all:
  children:
    controllers:
      hosts:
        controller: null
    zuul_unreachable:
      hosts: {}
  hosts:
    controller:
      ansible_connection: ssh
      ansible_host: 199.204.45.248
      ansible_port: 22
      ansible_python_interpreter: auto
      ansible_user: zuul
      cilium_helm_values:
        operator:
          replicas: 1
      cilium_ipv4_cidr: 172.24.0.0/16
      kube_vip_address: 172.17.0.100
      kube_vip_interface: '{{ ansible_facts[''default_ipv4''].interface }}'
      kubernetes_hostname: '{{ ansible_facts[''default_ipv4''].address }}'
      kubernetes_version: 1.28.13
      molecule_install_collection_siblings: true
      molecule_scenario: secretgen-controller
      nodepool:
        az: nova
        cloud: public
        external_id: 681c6a7e-33a9-4696-8ef4-57e492853e27
        host_id: fe6a549c934f5f67345b1bd07db2b4711c0ee4717d98054273574436
        interface_ip: 199.204.45.248
        label: ubuntu-noble
        node_properties: {}
        private_ipv4: 199.204.45.248
        private_ipv6: null
        provider: yul1
        public_ipv4: 199.204.45.248
        public_ipv6: 2604:e100:1:0:f816:3eff:fe55:2070
        region: ca-ymq-1
        slot: null
      zuul_node:
        az: nova
        cloud: public
        external_id: 681c6a7e-33a9-4696-8ef4-57e492853e27
        host_id: fe6a549c934f5f67345b1bd07db2b4711c0ee4717d98054273574436
        interface_ip: 199.204.45.248
        label: ubuntu-noble
        node_properties: {}
        private_ipv4: 199.204.45.248
        private_ipv6: null
        provider: yul1
        public_ipv4: 199.204.45.248
        public_ipv6: 2604:e100:1:0:f816:3eff:fe55:2070
        region: ca-ymq-1
        slot: null
        uuid: null
  vars:
    cilium_helm_values:
      operator:
        replicas: 1
    kubernetes_version: 1.28.13
    molecule_install_collection_siblings: true
    molecule_scenario: secretgen-controller
    zuul:
      _inheritance_path:
      - '<Job base explicit: None implied: {MatchAny:{ImpliedBranchMatcher:main}}
        source: vexxhost/zuul-config/zuul.d/jobs.yaml@main#1>'
      - '<Job molecule explicit: None implied: {MatchAny:{ImpliedBranchMatcher:main}}
        source: vexxhost/zuul-jobs/zuul.d/ansible-jobs.yaml@main#1>'
      - '<Job atmosphere-common-molecule explicit: None implied: {MatchAny:{ImpliedBranchMatcher:main}}
        source: vexxhost/atmosphere.common/.zuul.yaml@main#4>'
      - '<Job atmosphere-common-molecule-secretgen-controller explicit: None implied:
        {MatchAny:{ImpliedBranchMatcher:main}} source: vexxhost/atmosphere.common/.zuul.yaml@main#33>'
      - '<Job atmosphere-common-molecule-secretgen-controller explicit: None implied:
        None source: vexxhost/atmosphere.common/.zuul.yaml@main#114>'
      ansible_version: '9'
      attempts: 1
      branch: main
      build: b0e4d46600524eaf84dbead5c978eb39
      build_refs:
      - branch: main
        change: '102'
        change_message: "chore(deps): update dependency fluxcd/flux2 to v2.9.4\n\n>
          \u2139\uFE0F **Note**\n> \n> This PR body was truncated due to platform
          limits.\n\nThis PR contains the following updates:\n\n| Package | Update
          | Change |\n|---|---|---|\n| [fluxcd/flux2](https://redirect.github.com/fluxcd/flux2)
          | minor | `2.6.4` \u2192 `2.9.4` |\n\n---\n\n### Release Notes\n\n<details>\n<summary>fluxcd/flux2
          (fluxcd/flux2)</summary>\n\n### [`v2.9.4`](https://redirect.github.com/fluxcd/flux2/compare/v2.9.3...v2.9.4)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.9.3...v2.9.4)\n\n###
          [`v2.9.3`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.9.3)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.9.2...v2.9.3)\n\n####
          Highlights\n\nFlux v2.9.3 is a patch release. It fixes empty lines vanishing
          from rendered Helm chart manifests, HelmReleases being marked as tested
          when their Helm test hooks never ran, and `spec.images` entries that set
          only some image fields discarding the remaining fields already declared
          for the same image in the `kustomization.yaml`. The latter affects both
          kustomize-controller and the `flux build|diff kustomization` commands. Users
          are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F Please
          follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix empty lines vanishing from rendered chart manifests (helm-controller)\n-
          Fix `HasBeenTested` for all corner cases, where a release could be marked
          as tested although its Helm test hooks never ran (helm-controller)\n- Fix
          a `spec.images` entry setting only some of the image fields discarding the
          remaining fields already declared for the same image in the `kustomization.yaml`
          at `spec.path`, e.g. overriding only `newName` produced an untagged image
          reference (kustomize-controller, flux CLI)\n\nImprovements:\n\n- Update
          fluxcd/pkg dependencies\n- Include source-watcher in the OCI flux-manifests
          artifact\n\n#### Components changelog\n\n- kustomize-controller [v1.9.4](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.9.4/CHANGELOG.md)\n-
          helm-controller [v1.6.3](https://redirect.github.com/fluxcd/helm-controller/blob/v1.6.3/CHANGELOG.md)\n\n####
          CLI changelog\n\n- \\[release/v2.9.x] Include source-watcher to oci flux-manifests
          by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot) in [#&#8203;5996](https://redirect.github.com/fluxcd/flux2/pull/5996)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;6006](https://redirect.github.com/fluxcd/flux2/pull/6006)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;6011](https://redirect.github.com/fluxcd/flux2/pull/6011)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.9.2...v2.9.3>\n\n###
          [`v2.9.2`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.9.2)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.9.1...v2.9.2)\n\n#####
          Highlights\n\nFlux v2.9.2 is a patch release. The main fix addresses a regression
          introduced in\nv2.9.1 where a Kustomization with `openapi.path` pointing
          to a URL failed to\nreconcile with `failed to read OpenAPI schema`. This
          release also corrects several\nCRD field descriptions that contained inaccurate
          or leaked content. Users are\nencouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix a regression where a Kustomization with `openapi.path` pointing to a
          URL failed to reconcile with `failed to read OpenAPI schema` (kustomize-controller)\n-
          Fix the `HelmChart` CRD description for `.status.url`, which pointed users
          at `BucketStatus.Artifact` instead of `HelmChartStatus.Artifact` (source-controller)\n-
          Fix the `ImageRepository` CRD description for `.status.observedExclusionList`,
          which referred to `spec.lastScanResult` instead of `status.lastScanResult`
          (image-reflector-controller)\n- Fix the `ImageUpdateAutomation` CRD description
          for `.status.observedSourceRevision`, which had a stray Go struct declaration
          leaking into it (image-automation-controller)\n\nImprovements:\n\n- Update
          fluxcd/pkg dependencies\n\n##### Components changelog\n\n- source-controller
          [v1.9.3](https://redirect.github.com/fluxcd/source-controller/blob/v1.9.3/CHANGELOG.md)\n-
          kustomize-controller [v1.9.3](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.9.3/CHANGELOG.md)\n-
          helm-controller [v1.6.2](https://redirect.github.com/fluxcd/helm-controller/blob/v1.6.2/CHANGELOG.md)\n-
          notification-controller [v1.9.2](https://redirect.github.com/fluxcd/notification-controller/blob/v1.9.2/CHANGELOG.md)\n-
          image-reflector-controller [v1.2.3](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.2.3/CHANGELOG.md)\n-
          image-automation-controller [v1.2.3](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.2.3/CHANGELOG.md)\n-
          source-watcher [v2.2.2](https://redirect.github.com/fluxcd/source-watcher/blob/v2.2.2/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5984](https://redirect.github.com/fluxcd/flux2/pull/5984)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5990](https://redirect.github.com/fluxcd/flux2/pull/5990)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5994](https://redirect.github.com/fluxcd/flux2/pull/5994)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.9.1...v2.9.2>\n\n###
          [`v2.9.1`](https://redirect.github.com/fluxcd/flux2/compare/v2.9.0...v2.9.1)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.9.0...v2.9.1)\n\n###
          [`v2.9.0`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.9.0)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.8...v2.9.0)\n\n####
          Highlights\n\nFlux v2.9.0 is a feature release. Users are encouraged to
          upgrade for the best experience.\n\nFor a compressive overview of new features
          and API changes included in this release, please refer to the [Announcing
          Flux 2.9 GA blog post](https://fluxcd.io/blog/2026/06/flux-v2.9.0/).\n\nOverview
          of the new features:\n\n- Flux CLI Plugin System with the Mirror and Schema
          plugins (`flux plugin`)\n- Server-Side Apply field ignore rules for fine-grained
          drift control (`Kustomization`)\n- SOPS decryption with the Age post-quantum
          cipher (`Kustomization`)\n- Kubernetes Workload Identity authentication
          for OpenBao and Vault (`Kustomization`)\n- Helm post-render strategies,
          including chart hooks support (`HelmRelease`)\n- Literal mode for Helm values
          references mirroring `helm --set-literal` (`HelmRelease`)\n- Allow empty
          kind in CEL health check expressions (`Kustomization`, `HelmRelease`)\n-
          Git commit signing and verification with SSH keys (`GitRepository`, `ImageUpdateAutomation`)\n-
          AWS CodeCommit authentication using Workload Identity (`GitRepository`)\n-
          Custom Sigstore trusted root for keyless verification in air-gapped environments
          (`OCIRepository`)\n- Path pattern directory discovery for monorepos (`ArtifactGenerator`)\n-
          Secret-less, OIDC-secured webhook Receivers (`Receiver`)\n\n\u2764\uFE0F
          Big thanks to all the Flux contributors that helped us with this release!\n\n#####
          Kubernetes compatibility\n\nThis release is compatible with the following
          Kubernetes versions:\n\n| Kubernetes version | Minimum required |\n| ------------------
          | ---------------- |\n| `v1.34`            | `>= 1.34.1`      |\n| `v1.35`
          \           | `>= 1.35.0`      |\n| `v1.36`            | `>= 1.36.0`      |\n\n>
          \\[!NOTE]\n> Note that the Flux project offers support only for the latest
          three minor versions of Kubernetes.\n> Backwards compatibility with older
          versions of Kubernetes and OpenShift is offered by vendors such as\n> [ControlPlane](https://control-plane.io/enterprise-for-flux-cd/)
          that provide enterprise support for Flux.\n\n##### OpenShift compatibility\n\nFlux
          can be installed on Red Hat OpenShift cluster directly from OperatorHub
          using [Flux Operator](https://operatorhub.io/operator/flux-operator). The
          operator allows the configuration of Flux multi-tenancy lockdown, network
          policies, persistent storage, sharding, vertical scaling and the synchronization
          of the cluster state from Git repositories, OCI artifacts, and S3-compatible
          storage.\n\n#### Upgrade procedure\n\n:warning: The Flux APIs `image.toolkit.fluxcd.io/v1beta2`
          and `notification.toolkit.fluxcd.io/v1beta2`\nhave reached end-of-life and
          have been removed from the CRDs.\n\nPlease follow the [Upgrade Procedure
          for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from older versions of Flux to v2.9.\n\n#### Components
          changelog\n\n- source-controller [v1.9.1](https://redirect.github.com/fluxcd/source-controller/blob/v1.9.1/CHANGELOG.md)\n-
          kustomize-controller [v1.9.1](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.9.1/CHANGELOG.md)\n-
          notification-controller [v1.9.1](https://redirect.github.com/fluxcd/notification-controller/blob/v1.9.1/CHANGELOG.md)\n-
          helm-controller [v1.6.1](https://redirect.github.com/fluxcd/helm-controller/blob/v1.6.1/CHANGELOG.md)\n-
          image-reflector-controller [v1.2.1](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.2.1/CHANGELOG.md)\n-
          image-automation-controller [v1.2.1](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.2.1/CHANGELOG.md)\n-
          source-watcher [v2.2.1](https://redirect.github.com/fluxcd/source-watcher/blob/v2.2.1/CHANGELOG.md)\n\n####
          CLI changelog\n\n- Add backport label for Flux 2.8 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5732](https://redirect.github.com/fluxcd/flux2/pull/5732)\n-
          Remove no longer needed workaround for Flux 2.8 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5733](https://redirect.github.com/fluxcd/flux2/pull/5733)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5740](https://redirect.github.com/fluxcd/flux2/pull/5740)\n-
          Add missing things to release notes template by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5743](https://redirect.github.com/fluxcd/flux2/pull/5743)\n-
          ci: add top-level permissions to upgrade-fluxcd-pkg workflow by [@&#8203;gaganhr94](https://redirect.github.com/gaganhr94)
          in [#&#8203;5763](https://redirect.github.com/fluxcd/flux2/pull/5763)\n-
          build(deps): bump the ci group across 1 directory with 11 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
          in [#&#8203;5764](https://redirect.github.com/fluxcd/flux2/pull/5764)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5766](https://redirect.github.com/fluxcd/flux2/pull/5766)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5769](https://redirect.github.com/fluxcd/flux2/pull/5769)\n-
          Add target branch name to update branch by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5773](https://redirect.github.com/fluxcd/flux2/pull/5773)\n-
          Fix/resume exit code by [@&#8203;Aman-Cool](https://redirect.github.com/Aman-Cool)
          in [#&#8203;5701](https://redirect.github.com/fluxcd/flux2/pull/5701)\n-
          Mark RFC 0010, 0011 and 0012 as implemented by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5776](https://redirect.github.com/fluxcd/flux2/pull/5776)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5780](https://redirect.github.com/fluxcd/flux2/pull/5780)\n-
          Add --resolve-symlinks flag to build and push artifact commands by [@&#8203;rohansood10](https://redirect.github.com/rohansood10)
          in [#&#8203;5724](https://redirect.github.com/fluxcd/flux2/pull/5724)\n-
          fix: validate --source flag in create kustomization command by [@&#8203;gma1k](https://redirect.github.com/gma1k)
          in [#&#8203;5798](https://redirect.github.com/fluxcd/flux2/pull/5798)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5821](https://redirect.github.com/fluxcd/flux2/pull/5821)\n-
          Add `--show-source` to `flux get ks` and `flux get hr`  by [@&#8203;rafaelperoco](https://redirect.github.com/rafaelperoco)
          in [#&#8203;5828](https://redirect.github.com/fluxcd/flux2/pull/5828)\n-
          Add `flux create secret receiver` command by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5835](https://redirect.github.com/fluxcd/flux2/pull/5835)\n-
          fix: handle multiple symlinks to same target in build artifact by [@&#8203;Iam-Karan-Suresh](https://redirect.github.com/Iam-Karan-Suresh)
          in [#&#8203;5833](https://redirect.github.com/fluxcd/flux2/pull/5833)\n-
          Add `--in-memory-build` to `flux build ks` and `flux diff ks` by [@&#8203;rycli](https://redirect.github.com/rycli)
          in [#&#8203;5794](https://redirect.github.com/fluxcd/flux2/pull/5794)\n-
          Migrate end-to-end test to latest cloud SDKs  by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5840](https://redirect.github.com/fluxcd/flux2/pull/5840)\n-
          docs: Add AI Coding Assistants Guidance  by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5841](https://redirect.github.com/fluxcd/flux2/pull/5841)\n-
          Add AI Agents guidance by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5847](https://redirect.github.com/fluxcd/flux2/pull/5847)\n-
          \\[RFC-0013] Flux CLI Plugin System by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5795](https://redirect.github.com/fluxcd/flux2/pull/5795)\n-
          Add `--ignore-not-found` to `flux diff ks` by [@&#8203;rycli](https://redirect.github.com/rycli)
          in [#&#8203;5845](https://redirect.github.com/fluxcd/flux2/pull/5845)\n-
          \\[RFC-0013] Implement plugin system by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5849](https://redirect.github.com/fluxcd/flux2/pull/5849)\n-
          build(deps): bump github.com/go-git/go-git/v5 from 5.17.1 to 5.18.0 by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
          in [#&#8203;5853](https://redirect.github.com/fluxcd/flux2/pull/5853)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5856](https://redirect.github.com/fluxcd/flux2/pull/5856)\n-
          Add digest pinning support to `flux plugin install` by [@&#8203;Iam-Karan-Suresh](https://redirect.github.com/Iam-Karan-Suresh)
          in [#&#8203;5872](https://redirect.github.com/fluxcd/flux2/pull/5872)\n-
          Add `--ns-follows-kube-context` global flag for using the kubeconfig context
          namespace by [@&#8203;jtyr](https://redirect.github.com/jtyr) in [#&#8203;5831](https://redirect.github.com/fluxcd/flux2/pull/5831)\n-
          include source-watcher in install.yaml manifests by [@&#8203;tmmorin](https://redirect.github.com/tmmorin)
          in [#&#8203;5881](https://redirect.github.com/fluxcd/flux2/pull/5881)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5890](https://redirect.github.com/fluxcd/flux2/pull/5890)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5903](https://redirect.github.com/fluxcd/flux2/pull/5903)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5907](https://redirect.github.com/fluxcd/flux2/pull/5907)\n-
          Validate Helm source URL schemes by [@&#8203;immanuwell](https://redirect.github.com/immanuwell)
          in [#&#8203;5909](https://redirect.github.com/fluxcd/flux2/pull/5909)\n-
          Introduce `flux trigger receiver` by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5908](https://redirect.github.com/fluxcd/flux2/pull/5908)\n-
          refactor(api): migrate MakeDependsOn to shared apis/meta func by [@&#8203;vecil](https://redirect.github.com/vecil)
          in [#&#8203;5912](https://redirect.github.com/fluxcd/flux2/pull/5912)\n-
          Update to Kubernetes 1.36 and Go 1.26 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5924](https://redirect.github.com/fluxcd/flux2/pull/5924)\n-
          build(deps): bump the ci group across 1 directory with 19 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
          in [#&#8203;5925](https://redirect.github.com/fluxcd/flux2/pull/5925)\n-
          Run conformance tests for Kubernetes 1.36 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5926](https://redirect.github.com/fluxcd/flux2/pull/5926)\n-
          Add support for AWS CodeCommit to `flux bootstrap git` by [@&#8203;taraspos](https://redirect.github.com/taraspos)
          in [#&#8203;5868](https://redirect.github.com/fluxcd/flux2/pull/5868)\n-
          Validate plugin binary path by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5927](https://redirect.github.com/fluxcd/flux2/pull/5927)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5928](https://redirect.github.com/fluxcd/flux2/pull/5928)\n-
          fix: preserve invalid metadata.labels in `flux build ks` by [@&#8203;raffis](https://redirect.github.com/raffis)
          in [#&#8203;5906](https://redirect.github.com/fluxcd/flux2/pull/5906)\n-
          build: target host arch for local builds/envtest by [@&#8203;stealthybox](https://redirect.github.com/stealthybox)
          in [#&#8203;5932](https://redirect.github.com/fluxcd/flux2/pull/5932)\n-
          build(deps): bump the ci group with 6 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
          in [#&#8203;5938](https://redirect.github.com/fluxcd/flux2/pull/5938)\n-
          Support specifing sparseCheckout in flux bootstrap by [@&#8203;piny940](https://redirect.github.com/piny940)
          in [#&#8203;5918](https://redirect.github.com/fluxcd/flux2/pull/5918)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5944](https://redirect.github.com/fluxcd/flux2/pull/5944)\n-
          Honor `ks.spec.postBuild.substituteStrategy` by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5945](https://redirect.github.com/fluxcd/flux2/pull/5945)\n-
          Add DriftIgnoreRules support to flux diff kustomization by [@&#8203;dipti-pai](https://redirect.github.com/dipti-pai)
          in [#&#8203;5923](https://redirect.github.com/fluxcd/flux2/pull/5923)\n-
          Allow signing commits using SSH key by [@&#8203;hiddeco](https://redirect.github.com/hiddeco)
          in [#&#8203;5920](https://redirect.github.com/fluxcd/flux2/pull/5920)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5950](https://redirect.github.com/fluxcd/flux2/pull/5950)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5937](https://redirect.github.com/fluxcd/flux2/pull/5937)\n-
          cmd: support `type!=status` in get --status-selector by [@&#8203;3uzbcqje](https://redirect.github.com/3uzbcqje)
          in [#&#8203;5952](https://redirect.github.com/fluxcd/flux2/pull/5952)\n-
          Fix `flux get all --status-selector` for empty results and notification
          resources by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5954](https://redirect.github.com/fluxcd/flux2/pull/5954)\n-
          Upgrade go-git-providers to v0.27.0 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5956](https://redirect.github.com/fluxcd/flux2/pull/5956)\n-
          Fix using Receiver adapter for ArtifactGenerator by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5957](https://redirect.github.com/fluxcd/flux2/pull/5957)\n-
          feat: Install Plugins alongside Flux setup in gh actions by [@&#8203;gat786](https://redirect.github.com/gat786)
          in [#&#8203;5955](https://redirect.github.com/fluxcd/flux2/pull/5955)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5960](https://redirect.github.com/fluxcd/flux2/pull/5960)\n-
          Add CLI support for OCIRepository.spec.layerSelector in flux create source
          oci by [@&#8203;dme86](https://redirect.github.com/dme86) in [#&#8203;5892](https://redirect.github.com/fluxcd/flux2/pull/5892)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5963](https://redirect.github.com/fluxcd/flux2/pull/5963)\n\n####
          New Contributors\n\n- [@&#8203;gaganhr94](https://redirect.github.com/gaganhr94)
          made their first contribution in [#&#8203;5763](https://redirect.github.com/fluxcd/flux2/pull/5763)\n-
          [@&#8203;rohansood10](https://redirect.github.com/rohansood10) made their
          first contribution in [#&#8203;5724](https://redirect.github.com/fluxcd/flux2/pull/5724)\n-
          [@&#8203;gma1k](https://redirect.github.com/gma1k) made their first contribution
          in [#&#8203;5798](https://redirect.github.com/fluxcd/flux2/pull/5798)\n-
          [@&#8203;rafaelperoco](https://redirect.github.com/rafaelperoco) made their
          first contribution in [#&#8203;5828](https://redirect.github.com/fluxcd/flux2/pull/5828)\n-
          [@&#8203;Iam-Karan-Suresh](https://redirect.github.com/Iam-Karan-Suresh)
          made their first contribution in [#&#8203;5833](https://redirect.github.com/fluxcd/flux2/pull/5833)\n-
          [@&#8203;rycli](https://redirect.github.com/rycli) made their first contribution
          in [#&#8203;5794](https://redirect.github.com/fluxcd/flux2/pull/5794)\n-
          [@&#8203;jtyr](https://redirect.github.com/jtyr) made their first contribution
          in [#&#8203;5831](https://redirect.github.com/fluxcd/flux2/pull/5831)\n-
          [@&#8203;tmmorin](https://redirect.github.com/tmmorin) made their first
          contribution in [#&#8203;5881](https://redirect.github.com/fluxcd/flux2/pull/5881)\n-
          [@&#8203;immanuwell](https://redirect.github.com/immanuwell) made their
          first contribution in [#&#8203;5909](https://redirect.github.com/fluxcd/flux2/pull/5909)\n-
          [@&#8203;vecil](https://redirect.github.com/vecil) made their first contribution
          in [#&#8203;5912](https://redirect.github.com/fluxcd/flux2/pull/5912)\n-
          [@&#8203;taraspos](https://redirect.github.com/taraspos) made their first
          contribution in [#&#8203;5868](https://redirect.github.com/fluxcd/flux2/pull/5868)\n-
          [@&#8203;piny940](https://redirect.github.com/piny940) made their first
          contribution in [#&#8203;5918](https://redirect.github.com/fluxcd/flux2/pull/5918)\n-
          [@&#8203;3uzbcqje](https://redirect.github.com/3uzbcqje) made their first
          contribution in [#&#8203;5952](https://redirect.github.com/fluxcd/flux2/pull/5952)\n-
          [@&#8203;gat786](https://redirect.github.com/gat786) made their first contribution
          in [#&#8203;5955](https://redirect.github.com/fluxcd/flux2/pull/5955)\n-
          [@&#8203;dme86](https://redirect.github.com/dme86) made their first contribution
          in [#&#8203;5892](https://redirect.github.com/fluxcd/flux2/pull/5892)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.0...v2.9.0>\n\n###
          [`v2.8.8`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.8)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.7...v2.8.8)\n\n#####
          Highlights\n\nFlux v2.8.8 is a patch release that includes CVE fixes via
          go-git v5.19.1 (source-controller, image-automation-controller), reliability
          fixes in helm-controller and source-controller, the move of Helm back to
          upstream v4.2.0, support for GCP sovereign cloud artifact registries, and
          dependency updates. Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Add a configurable HTTP timeout for artifact fetching, preventing fetches
          that could block indefinitely and stall reconciliations (helm-controller)\n-
          Fix unbounded memory growth caused by a Kubernetes client transport retry
          wrapper accumulating on every reconcile (helm-controller)\n- Stop force-applying
          non-CRD objects placed under a chart's `crds/` directory (helm-controller)\n-
          Fix the Helm test action failing to find releases with names longer than
          53 characters (helm-controller)\n- Improve path handling in the source reconcilers
          (source-controller)\n- Support Helm semver build-metadata encoding in OCIRepository
          tags (source-controller)\n\nImprovements:\n\n- Update go-git to v5.19.1
          which fixes [CVE-2026-45571](https://redirect.github.com/advisories/GHSA-crhj-59gh-8x96)
          and [CVE-2026-45570](https://redirect.github.com/advisories/GHSA-m7cr-m3pv-hgrp)
          (source-controller, image-automation-controller)\n- Move Helm back to upstream
          v4.2.0 (source-controller, helm-controller)\n- Add support for GCP sovereign
          cloud artifact registries (source-controller, image-reflector-controller)\n-
          Upgrade Kubernetes to 1.36.1 (source-controller, helm-controller)\n- Update
          fluxcd/pkg dependencies\n\n##### Components changelog\n\n- helm-controller
          [v1.5.5](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.5/CHANGELOG.md)\n-
          image-automation-controller [v1.1.4](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.4/CHANGELOG.md)\n-
          image-reflector-controller [v1.1.2](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.1.2/CHANGELOG.md)\n-
          source-controller [v1.8.5](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.5/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5904](https://redirect.github.com/fluxcd/flux2/pull/5904)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.7...v2.8.8>\n\n###
          [`v2.8.7`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.7)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.6...v2.8.7)\n\n#####
          Highlights\n\nFlux v2.8.7 is a patch release that includes a bug fix in
          kustomize-controller, a CVE fix in source-controller and image-automation-controller
          via go-git v5.19.0, and dependency updates. Users are encouraged to upgrade
          for the best experience.\n\n\u2139\uFE0F Please follow the [Upgrade Procedure
          for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix management of objects annotated with `kustomize.toolkit.fluxcd.io/ssa:
          IfNotPresent` where non-namespaced resources were being deleted and recreated
          on each reconciliation (kustomize-controller)\n\nImprovements:\n\n- Update
          go-git to v5.19.0 which fixes [CVE-2026-45022](https://redirect.github.com/advisories/GHSA-389r-gv7p-r3rp)
          (source-controller, image-automation-controller)\n- Update fluxcd/pkg dependencies
          (source-controller, kustomize-controller, image-automation-controller)\n\n#####
          Components changelog\n\n- helm-controller [v1.5.4](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.4/CHANGELOG.md)\n-
          image-automation-controller [v1.1.3](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.3/CHANGELOG.md)\n-
          kustomize-controller [v1.8.5](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.5/CHANGELOG.md)\n-
          notification-controller [v1.8.4](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.4/CHANGELOG.md)\n-
          source-controller [v1.8.4](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.4/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5891](https://redirect.github.com/fluxcd/flux2/pull/5891)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.6...v2.8.7>\n\n###
          [`v2.8.6`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.6)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.5...v2.8.6)\n\n#####
          Highlights\n\nFlux v2.8.6 is a patch release that includes bug fixes and
          improvements across helm-controller, image-automation-controller, kustomize-controller,
          notification-controller, and source-controller. Users are encouraged to
          upgrade for the best experience.\n\n\u2139\uFE0F Please follow the [Upgrade
          Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix a post-renderer conflict between overlapping hooks and templates (helm-controller)\n-
          Ignore force replace when server-side apply is enabled (helm-controller)\n-
          Fix a regression where generic providers would not forward commit status
          events (notification-controller)\n- Require the `audience` field on the
          GCR Receiver secret for tighter verification \u2014 will become mandatory
          in Flux v2.9 (notification-controller)\n\nImprovements:\n\n- Introduce the
          `MigrateAPIVersion` feature gate for migrating the API version of resources
          in managed field entries (kustomize-controller)\n- Update go-git to v5.18.0
          bringing performance improvements for Git operations (source-controller,
          image-automation-controller)\n\n##### Components changelog\n\n- helm-controller
          [v1.5.4](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.4/CHANGELOG.md)\n-
          image-automation-controller [v1.1.2](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.2/CHANGELOG.md)\n-
          kustomize-controller [v1.8.4](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.4/CHANGELOG.md)\n-
          notification-controller [v1.8.4](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.4/CHANGELOG.md)\n-
          source-controller [v1.8.3](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.3/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5857](https://redirect.github.com/fluxcd/flux2/pull/5857)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.5...v2.8.6>\n\n###
          [`v2.8.5`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.5)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.4...v2.8.5)\n\n#####
          Highlights\n\nFlux v2.8.5 is a patch release that includes bug fixes and
          improvements across kustomize-controller, source-controller, and notification-controller.
          Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix a race condition where a cancelled reconciliation could leave stale
          data in the cache, causing Kustomizations to get stuck (kustomize-controller)\n-
          Fix Azure Blob prefix option not being passed to the storage client (source-controller)\n\nImprovements:\n\n-
          Improve error message for encrypted SSH keys without password (source-controller)\n-
          Add optional `email` and `audience` fields to the GCR Receiver for tighter
          verification (notification-controller)\n- Add provider manifest example
          for Azure Event Hub managed identity authentication (notification-controller)\n\n#####
          Components changelog\n\n- kustomize-controller [v1.8.3](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.3/CHANGELOG.md)\n-
          source-controller [v1.8.2](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.2/CHANGELOG.md)\n-
          notification-controller [v1.8.3](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.3/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5822](https://redirect.github.com/fluxcd/flux2/pull/5822)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.4...v2.8.5>\n\n###
          [`v2.8.4`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.4)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.3...v2.8.4)\n\n#####
          Highlights\n\nFlux v2.8.4 is a patch release that includes fixes for the
          Flux CLI. Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix `flux build ks` and `flux diff ks` on Windows\n- Fix `--source` flag
          validation in `create kustomization` command\n\n##### CLI changelog\n\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5796](https://redirect.github.com/fluxcd/flux2/pull/5796)\n-
          \\[release/v2.8.x] fix: validate --source flag in create kustomization command
          by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot) in [#&#8203;5799](https://redirect.github.com/fluxcd/flux2/pull/5799)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.3...v2.8.4>\n\n###
          [`v2.8.3`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.3)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.2...v2.8.3)\n\n#####
          Highlights\n\nFlux v2.8.3 is a patch release that fixes a regression in
          helm-controller. Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix templating errors for charts that include `---` in the content, e.g.
          YAML separators, embedded scripts, CAs inside ConfigMaps (helm-controller)\n\n#####
          Components changelog\n\n- helm-controller [v1.5.3](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.3/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- \\[release/v2.8.x] Add target branch name to update branch
          by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot) in [#&#8203;5774](https://redirect.github.com/fluxcd/flux2/pull/5774)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5779](https://redirect.github.com/fluxcd/flux2/pull/5779)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.2...v2.8.3>\n\n###
          [`v2.8.2`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.2)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.1...v2.8.2)\n\n#####
          Highlights\n\nFlux v2.8.2 is a patch release that comes with various fixes.
          Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix enqueuing new reconciliation requests for events on source Flux objects
          when they are already reconciling the revision present in the watch event
          (kustomize-controller, helm-controller)\n- Fix the Go templates bug of YAML
          separator `---` getting concatenated to `apiVersion:` by updating to Helm
          4.1.3 (helm-controller)\n- Fix canceled HelmReleases getting stuck when
          they don't have a retry strategy configured by introducing a new feature
          gate `DefaultToRetryOnFailure` that improves the experience when the `CancelHealthCheckOnNewRevision`
          is enabled (helm-controller)\n- Fix the auth scope for Azure Container Registry
          to use the ACR-specific scope (source-controller, image-reflector-controller)\n-
          Fix potential Denial of Service (DoS) during TLS handshakes (CVE-2026-27138)
          by building all controllers with Go 1.26.1\n\n##### Components changelog\n\n-
          source-controller [v1.8.1](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.1/CHANGELOG.md)\n-
          kustomize-controller [v1.8.2](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.2/CHANGELOG.md)\n-
          notification-controller [v1.8.2](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.2/CHANGELOG.md)\n-
          helm-controller [v1.5.2](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.2/CHANGELOG.md)\n-
          image-reflector-controller [v1.1.1](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.1.1/CHANGELOG.md)\n-
          image-automation-controller [v1.1.1](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.1/CHANGELOG.md)\n-
          source-watcher [v2.1.1](https://redirect.github.com/fluxcd/source-watcher/blob/v2.1.1/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- \\[release/v2.8.x] build(deps): bump the ci group across
          1 directory with 11 updates by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5765](https://redirect.github.com/fluxcd/flux2/pull/5765)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5767](https://redirect.github.com/fluxcd/flux2/pull/5767)\n-
          Update toolkit components by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5770](https://redirect.github.com/fluxcd/flux2/pull/5770)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5771](https://redirect.github.com/fluxcd/flux2/pull/5771)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.1...v2.8.2>\n\n###
          [`v2.8.1`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.1)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.0...v2.8.1)\n\n#####
          Highlights\n\nFlux v2.8.1 is a patch release that comes with various fixes.
          Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix Git commit status events being dropped for Kustomizations (notification-controller)\n-
          Fix health check for StatefulSets when the Pods are Pending/Unschedulable
          during rollout (helm-controller, kustomize-controller)\n\n##### Components
          changelog\n\n- kustomize-controller [v1.8.1](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.1/CHANGELOG.md)\n-
          notification-controller [v1.8.1](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.1/CHANGELOG.md)\n-
          helm-controller [v1.5.1](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.1/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- \\[release/v2.8.x] Remove no longer needed workaround
          for Flux 2.8 by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5735](https://redirect.github.com/fluxcd/flux2/pull/5735)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5739](https://redirect.github.com/fluxcd/flux2/pull/5739)\n-
          \\[release/v2.8.x] Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5741](https://redirect.github.com/fluxcd/flux2/pull/5741)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.0...v2.8.1>\n\n###
          [`v2.8.0`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.0)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.7.5...v2.8.0)\n\n#####
          Highlights\n\nFlux v2.8.0 is a feature release. Users are encouraged to
          upgrade for the best experience.\n\nFor a compressive overview of new features
          and API changes included in this release, please refer to the [Announcing
          Flux 2.8 GA blog post](https://fluxcd.io/blog/2026/02/flux-v2.8.0/).\n\nOverview
          of the new features:\n\n- Helm v4 support, including server-side apply and
          kstatus-based health checking (`HelmRelease`)\n- Readiness evaluation of
          Helm-managed objects with CEL expressions (`HelmRelease`)\n- Improved observability
          of Helm releases with inventory tracking in `.status.inventory` (`HelmRelease`)\n-
          Reduced the mean time to recovery of Flux-managed applications via `CancelHealthCheckOnNewRevision`
          feature gate (`Kustomization`, `HelmRelease`)\n- Support for commenting
          on Pull Requests directly from Flux notifications (`Provider`)\n- Custom
          SSA apply stages for ordering resource application in kustomize-controller
          (`Kustomization`)\n- Automatic GitHub App installation ID lookup from the
          repository owner (`GitRepository`, `ImageUpdateAutomation`, `Provider`)\n-
          Support for Cosign v3 for verifying OCI artifacts and container images (`OCIRepository`)\n-
          ArtifactGenerator support for extracting and modifying Helm charts (`ArtifactGenerator`)\n-
          Bypass cache when fetching source objects via `DirectSourceFetch` feature
          gate (`Kustomization`, `HelmRelease`, `ArtifactGenerator`)\n\n\u2764\uFE0F
          Big thanks to all the Flux contributors that helped us with this release!\n\n#####
          Kubernetes compatibility\n\nThis release is compatible with the following
          Kubernetes versions:\n\n| Kubernetes version | Minimum required |\n| ------------------
          | ---------------- |\n| `v1.33`            | `>= 1.32.0`      |\n| `v1.34`
          \           | `>= 1.34.1`      |\n| `v1.35`            | `>= 1.35.0`      |\n\n>
          \\[!NOTE]\n> Note that the Flux project offers support only for the latest
          three minor versions of Kubernetes.\n> Backwards compatibility with older
          versions of Kubernetes and OpenShift is offered by vendors such as\n> [ControlPlane](https://control-plane.io/enterprise-for-flux-cd/)
          that provide enterprise support for Flux.\n\n##### OpenShift compatibility\n\nFlux
          can be installed on Red Hat OpenShift cluster directly from OperatorHub
          using [Flux Operator](https://operatorhub.io/operator/flux-operator). The
          operator allows the configuration of Flux multi-tenancy lockdown, network
          policies, persistent storage, sharding, vertical scaling and the synchronization
          of the cluster state from Git repositories, OCI artifacts, and S3-compatible
          storage.\n\n##### Upgrade procedure\n\n:warning: The Flux APIs `v1beta2`
          and `v2beta2` (deprecated in 2024) have reached end-of-life and have been
          removed from the CRDs.\n\nPlease follow the [Upgrade Procedure for Flux
          v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572) for a
          smooth upgrade from older versions of Flux to v2.8.\n\n##### Components
          changelog\n\n- source-controller [v1.8.0](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.0/CHANGELOG.md)\n-
          kustomize-controller [v1.8.0](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.0/CHANGELOG.md)\n-
          notification-controller [v1.8.0](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.0/CHANGELOG.md)\n-
          helm-controller [v1.5.0](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.0/CHANGELOG.md)\n-
          image-reflector-controller [v1.1.0](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.1.0/CHANGELOG.md)\n-
          image-automation-controller [v1.1.0](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.0/CHANGELOG.md)\n-
          source-watcher [v2.1.0](https://redirect.github.com/fluxcd/source-watcher/blob/v2.1.0/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- ci: Set `GITHUB_TOKEN` in the `release-flux-manifests`
          workflow by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5547](https://redirect.github.com/fluxcd/flux2/pull/5547)\n-
          Add backport label for Flux 2.7 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5550](https://redirect.github.com/fluxcd/flux2/pull/5550)\n-
          build(deps): bump the ci group across 1 directory with 3 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
          in [#&#8203;5548](https://redirect.github.com/fluxcd/flux2/pull/5548)\n-
          Fix `flux push artifact` not working with `--provider` by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5551](https://redirect.github.com/fluxcd/flux2/pull/5551)\n-
          Extend `flux migrate` to work with local files by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5554](https://redirect.github.com/fluxcd/flux2/pull/5554)\n-
          Improve `flux migrate` for live cluster migrations by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5558](https://redirect.github.com/fluxcd/flux2/pull/5558)\n-
          Fix `flux migrate -f` command to work with comments by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5560](https://redirect.github.com/fluxcd/flux2/pull/5560)\n-
          Add source-watcher to docs by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5562](https://redirect.github.com/fluxcd/flux2/pull/5562)\n-
          Fix `flux migrate -f` not considering kind comments by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5563](https://redirect.github.com/fluxcd/flux2/pull/5563)\n-
          refactor: convert `Kustomization` resource into unstructured map only once
          during variable substitution by [@&#8203;ramasai1](https://redirect.github.com/ramasai1)
          in [#&#8203;5566](https://redirect.github.com/fluxcd/flux2/pull/5566)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5568](https://redirect.github.com/fluxcd/flux2/pull/5568)\n-
          Disable AUR publishing by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5570](https://redirect.github.com/fluxcd/flux2/pull/5570)\n-
          Fix manifest generation for `--storage-adv-addr` and `--events-addr` flags
          by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan) in [#&#8203;5574](https://redirect.github.com/fluxcd/flux2/pull/5574)\n-
          Update dependencies to Kubernetes v1.34.1 and Go 1.25.2 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5576](https://redirect.github.com/fluxcd/flux2/pull/5576)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5578](https://redirect.github.com/fluxcd/flux2/pull/5578)\n-
          Restore GitHub PAT for backports by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5581](https://redirect.github.com/fluxcd/flux2/pull/5581)\n-
          \\[RFC-0012] Add command `flux get source external` by [@&#8203;dgunzy](https://redirect.github.com/dgunzy)
          in [#&#8203;5555](https://redirect.github.com/fluxcd/flux2/pull/5555)\n-
          fix: handle error when writing password prompt to stdout by [@&#8203;akshatsinha0](https://redirect.github.com/akshatsinha0)
          in [#&#8203;5589](https://redirect.github.com/fluxcd/flux2/pull/5589)\n-
          Pin cosign to v2.6.1 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5594](https://redirect.github.com/fluxcd/flux2/pull/5594)\n-
          \\[RFC-0012] Add command `flux export source external` by [@&#8203;dgunzy](https://redirect.github.com/dgunzy)
          in [#&#8203;5583](https://redirect.github.com/fluxcd/flux2/pull/5583)\n-
          Fix bootstrap e2e test for image policy by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5604](https://redirect.github.com/fluxcd/flux2/pull/5604)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5603](https://redirect.github.com/fluxcd/flux2/pull/5603)\n-
          fix: return accepted values for flags when calling Values.Type() by [@&#8203;jaxels10](https://redirect.github.com/jaxels10)
          in [#&#8203;5602](https://redirect.github.com/fluxcd/flux2/pull/5602)\n-
          ci: Include source-watcher in the e2e test suite by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5614](https://redirect.github.com/fluxcd/flux2/pull/5614)\n-
          Add source.extensions.fluxcd.io group to aggregated RBAC roles by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5627](https://redirect.github.com/fluxcd/flux2/pull/5627)\n-
          Fix panic on reconcile with source of ExternalArtifact kind by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5630](https://redirect.github.com/fluxcd/flux2/pull/5630)\n-
          Upgrade k8s to 1.34.2, c-r to 0.22.4 and helm to 3.19.2 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5633](https://redirect.github.com/fluxcd/flux2/pull/5633)\n-
          diff: report if object is skipped by [@&#8203;hown3d](https://redirect.github.com/hown3d)
          in [#&#8203;5625](https://redirect.github.com/fluxcd/flux2/pull/5625)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5639](https://redirect.github.com/fluxcd/flux2/pull/5639)\n-
          Allow option to skip tenant namespace creation by [@&#8203;anshuishere](https://redirect.github.com/anshuishere)
          in [#&#8203;5597](https://redirect.github.com/fluxcd/flux2/pull/5597)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5648](https://redirect.github.com/fluxcd/flux2/pull/5648)\n-
          fix: [#&#8203;5654](https://redirect.github.com/fluxcd/flux2/issues/5654)
          by checking if both --chart and --chart-ref are set by [@&#8203;jaxels10](https://redirect.github.com/jaxels10)
          in [#&#8203;5656](https://redirect.github.com/fluxcd/flux2/pull/5656)\n-
          Added retry logic with delays to the Flux CLI download by [@&#8203;ivan-munteanu](https://redirect.github.com/ivan-munteanu)
          in [#&#8203;5659](https://redirect.github.com/fluxcd/flux2/pull/5659)\n-
          Run conformance tests for Kubernetes 1.35.0  by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5663](https://redirect.github.com/fluxcd/flux2/pull/5663)\n-
          fix: normalize path for Windows compatibility by [@&#8203;sibasispadhi](https://redirect.github.com/sibasispadhi)
          in [#&#8203;5674](https://redirect.github.com/fluxcd/flux2/pull/5674)\n-
          Introduce support for looking up GH app installation ID by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5682](https://redirect.github.com/fluxcd/flux2/pull/5682)\n-
          Update dependencies to Kubernetes v1.35.0 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5688](https://redirect.github.com/fluxcd/flux2/pull/5688)\n-
          Fix resume command logging success after reconciliation failure by [@&#8203;Aman-Cool](https://redirect.github.com/Aman-Cool)
          in [#&#8203;5690](https://redirect.github.com/fluxcd/flux2/pull/5690)\n-
          Add 2.8 to supported versions for `flux migrate -f` by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5713](https://redirect.github.com/fluxcd/flux2/pull/5713)\n-
          Introduce workflow for bumping fluxcd/pkg deps by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5717](https://redirect.github.com/fluxcd/flux2/pull/5717)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5719](https://redirect.github.com/fluxcd/flux2/pull/5719)\n-
          Fix event listing ignoring pagination token by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5721](https://redirect.github.com/fluxcd/flux2/pull/5721)\n-
          Build with Go 1.26 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5723](https://redirect.github.com/fluxcd/flux2/pull/5723)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5722](https://redirect.github.com/fluxcd/flux2/pull/5722)\n-
          Update helm-controller to v1.5.0 by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5725](https://redirect.github.com/fluxcd/flux2/pull/5725)\n-
          build(deps): bump the ci group across 1 directory with 12 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
          in [#&#8203;5720](https://redirect.github.com/fluxcd/flux2/pull/5720)\n-
          Fix bootstrap failure on Windows cross-drive paths by [@&#8203;veeceey](https://redirect.github.com/veeceey)
          in [#&#8203;5726](https://redirect.github.com/fluxcd/flux2/pull/5726)\n-
          Dump debug info on e2e tests by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5729](https://redirect.github.com/fluxcd/flux2/pull/5729)\n-
          Set Kubernetes 1.33 as min supported version by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5730](https://redirect.github.com/fluxcd/flux2/pull/5730)\n-
          Update conformance tests to min Kubernetes 1.33 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5731](https://redirect.github.com/fluxcd/flux2/pull/5731)\n\n#####
          New Contributors\n\n- [@&#8203;ramasai1](https://redirect.github.com/ramasai1)
          made their first contribution in [#&#8203;5566](https://redirect.github.com/fluxcd/flux2/pull/5566)\n-
          [@&#8203;akshatsinha0](https://redirect.github.com/akshatsinha0) made their
          first contribution in [#&#8203;5589](https://redirect.github.com/fluxcd/flux2/pull/5589)\n-
          [@&#8203;jaxels10](https://redirect.github.com/jaxels10) made their first
          contribution in [#&#8203;5602](https://redirect.github.com/fluxcd/flux2/pull/5602)\n-
          [@&#8203;hown3d](https://redirect.github.com/hown3d) made their first contribution
          in [#&#8203;5625](https://redirect.github.com/fluxcd/flux2/pull/5625)\n-
          [@&#8203;anshuishere](https://redirect.github.com/anshuishere) made their
          first contribution in [#&#8203;5597](https://redirect.github.com/fluxcd/flux2/pull/5597)\n-
          [@&#8203;ivan-munteanu](https://redirect.github.com/ivan-munteanu) made
          their first contribution in [#&#8203;5659](https://redirect.github.com/fluxcd/flux2/pull/5659)\n-
          [@&#8203;sibasispadhi](https://redirect.github.com/sibasispadhi) made their
          first contribution in [#&#8203;5674](https://redirect.github.com/fluxcd/flux2/pull/5674)\n-
          [@&#8203;Aman-Cool](https://redirect.github.com/Aman-Cool) made their first
          contribution in [#&#8203;5690](https://redirect.github.com/fluxcd/flux2/pull/5690)\n-
          [@&#8203;veeceey](https://redirect.github.com/veeceey) made their first
          contribution in [#&#8203;5726](https://redirect.github.com/fluxcd/flux2/pull/5726)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.7.0...v2.8.0>\n\n###
          [`v2.7.5`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.7.5)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.7.4...v2.7.5)\n\n#####
          Highlights\n\nFlux v2.7.5 is a patch release that comes with fixes to helm-controller.
          Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix HelmRelease history truncation when using the `RetryOnFailure` strategy.\n\n:warning:
          Note that signature verification for OCI artifacts in source-controller
          is not compatible with Cosign v3.\nFlux users are advised to use [Cosign
          v2.6](https://fluxcd.io/flux/flux-gh-action/#push-and-sign-kubernetes-manifests-to-container-registries)
          for signing Flux OCI artifacts and Helm charts, until support for Cosign
          v3 is added in Flux v2.8.\n\n##### Components changelog\n\n- helm-controller
          [v1.4.5](https://redirect.github.com/fluxcd/helm-controller/blob/v1.4.5/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- \\[release/v2.7.x] Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5649](https://redirect.github.com/fluxcd/flux2/pull/5649)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.7.4...v2.7.5>\n\n###
          [`v2.7.4`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.7.4)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.7.3...v2.7.4)\n\n#####
          Highlights\n\nFlux v2.7.4 is a patch release that comes with various fixes.
          Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          \ Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Add `DisableConfigWatchers` feature gate to all controllers for disabling
          the Secrets/ConfigMaps watchers\n- Fix Workload Identity for Azure China
          Cloud in all controllers\n- Update Helm Go SDK to v3.19.2 fixing schema
          validation issues in helm-controller\n- Skip secret decryption for remote
          kustomize patches in kustomize-controller\n- Improve post-build error reporting
          in kustomize-controller\n- Add `ArtifactGenerator` to aggregated RBAC roles\n\n:warning:
          Note that signature verification for OCI artifacts in source-controller
          is not compatible with Cosign v3.\nFlux users are advised to use [Cosign
          v2.6](https://fluxcd.io/flux/flux-gh-action/#push-and-sign-kubernetes-manifests-to-container-registries)
          for signing Flux OCI artifacts and Helm charts, until support for Cosign
          v3 is added in Flux v2.8.\n\n##### Components changelog\n\n- source-controller
          [v1.7.4](https://redirect.github.com/fluxcd/source-controller/blob/v1.7.4/CHANGELOG.md)\n-
          kustomize-controller [v1.7.3](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.7.3/CHANGELOG.md)\n-
          notification-controller [v1.7.5](https://redirect.github.com/fluxcd/notification-controller/blob/v1.7.5/CHANGELOG.md)\n-
          helm-controller [v1.4.4](https://redirect.github.com/fluxcd/helm-controller/blob/v1.4.4/CHANGELOG.md)\n-
          image-reflector-controller [v1.0.4](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.0.4/CHANGELOG.md)\n-
          image-automation-controller [v1.0.4](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.0.4/CHANGELOG.md)\n-
          source-watcher [v2.0.3](https://redirect.github.com/fluxcd/source-watcher/blob/v2.0.3/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- \\[release/v2.7.x] ci: Include source-watcher in the
          e2e test suite by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5615](https://redirect.github.com/fluxcd/flux2/pull/5615)\n-
          \\[release/v2.7.x] Add source.extensions.fluxcd.io group to aggregated RBAC
          roles by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot) in [#&#8203;5628](https://redirect.github.com/fluxcd/flux2/pull/5628)\n-
          \\[release/v2.7.x] Fix panic on rec\n\n> \u2702 **Note**\n> \n> PR body
          was truncated to here.\n\n\n</details>\n\n---\n\n### Configuration\n\n\U0001F4C5
          **Schedule**: (UTC)\n\n- Branch creation\n  - At any time (no schedule defined)\n-
          Automerge\n  - At any time (no schedule defined)\n\n\U0001F6A6 **Automerge**:
          Disabled by config. Please merge this manually once you are satisfied.\n\n\u267B
          **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry
          checkbox.\n\n\U0001F515 **Ignore**: Close this PR and you won't be reminded
          about this update again.\n\n---\n\n - [ ] <!-- rebase-check -->If you want
          to rebase/retry this PR, check this box\n\n---\n\nThis PR was generated
          by [Mend Renovate](https://mend.io/renovate/). View the [repository job
          log](https://developer.mend.io/github/vexxhost/atmosphere.common).\n<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4xMzEuOSIsInVwZGF0ZWRJblZlciI6IjQ0LjEyLjAiLCJ0YXJnZXRCcmFuY2giOiJtYWluIiwibGFiZWxzIjpbXX0=-->\n"
        change_url: https://github.com/vexxhost/atmosphere.common/pull/102
        commit_id: 4b7d2c33963a0d5d8d07efbeae714265f786c145
        patchset: 4b7d2c33963a0d5d8d07efbeae714265f786c145
        project:
          canonical_hostname: github.com
          canonical_name: github.com/vexxhost/atmosphere.common
          name: vexxhost/atmosphere.common
          short_name: atmosphere.common
          src_dir: src/github.com/vexxhost/atmosphere.common
        src_dir: src/github.com/vexxhost/atmosphere.common
        topic: null
      buildset: a3252798506c4e28bbf54193cdd1a23d
      buildset_refs:
      - branch: main
        change: '102'
        change_message: "chore(deps): update dependency fluxcd/flux2 to v2.9.4\n\n>
          \u2139\uFE0F **Note**\n> \n> This PR body was truncated due to platform
          limits.\n\nThis PR contains the following updates:\n\n| Package | Update
          | Change |\n|---|---|---|\n| [fluxcd/flux2](https://redirect.github.com/fluxcd/flux2)
          | minor | `2.6.4` \u2192 `2.9.4` |\n\n---\n\n### Release Notes\n\n<details>\n<summary>fluxcd/flux2
          (fluxcd/flux2)</summary>\n\n### [`v2.9.4`](https://redirect.github.com/fluxcd/flux2/compare/v2.9.3...v2.9.4)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.9.3...v2.9.4)\n\n###
          [`v2.9.3`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.9.3)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.9.2...v2.9.3)\n\n####
          Highlights\n\nFlux v2.9.3 is a patch release. It fixes empty lines vanishing
          from rendered Helm chart manifests, HelmReleases being marked as tested
          when their Helm test hooks never ran, and `spec.images` entries that set
          only some image fields discarding the remaining fields already declared
          for the same image in the `kustomization.yaml`. The latter affects both
          kustomize-controller and the `flux build|diff kustomization` commands. Users
          are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F Please
          follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix empty lines vanishing from rendered chart manifests (helm-controller)\n-
          Fix `HasBeenTested` for all corner cases, where a release could be marked
          as tested although its Helm test hooks never ran (helm-controller)\n- Fix
          a `spec.images` entry setting only some of the image fields discarding the
          remaining fields already declared for the same image in the `kustomization.yaml`
          at `spec.path`, e.g. overriding only `newName` produced an untagged image
          reference (kustomize-controller, flux CLI)\n\nImprovements:\n\n- Update
          fluxcd/pkg dependencies\n- Include source-watcher in the OCI flux-manifests
          artifact\n\n#### Components changelog\n\n- kustomize-controller [v1.9.4](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.9.4/CHANGELOG.md)\n-
          helm-controller [v1.6.3](https://redirect.github.com/fluxcd/helm-controller/blob/v1.6.3/CHANGELOG.md)\n\n####
          CLI changelog\n\n- \\[release/v2.9.x] Include source-watcher to oci flux-manifests
          by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot) in [#&#8203;5996](https://redirect.github.com/fluxcd/flux2/pull/5996)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;6006](https://redirect.github.com/fluxcd/flux2/pull/6006)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;6011](https://redirect.github.com/fluxcd/flux2/pull/6011)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.9.2...v2.9.3>\n\n###
          [`v2.9.2`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.9.2)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.9.1...v2.9.2)\n\n#####
          Highlights\n\nFlux v2.9.2 is a patch release. The main fix addresses a regression
          introduced in\nv2.9.1 where a Kustomization with `openapi.path` pointing
          to a URL failed to\nreconcile with `failed to read OpenAPI schema`. This
          release also corrects several\nCRD field descriptions that contained inaccurate
          or leaked content. Users are\nencouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix a regression where a Kustomization with `openapi.path` pointing to a
          URL failed to reconcile with `failed to read OpenAPI schema` (kustomize-controller)\n-
          Fix the `HelmChart` CRD description for `.status.url`, which pointed users
          at `BucketStatus.Artifact` instead of `HelmChartStatus.Artifact` (source-controller)\n-
          Fix the `ImageRepository` CRD description for `.status.observedExclusionList`,
          which referred to `spec.lastScanResult` instead of `status.lastScanResult`
          (image-reflector-controller)\n- Fix the `ImageUpdateAutomation` CRD description
          for `.status.observedSourceRevision`, which had a stray Go struct declaration
          leaking into it (image-automation-controller)\n\nImprovements:\n\n- Update
          fluxcd/pkg dependencies\n\n##### Components changelog\n\n- source-controller
          [v1.9.3](https://redirect.github.com/fluxcd/source-controller/blob/v1.9.3/CHANGELOG.md)\n-
          kustomize-controller [v1.9.3](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.9.3/CHANGELOG.md)\n-
          helm-controller [v1.6.2](https://redirect.github.com/fluxcd/helm-controller/blob/v1.6.2/CHANGELOG.md)\n-
          notification-controller [v1.9.2](https://redirect.github.com/fluxcd/notification-controller/blob/v1.9.2/CHANGELOG.md)\n-
          image-reflector-controller [v1.2.3](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.2.3/CHANGELOG.md)\n-
          image-automation-controller [v1.2.3](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.2.3/CHANGELOG.md)\n-
          source-watcher [v2.2.2](https://redirect.github.com/fluxcd/source-watcher/blob/v2.2.2/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5984](https://redirect.github.com/fluxcd/flux2/pull/5984)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5990](https://redirect.github.com/fluxcd/flux2/pull/5990)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5994](https://redirect.github.com/fluxcd/flux2/pull/5994)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.9.1...v2.9.2>\n\n###
          [`v2.9.1`](https://redirect.github.com/fluxcd/flux2/compare/v2.9.0...v2.9.1)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.9.0...v2.9.1)\n\n###
          [`v2.9.0`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.9.0)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.8...v2.9.0)\n\n####
          Highlights\n\nFlux v2.9.0 is a feature release. Users are encouraged to
          upgrade for the best experience.\n\nFor a compressive overview of new features
          and API changes included in this release, please refer to the [Announcing
          Flux 2.9 GA blog post](https://fluxcd.io/blog/2026/06/flux-v2.9.0/).\n\nOverview
          of the new features:\n\n- Flux CLI Plugin System with the Mirror and Schema
          plugins (`flux plugin`)\n- Server-Side Apply field ignore rules for fine-grained
          drift control (`Kustomization`)\n- SOPS decryption with the Age post-quantum
          cipher (`Kustomization`)\n- Kubernetes Workload Identity authentication
          for OpenBao and Vault (`Kustomization`)\n- Helm post-render strategies,
          including chart hooks support (`HelmRelease`)\n- Literal mode for Helm values
          references mirroring `helm --set-literal` (`HelmRelease`)\n- Allow empty
          kind in CEL health check expressions (`Kustomization`, `HelmRelease`)\n-
          Git commit signing and verification with SSH keys (`GitRepository`, `ImageUpdateAutomation`)\n-
          AWS CodeCommit authentication using Workload Identity (`GitRepository`)\n-
          Custom Sigstore trusted root for keyless verification in air-gapped environments
          (`OCIRepository`)\n- Path pattern directory discovery for monorepos (`ArtifactGenerator`)\n-
          Secret-less, OIDC-secured webhook Receivers (`Receiver`)\n\n\u2764\uFE0F
          Big thanks to all the Flux contributors that helped us with this release!\n\n#####
          Kubernetes compatibility\n\nThis release is compatible with the following
          Kubernetes versions:\n\n| Kubernetes version | Minimum required |\n| ------------------
          | ---------------- |\n| `v1.34`            | `>= 1.34.1`      |\n| `v1.35`
          \           | `>= 1.35.0`      |\n| `v1.36`            | `>= 1.36.0`      |\n\n>
          \\[!NOTE]\n> Note that the Flux project offers support only for the latest
          three minor versions of Kubernetes.\n> Backwards compatibility with older
          versions of Kubernetes and OpenShift is offered by vendors such as\n> [ControlPlane](https://control-plane.io/enterprise-for-flux-cd/)
          that provide enterprise support for Flux.\n\n##### OpenShift compatibility\n\nFlux
          can be installed on Red Hat OpenShift cluster directly from OperatorHub
          using [Flux Operator](https://operatorhub.io/operator/flux-operator). The
          operator allows the configuration of Flux multi-tenancy lockdown, network
          policies, persistent storage, sharding, vertical scaling and the synchronization
          of the cluster state from Git repositories, OCI artifacts, and S3-compatible
          storage.\n\n#### Upgrade procedure\n\n:warning: The Flux APIs `image.toolkit.fluxcd.io/v1beta2`
          and `notification.toolkit.fluxcd.io/v1beta2`\nhave reached end-of-life and
          have been removed from the CRDs.\n\nPlease follow the [Upgrade Procedure
          for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from older versions of Flux to v2.9.\n\n#### Components
          changelog\n\n- source-controller [v1.9.1](https://redirect.github.com/fluxcd/source-controller/blob/v1.9.1/CHANGELOG.md)\n-
          kustomize-controller [v1.9.1](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.9.1/CHANGELOG.md)\n-
          notification-controller [v1.9.1](https://redirect.github.com/fluxcd/notification-controller/blob/v1.9.1/CHANGELOG.md)\n-
          helm-controller [v1.6.1](https://redirect.github.com/fluxcd/helm-controller/blob/v1.6.1/CHANGELOG.md)\n-
          image-reflector-controller [v1.2.1](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.2.1/CHANGELOG.md)\n-
          image-automation-controller [v1.2.1](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.2.1/CHANGELOG.md)\n-
          source-watcher [v2.2.1](https://redirect.github.com/fluxcd/source-watcher/blob/v2.2.1/CHANGELOG.md)\n\n####
          CLI changelog\n\n- Add backport label for Flux 2.8 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5732](https://redirect.github.com/fluxcd/flux2/pull/5732)\n-
          Remove no longer needed workaround for Flux 2.8 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5733](https://redirect.github.com/fluxcd/flux2/pull/5733)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5740](https://redirect.github.com/fluxcd/flux2/pull/5740)\n-
          Add missing things to release notes template by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5743](https://redirect.github.com/fluxcd/flux2/pull/5743)\n-
          ci: add top-level permissions to upgrade-fluxcd-pkg workflow by [@&#8203;gaganhr94](https://redirect.github.com/gaganhr94)
          in [#&#8203;5763](https://redirect.github.com/fluxcd/flux2/pull/5763)\n-
          build(deps): bump the ci group across 1 directory with 11 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
          in [#&#8203;5764](https://redirect.github.com/fluxcd/flux2/pull/5764)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5766](https://redirect.github.com/fluxcd/flux2/pull/5766)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5769](https://redirect.github.com/fluxcd/flux2/pull/5769)\n-
          Add target branch name to update branch by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5773](https://redirect.github.com/fluxcd/flux2/pull/5773)\n-
          Fix/resume exit code by [@&#8203;Aman-Cool](https://redirect.github.com/Aman-Cool)
          in [#&#8203;5701](https://redirect.github.com/fluxcd/flux2/pull/5701)\n-
          Mark RFC 0010, 0011 and 0012 as implemented by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5776](https://redirect.github.com/fluxcd/flux2/pull/5776)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5780](https://redirect.github.com/fluxcd/flux2/pull/5780)\n-
          Add --resolve-symlinks flag to build and push artifact commands by [@&#8203;rohansood10](https://redirect.github.com/rohansood10)
          in [#&#8203;5724](https://redirect.github.com/fluxcd/flux2/pull/5724)\n-
          fix: validate --source flag in create kustomization command by [@&#8203;gma1k](https://redirect.github.com/gma1k)
          in [#&#8203;5798](https://redirect.github.com/fluxcd/flux2/pull/5798)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5821](https://redirect.github.com/fluxcd/flux2/pull/5821)\n-
          Add `--show-source` to `flux get ks` and `flux get hr`  by [@&#8203;rafaelperoco](https://redirect.github.com/rafaelperoco)
          in [#&#8203;5828](https://redirect.github.com/fluxcd/flux2/pull/5828)\n-
          Add `flux create secret receiver` command by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5835](https://redirect.github.com/fluxcd/flux2/pull/5835)\n-
          fix: handle multiple symlinks to same target in build artifact by [@&#8203;Iam-Karan-Suresh](https://redirect.github.com/Iam-Karan-Suresh)
          in [#&#8203;5833](https://redirect.github.com/fluxcd/flux2/pull/5833)\n-
          Add `--in-memory-build` to `flux build ks` and `flux diff ks` by [@&#8203;rycli](https://redirect.github.com/rycli)
          in [#&#8203;5794](https://redirect.github.com/fluxcd/flux2/pull/5794)\n-
          Migrate end-to-end test to latest cloud SDKs  by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5840](https://redirect.github.com/fluxcd/flux2/pull/5840)\n-
          docs: Add AI Coding Assistants Guidance  by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5841](https://redirect.github.com/fluxcd/flux2/pull/5841)\n-
          Add AI Agents guidance by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5847](https://redirect.github.com/fluxcd/flux2/pull/5847)\n-
          \\[RFC-0013] Flux CLI Plugin System by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5795](https://redirect.github.com/fluxcd/flux2/pull/5795)\n-
          Add `--ignore-not-found` to `flux diff ks` by [@&#8203;rycli](https://redirect.github.com/rycli)
          in [#&#8203;5845](https://redirect.github.com/fluxcd/flux2/pull/5845)\n-
          \\[RFC-0013] Implement plugin system by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5849](https://redirect.github.com/fluxcd/flux2/pull/5849)\n-
          build(deps): bump github.com/go-git/go-git/v5 from 5.17.1 to 5.18.0 by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
          in [#&#8203;5853](https://redirect.github.com/fluxcd/flux2/pull/5853)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5856](https://redirect.github.com/fluxcd/flux2/pull/5856)\n-
          Add digest pinning support to `flux plugin install` by [@&#8203;Iam-Karan-Suresh](https://redirect.github.com/Iam-Karan-Suresh)
          in [#&#8203;5872](https://redirect.github.com/fluxcd/flux2/pull/5872)\n-
          Add `--ns-follows-kube-context` global flag for using the kubeconfig context
          namespace by [@&#8203;jtyr](https://redirect.github.com/jtyr) in [#&#8203;5831](https://redirect.github.com/fluxcd/flux2/pull/5831)\n-
          include source-watcher in install.yaml manifests by [@&#8203;tmmorin](https://redirect.github.com/tmmorin)
          in [#&#8203;5881](https://redirect.github.com/fluxcd/flux2/pull/5881)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5890](https://redirect.github.com/fluxcd/flux2/pull/5890)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5903](https://redirect.github.com/fluxcd/flux2/pull/5903)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5907](https://redirect.github.com/fluxcd/flux2/pull/5907)\n-
          Validate Helm source URL schemes by [@&#8203;immanuwell](https://redirect.github.com/immanuwell)
          in [#&#8203;5909](https://redirect.github.com/fluxcd/flux2/pull/5909)\n-
          Introduce `flux trigger receiver` by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5908](https://redirect.github.com/fluxcd/flux2/pull/5908)\n-
          refactor(api): migrate MakeDependsOn to shared apis/meta func by [@&#8203;vecil](https://redirect.github.com/vecil)
          in [#&#8203;5912](https://redirect.github.com/fluxcd/flux2/pull/5912)\n-
          Update to Kubernetes 1.36 and Go 1.26 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5924](https://redirect.github.com/fluxcd/flux2/pull/5924)\n-
          build(deps): bump the ci group across 1 directory with 19 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
          in [#&#8203;5925](https://redirect.github.com/fluxcd/flux2/pull/5925)\n-
          Run conformance tests for Kubernetes 1.36 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5926](https://redirect.github.com/fluxcd/flux2/pull/5926)\n-
          Add support for AWS CodeCommit to `flux bootstrap git` by [@&#8203;taraspos](https://redirect.github.com/taraspos)
          in [#&#8203;5868](https://redirect.github.com/fluxcd/flux2/pull/5868)\n-
          Validate plugin binary path by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5927](https://redirect.github.com/fluxcd/flux2/pull/5927)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5928](https://redirect.github.com/fluxcd/flux2/pull/5928)\n-
          fix: preserve invalid metadata.labels in `flux build ks` by [@&#8203;raffis](https://redirect.github.com/raffis)
          in [#&#8203;5906](https://redirect.github.com/fluxcd/flux2/pull/5906)\n-
          build: target host arch for local builds/envtest by [@&#8203;stealthybox](https://redirect.github.com/stealthybox)
          in [#&#8203;5932](https://redirect.github.com/fluxcd/flux2/pull/5932)\n-
          build(deps): bump the ci group with 6 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
          in [#&#8203;5938](https://redirect.github.com/fluxcd/flux2/pull/5938)\n-
          Support specifing sparseCheckout in flux bootstrap by [@&#8203;piny940](https://redirect.github.com/piny940)
          in [#&#8203;5918](https://redirect.github.com/fluxcd/flux2/pull/5918)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5944](https://redirect.github.com/fluxcd/flux2/pull/5944)\n-
          Honor `ks.spec.postBuild.substituteStrategy` by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5945](https://redirect.github.com/fluxcd/flux2/pull/5945)\n-
          Add DriftIgnoreRules support to flux diff kustomization by [@&#8203;dipti-pai](https://redirect.github.com/dipti-pai)
          in [#&#8203;5923](https://redirect.github.com/fluxcd/flux2/pull/5923)\n-
          Allow signing commits using SSH key by [@&#8203;hiddeco](https://redirect.github.com/hiddeco)
          in [#&#8203;5920](https://redirect.github.com/fluxcd/flux2/pull/5920)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5950](https://redirect.github.com/fluxcd/flux2/pull/5950)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5937](https://redirect.github.com/fluxcd/flux2/pull/5937)\n-
          cmd: support `type!=status` in get --status-selector by [@&#8203;3uzbcqje](https://redirect.github.com/3uzbcqje)
          in [#&#8203;5952](https://redirect.github.com/fluxcd/flux2/pull/5952)\n-
          Fix `flux get all --status-selector` for empty results and notification
          resources by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5954](https://redirect.github.com/fluxcd/flux2/pull/5954)\n-
          Upgrade go-git-providers to v0.27.0 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5956](https://redirect.github.com/fluxcd/flux2/pull/5956)\n-
          Fix using Receiver adapter for ArtifactGenerator by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5957](https://redirect.github.com/fluxcd/flux2/pull/5957)\n-
          feat: Install Plugins alongside Flux setup in gh actions by [@&#8203;gat786](https://redirect.github.com/gat786)
          in [#&#8203;5955](https://redirect.github.com/fluxcd/flux2/pull/5955)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5960](https://redirect.github.com/fluxcd/flux2/pull/5960)\n-
          Add CLI support for OCIRepository.spec.layerSelector in flux create source
          oci by [@&#8203;dme86](https://redirect.github.com/dme86) in [#&#8203;5892](https://redirect.github.com/fluxcd/flux2/pull/5892)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5963](https://redirect.github.com/fluxcd/flux2/pull/5963)\n\n####
          New Contributors\n\n- [@&#8203;gaganhr94](https://redirect.github.com/gaganhr94)
          made their first contribution in [#&#8203;5763](https://redirect.github.com/fluxcd/flux2/pull/5763)\n-
          [@&#8203;rohansood10](https://redirect.github.com/rohansood10) made their
          first contribution in [#&#8203;5724](https://redirect.github.com/fluxcd/flux2/pull/5724)\n-
          [@&#8203;gma1k](https://redirect.github.com/gma1k) made their first contribution
          in [#&#8203;5798](https://redirect.github.com/fluxcd/flux2/pull/5798)\n-
          [@&#8203;rafaelperoco](https://redirect.github.com/rafaelperoco) made their
          first contribution in [#&#8203;5828](https://redirect.github.com/fluxcd/flux2/pull/5828)\n-
          [@&#8203;Iam-Karan-Suresh](https://redirect.github.com/Iam-Karan-Suresh)
          made their first contribution in [#&#8203;5833](https://redirect.github.com/fluxcd/flux2/pull/5833)\n-
          [@&#8203;rycli](https://redirect.github.com/rycli) made their first contribution
          in [#&#8203;5794](https://redirect.github.com/fluxcd/flux2/pull/5794)\n-
          [@&#8203;jtyr](https://redirect.github.com/jtyr) made their first contribution
          in [#&#8203;5831](https://redirect.github.com/fluxcd/flux2/pull/5831)\n-
          [@&#8203;tmmorin](https://redirect.github.com/tmmorin) made their first
          contribution in [#&#8203;5881](https://redirect.github.com/fluxcd/flux2/pull/5881)\n-
          [@&#8203;immanuwell](https://redirect.github.com/immanuwell) made their
          first contribution in [#&#8203;5909](https://redirect.github.com/fluxcd/flux2/pull/5909)\n-
          [@&#8203;vecil](https://redirect.github.com/vecil) made their first contribution
          in [#&#8203;5912](https://redirect.github.com/fluxcd/flux2/pull/5912)\n-
          [@&#8203;taraspos](https://redirect.github.com/taraspos) made their first
          contribution in [#&#8203;5868](https://redirect.github.com/fluxcd/flux2/pull/5868)\n-
          [@&#8203;piny940](https://redirect.github.com/piny940) made their first
          contribution in [#&#8203;5918](https://redirect.github.com/fluxcd/flux2/pull/5918)\n-
          [@&#8203;3uzbcqje](https://redirect.github.com/3uzbcqje) made their first
          contribution in [#&#8203;5952](https://redirect.github.com/fluxcd/flux2/pull/5952)\n-
          [@&#8203;gat786](https://redirect.github.com/gat786) made their first contribution
          in [#&#8203;5955](https://redirect.github.com/fluxcd/flux2/pull/5955)\n-
          [@&#8203;dme86](https://redirect.github.com/dme86) made their first contribution
          in [#&#8203;5892](https://redirect.github.com/fluxcd/flux2/pull/5892)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.0...v2.9.0>\n\n###
          [`v2.8.8`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.8)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.7...v2.8.8)\n\n#####
          Highlights\n\nFlux v2.8.8 is a patch release that includes CVE fixes via
          go-git v5.19.1 (source-controller, image-automation-controller), reliability
          fixes in helm-controller and source-controller, the move of Helm back to
          upstream v4.2.0, support for GCP sovereign cloud artifact registries, and
          dependency updates. Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Add a configurable HTTP timeout for artifact fetching, preventing fetches
          that could block indefinitely and stall reconciliations (helm-controller)\n-
          Fix unbounded memory growth caused by a Kubernetes client transport retry
          wrapper accumulating on every reconcile (helm-controller)\n- Stop force-applying
          non-CRD objects placed under a chart's `crds/` directory (helm-controller)\n-
          Fix the Helm test action failing to find releases with names longer than
          53 characters (helm-controller)\n- Improve path handling in the source reconcilers
          (source-controller)\n- Support Helm semver build-metadata encoding in OCIRepository
          tags (source-controller)\n\nImprovements:\n\n- Update go-git to v5.19.1
          which fixes [CVE-2026-45571](https://redirect.github.com/advisories/GHSA-crhj-59gh-8x96)
          and [CVE-2026-45570](https://redirect.github.com/advisories/GHSA-m7cr-m3pv-hgrp)
          (source-controller, image-automation-controller)\n- Move Helm back to upstream
          v4.2.0 (source-controller, helm-controller)\n- Add support for GCP sovereign
          cloud artifact registries (source-controller, image-reflector-controller)\n-
          Upgrade Kubernetes to 1.36.1 (source-controller, helm-controller)\n- Update
          fluxcd/pkg dependencies\n\n##### Components changelog\n\n- helm-controller
          [v1.5.5](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.5/CHANGELOG.md)\n-
          image-automation-controller [v1.1.4](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.4/CHANGELOG.md)\n-
          image-reflector-controller [v1.1.2](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.1.2/CHANGELOG.md)\n-
          source-controller [v1.8.5](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.5/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5904](https://redirect.github.com/fluxcd/flux2/pull/5904)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.7...v2.8.8>\n\n###
          [`v2.8.7`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.7)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.6...v2.8.7)\n\n#####
          Highlights\n\nFlux v2.8.7 is a patch release that includes a bug fix in
          kustomize-controller, a CVE fix in source-controller and image-automation-controller
          via go-git v5.19.0, and dependency updates. Users are encouraged to upgrade
          for the best experience.\n\n\u2139\uFE0F Please follow the [Upgrade Procedure
          for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix management of objects annotated with `kustomize.toolkit.fluxcd.io/ssa:
          IfNotPresent` where non-namespaced resources were being deleted and recreated
          on each reconciliation (kustomize-controller)\n\nImprovements:\n\n- Update
          go-git to v5.19.0 which fixes [CVE-2026-45022](https://redirect.github.com/advisories/GHSA-389r-gv7p-r3rp)
          (source-controller, image-automation-controller)\n- Update fluxcd/pkg dependencies
          (source-controller, kustomize-controller, image-automation-controller)\n\n#####
          Components changelog\n\n- helm-controller [v1.5.4](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.4/CHANGELOG.md)\n-
          image-automation-controller [v1.1.3](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.3/CHANGELOG.md)\n-
          kustomize-controller [v1.8.5](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.5/CHANGELOG.md)\n-
          notification-controller [v1.8.4](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.4/CHANGELOG.md)\n-
          source-controller [v1.8.4](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.4/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5891](https://redirect.github.com/fluxcd/flux2/pull/5891)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.6...v2.8.7>\n\n###
          [`v2.8.6`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.6)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.5...v2.8.6)\n\n#####
          Highlights\n\nFlux v2.8.6 is a patch release that includes bug fixes and
          improvements across helm-controller, image-automation-controller, kustomize-controller,
          notification-controller, and source-controller. Users are encouraged to
          upgrade for the best experience.\n\n\u2139\uFE0F Please follow the [Upgrade
          Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix a post-renderer conflict between overlapping hooks and templates (helm-controller)\n-
          Ignore force replace when server-side apply is enabled (helm-controller)\n-
          Fix a regression where generic providers would not forward commit status
          events (notification-controller)\n- Require the `audience` field on the
          GCR Receiver secret for tighter verification \u2014 will become mandatory
          in Flux v2.9 (notification-controller)\n\nImprovements:\n\n- Introduce the
          `MigrateAPIVersion` feature gate for migrating the API version of resources
          in managed field entries (kustomize-controller)\n- Update go-git to v5.18.0
          bringing performance improvements for Git operations (source-controller,
          image-automation-controller)\n\n##### Components changelog\n\n- helm-controller
          [v1.5.4](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.4/CHANGELOG.md)\n-
          image-automation-controller [v1.1.2](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.2/CHANGELOG.md)\n-
          kustomize-controller [v1.8.4](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.4/CHANGELOG.md)\n-
          notification-controller [v1.8.4](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.4/CHANGELOG.md)\n-
          source-controller [v1.8.3](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.3/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5857](https://redirect.github.com/fluxcd/flux2/pull/5857)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.5...v2.8.6>\n\n###
          [`v2.8.5`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.5)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.4...v2.8.5)\n\n#####
          Highlights\n\nFlux v2.8.5 is a patch release that includes bug fixes and
          improvements across kustomize-controller, source-controller, and notification-controller.
          Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix a race condition where a cancelled reconciliation could leave stale
          data in the cache, causing Kustomizations to get stuck (kustomize-controller)\n-
          Fix Azure Blob prefix option not being passed to the storage client (source-controller)\n\nImprovements:\n\n-
          Improve error message for encrypted SSH keys without password (source-controller)\n-
          Add optional `email` and `audience` fields to the GCR Receiver for tighter
          verification (notification-controller)\n- Add provider manifest example
          for Azure Event Hub managed identity authentication (notification-controller)\n\n#####
          Components changelog\n\n- kustomize-controller [v1.8.3](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.3/CHANGELOG.md)\n-
          source-controller [v1.8.2](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.2/CHANGELOG.md)\n-
          notification-controller [v1.8.3](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.3/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5822](https://redirect.github.com/fluxcd/flux2/pull/5822)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.4...v2.8.5>\n\n###
          [`v2.8.4`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.4)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.3...v2.8.4)\n\n#####
          Highlights\n\nFlux v2.8.4 is a patch release that includes fixes for the
          Flux CLI. Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix `flux build ks` and `flux diff ks` on Windows\n- Fix `--source` flag
          validation in `create kustomization` command\n\n##### CLI changelog\n\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5796](https://redirect.github.com/fluxcd/flux2/pull/5796)\n-
          \\[release/v2.8.x] fix: validate --source flag in create kustomization command
          by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot) in [#&#8203;5799](https://redirect.github.com/fluxcd/flux2/pull/5799)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.3...v2.8.4>\n\n###
          [`v2.8.3`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.3)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.2...v2.8.3)\n\n#####
          Highlights\n\nFlux v2.8.3 is a patch release that fixes a regression in
          helm-controller. Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix templating errors for charts that include `---` in the content, e.g.
          YAML separators, embedded scripts, CAs inside ConfigMaps (helm-controller)\n\n#####
          Components changelog\n\n- helm-controller [v1.5.3](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.3/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- \\[release/v2.8.x] Add target branch name to update branch
          by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot) in [#&#8203;5774](https://redirect.github.com/fluxcd/flux2/pull/5774)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5779](https://redirect.github.com/fluxcd/flux2/pull/5779)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.2...v2.8.3>\n\n###
          [`v2.8.2`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.2)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.1...v2.8.2)\n\n#####
          Highlights\n\nFlux v2.8.2 is a patch release that comes with various fixes.
          Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix enqueuing new reconciliation requests for events on source Flux objects
          when they are already reconciling the revision present in the watch event
          (kustomize-controller, helm-controller)\n- Fix the Go templates bug of YAML
          separator `---` getting concatenated to `apiVersion:` by updating to Helm
          4.1.3 (helm-controller)\n- Fix canceled HelmReleases getting stuck when
          they don't have a retry strategy configured by introducing a new feature
          gate `DefaultToRetryOnFailure` that improves the experience when the `CancelHealthCheckOnNewRevision`
          is enabled (helm-controller)\n- Fix the auth scope for Azure Container Registry
          to use the ACR-specific scope (source-controller, image-reflector-controller)\n-
          Fix potential Denial of Service (DoS) during TLS handshakes (CVE-2026-27138)
          by building all controllers with Go 1.26.1\n\n##### Components changelog\n\n-
          source-controller [v1.8.1](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.1/CHANGELOG.md)\n-
          kustomize-controller [v1.8.2](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.2/CHANGELOG.md)\n-
          notification-controller [v1.8.2](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.2/CHANGELOG.md)\n-
          helm-controller [v1.5.2](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.2/CHANGELOG.md)\n-
          image-reflector-controller [v1.1.1](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.1.1/CHANGELOG.md)\n-
          image-automation-controller [v1.1.1](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.1/CHANGELOG.md)\n-
          source-watcher [v2.1.1](https://redirect.github.com/fluxcd/source-watcher/blob/v2.1.1/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- \\[release/v2.8.x] build(deps): bump the ci group across
          1 directory with 11 updates by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5765](https://redirect.github.com/fluxcd/flux2/pull/5765)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5767](https://redirect.github.com/fluxcd/flux2/pull/5767)\n-
          Update toolkit components by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5770](https://redirect.github.com/fluxcd/flux2/pull/5770)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5771](https://redirect.github.com/fluxcd/flux2/pull/5771)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.1...v2.8.2>\n\n###
          [`v2.8.1`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.1)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.0...v2.8.1)\n\n#####
          Highlights\n\nFlux v2.8.1 is a patch release that comes with various fixes.
          Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix Git commit status events being dropped for Kustomizations (notification-controller)\n-
          Fix health check for StatefulSets when the Pods are Pending/Unschedulable
          during rollout (helm-controller, kustomize-controller)\n\n##### Components
          changelog\n\n- kustomize-controller [v1.8.1](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.1/CHANGELOG.md)\n-
          notification-controller [v1.8.1](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.1/CHANGELOG.md)\n-
          helm-controller [v1.5.1](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.1/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- \\[release/v2.8.x] Remove no longer needed workaround
          for Flux 2.8 by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5735](https://redirect.github.com/fluxcd/flux2/pull/5735)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5739](https://redirect.github.com/fluxcd/flux2/pull/5739)\n-
          \\[release/v2.8.x] Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5741](https://redirect.github.com/fluxcd/flux2/pull/5741)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.0...v2.8.1>\n\n###
          [`v2.8.0`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.0)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.7.5...v2.8.0)\n\n#####
          Highlights\n\nFlux v2.8.0 is a feature release. Users are encouraged to
          upgrade for the best experience.\n\nFor a compressive overview of new features
          and API changes included in this release, please refer to the [Announcing
          Flux 2.8 GA blog post](https://fluxcd.io/blog/2026/02/flux-v2.8.0/).\n\nOverview
          of the new features:\n\n- Helm v4 support, including server-side apply and
          kstatus-based health checking (`HelmRelease`)\n- Readiness evaluation of
          Helm-managed objects with CEL expressions (`HelmRelease`)\n- Improved observability
          of Helm releases with inventory tracking in `.status.inventory` (`HelmRelease`)\n-
          Reduced the mean time to recovery of Flux-managed applications via `CancelHealthCheckOnNewRevision`
          feature gate (`Kustomization`, `HelmRelease`)\n- Support for commenting
          on Pull Requests directly from Flux notifications (`Provider`)\n- Custom
          SSA apply stages for ordering resource application in kustomize-controller
          (`Kustomization`)\n- Automatic GitHub App installation ID lookup from the
          repository owner (`GitRepository`, `ImageUpdateAutomation`, `Provider`)\n-
          Support for Cosign v3 for verifying OCI artifacts and container images (`OCIRepository`)\n-
          ArtifactGenerator support for extracting and modifying Helm charts (`ArtifactGenerator`)\n-
          Bypass cache when fetching source objects via `DirectSourceFetch` feature
          gate (`Kustomization`, `HelmRelease`, `ArtifactGenerator`)\n\n\u2764\uFE0F
          Big thanks to all the Flux contributors that helped us with this release!\n\n#####
          Kubernetes compatibility\n\nThis release is compatible with the following
          Kubernetes versions:\n\n| Kubernetes version | Minimum required |\n| ------------------
          | ---------------- |\n| `v1.33`            | `>= 1.32.0`      |\n| `v1.34`
          \           | `>= 1.34.1`      |\n| `v1.35`            | `>= 1.35.0`      |\n\n>
          \\[!NOTE]\n> Note that the Flux project offers support only for the latest
          three minor versions of Kubernetes.\n> Backwards compatibility with older
          versions of Kubernetes and OpenShift is offered by vendors such as\n> [ControlPlane](https://control-plane.io/enterprise-for-flux-cd/)
          that provide enterprise support for Flux.\n\n##### OpenShift compatibility\n\nFlux
          can be installed on Red Hat OpenShift cluster directly from OperatorHub
          using [Flux Operator](https://operatorhub.io/operator/flux-operator). The
          operator allows the configuration of Flux multi-tenancy lockdown, network
          policies, persistent storage, sharding, vertical scaling and the synchronization
          of the cluster state from Git repositories, OCI artifacts, and S3-compatible
          storage.\n\n##### Upgrade procedure\n\n:warning: The Flux APIs `v1beta2`
          and `v2beta2` (deprecated in 2024) have reached end-of-life and have been
          removed from the CRDs.\n\nPlease follow the [Upgrade Procedure for Flux
          v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572) for a
          smooth upgrade from older versions of Flux to v2.8.\n\n##### Components
          changelog\n\n- source-controller [v1.8.0](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.0/CHANGELOG.md)\n-
          kustomize-controller [v1.8.0](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.0/CHANGELOG.md)\n-
          notification-controller [v1.8.0](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.0/CHANGELOG.md)\n-
          helm-controller [v1.5.0](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.0/CHANGELOG.md)\n-
          image-reflector-controller [v1.1.0](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.1.0/CHANGELOG.md)\n-
          image-automation-controller [v1.1.0](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.0/CHANGELOG.md)\n-
          source-watcher [v2.1.0](https://redirect.github.com/fluxcd/source-watcher/blob/v2.1.0/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- ci: Set `GITHUB_TOKEN` in the `release-flux-manifests`
          workflow by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5547](https://redirect.github.com/fluxcd/flux2/pull/5547)\n-
          Add backport label for Flux 2.7 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5550](https://redirect.github.com/fluxcd/flux2/pull/5550)\n-
          build(deps): bump the ci group across 1 directory with 3 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
          in [#&#8203;5548](https://redirect.github.com/fluxcd/flux2/pull/5548)\n-
          Fix `flux push artifact` not working with `--provider` by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5551](https://redirect.github.com/fluxcd/flux2/pull/5551)\n-
          Extend `flux migrate` to work with local files by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5554](https://redirect.github.com/fluxcd/flux2/pull/5554)\n-
          Improve `flux migrate` for live cluster migrations by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5558](https://redirect.github.com/fluxcd/flux2/pull/5558)\n-
          Fix `flux migrate -f` command to work with comments by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5560](https://redirect.github.com/fluxcd/flux2/pull/5560)\n-
          Add source-watcher to docs by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5562](https://redirect.github.com/fluxcd/flux2/pull/5562)\n-
          Fix `flux migrate -f` not considering kind comments by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5563](https://redirect.github.com/fluxcd/flux2/pull/5563)\n-
          refactor: convert `Kustomization` resource into unstructured map only once
          during variable substitution by [@&#8203;ramasai1](https://redirect.github.com/ramasai1)
          in [#&#8203;5566](https://redirect.github.com/fluxcd/flux2/pull/5566)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5568](https://redirect.github.com/fluxcd/flux2/pull/5568)\n-
          Disable AUR publishing by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5570](https://redirect.github.com/fluxcd/flux2/pull/5570)\n-
          Fix manifest generation for `--storage-adv-addr` and `--events-addr` flags
          by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan) in [#&#8203;5574](https://redirect.github.com/fluxcd/flux2/pull/5574)\n-
          Update dependencies to Kubernetes v1.34.1 and Go 1.25.2 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5576](https://redirect.github.com/fluxcd/flux2/pull/5576)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5578](https://redirect.github.com/fluxcd/flux2/pull/5578)\n-
          Restore GitHub PAT for backports by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5581](https://redirect.github.com/fluxcd/flux2/pull/5581)\n-
          \\[RFC-0012] Add command `flux get source external` by [@&#8203;dgunzy](https://redirect.github.com/dgunzy)
          in [#&#8203;5555](https://redirect.github.com/fluxcd/flux2/pull/5555)\n-
          fix: handle error when writing password prompt to stdout by [@&#8203;akshatsinha0](https://redirect.github.com/akshatsinha0)
          in [#&#8203;5589](https://redirect.github.com/fluxcd/flux2/pull/5589)\n-
          Pin cosign to v2.6.1 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5594](https://redirect.github.com/fluxcd/flux2/pull/5594)\n-
          \\[RFC-0012] Add command `flux export source external` by [@&#8203;dgunzy](https://redirect.github.com/dgunzy)
          in [#&#8203;5583](https://redirect.github.com/fluxcd/flux2/pull/5583)\n-
          Fix bootstrap e2e test for image policy by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5604](https://redirect.github.com/fluxcd/flux2/pull/5604)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5603](https://redirect.github.com/fluxcd/flux2/pull/5603)\n-
          fix: return accepted values for flags when calling Values.Type() by [@&#8203;jaxels10](https://redirect.github.com/jaxels10)
          in [#&#8203;5602](https://redirect.github.com/fluxcd/flux2/pull/5602)\n-
          ci: Include source-watcher in the e2e test suite by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5614](https://redirect.github.com/fluxcd/flux2/pull/5614)\n-
          Add source.extensions.fluxcd.io group to aggregated RBAC roles by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5627](https://redirect.github.com/fluxcd/flux2/pull/5627)\n-
          Fix panic on reconcile with source of ExternalArtifact kind by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5630](https://redirect.github.com/fluxcd/flux2/pull/5630)\n-
          Upgrade k8s to 1.34.2, c-r to 0.22.4 and helm to 3.19.2 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5633](https://redirect.github.com/fluxcd/flux2/pull/5633)\n-
          diff: report if object is skipped by [@&#8203;hown3d](https://redirect.github.com/hown3d)
          in [#&#8203;5625](https://redirect.github.com/fluxcd/flux2/pull/5625)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5639](https://redirect.github.com/fluxcd/flux2/pull/5639)\n-
          Allow option to skip tenant namespace creation by [@&#8203;anshuishere](https://redirect.github.com/anshuishere)
          in [#&#8203;5597](https://redirect.github.com/fluxcd/flux2/pull/5597)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5648](https://redirect.github.com/fluxcd/flux2/pull/5648)\n-
          fix: [#&#8203;5654](https://redirect.github.com/fluxcd/flux2/issues/5654)
          by checking if both --chart and --chart-ref are set by [@&#8203;jaxels10](https://redirect.github.com/jaxels10)
          in [#&#8203;5656](https://redirect.github.com/fluxcd/flux2/pull/5656)\n-
          Added retry logic with delays to the Flux CLI download by [@&#8203;ivan-munteanu](https://redirect.github.com/ivan-munteanu)
          in [#&#8203;5659](https://redirect.github.com/fluxcd/flux2/pull/5659)\n-
          Run conformance tests for Kubernetes 1.35.0  by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5663](https://redirect.github.com/fluxcd/flux2/pull/5663)\n-
          fix: normalize path for Windows compatibility by [@&#8203;sibasispadhi](https://redirect.github.com/sibasispadhi)
          in [#&#8203;5674](https://redirect.github.com/fluxcd/flux2/pull/5674)\n-
          Introduce support for looking up GH app installation ID by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5682](https://redirect.github.com/fluxcd/flux2/pull/5682)\n-
          Update dependencies to Kubernetes v1.35.0 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5688](https://redirect.github.com/fluxcd/flux2/pull/5688)\n-
          Fix resume command logging success after reconciliation failure by [@&#8203;Aman-Cool](https://redirect.github.com/Aman-Cool)
          in [#&#8203;5690](https://redirect.github.com/fluxcd/flux2/pull/5690)\n-
          Add 2.8 to supported versions for `flux migrate -f` by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5713](https://redirect.github.com/fluxcd/flux2/pull/5713)\n-
          Introduce workflow for bumping fluxcd/pkg deps by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5717](https://redirect.github.com/fluxcd/flux2/pull/5717)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5719](https://redirect.github.com/fluxcd/flux2/pull/5719)\n-
          Fix event listing ignoring pagination token by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5721](https://redirect.github.com/fluxcd/flux2/pull/5721)\n-
          Build with Go 1.26 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5723](https://redirect.github.com/fluxcd/flux2/pull/5723)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5722](https://redirect.github.com/fluxcd/flux2/pull/5722)\n-
          Update helm-controller to v1.5.0 by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5725](https://redirect.github.com/fluxcd/flux2/pull/5725)\n-
          build(deps): bump the ci group across 1 directory with 12 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
          in [#&#8203;5720](https://redirect.github.com/fluxcd/flux2/pull/5720)\n-
          Fix bootstrap failure on Windows cross-drive paths by [@&#8203;veeceey](https://redirect.github.com/veeceey)
          in [#&#8203;5726](https://redirect.github.com/fluxcd/flux2/pull/5726)\n-
          Dump debug info on e2e tests by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5729](https://redirect.github.com/fluxcd/flux2/pull/5729)\n-
          Set Kubernetes 1.33 as min supported version by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5730](https://redirect.github.com/fluxcd/flux2/pull/5730)\n-
          Update conformance tests to min Kubernetes 1.33 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5731](https://redirect.github.com/fluxcd/flux2/pull/5731)\n\n#####
          New Contributors\n\n- [@&#8203;ramasai1](https://redirect.github.com/ramasai1)
          made their first contribution in [#&#8203;5566](https://redirect.github.com/fluxcd/flux2/pull/5566)\n-
          [@&#8203;akshatsinha0](https://redirect.github.com/akshatsinha0) made their
          first contribution in [#&#8203;5589](https://redirect.github.com/fluxcd/flux2/pull/5589)\n-
          [@&#8203;jaxels10](https://redirect.github.com/jaxels10) made their first
          contribution in [#&#8203;5602](https://redirect.github.com/fluxcd/flux2/pull/5602)\n-
          [@&#8203;hown3d](https://redirect.github.com/hown3d) made their first contribution
          in [#&#8203;5625](https://redirect.github.com/fluxcd/flux2/pull/5625)\n-
          [@&#8203;anshuishere](https://redirect.github.com/anshuishere) made their
          first contribution in [#&#8203;5597](https://redirect.github.com/fluxcd/flux2/pull/5597)\n-
          [@&#8203;ivan-munteanu](https://redirect.github.com/ivan-munteanu) made
          their first contribution in [#&#8203;5659](https://redirect.github.com/fluxcd/flux2/pull/5659)\n-
          [@&#8203;sibasispadhi](https://redirect.github.com/sibasispadhi) made their
          first contribution in [#&#8203;5674](https://redirect.github.com/fluxcd/flux2/pull/5674)\n-
          [@&#8203;Aman-Cool](https://redirect.github.com/Aman-Cool) made their first
          contribution in [#&#8203;5690](https://redirect.github.com/fluxcd/flux2/pull/5690)\n-
          [@&#8203;veeceey](https://redirect.github.com/veeceey) made their first
          contribution in [#&#8203;5726](https://redirect.github.com/fluxcd/flux2/pull/5726)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.7.0...v2.8.0>\n\n###
          [`v2.7.5`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.7.5)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.7.4...v2.7.5)\n\n#####
          Highlights\n\nFlux v2.7.5 is a patch release that comes with fixes to helm-controller.
          Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix HelmRelease history truncation when using the `RetryOnFailure` strategy.\n\n:warning:
          Note that signature verification for OCI artifacts in source-controller
          is not compatible with Cosign v3.\nFlux users are advised to use [Cosign
          v2.6](https://fluxcd.io/flux/flux-gh-action/#push-and-sign-kubernetes-manifests-to-container-registries)
          for signing Flux OCI artifacts and Helm charts, until support for Cosign
          v3 is added in Flux v2.8.\n\n##### Components changelog\n\n- helm-controller
          [v1.4.5](https://redirect.github.com/fluxcd/helm-controller/blob/v1.4.5/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- \\[release/v2.7.x] Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5649](https://redirect.github.com/fluxcd/flux2/pull/5649)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.7.4...v2.7.5>\n\n###
          [`v2.7.4`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.7.4)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.7.3...v2.7.4)\n\n#####
          Highlights\n\nFlux v2.7.4 is a patch release that comes with various fixes.
          Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          \ Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Add `DisableConfigWatchers` feature gate to all controllers for disabling
          the Secrets/ConfigMaps watchers\n- Fix Workload Identity for Azure China
          Cloud in all controllers\n- Update Helm Go SDK to v3.19.2 fixing schema
          validation issues in helm-controller\n- Skip secret decryption for remote
          kustomize patches in kustomize-controller\n- Improve post-build error reporting
          in kustomize-controller\n- Add `ArtifactGenerator` to aggregated RBAC roles\n\n:warning:
          Note that signature verification for OCI artifacts in source-controller
          is not compatible with Cosign v3.\nFlux users are advised to use [Cosign
          v2.6](https://fluxcd.io/flux/flux-gh-action/#push-and-sign-kubernetes-manifests-to-container-registries)
          for signing Flux OCI artifacts and Helm charts, until support for Cosign
          v3 is added in Flux v2.8.\n\n##### Components changelog\n\n- source-controller
          [v1.7.4](https://redirect.github.com/fluxcd/source-controller/blob/v1.7.4/CHANGELOG.md)\n-
          kustomize-controller [v1.7.3](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.7.3/CHANGELOG.md)\n-
          notification-controller [v1.7.5](https://redirect.github.com/fluxcd/notification-controller/blob/v1.7.5/CHANGELOG.md)\n-
          helm-controller [v1.4.4](https://redirect.github.com/fluxcd/helm-controller/blob/v1.4.4/CHANGELOG.md)\n-
          image-reflector-controller [v1.0.4](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.0.4/CHANGELOG.md)\n-
          image-automation-controller [v1.0.4](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.0.4/CHANGELOG.md)\n-
          source-watcher [v2.0.3](https://redirect.github.com/fluxcd/source-watcher/blob/v2.0.3/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- \\[release/v2.7.x] ci: Include source-watcher in the
          e2e test suite by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5615](https://redirect.github.com/fluxcd/flux2/pull/5615)\n-
          \\[release/v2.7.x] Add source.extensions.fluxcd.io group to aggregated RBAC
          roles by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot) in [#&#8203;5628](https://redirect.github.com/fluxcd/flux2/pull/5628)\n-
          \\[release/v2.7.x] Fix panic on rec\n\n> \u2702 **Note**\n> \n> PR body
          was truncated to here.\n\n\n</details>\n\n---\n\n### Configuration\n\n\U0001F4C5
          **Schedule**: (UTC)\n\n- Branch creation\n  - At any time (no schedule defined)\n-
          Automerge\n  - At any time (no schedule defined)\n\n\U0001F6A6 **Automerge**:
          Disabled by config. Please merge this manually once you are satisfied.\n\n\u267B
          **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry
          checkbox.\n\n\U0001F515 **Ignore**: Close this PR and you won't be reminded
          about this update again.\n\n---\n\n - [ ] <!-- rebase-check -->If you want
          to rebase/retry this PR, check this box\n\n---\n\nThis PR was generated
          by [Mend Renovate](https://mend.io/renovate/). View the [repository job
          log](https://developer.mend.io/github/vexxhost/atmosphere.common).\n<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4xMzEuOSIsInVwZGF0ZWRJblZlciI6IjQ0LjEyLjAiLCJ0YXJnZXRCcmFuY2giOiJtYWluIiwibGFiZWxzIjpbXX0=-->\n"
        change_url: https://github.com/vexxhost/atmosphere.common/pull/102
        commit_id: 4b7d2c33963a0d5d8d07efbeae714265f786c145
        patchset: 4b7d2c33963a0d5d8d07efbeae714265f786c145
        project:
          canonical_hostname: github.com
          canonical_name: github.com/vexxhost/atmosphere.common
          name: vexxhost/atmosphere.common
          short_name: atmosphere.common
          src_dir: src/github.com/vexxhost/atmosphere.common
        src_dir: src/github.com/vexxhost/atmosphere.common
        topic: null
      change: '102'
      change_message: "chore(deps): update dependency fluxcd/flux2 to v2.9.4\n\n>
        \u2139\uFE0F **Note**\n> \n> This PR body was truncated due to platform limits.\n\nThis
        PR contains the following updates:\n\n| Package | Update | Change |\n|---|---|---|\n|
        [fluxcd/flux2](https://redirect.github.com/fluxcd/flux2) | minor | `2.6.4`
        \u2192 `2.9.4` |\n\n---\n\n### Release Notes\n\n<details>\n<summary>fluxcd/flux2
        (fluxcd/flux2)</summary>\n\n### [`v2.9.4`](https://redirect.github.com/fluxcd/flux2/compare/v2.9.3...v2.9.4)\n\n[Compare
        Source](https://redirect.github.com/fluxcd/flux2/compare/v2.9.3...v2.9.4)\n\n###
        [`v2.9.3`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.9.3)\n\n[Compare
        Source](https://redirect.github.com/fluxcd/flux2/compare/v2.9.2...v2.9.3)\n\n####
        Highlights\n\nFlux v2.9.3 is a patch release. It fixes empty lines vanishing
        from rendered Helm chart manifests, HelmReleases being marked as tested when
        their Helm test hooks never ran, and `spec.images` entries that set only some
        image fields discarding the remaining fields already declared for the same
        image in the `kustomization.yaml`. The latter affects both kustomize-controller
        and the `flux build|diff kustomization` commands. Users are encouraged to
        upgrade for the best experience.\n\n\u2139\uFE0F Please follow the [Upgrade
        Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
        for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
        Fix empty lines vanishing from rendered chart manifests (helm-controller)\n-
        Fix `HasBeenTested` for all corner cases, where a release could be marked
        as tested although its Helm test hooks never ran (helm-controller)\n- Fix
        a `spec.images` entry setting only some of the image fields discarding the
        remaining fields already declared for the same image in the `kustomization.yaml`
        at `spec.path`, e.g. overriding only `newName` produced an untagged image
        reference (kustomize-controller, flux CLI)\n\nImprovements:\n\n- Update fluxcd/pkg
        dependencies\n- Include source-watcher in the OCI flux-manifests artifact\n\n####
        Components changelog\n\n- kustomize-controller [v1.9.4](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.9.4/CHANGELOG.md)\n-
        helm-controller [v1.6.3](https://redirect.github.com/fluxcd/helm-controller/blob/v1.6.3/CHANGELOG.md)\n\n####
        CLI changelog\n\n- \\[release/v2.9.x] Include source-watcher to oci flux-manifests
        by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot) in [#&#8203;5996](https://redirect.github.com/fluxcd/flux2/pull/5996)\n-
        Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;6006](https://redirect.github.com/fluxcd/flux2/pull/6006)\n- Update
        toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;6011](https://redirect.github.com/fluxcd/flux2/pull/6011)\n\n**Full
        Changelog**: <https://github.com/fluxcd/flux2/compare/v2.9.2...v2.9.3>\n\n###
        [`v2.9.2`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.9.2)\n\n[Compare
        Source](https://redirect.github.com/fluxcd/flux2/compare/v2.9.1...v2.9.2)\n\n#####
        Highlights\n\nFlux v2.9.2 is a patch release. The main fix addresses a regression
        introduced in\nv2.9.1 where a Kustomization with `openapi.path` pointing to
        a URL failed to\nreconcile with `failed to read OpenAPI schema`. This release
        also corrects several\nCRD field descriptions that contained inaccurate or
        leaked content. Users are\nencouraged to upgrade for the best experience.\n\n\u2139\uFE0F
        Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
        for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
        Fix a regression where a Kustomization with `openapi.path` pointing to a URL
        failed to reconcile with `failed to read OpenAPI schema` (kustomize-controller)\n-
        Fix the `HelmChart` CRD description for `.status.url`, which pointed users
        at `BucketStatus.Artifact` instead of `HelmChartStatus.Artifact` (source-controller)\n-
        Fix the `ImageRepository` CRD description for `.status.observedExclusionList`,
        which referred to `spec.lastScanResult` instead of `status.lastScanResult`
        (image-reflector-controller)\n- Fix the `ImageUpdateAutomation` CRD description
        for `.status.observedSourceRevision`, which had a stray Go struct declaration
        leaking into it (image-automation-controller)\n\nImprovements:\n\n- Update
        fluxcd/pkg dependencies\n\n##### Components changelog\n\n- source-controller
        [v1.9.3](https://redirect.github.com/fluxcd/source-controller/blob/v1.9.3/CHANGELOG.md)\n-
        kustomize-controller [v1.9.3](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.9.3/CHANGELOG.md)\n-
        helm-controller [v1.6.2](https://redirect.github.com/fluxcd/helm-controller/blob/v1.6.2/CHANGELOG.md)\n-
        notification-controller [v1.9.2](https://redirect.github.com/fluxcd/notification-controller/blob/v1.9.2/CHANGELOG.md)\n-
        image-reflector-controller [v1.2.3](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.2.3/CHANGELOG.md)\n-
        image-automation-controller [v1.2.3](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.2.3/CHANGELOG.md)\n-
        source-watcher [v2.2.2](https://redirect.github.com/fluxcd/source-watcher/blob/v2.2.2/CHANGELOG.md)\n\n#####
        CLI changelog\n\n- Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5984](https://redirect.github.com/fluxcd/flux2/pull/5984)\n- Update
        fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5990](https://redirect.github.com/fluxcd/flux2/pull/5990)\n- Update
        toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5994](https://redirect.github.com/fluxcd/flux2/pull/5994)\n\n**Full
        Changelog**: <https://github.com/fluxcd/flux2/compare/v2.9.1...v2.9.2>\n\n###
        [`v2.9.1`](https://redirect.github.com/fluxcd/flux2/compare/v2.9.0...v2.9.1)\n\n[Compare
        Source](https://redirect.github.com/fluxcd/flux2/compare/v2.9.0...v2.9.1)\n\n###
        [`v2.9.0`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.9.0)\n\n[Compare
        Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.8...v2.9.0)\n\n####
        Highlights\n\nFlux v2.9.0 is a feature release. Users are encouraged to upgrade
        for the best experience.\n\nFor a compressive overview of new features and
        API changes included in this release, please refer to the [Announcing Flux
        2.9 GA blog post](https://fluxcd.io/blog/2026/06/flux-v2.9.0/).\n\nOverview
        of the new features:\n\n- Flux CLI Plugin System with the Mirror and Schema
        plugins (`flux plugin`)\n- Server-Side Apply field ignore rules for fine-grained
        drift control (`Kustomization`)\n- SOPS decryption with the Age post-quantum
        cipher (`Kustomization`)\n- Kubernetes Workload Identity authentication for
        OpenBao and Vault (`Kustomization`)\n- Helm post-render strategies, including
        chart hooks support (`HelmRelease`)\n- Literal mode for Helm values references
        mirroring `helm --set-literal` (`HelmRelease`)\n- Allow empty kind in CEL
        health check expressions (`Kustomization`, `HelmRelease`)\n- Git commit signing
        and verification with SSH keys (`GitRepository`, `ImageUpdateAutomation`)\n-
        AWS CodeCommit authentication using Workload Identity (`GitRepository`)\n-
        Custom Sigstore trusted root for keyless verification in air-gapped environments
        (`OCIRepository`)\n- Path pattern directory discovery for monorepos (`ArtifactGenerator`)\n-
        Secret-less, OIDC-secured webhook Receivers (`Receiver`)\n\n\u2764\uFE0F Big
        thanks to all the Flux contributors that helped us with this release!\n\n#####
        Kubernetes compatibility\n\nThis release is compatible with the following
        Kubernetes versions:\n\n| Kubernetes version | Minimum required |\n| ------------------
        | ---------------- |\n| `v1.34`            | `>= 1.34.1`      |\n| `v1.35`
        \           | `>= 1.35.0`      |\n| `v1.36`            | `>= 1.36.0`      |\n\n>
        \\[!NOTE]\n> Note that the Flux project offers support only for the latest
        three minor versions of Kubernetes.\n> Backwards compatibility with older
        versions of Kubernetes and OpenShift is offered by vendors such as\n> [ControlPlane](https://control-plane.io/enterprise-for-flux-cd/)
        that provide enterprise support for Flux.\n\n##### OpenShift compatibility\n\nFlux
        can be installed on Red Hat OpenShift cluster directly from OperatorHub using
        [Flux Operator](https://operatorhub.io/operator/flux-operator). The operator
        allows the configuration of Flux multi-tenancy lockdown, network policies,
        persistent storage, sharding, vertical scaling and the synchronization of
        the cluster state from Git repositories, OCI artifacts, and S3-compatible
        storage.\n\n#### Upgrade procedure\n\n:warning: The Flux APIs `image.toolkit.fluxcd.io/v1beta2`
        and `notification.toolkit.fluxcd.io/v1beta2`\nhave reached end-of-life and
        have been removed from the CRDs.\n\nPlease follow the [Upgrade Procedure for
        Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572) for
        a smooth upgrade from older versions of Flux to v2.9.\n\n#### Components changelog\n\n-
        source-controller [v1.9.1](https://redirect.github.com/fluxcd/source-controller/blob/v1.9.1/CHANGELOG.md)\n-
        kustomize-controller [v1.9.1](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.9.1/CHANGELOG.md)\n-
        notification-controller [v1.9.1](https://redirect.github.com/fluxcd/notification-controller/blob/v1.9.1/CHANGELOG.md)\n-
        helm-controller [v1.6.1](https://redirect.github.com/fluxcd/helm-controller/blob/v1.6.1/CHANGELOG.md)\n-
        image-reflector-controller [v1.2.1](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.2.1/CHANGELOG.md)\n-
        image-automation-controller [v1.2.1](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.2.1/CHANGELOG.md)\n-
        source-watcher [v2.2.1](https://redirect.github.com/fluxcd/source-watcher/blob/v2.2.1/CHANGELOG.md)\n\n####
        CLI changelog\n\n- Add backport label for Flux 2.8 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5732](https://redirect.github.com/fluxcd/flux2/pull/5732)\n- Remove
        no longer needed workaround for Flux 2.8 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5733](https://redirect.github.com/fluxcd/flux2/pull/5733)\n- Update
        toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5740](https://redirect.github.com/fluxcd/flux2/pull/5740)\n- Add
        missing things to release notes template by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5743](https://redirect.github.com/fluxcd/flux2/pull/5743)\n- ci:
        add top-level permissions to upgrade-fluxcd-pkg workflow by [@&#8203;gaganhr94](https://redirect.github.com/gaganhr94)
        in [#&#8203;5763](https://redirect.github.com/fluxcd/flux2/pull/5763)\n- build(deps):
        bump the ci group across 1 directory with 11 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
        in [#&#8203;5764](https://redirect.github.com/fluxcd/flux2/pull/5764)\n- Update
        fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5766](https://redirect.github.com/fluxcd/flux2/pull/5766)\n- Update
        toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5769](https://redirect.github.com/fluxcd/flux2/pull/5769)\n- Add
        target branch name to update branch by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5773](https://redirect.github.com/fluxcd/flux2/pull/5773)\n- Fix/resume
        exit code by [@&#8203;Aman-Cool](https://redirect.github.com/Aman-Cool) in
        [#&#8203;5701](https://redirect.github.com/fluxcd/flux2/pull/5701)\n- Mark
        RFC 0010, 0011 and 0012 as implemented by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5776](https://redirect.github.com/fluxcd/flux2/pull/5776)\n- Update
        toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5780](https://redirect.github.com/fluxcd/flux2/pull/5780)\n- Add
        --resolve-symlinks flag to build and push artifact commands by [@&#8203;rohansood10](https://redirect.github.com/rohansood10)
        in [#&#8203;5724](https://redirect.github.com/fluxcd/flux2/pull/5724)\n- fix:
        validate --source flag in create kustomization command by [@&#8203;gma1k](https://redirect.github.com/gma1k)
        in [#&#8203;5798](https://redirect.github.com/fluxcd/flux2/pull/5798)\n- Update
        toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5821](https://redirect.github.com/fluxcd/flux2/pull/5821)\n- Add
        `--show-source` to `flux get ks` and `flux get hr`  by [@&#8203;rafaelperoco](https://redirect.github.com/rafaelperoco)
        in [#&#8203;5828](https://redirect.github.com/fluxcd/flux2/pull/5828)\n- Add
        `flux create secret receiver` command by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5835](https://redirect.github.com/fluxcd/flux2/pull/5835)\n- fix:
        handle multiple symlinks to same target in build artifact by [@&#8203;Iam-Karan-Suresh](https://redirect.github.com/Iam-Karan-Suresh)
        in [#&#8203;5833](https://redirect.github.com/fluxcd/flux2/pull/5833)\n- Add
        `--in-memory-build` to `flux build ks` and `flux diff ks` by [@&#8203;rycli](https://redirect.github.com/rycli)
        in [#&#8203;5794](https://redirect.github.com/fluxcd/flux2/pull/5794)\n- Migrate
        end-to-end test to latest cloud SDKs  by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5840](https://redirect.github.com/fluxcd/flux2/pull/5840)\n- docs:
        Add AI Coding Assistants Guidance  by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5841](https://redirect.github.com/fluxcd/flux2/pull/5841)\n- Add
        AI Agents guidance by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5847](https://redirect.github.com/fluxcd/flux2/pull/5847)\n- \\[RFC-0013]
