0.1...opencost-2.0.2) OpenCost and OpenCost UI #### What's Changed - Add opencost.ui.useIPv6 feature flag by [@​tintii](https://github.com/tintii) in [#​272](https://github.com/opencost/opencost-helm-chart/pull/272) #### New Contributors - [@​tintii](https://github.com/tintii) made their first contribution in [#​272](https://github.com/opencost/opencost-helm-chart/pull/272) **Full Changelog**: ### [`v2.0.1`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.0.1) [Compare Source](https://github.com/opencost/opencost-helm-chart/compare/opencost-2.0.0...opencost-2.0.1) OpenCost and OpenCost UI #### What's Changed - add sha256sums of configMaps to trigger a restart of the pod, if the configMap changes by [@​kastl-ars](https://github.com/kastl-ars) in [#​264](https://github.com/opencost/opencost-helm-chart/pull/264) **Full Changelog**: ### [`v2.0.0`](https://github.com/opencost/opencost-helm-chart/releases/tag/opencost-2.0.0) OpenCost and OpenCost UI #### What's Changed - add seperate openshift block to handle openshift related configurations and add frontend nginx config by [@​mittal-ishaan](https://github.com/mittal-ishaan) in [#​245](https://github.com/opencost/opencost-helm-chart/pull/245) - Updating chart badge by [@​TheUnixRoot](https://github.com/TheUnixRoot) in [#​261](https://github.com/opencost/opencost-helm-chart/pull/261) - Fix: Chart release script by [@​mittal-ishaan](https://github.com/mittal-ishaan) in [#​262](https://github.com/opencost/opencost-helm-chart/pull/262) #### New Contributors - [@​TheUnixRoot](https://github.com/TheUnixRoot) made their first contribution in [#​261](https://github.com/opencost/opencost-helm-chart/pull/261) **Full Changelog**:
--- ### Configuration 📅 **Schedule**: (in timezone Europe/Oslo) - Branch creation - At any time (no schedule defined) - Automerge - At any time (no schedule defined) 🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] If you want to rebase/retry this PR, check this box --- This PR has been generated by [Mend Renovate CLI](https://github.com/renovatebot/renovate). --------- Co-authored-by: Renovate Bot Reviewed-on: https://git.forteapps.net/Forte/launchpad/pulls/50 Reviewed-by: Danijel Simeunovic Co-authored-by: gitea_admin --- infra/base/opencost/opencost.yaml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/infra/base/opencost/opencost.yaml b/infra/base/opencost/opencost.yaml index e9ae10d..73b53a1 100644 --- a/infra/base/opencost/opencost.yaml +++ b/infra/base/opencost/opencost.yaml @@ -17,7 +17,7 @@ spec: sources: - repoURL: https://opencost.github.io/opencost-helm-chart chart: opencost - targetRevision: "1.43.2" + targetRevision: "2.5.32" helm: releaseName: opencost valueFiles: From 60b8fa657a3eba77d839857100426ce0fd01ae36 Mon Sep 17 00:00:00 2001 From: gitea_admin Date: Thu, 1 Oct 2026 09:40:57 +0000 Subject: [PATCH 2/7] chore(deps): update nikitafilonov/ai-review docker tag to v1 (#53) MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | nikitafilonov/ai-review | docker | major | `v0.77.0` → `v1.1.0` | --- ### Configuration 📅 **Schedule**: (in timezone Europe/Oslo) - Branch creation - At any time (no schedule defined) - Automerge - At any time (no schedule defined) 🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] If you want to rebase/retry this PR, check this box --- This PR has been generated by [Mend Renovate CLI](https://github.com/renovatebot/renovate). --------- Co-authored-by: Renovate Bot Reviewed-on: https://git.forteapps.net/Forte/launchpad/pulls/53 Reviewed-by: Danijel Simeunovic Co-authored-by: gitea_admin --- .gitea/workflows/ai-review.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.gitea/workflows/ai-review.yaml b/.gitea/workflows/ai-review.yaml index 667884c..96068c0 100644 --- a/.gitea/workflows/ai-review.yaml +++ b/.gitea/workflows/ai-review.yaml @@ -41,11 +41,11 @@ jobs: run: git submodule update --remote --merge - name: Run inline review - uses: docker://nikitafilonov/ai-review:v0.77.0 + uses: docker://nikitafilonov/ai-review:v1.1.0 with: args: ai-review run-inline - name: Run summary review - uses: docker://nikitafilonov/ai-review:v0.77.0 + uses: docker://nikitafilonov/ai-review:v1.1.0 with: args: ai-review run-summary From 4a4b8e3540a4fd06470c63c10e899493a70167e2 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?J=C3=B8rgen=20Stensrud?= Date: Thu, 1 Oct 2026 11:25:34 +0000 Subject: [PATCH 3/7] feat(keycloak): forte-cli device-code client + forte-drop-mcp audience mapper (#44) Adds the shared public forte-cli client (RFC 8628 device-code only) to the forte realm, with an oidc-audience-mapper that puts https://mcp.drop.forteapps.net/mcp into aud so the forte-drop-mcp sidecar accepts its tokens. Supersedes #26. Co-Authored-By: Claude Opus 5.5 --- docs/DEVELOPER-GUIDE.md | 6 +++++ infra/values/base/keycloak-values.yaml | 31 +++++++++++++++++++++++++- 2 files changed, 36 insertions(+), 1 deletion(-) diff --git a/docs/DEVELOPER-GUIDE.md b/docs/DEVELOPER-GUIDE.md index 0e9f5aa..0dfb810 100644 --- a/docs/DEVELOPER-GUIDE.md +++ b/docs/DEVELOPER-GUIDE.md @@ -1469,6 +1469,12 @@ ArgoCD will sync the Keycloak config, and the registrar CronJob will pick up the | `k8s.secret.client-id-key` | No | `client-id` | Field name for the client ID in the K8s Secret | | `k8s.secret.client-secret-key` | No | `client-secret` | Field name for the client secret in the K8s Secret | +#### Public CLI Client (Device-Code Login) + +`forte-cli` is a shared **public** client (no secret) with the RFC 8628 device-authorization grant enabled (`oauth2.device.authorization.grant.enabled: "true"`, `standardFlowEnabled: false`, `directAccessGrantsEnabled: false`). Downloaded skills and CLI tools that log in through the Auth Sidecar (forte-drop first) use it with `_CLIENT_ID=forte-cli`; nothing per-tool needs to be registered in Keycloak. + +It must be defined in `forte-realm.json` (this legacy path): the self-service registrar hardcodes `publicClient: false` / `standardFlowEnabled: true` and drops `attributes`, so a `client-config` Secret cannot produce a public device-code client. It carries no `k8s.secret.sync` attribute (the registrar's secret sync skips it) and is listed in the cleanup CronJob's protected clients. + ### Retrieving Secrets for External Deployments The registrar always writes a **central copy** of every synced secret to the `secrets` namespace, in addition to the target namespace. This allows operators to retrieve client credentials for applications