Skip to content

OCM-00000 | ci: Update Konflux references#3300

Merged
red-hat-konflux[bot] merged 1 commit into
masterfrom
konflux/references/master
Jun 30, 2026
Merged

OCM-00000 | ci: Update Konflux references#3300
red-hat-konflux[bot] merged 1 commit into
masterfrom
konflux/references/master

Conversation

@red-hat-konflux

@red-hat-konflux red-hat-konflux Bot commented Jun 30, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Change
quay.io/konflux-ci/tekton-catalog/task-buildah-oci-ta (source, changelog) c38fc46c596762

Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

To execute skipped test pipelines write comment /ok-to-test.


Documentation

Find out how to configure dependency updates in MintMaker documentation or see all available configuration options in Renovate documentation.

Summary by CodeRabbit

  • Chores
    • Updated pipeline references to use a newer pinned build component version.
    • This helps keep container builds aligned with the latest approved bundle and improves build consistency.

Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com>
@red-hat-konflux red-hat-konflux Bot added the ok-to-test Indicates a non-member PR verified by an org member that is safe to test. label Jun 30, 2026
@red-hat-konflux
red-hat-konflux Bot enabled auto-merge (squash) June 30, 2026 21:16
@coderabbitai

coderabbitai Bot commented Jun 30, 2026

Copy link
Copy Markdown

No actionable comments were generated in the recent review. 🎉

ℹ️ Recent review info
⚙️ Run configuration

Configuration used: Repository YAML (base), Central YAML (inherited)

Review profile: CHILL

Plan: Enterprise

Run ID: 5d641a7e-8e63-4d06-ac20-3fc34fdf050b

📥 Commits

Reviewing files that changed from the base of the PR and between 9c0c55a and dde1c76.

📒 Files selected for processing (4)
  • .tekton/rosa-cli-e2e-test-pull-request.yaml
  • .tekton/rosa-cli-e2e-test-push.yaml
  • .tekton/rosa-pull-request.yaml
  • .tekton/rosa-push.yaml

📝 Walkthrough

Walkthrough

This pull request updates the pinned sha256 digest of the task-buildah-oci-ta bundle reference used by the build-container task in four Tekton pipeline definition files: rosa-cli-e2e-test-pull-request.yaml, rosa-cli-e2e-test-push.yaml, rosa-pull-request.yaml, and rosa-push.yaml. The task name and version remain unchanged; only the bundle digest value is updated in each file.

Possibly related PRs

  • openshift/rosa#3296: Updates the same task-buildah-oci-ta bundle digest in the same Tekton pipeline YAML files.

Suggested reviewers

  • jerichokeyne
  • robpblake
🚥 Pre-merge checks | ✅ 14 | ❌ 1

❌ Failed checks (1 warning)

Check name Status Explanation Resolution
Description check ⚠️ Warning The description is Renovate-generated and misses most required template sections like issue context, change type, and testing evidence. Rewrite it using the repository template and add the missing sections: summary, issue context, related issues, change type, before/after behavior, testing, proof, and checklist.
✅ Passed checks (14 passed)
Check name Status Explanation
Title check ✅ Passed The title is concise and clearly describes the Konflux reference update.
Docstring Coverage ✅ Passed No functions found in the changed files to evaluate docstring coverage. Skipping docstring coverage check.
Linked Issues check ✅ Passed Check skipped because no linked issues were found for this pull request.
Out of Scope Changes check ✅ Passed Check skipped because no linked issues were found for this pull request.
Stable And Deterministic Test Names ✅ Passed Only Tekton YAML bundle digests changed; no Ginkgo test titles or test files were modified, so there are no unstable test names to flag.
Test Structure And Quality ✅ Passed Only Tekton YAML bundle digests changed; no Ginkgo test code or test logic was modified, so the test-quality checklist is not applicable.
Microshift Test Compatibility ✅ Passed PR only updates Tekton bundle digests in .tekton YAML; no Ginkgo tests or OpenShift API usage were added.
Single Node Openshift (Sno) Test Compatibility ✅ Passed PR only updates Tekton PipelineRun bundle digests; no Ginkgo e2e tests or SNO-sensitive logic were added.
Topology-Aware Scheduling Compatibility ✅ Passed Only Tekton task bundle digests changed; no affinity, node selectors, spread constraints, or replica logic were introduced.
Ote Binary Stdout Contract ✅ Passed PR only updates Tekton bundle digests in YAML; no main/suite code or stdout writes were touched.
Ipv6 And Disconnected Network Test Compatibility ✅ Passed Only Tekton bundle digests changed; no Ginkgo test code, IPv4 assumptions, or external-network calls were added.
No-Weak-Crypto ✅ Passed Only Tekton bundle digests changed to sha256 refs for buildah-oci-ta; no MD5/SHA1/DES/RC4/3DES/Blowfish/ECB or secret comparisons found.
Container-Privileges ✅ Passed Only Tekton bundle digests changed in the four YAMLs; no privileged, host*, SYS_ADMIN, runAsRoot, or allowPrivilegeEscalation fields appear.
No-Sensitive-Data-In-Logs ✅ Passed Only Tekton bundle digests changed; inspected the four modified YAMLs and found no log/script additions or sensitive-data exposure.
✨ Finishing Touches
🧪 Generate unit tests (beta)
  • Create PR with unit tests
  • Commit unit tests in branch konflux/references/master

Comment @coderabbitai help to get the list of available commands.

@openshift-ci
openshift-ci Bot requested review from jerichokeyne and robpblake June 30, 2026 21:20
@openshift-ci

openshift-ci Bot commented Jun 30, 2026

Copy link
Copy Markdown
Contributor

[APPROVALNOTIFIER] This PR is NOT APPROVED

This pull-request has been approved by: red-hat-konflux[bot]
Once this PR has been reviewed and has the lgtm label, please assign amandahla for approval. For more information see the Code Review Process.

The full list of commands accepted by this bot can be found here.

Details Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@openshift-ci

openshift-ci Bot commented Jun 30, 2026

Copy link
Copy Markdown
Contributor

Hi @red-hat-konflux[bot]. Thanks for your PR.

I'm waiting for a openshift member to verify that this patch is reasonable to test. If it is, they should reply with /ok-to-test on its own line. Until that is done, I will not automatically test new commits in this PR, but the usual testing commands by org members will still work.

Regular contributors should join the org to skip this step.

Once the patch is verified, the new status will be reflected by the ok-to-test label.

I understand the commands that are listed here.

Details

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository.

@openshift-ci

openshift-ci Bot commented Jun 30, 2026

Copy link
Copy Markdown
Contributor

@red-hat-konflux[bot]: all tests passed!

Full PR test history. Your PR dashboard.

Details

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. I understand the commands that are listed here.

@red-hat-konflux
red-hat-konflux Bot merged commit c4fdf57 into master Jun 30, 2026
7 of 8 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

ok-to-test Indicates a non-member PR verified by an org member that is safe to test.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants