0.7.0 - 2026-06-17
Container image (operator)
ghcr.io/konih/kollect:0.7.0
Multi-arch (linux/amd64, linux/arm64), Debian bookworm-slim nonroot base (includes git and openssh-client for spec.git.engine: cli).
OCI attestations (SBOM + SLSA provenance) are attached in GHCR and on the repository
Attestations page. Verify the signature:
cosign verify \
--certificate-oidc-issuer https://token.actions.githubusercontent.com \
--certificate-identity-regexp '^https://github.com/konih/kollect/.+' \
ghcr.io/konih/kollect@sha256:bd50c251502495931669703a7bfea6d13c4c44f45f4c5972acf3b97f8f734543Container image (kollect-ui)
Optional read-only UI SPA — enable with Helm ui.enabled=true.
ghcr.io/konih/kollect-ui:0.7.0
Multi-arch (linux/amd64, linux/arm64), nginx alpine static server.
cosign verify \
--certificate-oidc-issuer https://token.actions.githubusercontent.com \
--certificate-identity-regexp '^https://github.com/konih/kollect/.+' \
ghcr.io/konih/kollect-ui@sha256:3bd72b73493018bf8cccfff536e97013e92cca4262624a5990e8ab9fd55b4291Install (Kustomize)
kubectl apply -f install-crds.yaml
kubectl apply -f install.yamlInstall (Helm — OCI)
helm upgrade --install kollect oci://ghcr.io/konih/kollect \
--version 0.7.0 \
--namespace kollect-system \
--create-namespace \
--set image.repository=ghcr.io/konih/kollect \
--set image.tag=0.7.0 \
--set ui.image.tag=0.7.0Install (Helm — GitHub Release tarball)
helm upgrade --install kollect kollect-0.7.0.tgz \
--namespace kollect-system \
--create-namespace \
--set image.repository=ghcr.io/konih/kollect \
--set image.tag=0.7.0 \
--set ui.image.tag=0.7.0Verify checksums with sha256sum -c checksums.txt. Each release asset includes a
<file>.sigstore.json Sigstore bundle; release-provenance.intoto.jsonl attests all assets.
See docs/RELEASE.md.