Skip to content

v0.46.0

Choose a tag to compare

@github-actions github-actions released this 14 Sep 16:01
Immutable release. Only release title and notes can be modified.
746b877

0.46.0 (2026-09-14)

⚠ BREAKING CHANGES

  • templates: the {namespaceOrCluster} placement variable is removed; use {namespace}, which now renders "_cluster" for a cluster-scoped resource. A GitTarget still naming it goes Validated=False with InvalidConfig. Because placement is match-first, no file already in Git moves; only newly created cluster-scoped documents land at the new path. Default commit messages also name a cluster-scoped resource as "v1/nodes/_cluster/node-1" rather than "v1/nodes/node-1".

Features

  • templates: place by label, one namespace variable, richer commit messages (#361) (05b299a)

Installation

Quick Install (plain manifests)

The CRDs ship as their own file and must be applied first — the bundle
contains a custom resource that cannot be created before its CRD exists:

kubectl apply -f https://github.com/ConfigButler/gitops-reverser/releases/download/v0.46.0/crds.yaml
kubectl apply -f https://github.com/ConfigButler/gitops-reverser/releases/download/v0.46.0/install.yaml

Helm Chart

helm install gitops-reverser oci://ghcr.io/configbutler/charts/gitops-reverser --version 0.46.0

Docker Images

This release is available as a Docker image:

docker pull ghcr.io/configbutler/gitops-reverser:0.46.0
docker pull ghcr.io/configbutler/gitops-reverser:latest

Platforms: linux/amd64, linux/arm64
Digest: sha256:b62d64f34ef2f08e71e4ec03b55dc57922fc51496cabc470edb8aae55e595671

Standalone analyzer

manifest-analyzer answers "which folders in this repository could become
GitTargets?" without a cluster. Binaries are attached for linux/amd64,
linux/arm64 and darwin/arm64, with a manifest-analyzer.sha256sums file:

curl -fsSLO https://github.com/ConfigButler/gitops-reverser/releases/download/v0.46.0/manifest-analyzer_linux_amd64
curl -fsSL https://github.com/ConfigButler/gitops-reverser/releases/download/v0.46.0/manifest-analyzer.sha256sums | sha256sum -c --ignore-missing

Verify this release

Images are signed with cosign (keyless) and carry SLSA build provenance
and an SPDX SBOM as registry attestations:

cosign verify \
  --certificate-identity-regexp '^https://github.com/ConfigButler/gitops-reverser/\.github/workflows/release\.yml@refs/heads/main$' \
  --certificate-oidc-issuer https://token.actions.githubusercontent.com \
  ghcr.io/configbutler/gitops-reverser:0.46.0

gh attestation verify \
  oci://ghcr.io/configbutler/gitops-reverser:0.46.0 \
  --repo ConfigButler/gitops-reverser