deployed outside this cluster: diff --git a/infra/values/base/keycloak-values.yaml b/infra/values/base/keycloak-values.yaml index 2e838a6..9e01070 100644 --- a/infra/values/base/keycloak-values.yaml +++ b/infra/values/base/keycloak-values.yaml @@ -186,6 +186,35 @@ keycloakConfigCli: } } ] + }, + { + "clientId": "forte-cli", + "name": "Forte CLI", + "description": "Shared public client for RFC 8628 device-code login from downloaded skills/CLI tools (forte-drop first) against services behind Auth Sidecar. No client secret.", + "enabled": true, + "protocol": "openid-connect", + "standardFlowEnabled": false, + "directAccessGrantsEnabled": false, + "publicClient": true, + "redirectUris": [], + "webOrigins": [], + "attributes": { + "oauth2.device.authorization.grant.enabled": "true" + }, + "protocolMappers": [ + { + "name": "audience-forte-drop-mcp", + "protocol": "openid-connect", + "protocolMapper": "oidc-audience-mapper", + "consentRequired": false, + "config": { + "included.custom.audience": "https://mcp.drop.forteapps.net/mcp", + "access.token.claim": "true", + "id.token.claim": "false", + "introspection.token.claim": "true" + } + } + ] } ], "browserFlow": "browser-auto-idp", @@ -671,7 +700,7 @@ extraDeploy: MIN_AGE_SEC=$((MIN_AGE_DAYS * 86400)) # Hardcoded protected clients (never delete these) - PROTECTED_JSON='["gitea","grafana","argocd","vaultwarden","account","account-console","admin-cli","broker","realm-management","security-admin-console"]' + PROTECTED_JSON='["gitea","grafana","argocd","forte-cli","vaultwarden","account","account-console","admin-cli","broker","realm-management","security-admin-console"]' echo "Fetching clients from realm '${REALM}'..." CLIENTS=$(curl -sf -H "Authorization: Bearer ${TOKEN}" \ From 0f0082d54d1358015a3343896e91c047ff8773a4 Mon Sep 17 00:00:00 2001 From: gitea_admin Date: Sat, 3 Oct 2026 18:55:02 +0000 Subject: [PATCH 4/7] chore(deps): update helm release fluent-bit to v0.58.3 (#57) MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit This PR contains the following updates: | Package | Update | Change | |---|---|---| | [fluent-bit](https://fluentbit.io/) ([source](https://github.com/fluent/helm-charts)) | patch | `0.58.2` → `0.58.3` | --- ### Release Notes
fluent/helm-charts (fluent-bit) ### [`v0.58.3`](https://github.com/fluent/helm-charts/releases/tag/fluent-bit-0.58.3) [Compare Source](https://github.com/fluent/helm-charts/compare/fluent-bit-0.58.2...fluent-bit-0.58.3) ##### Changed - Update *Fluent Bit* OCI image to [v5.1.3](https://github.com/fluent/fluent-bit/releases/tag/v5.1.3). ([#​759](https://github.com/fluent/helm-charts/pull/759)) [@​stevehipwell](https://github.com/stevehipwell)
--- ### Configuration 📅 **Schedule**: (in timezone Europe/Oslo) - Branch creation - At any time (no schedule defined) - Automerge - At any time (no schedule defined) 🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] If you want to rebase/retry this PR, check this box --- This PR has been generated by [Mend Renovate CLI](https://github.com/renovatebot/renovate). --------- Co-authored-by: Renovate Bot Reviewed-on: https://git.forteapps.net/Forte/launchpad/pulls/57 Reviewed-by: Danijel Simeunovic Co-authored-by: gitea_admin --- infra/base/fluent-bit/fluent-bit.yaml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/infra/base/fluent-bit/fluent-bit.yaml b/infra/base/fluent-bit/fluent-bit.yaml index 8cca075..538c133 100644 --- a/infra/base/fluent-bit/fluent-bit.yaml +++ b/infra/base/fluent-bit/fluent-bit.yaml @@ -17,7 +17,7 @@ spec: sources: - repoURL: https://fluent.github.io/helm-charts chart: fluent-bit - targetRevision: 0.58.2 + targetRevision: 0.58.3 helm: releaseName: fluent-bit valueFiles: From 840c354ea38b83e896630d15990e6d3711b36c46 Mon Sep 17 00:00:00 2001 From: gitea_admin Date: Sat, 3 Oct 2026 18:55:31 +0000 Subject: [PATCH 5/7] chore(deps): update terraform azurerm to v5 (#55) MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit This PR contains the following updates: | Package | Type | Update | Change | Pending | |---|---|---|---|---| | [azurerm](https://registry.terraform.io/providers/hashicorp/azurerm) ([source](https://github.com/hashicorp/terraform-provider-azurerm)) | required_provider | major | `~> 4.0` → `~> 5.0` | `5.8.0` | --- ### Release Notes
hashicorp/terraform-provider-azurerm (azurerm) ### [`v5.7.0`](https://github.com/hashicorp/terraform-provider-azurerm/blob/HEAD/CHANGELOG.md#570-September-24-2026) [Compare Source](https://github.com/hashicorp/terraform-provider-azurerm/compare/v5.6.0...v5.7.0) FEATURES: - **New List Resource**: `azurerm_private_dns_resolver_forwarding_rule` ([#​33313](https://github.com/hashicorp/terraform-provider-azurerm/issues/33313)) - **New List Resource**: `azurerm_windows_virtual_machine` ([#​33332](https://github.com/hashicorp/terraform-provider-azurerm/issues/33332)) ENHANCEMENTS: - dependencies: `go-azure-sdk` - update to `v0.20260917.1142820` ([#​33495](https://github.com/hashicorp/terraform-provider-azurerm/issues/33495)) - dependencies: `network` - update API version to `2025-07-01` ([#​33441](https://github.com/hashicorp/terraform-provider-azurerm/issues/33441)) - Data Source: `azurerm_linux_web_app` - export the `virtual_network_image_pull_enabled` property ([#​33316](https://github.com/hashicorp/terraform-provider-azurerm/issues/33316)) - Data Source: `azurerm_network_interface` - export the `auxiliary_mode`, `auxiliary_sku`, `edge_zone`, and `internal_domain_name_suffix` properties ([#​33204](https://github.com/hashicorp/terraform-provider-azurerm/issues/33204)) - Data Source: `azurerm_public_ip` - export the `domain_name_label_scope`, `edge_zone`, `public_ip_prefix_id`, and `sku_tier` properties ([#​33193](https://github.com/hashicorp/terraform-provider-azurerm/issues/33193)) - Data Source: `azurerm_service_plan` - export the `premium_plan_auto_scale_enabled` property ([#​33300](https://github.com/hashicorp/terraform-provider-azurerm/issues/33300)) - Data Source: `azurerm_storage_blob` - export the `cache_control` and `source_uri` properties ([#​33318](https://github.com/hashicorp/terraform-provider-azurerm/issues/33318)) - Data Source: `azurerm_traffic_manager_profile` - export the `maximum_return` property ([#​33346](https://github.com/hashicorp/terraform-provider-azurerm/issues/33346)) - Data Source: `azurerm_web_pubsub` - export the `live_trace` and `identity` properties ([#​33373](https://github.com/hashicorp/terraform-provider-azurerm/issues/33373)) - `azurerm_kubernetes_cluster_node_pool` - add `Windows2025` as a valid value for the `os_sku` property ([#​33463](https://github.com/hashicorp/terraform-provider-azurerm/issues/33463)) - `azurerm_kubernetes_cluster` - add `Windows2025` as a valid value for the `os_sku` property ([#​33463](https://github.com/hashicorp/terraform-provider-azurerm/issues/33463)) BUG FIXES: - Data Source: `azurerm_kubernetes_cluster` - fix a panic caused by a nil pointer dereference while flattening `agent_pool_profile` ([#​33488](https://github.com/hashicorp/terraform-provider-azurerm/issues/33488)) - `azurerm_postgresql_flexible_server` - fix `cluster` block read for replica `create_mode` ([#​33082](https://github.com/hashicorp/terraform-provider-azurerm/issues/33082)) ### [`v5.6.0`](https://github.com/hashicorp/terraform-provider-azurerm/blob/HEAD/CHANGELOG.md#560-September-17-2026) [Compare Source](https://github.com/hashicorp/terraform-provider-azurerm/compare/v5.5.0...v5.6.0) FEATURES: - **New List Resource**: `azurerm_batch_account` ([#​33252](https://github.com/hashicorp/terraform-provider-azurerm/issues/33252)) - **New List Resource**: `azurerm_cdn_frontdoor_origin_group` ([#​33334](https://github.com/hashicorp/terraform-provider-azurerm/issues/33334)) - **New Resource**: `azurerm_storage_discovery_workspace` ([#​31479](https://github.com/hashicorp/terraform-provider-azurerm/issues/31479)) ENHANCEMENTS: - dependencies: `containers` - update API version to `2026-05-01` ([#​32688](https://github.com/hashicorp/terraform-provider-azurerm/issues/32688)) - dependencies: `go-azure-sdk` - update to `v0.20260910.1141000` ([#​33413](https://github.com/hashicorp/terraform-provider-azurerm/issues/33413)) - dependencies: `qumulo` - update API version to `2026-04-16` ([#​33421](https://github.com/hashicorp/terraform-provider-azurerm/issues/33421)) - dependencies: `servicebus` - update to API version `2026-01-01` ([#​33450](https://github.com/hashicorp/terraform-provider-azurerm/issues/33450)) - `azurerm_iothub_device_update_instance` - add support for the `connection_string_wo` and `connection_string_wo_version` properties ([#​33448](https://github.com/hashicorp/terraform-provider-azurerm/issues/33448)) - `azurerm_linux_function_app` - add support for the `end_to_end_tls_encryption_enabled` property ([#​31135](https://github.com/hashicorp/terraform-provider-azurerm/issues/31135)) - `azurerm_linux_function_app_slot` - add support for the `end_to_end_tls_encryption_enabled` property ([#​31135](https://github.com/hashicorp/terraform-provider-azurerm/issues/31135)) - `azurerm_linux_web_app` - add support for the `end_to_end_tls_encryption_enabled` property ([#​31135](https://github.com/hashicorp/terraform-provider-azurerm/issues/31135)) - `azurerm_linux_web_app_slot` - add support for the `end_to_end_tls_encryption_enabled` property ([#​31135](https://github.com/hashicorp/terraform-provider-azurerm/issues/31135)) - `azurerm_mongo_cluster` - Support new property `network_bypass_mode` ([#​33168](https://github.com/hashicorp/terraform-provider-azurerm/issues/33168)) - `azurerm_servicebus_namespace` - add support for the `1.3` value to the `minimum_tls_version` property ([#​33457](https://github.com/hashicorp/terraform-provider-azurerm/issues/33457)) - `azurerm_windows_function_app` - add support for the `end_to_end_tls_encryption_enabled` property ([#​31135](https://github.com/hashicorp/terraform-provider-azurerm/issues/31135)) - `azurerm_windows_function_app_slot` - add support for the `end_to_end_tls_encryption_enabled` property ([#​31135](https://github.com/hashicorp/terraform-provider-azurerm/issues/31135)) - `azurerm_windows_web_app` - add support for the `end_to_end_tls_encryption_enabled` property ([#​31135](https://github.com/hashicorp/terraform-provider-azurerm/issues/31135)) - `azurerm_windows_web_app_slot` - add support for the `end_to_end_tls_encryption_enabled` property ([#​31135](https://github.com/hashicorp/terraform-provider-azurerm/issues/31135)) BUG FIXES: - `azurerm_site_recovery_replicated_vm` - select `managed_disk` properties compared case insensitive ([#​33424](https://github.com/hashicorp/terraform-provider-azurerm/issues/33424)) ### [`v5.5.0`](https://github.com/hashicorp/terraform-provider-azurerm/blob/HEAD/CHANGELOG.md#550-September-10-2026) [Compare Source](https://github.com/hashicorp/terraform-provider-azurerm/compare/v5.4.0...v5.5.0) FEATURES: - **New List Resource**: `azurerm_analysis_services_server` ([#​33250](https://github.com/hashicorp/terraform-provider-azurerm/issues/33250)) - **New List Resource**: `azurerm_application_insights_workbook` ([#​33244](https://github.com/hashicorp/terraform-provider-azurerm/issues/33244)) - **New List Resource**: `azurerm_attestation_provider` ([#​33251](https://github.com/hashicorp/terraform-provider-azurerm/issues/33251)) - **New List Resource**: `azurerm_cdn_frontdoor_origin` ([#​33307](https://github.com/hashicorp/terraform-provider-azurerm/issues/33307)) - **New List Resource**: `azurerm_eventhub_consumer_group` ([#​33335](https://github.com/hashicorp/terraform-provider-azurerm/issues/33335)) - **New List Resource**: `azurerm_linux_virtual_machine` ([#​33333](https://github.com/hashicorp/terraform-provider-azurerm/issues/33333)) - **New List Resource**: `azurerm_virtual_hub_connection` ([#​33311](https://github.com/hashicorp/terraform-provider-azurerm/issues/33311)) ENHANCEMENTS: - dependencies: `go-azure-sdk` - update to `v0.20260901.1173158` ([#​33274](https://github.com/hashicorp/terraform-provider-azurerm/issues/33274)) - `azurerm_private_endpoint` - lock on private service connection resource ids ([#​33298](https://github.com/hashicorp/terraform-provider-azurerm/issues/33298)) - `azurerm_storage_account` - add support for the `public_network_access` property ([#​33292](https://github.com/hashicorp/terraform-provider-azurerm/issues/33292)) BUG FIXES: - `azurerm_resource_group` - the `managed_by` property now forces recreation when changed as the API does not support changing this value ([#​33339](https://github.com/hashicorp/terraform-provider-azurerm/issues/33339)) - `go-azure-sdk` - `Delete` operations now poll on asynchronous operation URLs if returned by the API instead of only checking for a `404` on the resource URL, ensuring deletion errors are reported to the user ([#​33274](https://github.com/hashicorp/terraform-provider-azurerm/issues/33274)) ### [`v5.4.0`](https://github.com/hashicorp/terraform-provider-azurerm/blob/HEAD/CHANGELOG.md#540-September-03-2026) [Compare Source](https://github.com/hashicorp/terraform-provider-azurerm/compare/v5.3.0...v5.4.0) FEATURES: - **New List Resource**: `azurerm_application_insights_standard_web_test` ([#​33243](https://github.com/hashicorp/terraform-provider-azurerm/issues/33243)) - **New List Resource**: `azurerm_application_insights_workbook_template` ([#​33245](https://github.com/hashicorp/terraform-provider-azurerm/issues/33245)) - **New List Resource**: `azurerm_arc_kubernetes_provisioned_cluster` ([#​33247](https://github.com/hashicorp/terraform-provider-azurerm/issues/33247)) - **New List Resource**: `azurerm_availability_set` ([#​33241](https://github.com/hashicorp/terraform-provider-azurerm/issues/33241)) - **New List Resource**: `azurerm_batch_application` ([#​33254](https://github.com/hashicorp/terraform-provider-azurerm/issues/33254)) - **New List Resource**: `azurerm_dedicated_host_group` ([#​33257](https://github.com/hashicorp/terraform-provider-azurerm/issues/33257)) - **New List Resource**: `azurerm_log_analytics_workspace` ([#​33259](https://github.com/hashicorp/terraform-provider-azurerm/issues/33259)) ENHANCEMENTS: - dependencies: `azurerm_mongo_cluster` - update API version to `2026-06-01` ([#​33195](https://github.com/hashicorp/terraform-provider-azurerm/issues/33195)) - dependencies: `azurerm_mongo_cluster_firewall_rule` - update API version to `2026-06-01` ([#​33195](https://github.com/hashicorp/terraform-provider-azurerm/issues/33195)) - dependencies: `azurerm_mongo_cluster_user` - update API version to `2026-06-01` ([#​33195](https://github.com/hashicorp/terraform-provider-azurerm/issues/33195)) - dependencies: `netapp` - update API version to `2026-05-01` ([#​33215](https://github.com/hashicorp/terraform-provider-azurerm/issues/33215)) - Data Source: `azurerm_api_management_workspace` - export the `description` property ([#​33205](https://github.com/hashicorp/terraform-provider-azurerm/issues/33205)) - Data Source: `azurerm_attestation_provider` - export the `sev_snp_policy_base64`, `open_enclave_policy_base64`, `sgx_enclave_policy_base64`, and `tpm_policy_base64` properties ([#​33125](https://github.com/hashicorp/terraform-provider-azurerm/issues/33125)) - Data Source: `azurerm_automation_account` - export the `dsc_primary_access_key`, `dsc_server_endpoint`, `dsc_secondary_access_key`, `public_network_access_enabled`, `sku_name`, and `tags` properties ([#​33135](https://github.com/hashicorp/terraform-provider-azurerm/issues/33135)) - Data Source: `azurerm_automation_account` - export the `encryption` block ([#​33135](https://github.com/hashicorp/terraform-provider-azurerm/issues/33135)) - Data Source: `azurerm_ip_group` - export the `firewall_ids` and `firewall_policy_ids` properties ([#​33190](https://github.com/hashicorp/terraform-provider-azurerm/issues/33190)) - Data Source: `azurerm_private_link_service` - export the `fqdns` and `destination_ip_address` properties ([#​33191](https://github.com/hashicorp/terraform-provider-azurerm/issues/33191)) - `azurerm_key_vault_managed_hardware_security_module_key` - allow the `key_size` property to be set when `key_type` is `oct-HSM` ([#​32690](https://github.com/hashicorp/terraform-provider-azurerm/issues/32690)) - `azurerm_lb_probe ` - add support for the `no_healthy_backends_behavior` property ([#​32645](https://github.com/hashicorp/terraform-provider-azurerm/issues/32645)) - `azurerm_linux_virtual_machine_scale_set` - add support for the `NvmeDisk` value to the `os_disk.diff_disk_settings.placement` property ([#​30328](https://github.com/hashicorp/terraform-provider-azurerm/issues/30328)) - `azurerm_linux_web_app` - add support for the `8.5` value in the `site_config.application_stack.php_version` property ([#​33308](https://github.com/hashicorp/terraform-provider-azurerm/issues/33308)) - `azurerm_linux_web_app_slot` - add support for the `8.5` value in the `site_config.application_stack.php_version` property ([#​33308](https://github.com/hashicorp/terraform-provider-azurerm/issues/33308)) - `azurerm_netapp_volume` - support for the `breakthrough_mode_enabled` property ([#​33215](https://github.com/hashicorp/terraform-provider-azurerm/issues/33215)) - `azurerm_postgresql_flexible_server` - add support for the `storage_type`, `storage_iops`, and `storage_throughput` properties which allows choice of the new "Premium V2 LRS" storage type ([#​32121](https://github.com/hashicorp/terraform-provider-azurerm/issues/32121)) - `azurerm_storage_account` - add support for an in-place migration of `account_replication_type` between matching non-zonal and zonal types instead of resource recreation ([#​33236](https://github.com/hashicorp/terraform-provider-azurerm/issues/33236)) - `azurerm_storage_table` - add support for AAD authentication ([#​32997](https://github.com/hashicorp/terraform-provider-azurerm/issues/32997)) - `azurerm_synapse_spark_pool` - migrate to `go-azure-sdk` ([#​33258](https://github.com/hashicorp/terraform-provider-azurerm/issues/33258)) - `azurerm_windows_virtual_machine_scale_set` - add support for the `NvmeDisk` value to the `os_disk.diff_disk_settings.placement` property ([#​30328](https://github.com/hashicorp/terraform-provider-azurerm/issues/30328)) BUG FIXES: - `azurerm_synapse_spark_pool` - fix `lifecycle.ignore_changes` support ([#​33258](https://github.com/hashicorp/terraform-provider-azurerm/issues/33258)) ### [`v5.3.0`](https://github.com/hashicorp/terraform-provider-azurerm/blob/HEAD/CHANGELOG.md#530-August-27-2026) [Compare Source](https://github.com/hashicorp/terraform-provider-azurerm/compare/v5.2.0...v5.3.0) FEATURES: - **New Data Source**: `azurerm_playwright_workspace` ([#​31954](https://github.com/hashicorp/terraform-provider-azurerm/issues/31954)) - **New List Resource**: `azurerm_cognitive_deployment` ([#​33149](https://github.com/hashicorp/terraform-provider-azurerm/issues/33149)) - **New List Resource**: `azurerm_playwright_workspace` ([#​31954](https://github.com/hashicorp/terraform-provider-azurerm/issues/31954)) - **New Resource**: `azurerm_playwright_workspace` ([#​31954](https://github.com/hashicorp/terraform-provider-azurerm/issues/31954)) ENHANCEMENTS: - dependencies: `go-azure-helpers` - update version to `0.82.0` ([#​33142](https://github.com/hashicorp/terraform-provider-azurerm/issues/33142)) - dependencies: `sql` - update API version to `2025-01-01` ([#​33201](https://github.com/hashicorp/terraform-provider-azurerm/issues/33201)) - Data Source: `azurerm_role_definition` - export the `role_definition_resource_id` property ([#​33126](https://github.com/hashicorp/terraform-provider-azurerm/issues/33126)) - `azurerm_cognitive_deployment` - add Resource Identity support ([#​33149](https://github.com/hashicorp/terraform-provider-azurerm/issues/33149)) - `azurerm_federated_identity_credential` - add additional polling to account for Azure's eventual consistency ([#​32935](https://github.com/hashicorp/terraform-provider-azurerm/issues/32935)) - `azurerm_kubernetes_cluster` - add support for the `oms_agent.retina_flow_logs_enabled` property ([#​33222](https://github.com/hashicorp/terraform-provider-azurerm/issues/33222)) - `azurerm_managed_application` - add support for the `identity` block ([#​30725](https://github.com/hashicorp/terraform-provider-azurerm/issues/30725)) - `azurerm_private_endpoint` - extend validation for the `private_service_connection.subresource_names` property to allow names containing spaces ([#​32887](https://github.com/hashicorp/terraform-provider-azurerm/issues/32887)) - `azurerm_search_service` - allow in-place downgrades of the `sku` property between Basic and Standard tiers ([#​33069](https://github.com/hashicorp/terraform-provider-azurerm/issues/33069)) - `azurerm_site_recovery_replicated_vm` - add update support to the `managed_disk` block without requiring resource recreation ([#​33140](https://github.com/hashicorp/terraform-provider-azurerm/issues/33140)) - `azurerm_user_assigned_identity` - add additional polling to account for Azure's eventual consistency ([#​33142](https://github.com/hashicorp/terraform-provider-azurerm/issues/33142)) BUG FIXES: - Data Source: `azurerm_app_configuration_key` - now correctly sets `tags` into state ([#​33182](https://github.com/hashicorp/terraform-provider-azurerm/issues/33182)) - `azurerm_eventhub_namespace` - prevent `network_rulesets.x.default_action` being set to `Deny` if `ip_rule` or `virtual_network_rule` is not specified ([#​33216](https://github.com/hashicorp/terraform-provider-azurerm/issues/33216)) ### [`v5.2.0`](https://github.com/hashicorp/terraform-provider-azurerm/blob/HEAD/CHANGELOG.md#520-August-20-2026) [Compare Source](https://github.com/hashicorp/terraform-provider-azurerm/compare/v5.1.0...v5.2.0) FEATURES: - **New List Resource**: `azurerm_user_assigned_identity` ([#​32667](https://github.com/hashicorp/terraform-provider-azurerm/issues/32667)) ENHANCEMENTS: - dependencies: `go` - update to `1.26.6` ([#​33141](https://github.com/hashicorp/terraform-provider-azurerm/issues/33141)) - dependencies: `go-azure-sdk` - update to `v0.20260811.1225050` ([#​33079](https://github.com/hashicorp/terraform-provider-azurerm/issues/33079)) - `azurerm_cdn_frontdoor_batch_rule_set` - allow `/` as an input to `rule.conditions.request_path.values` ([#​33023](https://github.com/hashicorp/terraform-provider-azurerm/issues/33023)) - `azurerm_databricks_workspace` - remove a redundant key vault existence check ([#​33136](https://github.com/hashicorp/terraform-provider-azurerm/issues/33136)) - `azurerm_databricks_workspace_root_dbfs_customer_managed_key` - remove a redundant key vault existence check ([#​33136](https://github.com/hashicorp/terraform-provider-azurerm/issues/33136)) - `azurerm_logic_app_standard` - add support for `v10.0` to `site_config.dotnet_framework_version` ([#​33116](https://github.com/hashicorp/terraform-provider-azurerm/issues/33116)) - `azurerm_mongo_cluster` - `administrator_password` is no longer required when `create_mode` is `Default` to support Entra ID-only authentication ([#​32092](https://github.com/hashicorp/terraform-provider-azurerm/issues/32092)) - `azurerm_redhat_openshift_cluster` - add support for the `network_profile.load_balancer_profile` block ([#​32473](https://github.com/hashicorp/terraform-provider-azurerm/issues/32473)) - `azurerm_redhat_openshift_cluster` - add support for the `platform_workload_identity_profile` block ([#​32473](https://github.com/hashicorp/terraform-provider-azurerm/issues/32473)) - `azurerm_role_assignment` - the `condition`, `condition_version`, and `description` properties can now be updated in-place ([#​32714](https://github.com/hashicorp/terraform-provider-azurerm/issues/32714)) - `azurerm_snapshot` - `create_option` now supports `CopyStart` ([#​32834](https://github.com/hashicorp/terraform-provider-azurerm/issues/32834)) BUG FIXES: - `azurerm_cognitive_account_project` - added create/update/delete lock on parent AccountID to make sure operations on parent account are processed in serial (required by Cognitive service) ([#​33151](https://github.com/hashicorp/terraform-provider-azurerm/issues/33151)) - `azurerm_databricks_workspace` - fix a persistent diff on removal of `managed_disk_cmk_key_vault_key_id` or `managed_services_cmk_key_vault_key_id` ([#​33136](https://github.com/hashicorp/terraform-provider-azurerm/issues/33136)) - `azurerm_oracle_exadata_infrastructure` - fix an issue that prevented users from deploying with no `zones` set ([#​33011](https://github.com/hashicorp/terraform-provider-azurerm/issues/33011)) ### [`v5.1.0`](https://github.com/hashicorp/terraform-provider-azurerm/blob/HEAD/CHANGELOG.md#510-August-13-2026) [Compare Source](https://github.com/hashicorp/terraform-provider-azurerm/compare/v5.0.1...v5.1.0) ENHANCEMENTS: - dependencies: `azurerm_linux_virtual_machine_scale_set` - update to API version `2025-04-01` ([#​31586](https://github.com/hashicorp/terraform-provider-azurerm/issues/31586)) - dependencies: `azurerm_orchestrated_virtual_machine_scale_set` - update to API version `2025-04-01` ([#​31586](https://github.com/hashicorp/terraform-provider-azurerm/issues/31586)) - dependencies: `azurerm_virtual_machine_scale_set` - update to API version `2025-04-01` ([#​31586](https://github.com/hashicorp/terraform-provider-azurerm/issues/31586)) - dependencies: `azurerm_virtual_machine_scale_set_extension` - update to API version `2025-04-01` ([#​31586](https://github.com/hashicorp/terraform-provider-azurerm/issues/31586)) - dependencies: `azurerm_windows_virtual_machine_scale_set` - update to API version `2025-04-01` ([#​31586](https://github.com/hashicorp/terraform-provider-azurerm/issues/31586)) - dependencies: `codesigning` - update to API version `2025-10-13` ([#​31714](https://github.com/hashicorp/terraform-provider-azurerm/issues/31714)) - `azurerm_linux_virtual_machine` - `encryption_at_host_enabled` can now be set to `true` when `os_disk.security_encryption_type` is set to `DiskWithVMGuestState` ([#​32885](https://github.com/hashicorp/terraform-provider-azurerm/issues/32885)) - `azurerm_linux_virtual_machine_scale_set` - `encryption_at_host_enabled` can now be set to `true` when `os_disk.security_encryption_type` is set to `DiskWithVMGuestState` ([#​32885](https://github.com/hashicorp/terraform-provider-azurerm/issues/32885)) - `azurerm_managed_devops_pool` - add support for the `CreatorOnly` value to `azure_devops_organization.permission.kind` property ([#​32753](https://github.com/hashicorp/terraform-provider-azurerm/issues/32753)) - `azurerm_windows_virtual_machine` - `encryption_at_host_enabled` can now be set to `true` when `os_disk.security_encryption_type` is set to `DiskWithVMGuestState` ([#​32885](https://github.com/hashicorp/terraform-provider-azurerm/issues/32885)) - `azurerm_windows_virtual_machine_scale_set` - `encryption_at_host_enabled` can now be set to `true` when `os_disk.security_encryption_type` is set to `DiskWithVMGuestState` ([#​32885](https://github.com/hashicorp/terraform-provider-azurerm/issues/32885)) BUG FIXES: - `azurerm_cdn_frontdoor_batch_ruleset` - parse `rule.actions.route_configuration_override.origin_group.cdn_frontdoor_origin_group_id` case-insensitively and normalize the resulting value to prevent diffs ([#​32980](https://github.com/hashicorp/terraform-provider-azurerm/issues/32980)) - `azurerm_cdn_frontdoor_route` - parse `cdn_frontdoor_origin_group_id` case-insensitively and normalize the resulting value to prevent diffs ([#​32980](https://github.com/hashicorp/terraform-provider-azurerm/issues/32980)) - `azurerm_cdn_frontdoor_secret` - fix an incorrect type assertion ([#​32982](https://github.com/hashicorp/terraform-provider-azurerm/issues/32982)) - `azurerm_dev_center_project` - parse `dev_center_id` case-insensitively and normalize the resulting value to prevent diffs ([#​32798](https://github.com/hashicorp/terraform-provider-azurerm/issues/32798)) - `azurerm_eventhub` - now prevents the `status` property from being set to `SendDisabled` on create ([#​33071](https://github.com/hashicorp/terraform-provider-azurerm/issues/33071)) - `azurerm_storage_container` - add a state migration for the `id` field, fixing the upgrade path from 4.x to 5.x ([#​32978](https://github.com/hashicorp/terraform-provider-azurerm/issues/32978)) - `azurerm_storage_queue` - extend state migration to handle a malformed `resource_manager_id` ([#​32979](https://github.com/hashicorp/terraform-provider-azurerm/issues/32979)) - `azurerm_storage_share` - add a state migration for the `id` field, fixing the upgrade path from 4.x to 5.x ([#​33075](https://github.com/hashicorp/terraform-provider-azurerm/issues/33075)) ### [`v5.0.1`](https://github.com/hashicorp/terraform-provider-azurerm/blob/HEAD/CHANGELOG.md#501-July-30-2026) [Compare Source](https://github.com/hashicorp/terraform-provider-azurerm/compare/v5.0.0...v5.0.1) NOTES: In addition to the bug fixes below, a number of resource documentation pages and the 5.0-upgrade-guide have been updated. BUG FIXES: - `azurerm_cdn_frontdoor_origin` - fix a regression that prevented valid values as input to `private_link.private_link_target_id` ([#​32912](https://github.com/hashicorp/terraform-provider-azurerm/issues/32912)) - `azurerm_storage_queue` - add a state migration for the `id` field, fixing the upgrade path from 4.x to 5.x ([#​32914](https://github.com/hashicorp/terraform-provider-azurerm/issues/32914)) - `azurerm_storage_table_entity` - add a state migration for the `storage_table_id` field, fixing the upgrade path from 4.x to 5.x ([#​32929](https://github.com/hashicorp/terraform-provider-azurerm/issues/32929)) ### [`v5.0.0`](https://github.com/hashicorp/terraform-provider-azurerm/blob/HEAD/CHANGELOG.md#500-July-27-2026) [Compare Source](https://github.com/hashicorp/terraform-provider-azurerm/compare/v4.81.0...v5.0.0) NOTES: - **Major Version**: Version 5.0 of the Azure Provider is a major version - some behaviours have changed and some deprecated fields/resources have been removed - please refer to [the 5.0 upgrade guide for more information](https://registry.terraform.io/providers/hashicorp/azurerm/latest/docs/guides/5.0-upgrade-guide). - When upgrading to v5.0 of the AzureRM Provider, we recommend upgrading to the latest version of Terraform Core ([which can be found here](https://developer.hashicorp.com/terraform/install)). FEATURES: - **New Action**: `azurerm_web_app_set_slot_distribution` ([#​32364](https://github.com/hashicorp/terraform-provider-azurerm/issues/32364)) - **New Datasource** adds `azurerm_kubernetes_automatic_cluster_datasource` ([#​32881](https://github.com/hashicorp/terraform-provider-azurerm/issues/32881)) ENHANCEMENTS: - dependencies: `grpc` update to `1.82.1` ([#​32852](https://github.com/hashicorp/terraform-provider-azurerm/issues/32852)) - dependencies: `loadbalancers` - update to API version `2025-01-01` ([#​32644](https://github.com/hashicorp/terraform-provider-azurerm/issues/32644)) - `azurerm_cognitive_account_rai_policy` - the `content_filter.severity_threshold` property is now optional ([#​32100](https://github.com/hashicorp/terraform-provider-azurerm/issues/32100)) - `azurerm_container_registry` - the `trust_policy_enabled` property has been deprecated and removed from the provider ([#​32752](https://github.com/hashicorp/terraform-provider-azurerm/issues/32752)) - `azurerm_dashboard_grafana` - the `11` value for the `grafana_major_version` property has been deprecated and the property now supports `13` ([#​32777](https://github.com/hashicorp/terraform-provider-azurerm/issues/32777)) - `azurerm_log_analytics_workspace` - add support for the `internet_ingestion_access_type` and `internet_query_access_type` properties ([#​32562](https://github.com/hashicorp/terraform-provider-azurerm/issues/32562)) - `azurerm_subnet` - add support for the `network_security_group_id_wo` and `network_security_group_id_wo_version` properties ([#​32847](https://github.com/hashicorp/terraform-provider-azurerm/issues/32847)) - `azurerm_subnet` - add support for the `route_table_id_wo` and `route_table_id_wo_version` properties ([#​32847](https://github.com/hashicorp/terraform-provider-azurerm/issues/32847)) - `azurerm_subnet` - export the `network_security_group_id` property ([#​32847](https://github.com/hashicorp/terraform-provider-azurerm/issues/32847)) - `azurerm_subnet` - export the `route_table_id` property ([#​32847](https://github.com/hashicorp/terraform-provider-azurerm/issues/32847)) - `azurerm_windows_web_app` - add support for `~24` to `site_config.application_stack.node_version` ([#​32840](https://github.com/hashicorp/terraform-provider-azurerm/issues/32840)) - `azurerm_windows_web_app_slot` - add support for `~24` to `site_config.application_stack.node_version` ([#​32840](https://github.com/hashicorp/terraform-provider-azurerm/issues/32840)) - `cdn` - migrate to `go-azure-sdk` ([#​32849](https://github.com/hashicorp/terraform-provider-azurerm/issues/32849)) - `sentinel` - migrate to `go-azure-sdk` ([#​32759](https://github.com/hashicorp/terraform-provider-azurerm/issues/32759))
--- ### Configuration 📅 **Schedule**: (in timezone Europe/Oslo) - Branch creation - At any time (no schedule defined) - Automerge - At any time (no schedule defined) 🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] If you want to rebase/retry this PR, check this box --- This PR has been generated by [Mend Renovate CLI](https://github.com/renovatebot/renovate). --------- Co-authored-by: Renovate Bot Reviewed-on: https://git.forteapps.net/Forte/launchpad/pulls/55 Reviewed-by: Danijel Simeunovic Co-authored-by: gitea_admin --- .tofu/platforms/aks/dev/providers.tf | 2 +- .tofu/platforms/aks/modules/cluster/providers.tf | 2 +- .tofu/platforms/aks/prod/providers.tf | 2 +- .tofu/platforms/aks/workload/providers.tf | 2 +- 4 files changed, 4 insertions(+), 4 deletions(-) diff --git a/.tofu/platforms/aks/dev/providers.tf b/.tofu/platforms/aks/dev/providers.tf index f24c50e..e27ada4 100644 --- a/.tofu/platforms/aks/dev/providers.tf +++ b/.tofu/platforms/aks/dev/providers.tf @@ -4,7 +4,7 @@ terraform { required_providers { azurerm = { source = "hashicorp/azurerm" - version = "~> 4.0" + version = "~> 5.0" } } } diff --git a/.tofu/platforms/aks/modules/cluster/providers.tf b/.tofu/platforms/aks/modules/cluster/providers.tf index 0be1288..82fbaea 100644 --- a/.tofu/platforms/aks/modules/cluster/providers.tf +++ b/.tofu/platforms/aks/modules/cluster/providers.tf @@ -4,7 +4,7 @@ terraform { required_providers { azurerm = { source = "hashicorp/azurerm" - version = "~> 4.0" + version = "~> 5.0" } azuread = { source = "hashicorp/azuread" diff --git a/.tofu/platforms/aks/prod/providers.tf b/.tofu/platforms/aks/prod/providers.tf index f24c50e..e27ada4 100644 --- a/.tofu/platforms/aks/prod/providers.tf +++ b/.tofu/platforms/aks/prod/providers.tf @@ -4,7 +4,7 @@ terraform { required_providers { azurerm = { source = "hashicorp/azurerm" - version = "~> 4.0" + version = "~> 5.0" } } } diff --git a/.tofu/platforms/aks/workload/providers.tf b/.tofu/platforms/aks/workload/providers.tf index 29f7a8f..8f7110d 100644 --- a/.tofu/platforms/aks/workload/providers.tf +++ b/.tofu/platforms/aks/workload/providers.tf @@ -4,7 +4,7 @@ terraform { required_providers { azurerm = { source = "hashicorp/azurerm" - version = "~> 4.0" + version = "~> 5.0" } random = { source = "hashicorp/random" From 79153468683ee4d5c1fcdcb52971e0d02216058d Mon Sep 17 00:00:00 2001 From: gitea_admin Date: Sun, 4 Oct 2026 21:53:01 +0000 Subject: [PATCH 6/7] chore(deps): update gitea/gitea docker tag to v28 (#58) MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit This PR contains the following updates: | Package | Update | Change | |---|---|---| | [gitea/gitea](https://github.com/go-gitea/gitea) | major | `1.27.3` → `28.0.0` | --- ### Release Notes
go-gitea/gitea (gitea/gitea) ### [`v28.0.0`](https://github.com/go-gitea/gitea/blob/HEAD/CHANGELOG.md#2800---2026-09-30) [Compare Source](https://github.com/go-gitea/gitea/compare/v1.27.3...v28.0.0) - BREAKING - Fix(git)!: route Git network operations through an internal proxy and update egress settings ([#​39426](https://github.com/go-gitea/gitea/pull/39426)) - Feat(actions)!: add RUN\_RETENTION\_DAYS to delete old action runs ([#​38855](https://github.com/go-gitea/gitea/pull/38855)) - SECURITY - Fix(git): reject invalid and duplicate Git objects on push ([#​39472](https://github.com/go-gitea/gitea/pull/39472)) - Fix(git)!: route Git network operations through an internal proxy and update egress settings ([#​39426](https://github.com/go-gitea/gitea/pull/39426)) - Fix(ssh): identify presented public keys by fingerprint ([#​39423](https://github.com/go-gitea/gitea/pull/39423)) - Fix(actions): keep cancelled and unapproved fork PR runs behind the approval gate ([#​39399](https://github.com/go-gitea/gitea/pull/39399)) - Fix(deps): update golang.org/x/crypto SSH to address denial of service ([#​39219](https://github.com/go-gitea/gitea/pull/39219)) - Fix(repo): enforce repository-scoped authorization for team access, deletion, and package unlinking ([#​39063](https://github.com/go-gitea/gitea/pull/39063)) - FEATURES - Feat(actions): update actionslib, support `self:`, misc fixes ([#​39358](https://github.com/go-gitea/gitea/pull/39358)) - Feat(api): list all packages for site administrators ([#​38968](https://github.com/go-gitea/gitea/pull/38968)) - Feat: manage bot accounts from the admin UI, API and CLI ([#​38966](https://github.com/go-gitea/gitea/pull/38966)) - Feat(user): Personal access tokens can be regenerated ([#​38907](https://github.com/go-gitea/gitea/pull/38907)) - Feat(actions): support `$/` prefix in reusable workflow `uses:` ([#​38822](https://github.com/go-gitea/gitea/pull/38822)) - Feat(actions): add force-cancel workflow run API ([#​38756](https://github.com/go-gitea/gitea/pull/38756)) - Feat(licenses): support REUSE specification in licenses ([#​38720](https://github.com/go-gitea/gitea/pull/38720)) - Feat(api): add project APIs ([#​38691](https://github.com/go-gitea/gitea/pull/38691)) - Feat(webhook): fire repository event on repo rename ([#​38641](https://github.com/go-gitea/gitea/pull/38641)) - Feat: admin impersonates a user ([#​38614](https://github.com/go-gitea/gitea/pull/38614)) - Feat(actions): add build queue view ([#​38585](https://github.com/go-gitea/gitea/pull/38585)) - Feat(setting): add shared \[redis] section as default for redis-backed subsystems ([#​38550](https://github.com/go-gitea/gitea/pull/38550)) - Feat(repo): prioritize well-known READMEs and optimize discovery ([#​38532](https://github.com/go-gitea/gitea/pull/38532)) - Feat(actions): implement adaptive auto-refresh for workflow runs list ([#​38329](https://github.com/go-gitea/gitea/pull/38329)) - Feat(auth): add `disable-2fa` command ([#​38275](https://github.com/go-gitea/gitea/pull/38275)) - Feat: Add audit logging ([#​38189](https://github.com/go-gitea/gitea/pull/38189)) - Feat(repo): add quick repository switcher to repo header ([#​38188](https://github.com/go-gitea/gitea/pull/38188)) - Feat(repo): support file exclusion logic in .gitea/template in template generation ([#​38064](https://github.com/go-gitea/gitea/pull/38064)) - Feat(web): Add org removal functionality to admin user details page ([#​38013](https://github.com/go-gitea/gitea/pull/38013)) - Feat: add watch options ([#​37571](https://github.com/go-gitea/gitea/pull/37571)) - Feat: add deploy tokens ([#​37306](https://github.com/go-gitea/gitea/pull/37306)) - Feat(diff): Add search and extension filter to diff sidebar ([#​37068](https://github.com/go-gitea/gitea/pull/37068)) - Feat: Replace SSE with WebSocket for UI notifications ([#​36965](https://github.com/go-gitea/gitea/pull/36965)) - Feat(actions): Add artifact preview in Actions run view ([#​36754](https://github.com/go-gitea/gitea/pull/36754)) - Feat(packages): add support for uploading helm provenance files ([#​36695](https://github.com/go-gitea/gitea/pull/36695)) - Feat: Add support for dynamic matrix evaluation in Gitea Actions workflows ([#​36564](https://github.com/go-gitea/gitea/pull/36564)) - Feat: Add max-parallel Support for Gitea Actions ([#​36357](https://github.com/go-gitea/gitea/pull/36357)) - Feat(actions): Add Actions API endpoints for workflow run management and logs ([#​35382](https://github.com/go-gitea/gitea/pull/35382)) - Feat: Add block on pending codeowner reviews branch protection ([#​34995](https://github.com/go-gitea/gitea/pull/34995)) - ENHANCEMENTS - Enhance: allow auto-closing PRs from PRs ([#​39393](https://github.com/go-gitea/gitea/pull/39393)) - Enhance(actions): add pending job status and align job statuses with GitHub ([#​39376](https://github.com/go-gitea/gitea/pull/39376)) - Enhance(acme): add configurable ACME profile ([#​39375](https://github.com/go-gitea/gitea/pull/39375)) - Enhance(emoji): update to Unicode 17, unify and lazy-load emoji data ([#​39363](https://github.com/go-gitea/gitea/pull/39363)) - Enhance: improve issue-pattern capture groups and support both internal\&external trackers enabled ([#​39354](https://github.com/go-gitea/gitea/pull/39354)) - Enhance: update mermaid to v12 ([#​39331](https://github.com/go-gitea/gitea/pull/39331)) - Enhance(notifications): mark current notification page as read ([#​39294](https://github.com/go-gitea/gitea/pull/39294)) - Enhance: support `ETag` on streamed repository archives, support `If-None-Match: *` ([#​39289](https://github.com/go-gitea/gitea/pull/39289)) - Enhance: truncate but show long lines in diffs ([#​39279](https://github.com/go-gitea/gitea/pull/39279)) - Enhance(packages): implement npm single-version API and add per-version repository ([#​39267](https://github.com/go-gitea/gitea/pull/39267)) - Enhance: move window\.config to JSON, improve CSP format ([#​39236](https://github.com/go-gitea/gitea/pull/39236)) - Enhance: improve commit page header ([#​39229](https://github.com/go-gitea/gitea/pull/39229)) - Enhance: Improve validation errors for secrets/variables ([#​39221](https://github.com/go-gitea/gitea/pull/39221)) - Enhance(repo): check full repo name for dangerous operations ([#​39213](https://github.com/go-gitea/gitea/pull/39213)) - Enhance(web): hide attachment dropzone on preview tab in combo editor ([#​39204](https://github.com/go-gitea/gitea/pull/39204)) - Enhance(web): show attachment URL and UUID in dropzone preview ([#​39203](https://github.com/go-gitea/gitea/pull/39203)) - Enhance(actions): make workflow dispatch choice dropdown support search ([#​39154](https://github.com/go-gitea/gitea/pull/39154)) - Enhance(repo): unify diff stats on commit pages, misc diff tweaks ([#​39134](https://github.com/go-gitea/gitea/pull/39134)) - Enhance: use browser's locale to detect week's first day for the contribution map ([#​38995](https://github.com/go-gitea/gitea/pull/38995)) - Enhance(ui): forced colors mode enhancements ([#​38991](https://github.com/go-gitea/gitea/pull/38991)) - Enhance: user-friendly packages setup manual ([#​38946](https://github.com/go-gitea/gitea/pull/38946)) - Enhance: inherit team access for all units ([#​38938](https://github.com/go-gitea/gitea/pull/38938)) - Enhance(admin): show impersonation banner and keep password change with the user ([#​38924](https://github.com/go-gitea/gitea/pull/38924)) - Enhance(ui): tint toast backgrounds by level ([#​38919](https://github.com/go-gitea/gitea/pull/38919)) - Enhance(repo): add default object format setting ([#​38877](https://github.com/go-gitea/gitea/pull/38877)) - Enhance(actions): set ref\_protected in context ([#​38852](https://github.com/go-gitea/gitea/pull/38852)) - Enhance(ui): restyle toasts ([#​38842](https://github.com/go-gitea/gitea/pull/38842)) - Enhance: refine repo watching ([#​38835](https://github.com/go-gitea/gitea/pull/38835)) - Enhance: fall back to DEFAULT\_TEMPLATE.md when style-specific template is missing ([#​38803](https://github.com/go-gitea/gitea/pull/38803)) - Enhance(api): add GitHub-compatible /repos/{owner}/{repo}/commits/{ref} endpoint ([#​38770](https://github.com/go-gitea/gitea/pull/38770)) - Enhance(api): expose file mode in contents API response ([#​38713](https://github.com/go-gitea/gitea/pull/38713)) - Enhance(tls): use go's tls defaults ([#​38687](https://github.com/go-gitea/gitea/pull/38687)) - Enhance(ui): improve luminance calculations ([#​38682](https://github.com/go-gitea/gitea/pull/38682)) - Enhance(api): add `tag_filter` query parameter to release list API ([#​38681](https://github.com/go-gitea/gitea/pull/38681)) - Enhance(actions): replace `ansi_up` with first-party code ([#​38619](https://github.com/go-gitea/gitea/pull/38619)) - Enhance: keep status check list scrolled on merge box reload ([#​38597](https://github.com/go-gitea/gitea/pull/38597)) - Enhance(actions): action view enhancements ([#​38594](https://github.com/go-gitea/gitea/pull/38594)) - Enhance(ui): tweak tooltip style and misc fixes ([#​38524](https://github.com/go-gitea/gitea/pull/38524)) - Enhance: improve e-mail templates ([#​38396](https://github.com/go-gitea/gitea/pull/38396)) - Enhance(webhook): add reviewer name to MS Teams review request notifications ([#​38289](https://github.com/go-gitea/gitea/pull/38289)) - Enhance: extend