        Flux CLI Plugin System by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5795](https://redirect.github.com/fluxcd/flux2/pull/5795)\n- Add
        `--ignore-not-found` to `flux diff ks` by [@&#8203;rycli](https://redirect.github.com/rycli)
        in [#&#8203;5845](https://redirect.github.com/fluxcd/flux2/pull/5845)\n- \\[RFC-0013]
        Implement plugin system by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5849](https://redirect.github.com/fluxcd/flux2/pull/5849)\n- build(deps):
        bump github.com/go-git/go-git/v5 from 5.17.1 to 5.18.0 by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
        in [#&#8203;5853](https://redirect.github.com/fluxcd/flux2/pull/5853)\n- Update
        toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5856](https://redirect.github.com/fluxcd/flux2/pull/5856)\n- Add
        digest pinning support to `flux plugin install` by [@&#8203;Iam-Karan-Suresh](https://redirect.github.com/Iam-Karan-Suresh)
        in [#&#8203;5872](https://redirect.github.com/fluxcd/flux2/pull/5872)\n- Add
        `--ns-follows-kube-context` global flag for using the kubeconfig context namespace
        by [@&#8203;jtyr](https://redirect.github.com/jtyr) in [#&#8203;5831](https://redirect.github.com/fluxcd/flux2/pull/5831)\n-
        include source-watcher in install.yaml manifests by [@&#8203;tmmorin](https://redirect.github.com/tmmorin)
        in [#&#8203;5881](https://redirect.github.com/fluxcd/flux2/pull/5881)\n- Update
        toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5890](https://redirect.github.com/fluxcd/flux2/pull/5890)\n- Update
        toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5903](https://redirect.github.com/fluxcd/flux2/pull/5903)\n- Update
        fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5907](https://redirect.github.com/fluxcd/flux2/pull/5907)\n- Validate
        Helm source URL schemes by [@&#8203;immanuwell](https://redirect.github.com/immanuwell)
        in [#&#8203;5909](https://redirect.github.com/fluxcd/flux2/pull/5909)\n- Introduce
        `flux trigger receiver` by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5908](https://redirect.github.com/fluxcd/flux2/pull/5908)\n- refactor(api):
        migrate MakeDependsOn to shared apis/meta func by [@&#8203;vecil](https://redirect.github.com/vecil)
        in [#&#8203;5912](https://redirect.github.com/fluxcd/flux2/pull/5912)\n- Update
        to Kubernetes 1.36 and Go 1.26 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5924](https://redirect.github.com/fluxcd/flux2/pull/5924)\n- build(deps):
        bump the ci group across 1 directory with 19 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
        in [#&#8203;5925](https://redirect.github.com/fluxcd/flux2/pull/5925)\n- Run
        conformance tests for Kubernetes 1.36 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5926](https://redirect.github.com/fluxcd/flux2/pull/5926)\n- Add
        support for AWS CodeCommit to `flux bootstrap git` by [@&#8203;taraspos](https://redirect.github.com/taraspos)
        in [#&#8203;5868](https://redirect.github.com/fluxcd/flux2/pull/5868)\n- Validate
        plugin binary path by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5927](https://redirect.github.com/fluxcd/flux2/pull/5927)\n- Update
        fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5928](https://redirect.github.com/fluxcd/flux2/pull/5928)\n- fix:
        preserve invalid metadata.labels in `flux build ks` by [@&#8203;raffis](https://redirect.github.com/raffis)
        in [#&#8203;5906](https://redirect.github.com/fluxcd/flux2/pull/5906)\n- build:
        target host arch for local builds/envtest by [@&#8203;stealthybox](https://redirect.github.com/stealthybox)
        in [#&#8203;5932](https://redirect.github.com/fluxcd/flux2/pull/5932)\n- build(deps):
        bump the ci group with 6 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
        in [#&#8203;5938](https://redirect.github.com/fluxcd/flux2/pull/5938)\n- Support
        specifing sparseCheckout in flux bootstrap by [@&#8203;piny940](https://redirect.github.com/piny940)
        in [#&#8203;5918](https://redirect.github.com/fluxcd/flux2/pull/5918)\n- Update
        toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5944](https://redirect.github.com/fluxcd/flux2/pull/5944)\n- Honor
        `ks.spec.postBuild.substituteStrategy` by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5945](https://redirect.github.com/fluxcd/flux2/pull/5945)\n- Add
        DriftIgnoreRules support to flux diff kustomization by [@&#8203;dipti-pai](https://redirect.github.com/dipti-pai)
        in [#&#8203;5923](https://redirect.github.com/fluxcd/flux2/pull/5923)\n- Allow
        signing commits using SSH key by [@&#8203;hiddeco](https://redirect.github.com/hiddeco)
        in [#&#8203;5920](https://redirect.github.com/fluxcd/flux2/pull/5920)\n- Update
        toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5950](https://redirect.github.com/fluxcd/flux2/pull/5950)\n- Update
        fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5937](https://redirect.github.com/fluxcd/flux2/pull/5937)\n- cmd:
        support `type!=status` in get --status-selector by [@&#8203;3uzbcqje](https://redirect.github.com/3uzbcqje)
        in [#&#8203;5952](https://redirect.github.com/fluxcd/flux2/pull/5952)\n- Fix
        `flux get all --status-selector` for empty results and notification resources
        by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp) in [#&#8203;5954](https://redirect.github.com/fluxcd/flux2/pull/5954)\n-
        Upgrade go-git-providers to v0.27.0 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5956](https://redirect.github.com/fluxcd/flux2/pull/5956)\n- Fix
        using Receiver adapter for ArtifactGenerator by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5957](https://redirect.github.com/fluxcd/flux2/pull/5957)\n- feat:
        Install Plugins alongside Flux setup in gh actions by [@&#8203;gat786](https://redirect.github.com/gat786)
        in [#&#8203;5955](https://redirect.github.com/fluxcd/flux2/pull/5955)\n- Update
        fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5960](https://redirect.github.com/fluxcd/flux2/pull/5960)\n- Add
        CLI support for OCIRepository.spec.layerSelector in flux create source oci
        by [@&#8203;dme86](https://redirect.github.com/dme86) in [#&#8203;5892](https://redirect.github.com/fluxcd/flux2/pull/5892)\n-
        Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5963](https://redirect.github.com/fluxcd/flux2/pull/5963)\n\n####
        New Contributors\n\n- [@&#8203;gaganhr94](https://redirect.github.com/gaganhr94)
        made their first contribution in [#&#8203;5763](https://redirect.github.com/fluxcd/flux2/pull/5763)\n-
        [@&#8203;rohansood10](https://redirect.github.com/rohansood10) made their
        first contribution in [#&#8203;5724](https://redirect.github.com/fluxcd/flux2/pull/5724)\n-
        [@&#8203;gma1k](https://redirect.github.com/gma1k) made their first contribution
        in [#&#8203;5798](https://redirect.github.com/fluxcd/flux2/pull/5798)\n- [@&#8203;rafaelperoco](https://redirect.github.com/rafaelperoco)
        made their first contribution in [#&#8203;5828](https://redirect.github.com/fluxcd/flux2/pull/5828)\n-
        [@&#8203;Iam-Karan-Suresh](https://redirect.github.com/Iam-Karan-Suresh) made
        their first contribution in [#&#8203;5833](https://redirect.github.com/fluxcd/flux2/pull/5833)\n-
        [@&#8203;rycli](https://redirect.github.com/rycli) made their first contribution
        in [#&#8203;5794](https://redirect.github.com/fluxcd/flux2/pull/5794)\n- [@&#8203;jtyr](https://redirect.github.com/jtyr)
        made their first contribution in [#&#8203;5831](https://redirect.github.com/fluxcd/flux2/pull/5831)\n-
        [@&#8203;tmmorin](https://redirect.github.com/tmmorin) made their first contribution
        in [#&#8203;5881](https://redirect.github.com/fluxcd/flux2/pull/5881)\n- [@&#8203;immanuwell](https://redirect.github.com/immanuwell)
        made their first contribution in [#&#8203;5909](https://redirect.github.com/fluxcd/flux2/pull/5909)\n-
        [@&#8203;vecil](https://redirect.github.com/vecil) made their first contribution
        in [#&#8203;5912](https://redirect.github.com/fluxcd/flux2/pull/5912)\n- [@&#8203;taraspos](https://redirect.github.com/taraspos)
        made their first contribution in [#&#8203;5868](https://redirect.github.com/fluxcd/flux2/pull/5868)\n-
        [@&#8203;piny940](https://redirect.github.com/piny940) made their first contribution
        in [#&#8203;5918](https://redirect.github.com/fluxcd/flux2/pull/5918)\n- [@&#8203;3uzbcqje](https://redirect.github.com/3uzbcqje)
        made their first contribution in [#&#8203;5952](https://redirect.github.com/fluxcd/flux2/pull/5952)\n-
        [@&#8203;gat786](https://redirect.github.com/gat786) made their first contribution
        in [#&#8203;5955](https://redirect.github.com/fluxcd/flux2/pull/5955)\n- [@&#8203;dme86](https://redirect.github.com/dme86)
        made their first contribution in [#&#8203;5892](https://redirect.github.com/fluxcd/flux2/pull/5892)\n\n**Full
        Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.0...v2.9.0>\n\n###
        [`v2.8.8`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.8)\n\n[Compare
        Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.7...v2.8.8)\n\n#####
        Highlights\n\nFlux v2.8.8 is a patch release that includes CVE fixes via go-git
        v5.19.1 (source-controller, image-automation-controller), reliability fixes
        in helm-controller and source-controller, the move of Helm back to upstream
        v4.2.0, support for GCP sovereign cloud artifact registries, and dependency
        updates. Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
        Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
        for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
        Add a configurable HTTP timeout for artifact fetching, preventing fetches
        that could block indefinitely and stall reconciliations (helm-controller)\n-
        Fix unbounded memory growth caused by a Kubernetes client transport retry
        wrapper accumulating on every reconcile (helm-controller)\n- Stop force-applying
        non-CRD objects placed under a chart's `crds/` directory (helm-controller)\n-
        Fix the Helm test action failing to find releases with names longer than 53
        characters (helm-controller)\n- Improve path handling in the source reconcilers
        (source-controller)\n- Support Helm semver build-metadata encoding in OCIRepository
        tags (source-controller)\n\nImprovements:\n\n- Update go-git to v5.19.1 which
        fixes [CVE-2026-45571](https://redirect.github.com/advisories/GHSA-crhj-59gh-8x96)
        and [CVE-2026-45570](https://redirect.github.com/advisories/GHSA-m7cr-m3pv-hgrp)
        (source-controller, image-automation-controller)\n- Move Helm back to upstream
        v4.2.0 (source-controller, helm-controller)\n- Add support for GCP sovereign
        cloud artifact registries (source-controller, image-reflector-controller)\n-
        Upgrade Kubernetes to 1.36.1 (source-controller, helm-controller)\n- Update
        fluxcd/pkg dependencies\n\n##### Components changelog\n\n- helm-controller
        [v1.5.5](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.5/CHANGELOG.md)\n-
        image-automation-controller [v1.1.4](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.4/CHANGELOG.md)\n-
        image-reflector-controller [v1.1.2](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.1.2/CHANGELOG.md)\n-
        source-controller [v1.8.5](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.5/CHANGELOG.md)\n\n#####
        CLI changelog\n\n- Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5904](https://redirect.github.com/fluxcd/flux2/pull/5904)\n\n**Full
        Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.7...v2.8.8>\n\n###
        [`v2.8.7`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.7)\n\n[Compare
        Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.6...v2.8.7)\n\n#####
        Highlights\n\nFlux v2.8.7 is a patch release that includes a bug fix in kustomize-controller,
        a CVE fix in source-controller and image-automation-controller via go-git
        v5.19.0, and dependency updates. Users are encouraged to upgrade for the best
        experience.\n\n\u2139\uFE0F Please follow the [Upgrade Procedure for Flux
        v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572) for a smooth
        upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n- Fix management
        of objects annotated with `kustomize.toolkit.fluxcd.io/ssa: IfNotPresent`
        where non-namespaced resources were being deleted and recreated on each reconciliation
        (kustomize-controller)\n\nImprovements:\n\n- Update go-git to v5.19.0 which
        fixes [CVE-2026-45022](https://redirect.github.com/advisories/GHSA-389r-gv7p-r3rp)
        (source-controller, image-automation-controller)\n- Update fluxcd/pkg dependencies
        (source-controller, kustomize-controller, image-automation-controller)\n\n#####
        Components changelog\n\n- helm-controller [v1.5.4](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.4/CHANGELOG.md)\n-
        image-automation-controller [v1.1.3](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.3/CHANGELOG.md)\n-
        kustomize-controller [v1.8.5](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.5/CHANGELOG.md)\n-
        notification-controller [v1.8.4](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.4/CHANGELOG.md)\n-
        source-controller [v1.8.4](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.4/CHANGELOG.md)\n\n#####
        CLI changelog\n\n- Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5891](https://redirect.github.com/fluxcd/flux2/pull/5891)\n\n**Full
        Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.6...v2.8.7>\n\n###
        [`v2.8.6`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.6)\n\n[Compare
        Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.5...v2.8.6)\n\n#####
        Highlights\n\nFlux v2.8.6 is a patch release that includes bug fixes and improvements
        across helm-controller, image-automation-controller, kustomize-controller,
        notification-controller, and source-controller. Users are encouraged to upgrade
        for the best experience.\n\n\u2139\uFE0F Please follow the [Upgrade Procedure
        for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
        for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
        Fix a post-renderer conflict between overlapping hooks and templates (helm-controller)\n-
        Ignore force replace when server-side apply is enabled (helm-controller)\n-
        Fix a regression where generic providers would not forward commit status events
        (notification-controller)\n- Require the `audience` field on the GCR Receiver
        secret for tighter verification \u2014 will become mandatory in Flux v2.9
        (notification-controller)\n\nImprovements:\n\n- Introduce the `MigrateAPIVersion`
        feature gate for migrating the API version of resources in managed field entries
        (kustomize-controller)\n- Update go-git to v5.18.0 bringing performance improvements
        for Git operations (source-controller, image-automation-controller)\n\n#####
        Components changelog\n\n- helm-controller [v1.5.4](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.4/CHANGELOG.md)\n-
        image-automation-controller [v1.1.2](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.2/CHANGELOG.md)\n-
        kustomize-controller [v1.8.4](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.4/CHANGELOG.md)\n-
        notification-controller [v1.8.4](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.4/CHANGELOG.md)\n-
        source-controller [v1.8.3](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.3/CHANGELOG.md)\n\n#####
        CLI changelog\n\n- Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5857](https://redirect.github.com/fluxcd/flux2/pull/5857)\n\n**Full
        Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.5...v2.8.6>\n\n###
        [`v2.8.5`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.5)\n\n[Compare
        Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.4...v2.8.5)\n\n#####
        Highlights\n\nFlux v2.8.5 is a patch release that includes bug fixes and improvements
        across kustomize-controller, source-controller, and notification-controller.
        Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F Please
        follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
        for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
        Fix a race condition where a cancelled reconciliation could leave stale data
        in the cache, causing Kustomizations to get stuck (kustomize-controller)\n-
        Fix Azure Blob prefix option not being passed to the storage client (source-controller)\n\nImprovements:\n\n-
        Improve error message for encrypted SSH keys without password (source-controller)\n-
        Add optional `email` and `audience` fields to the GCR Receiver for tighter
        verification (notification-controller)\n- Add provider manifest example for
        Azure Event Hub managed identity authentication (notification-controller)\n\n#####
        Components changelog\n\n- kustomize-controller [v1.8.3](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.3/CHANGELOG.md)\n-
        source-controller [v1.8.2](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.2/CHANGELOG.md)\n-
        notification-controller [v1.8.3](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.3/CHANGELOG.md)\n\n#####
        CLI changelog\n\n- Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5822](https://redirect.github.com/fluxcd/flux2/pull/5822)\n\n**Full
        Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.4...v2.8.5>\n\n###
        [`v2.8.4`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.4)\n\n[Compare
        Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.3...v2.8.4)\n\n#####
        Highlights\n\nFlux v2.8.4 is a patch release that includes fixes for the Flux
        CLI. Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
        Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
        for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
        Fix `flux build ks` and `flux diff ks` on Windows\n- Fix `--source` flag validation
        in `create kustomization` command\n\n##### CLI changelog\n\n- Update fluxcd/pkg
        dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5796](https://redirect.github.com/fluxcd/flux2/pull/5796)\n- \\[release/v2.8.x]
        fix: validate --source flag in create kustomization command by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5799](https://redirect.github.com/fluxcd/flux2/pull/5799)\n\n**Full
        Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.3...v2.8.4>\n\n###
        [`v2.8.3`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.3)\n\n[Compare
        Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.2...v2.8.3)\n\n#####
        Highlights\n\nFlux v2.8.3 is a patch release that fixes a regression in helm-controller.
        Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F Please
        follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
        for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
        Fix templating errors for charts that include `---` in the content, e.g. YAML
        separators, embedded scripts, CAs inside ConfigMaps (helm-controller)\n\n#####
        Components changelog\n\n- helm-controller [v1.5.3](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.3/CHANGELOG.md)\n\n#####
        CLI changelog\n\n- \\[release/v2.8.x] Add target branch name to update branch
        by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot) in [#&#8203;5774](https://redirect.github.com/fluxcd/flux2/pull/5774)\n-
        Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5779](https://redirect.github.com/fluxcd/flux2/pull/5779)\n\n**Full
        Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.2...v2.8.3>\n\n###
        [`v2.8.2`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.2)\n\n[Compare
        Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.1...v2.8.2)\n\n#####
        Highlights\n\nFlux v2.8.2 is a patch release that comes with various fixes.
        Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F Please
        follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
        for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
        Fix enqueuing new reconciliation requests for events on source Flux objects
        when they are already reconciling the revision present in the watch event
        (kustomize-controller, helm-controller)\n- Fix the Go templates bug of YAML
        separator `---` getting concatenated to `apiVersion:` by updating to Helm
        4.1.3 (helm-controller)\n- Fix canceled HelmReleases getting stuck when they
        don't have a retry strategy configured by introducing a new feature gate `DefaultToRetryOnFailure`
        that improves the experience when the `CancelHealthCheckOnNewRevision` is
        enabled (helm-controller)\n- Fix the auth scope for Azure Container Registry
        to use the ACR-specific scope (source-controller, image-reflector-controller)\n-
        Fix potential Denial of Service (DoS) during TLS handshakes (CVE-2026-27138)
        by building all controllers with Go 1.26.1\n\n##### Components changelog\n\n-
        source-controller [v1.8.1](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.1/CHANGELOG.md)\n-
        kustomize-controller [v1.8.2](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.2/CHANGELOG.md)\n-
        notification-controller [v1.8.2](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.2/CHANGELOG.md)\n-
        helm-controller [v1.5.2](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.2/CHANGELOG.md)\n-
        image-reflector-controller [v1.1.1](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.1.1/CHANGELOG.md)\n-
        image-automation-controller [v1.1.1](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.1/CHANGELOG.md)\n-
        source-watcher [v2.1.1](https://redirect.github.com/fluxcd/source-watcher/blob/v2.1.1/CHANGELOG.md)\n\n#####
        CLI changelog\n\n- \\[release/v2.8.x] build(deps): bump the ci group across
        1 directory with 11 updates by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5765](https://redirect.github.com/fluxcd/flux2/pull/5765)\n- Update
        fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5767](https://redirect.github.com/fluxcd/flux2/pull/5767)\n- Update
        toolkit components by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5770](https://redirect.github.com/fluxcd/flux2/pull/5770)\n- Update
        fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5771](https://redirect.github.com/fluxcd/flux2/pull/5771)\n\n**Full
        Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.1...v2.8.2>\n\n###
        [`v2.8.1`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.1)\n\n[Compare
        Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.0...v2.8.1)\n\n#####
        Highlights\n\nFlux v2.8.1 is a patch release that comes with various fixes.
        Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F Please
        follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
        for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
        Fix Git commit status events being dropped for Kustomizations (notification-controller)\n-
        Fix health check for StatefulSets when the Pods are Pending/Unschedulable
        during rollout (helm-controller, kustomize-controller)\n\n##### Components
        changelog\n\n- kustomize-controller [v1.8.1](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.1/CHANGELOG.md)\n-
        notification-controller [v1.8.1](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.1/CHANGELOG.md)\n-
        helm-controller [v1.5.1](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.1/CHANGELOG.md)\n\n#####
        CLI changelog\n\n- \\[release/v2.8.x] Remove no longer needed workaround for
        Flux 2.8 by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot) in
        [#&#8203;5735](https://redirect.github.com/fluxcd/flux2/pull/5735)\n- Update
        fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5739](https://redirect.github.com/fluxcd/flux2/pull/5739)\n- \\[release/v2.8.x]
        Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5741](https://redirect.github.com/fluxcd/flux2/pull/5741)\n\n**Full
        Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.0...v2.8.1>\n\n###
        [`v2.8.0`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.0)\n\n[Compare
        Source](https://redirect.github.com/fluxcd/flux2/compare/v2.7.5...v2.8.0)\n\n#####
        Highlights\n\nFlux v2.8.0 is a feature release. Users are encouraged to upgrade
        for the best experience.\n\nFor a compressive overview of new features and
        API changes included in this release, please refer to the [Announcing Flux
        2.8 GA blog post](https://fluxcd.io/blog/2026/02/flux-v2.8.0/).\n\nOverview
        of the new features:\n\n- Helm v4 support, including server-side apply and
        kstatus-based health checking (`HelmRelease`)\n- Readiness evaluation of Helm-managed
        objects with CEL expressions (`HelmRelease`)\n- Improved observability of
        Helm releases with inventory tracking in `.status.inventory` (`HelmRelease`)\n-
        Reduced the mean time to recovery of Flux-managed applications via `CancelHealthCheckOnNewRevision`
        feature gate (`Kustomization`, `HelmRelease`)\n- Support for commenting on
        Pull Requests directly from Flux notifications (`Provider`)\n- Custom SSA
        apply stages for ordering resource application in kustomize-controller (`Kustomization`)\n-
        Automatic GitHub App installation ID lookup from the repository owner (`GitRepository`,
        `ImageUpdateAutomation`, `Provider`)\n- Support for Cosign v3 for verifying
        OCI artifacts and container images (`OCIRepository`)\n- ArtifactGenerator
        support for extracting and modifying Helm charts (`ArtifactGenerator`)\n-
        Bypass cache when fetching source objects via `DirectSourceFetch` feature
        gate (`Kustomization`, `HelmRelease`, `ArtifactGenerator`)\n\n\u2764\uFE0F
        Big thanks to all the Flux contributors that helped us with this release!\n\n#####
        Kubernetes compatibility\n\nThis release is compatible with the following
        Kubernetes versions:\n\n| Kubernetes version | Minimum required |\n| ------------------
        | ---------------- |\n| `v1.33`            | `>= 1.32.0`      |\n| `v1.34`
        \           | `>= 1.34.1`      |\n| `v1.35`            | `>= 1.35.0`      |\n\n>
        \\[!NOTE]\n> Note that the Flux project offers support only for the latest
        three minor versions of Kubernetes.\n> Backwards compatibility with older
        versions of Kubernetes and OpenShift is offered by vendors such as\n> [ControlPlane](https://control-plane.io/enterprise-for-flux-cd/)
        that provide enterprise support for Flux.\n\n##### OpenShift compatibility\n\nFlux
        can be installed on Red Hat OpenShift cluster directly from OperatorHub using
        [Flux Operator](https://operatorhub.io/operator/flux-operator). The operator
        allows the configuration of Flux multi-tenancy lockdown, network policies,
        persistent storage, sharding, vertical scaling and the synchronization of
        the cluster state from Git repositories, OCI artifacts, and S3-compatible
        storage.\n\n##### Upgrade procedure\n\n:warning: The Flux APIs `v1beta2` and
        `v2beta2` (deprecated in 2024) have reached end-of-life and have been removed
        from the CRDs.\n\nPlease follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
        for a smooth upgrade from older versions of Flux to v2.8.\n\n##### Components
        changelog\n\n- source-controller [v1.8.0](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.0/CHANGELOG.md)\n-
        kustomize-controller [v1.8.0](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.0/CHANGELOG.md)\n-
        notification-controller [v1.8.0](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.0/CHANGELOG.md)\n-
        helm-controller [v1.5.0](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.0/CHANGELOG.md)\n-
        image-reflector-controller [v1.1.0](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.1.0/CHANGELOG.md)\n-
        image-automation-controller [v1.1.0](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.0/CHANGELOG.md)\n-
        source-watcher [v2.1.0](https://redirect.github.com/fluxcd/source-watcher/blob/v2.1.0/CHANGELOG.md)\n\n#####
        CLI changelog\n\n- ci: Set `GITHUB_TOKEN` in the `release-flux-manifests`
        workflow by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5547](https://redirect.github.com/fluxcd/flux2/pull/5547)\n- Add
        backport label for Flux 2.7 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5550](https://redirect.github.com/fluxcd/flux2/pull/5550)\n- build(deps):
        bump the ci group across 1 directory with 3 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
        in [#&#8203;5548](https://redirect.github.com/fluxcd/flux2/pull/5548)\n- Fix
        `flux push artifact` not working with `--provider` by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5551](https://redirect.github.com/fluxcd/flux2/pull/5551)\n- Extend
        `flux migrate` to work with local files by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5554](https://redirect.github.com/fluxcd/flux2/pull/5554)\n- Improve
        `flux migrate` for live cluster migrations by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5558](https://redirect.github.com/fluxcd/flux2/pull/5558)\n- Fix
        `flux migrate -f` command to work with comments by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5560](https://redirect.github.com/fluxcd/flux2/pull/5560)\n- Add
        source-watcher to docs by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5562](https://redirect.github.com/fluxcd/flux2/pull/5562)\n- Fix
        `flux migrate -f` not considering kind comments by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5563](https://redirect.github.com/fluxcd/flux2/pull/5563)\n- refactor:
        convert `Kustomization` resource into unstructured map only once during variable
        substitution by [@&#8203;ramasai1](https://redirect.github.com/ramasai1) in
        [#&#8203;5566](https://redirect.github.com/fluxcd/flux2/pull/5566)\n- Update
        toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5568](https://redirect.github.com/fluxcd/flux2/pull/5568)\n- Disable
        AUR publishing by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5570](https://redirect.github.com/fluxcd/flux2/pull/5570)\n- Fix
        manifest generation for `--storage-adv-addr` and `--events-addr` flags by
        [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan) in [#&#8203;5574](https://redirect.github.com/fluxcd/flux2/pull/5574)\n-
        Update dependencies to Kubernetes v1.34.1 and Go 1.25.2 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5576](https://redirect.github.com/fluxcd/flux2/pull/5576)\n- Update
        toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5578](https://redirect.github.com/fluxcd/flux2/pull/5578)\n- Restore
        GitHub PAT for backports by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5581](https://redirect.github.com/fluxcd/flux2/pull/5581)\n- \\[RFC-0012]
        Add command `flux get source external` by [@&#8203;dgunzy](https://redirect.github.com/dgunzy)
        in [#&#8203;5555](https://redirect.github.com/fluxcd/flux2/pull/5555)\n- fix:
        handle error when writing password prompt to stdout by [@&#8203;akshatsinha0](https://redirect.github.com/akshatsinha0)
        in [#&#8203;5589](https://redirect.github.com/fluxcd/flux2/pull/5589)\n- Pin
        cosign to v2.6.1 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5594](https://redirect.github.com/fluxcd/flux2/pull/5594)\n- \\[RFC-0012]
        Add command `flux export source external` by [@&#8203;dgunzy](https://redirect.github.com/dgunzy)
        in [#&#8203;5583](https://redirect.github.com/fluxcd/flux2/pull/5583)\n- Fix
        bootstrap e2e test for image policy by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5604](https://redirect.github.com/fluxcd/flux2/pull/5604)\n- Update
        toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5603](https://redirect.github.com/fluxcd/flux2/pull/5603)\n- fix:
        return accepted values for flags when calling Values.Type() by [@&#8203;jaxels10](https://redirect.github.com/jaxels10)
        in [#&#8203;5602](https://redirect.github.com/fluxcd/flux2/pull/5602)\n- ci:
        Include source-watcher in the e2e test suite by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5614](https://redirect.github.com/fluxcd/flux2/pull/5614)\n- Add
        source.extensions.fluxcd.io group to aggregated RBAC roles by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5627](https://redirect.github.com/fluxcd/flux2/pull/5627)\n- Fix
        panic on reconcile with source of ExternalArtifact kind by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5630](https://redirect.github.com/fluxcd/flux2/pull/5630)\n- Upgrade
        k8s to 1.34.2, c-r to 0.22.4 and helm to 3.19.2 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5633](https://redirect.github.com/fluxcd/flux2/pull/5633)\n- diff:
        report if object is skipped by [@&#8203;hown3d](https://redirect.github.com/hown3d)
        in [#&#8203;5625](https://redirect.github.com/fluxcd/flux2/pull/5625)\n- Update
        toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5639](https://redirect.github.com/fluxcd/flux2/pull/5639)\n- Allow
        option to skip tenant namespace creation by [@&#8203;anshuishere](https://redirect.github.com/anshuishere)
        in [#&#8203;5597](https://redirect.github.com/fluxcd/flux2/pull/5597)\n- Update
        toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5648](https://redirect.github.com/fluxcd/flux2/pull/5648)\n- fix:
        [#&#8203;5654](https://redirect.github.com/fluxcd/flux2/issues/5654) by checking
        if both --chart and --chart-ref are set by [@&#8203;jaxels10](https://redirect.github.com/jaxels10)
        in [#&#8203;5656](https://redirect.github.com/fluxcd/flux2/pull/5656)\n- Added
        retry logic with delays to the Flux CLI download by [@&#8203;ivan-munteanu](https://redirect.github.com/ivan-munteanu)
        in [#&#8203;5659](https://redirect.github.com/fluxcd/flux2/pull/5659)\n- Run
        conformance tests for Kubernetes 1.35.0  by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5663](https://redirect.github.com/fluxcd/flux2/pull/5663)\n- fix:
        normalize path for Windows compatibility by [@&#8203;sibasispadhi](https://redirect.github.com/sibasispadhi)
        in [#&#8203;5674](https://redirect.github.com/fluxcd/flux2/pull/5674)\n- Introduce
        support for looking up GH app installation ID by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5682](https://redirect.github.com/fluxcd/flux2/pull/5682)\n- Update
        dependencies to Kubernetes v1.35.0 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5688](https://redirect.github.com/fluxcd/flux2/pull/5688)\n- Fix
        resume command logging success after reconciliation failure by [@&#8203;Aman-Cool](https://redirect.github.com/Aman-Cool)
        in [#&#8203;5690](https://redirect.github.com/fluxcd/flux2/pull/5690)\n- Add
        2.8 to supported versions for `flux migrate -f` by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5713](https://redirect.github.com/fluxcd/flux2/pull/5713)\n- Introduce
        workflow for bumping fluxcd/pkg deps by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5717](https://redirect.github.com/fluxcd/flux2/pull/5717)\n- Update
        fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5719](https://redirect.github.com/fluxcd/flux2/pull/5719)\n- Fix
        event listing ignoring pagination token by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5721](https://redirect.github.com/fluxcd/flux2/pull/5721)\n- Build
        with Go 1.26 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5723](https://redirect.github.com/fluxcd/flux2/pull/5723)\n- Update
        toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5722](https://redirect.github.com/fluxcd/flux2/pull/5722)\n- Update
        helm-controller to v1.5.0 by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5725](https://redirect.github.com/fluxcd/flux2/pull/5725)\n- build(deps):
        bump the ci group across 1 directory with 12 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
        in [#&#8203;5720](https://redirect.github.com/fluxcd/flux2/pull/5720)\n- Fix
        bootstrap failure on Windows cross-drive paths by [@&#8203;veeceey](https://redirect.github.com/veeceey)
        in [#&#8203;5726](https://redirect.github.com/fluxcd/flux2/pull/5726)\n- Dump
        debug info on e2e tests by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5729](https://redirect.github.com/fluxcd/flux2/pull/5729)\n- Set
        Kubernetes 1.33 as min supported version by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
        in [#&#8203;5730](https://redirect.github.com/fluxcd/flux2/pull/5730)\n- Update
        conformance tests to min Kubernetes 1.33 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
        in [#&#8203;5731](https://redirect.github.com/fluxcd/flux2/pull/5731)\n\n#####
        New Contributors\n\n- [@&#8203;ramasai1](https://redirect.github.com/ramasai1)
        made their first contribution in [#&#8203;5566](https://redirect.github.com/fluxcd/flux2/pull/5566)\n-
        [@&#8203;akshatsinha0](https://redirect.github.com/akshatsinha0) made their
        first contribution in [#&#8203;5589](https://redirect.github.com/fluxcd/flux2/pull/5589)\n-
        [@&#8203;jaxels10](https://redirect.github.com/jaxels10) made their first
        contribution in [#&#8203;5602](https://redirect.github.com/fluxcd/flux2/pull/5602)\n-
        [@&#8203;hown3d](https://redirect.github.com/hown3d) made their first contribution
        in [#&#8203;5625](https://redirect.github.com/fluxcd/flux2/pull/5625)\n- [@&#8203;anshuishere](https://redirect.github.com/anshuishere)
        made their first contribution in [#&#8203;5597](https://redirect.github.com/fluxcd/flux2/pull/5597)\n-
        [@&#8203;ivan-munteanu](https://redirect.github.com/ivan-munteanu) made their
        first contribution in [#&#8203;5659](https://redirect.github.com/fluxcd/flux2/pull/5659)\n-
        [@&#8203;sibasispadhi](https://redirect.github.com/sibasispadhi) made their
        first contribution in [#&#8203;5674](https://redirect.github.com/fluxcd/flux2/pull/5674)\n-
        [@&#8203;Aman-Cool](https://redirect.github.com/Aman-Cool) made their first
        contribution in [#&#8203;5690](https://redirect.github.com/fluxcd/flux2/pull/5690)\n-
        [@&#8203;veeceey](https://redirect.github.com/veeceey) made their first contribution
        in [#&#8203;5726](https://redirect.github.com/fluxcd/flux2/pull/5726)\n\n**Full
        Changelog**: <https://github.com/fluxcd/flux2/compare/v2.7.0...v2.8.0>\n\n###
        [`v2.7.5`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.7.5)\n\n[Compare
        Source](https://redirect.github.com/fluxcd/flux2/compare/v2.7.4...v2.7.5)\n\n#####
        Highlights\n\nFlux v2.7.5 is a patch release that comes with fixes to helm-controller.
        Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F Please
        follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
        for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
        Fix HelmRelease history truncation when using the `RetryOnFailure` strategy.\n\n:warning:
        Note that signature verification for OCI artifacts in source-controller is
        not compatible with Cosign v3.\nFlux users are advised to use [Cosign v2.6](https://fluxcd.io/flux/flux-gh-action/#push-and-sign-kubernetes-manifests-to-container-registries)
        for signing Flux OCI artifacts and Helm charts, until support for Cosign v3
        is added in Flux v2.8.\n\n##### Components changelog\n\n- helm-controller
        [v1.4.5](https://redirect.github.com/fluxcd/helm-controller/blob/v1.4.5/CHANGELOG.md)\n\n#####
        CLI changelog\n\n- \\[release/v2.7.x] Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5649](https://redirect.github.com/fluxcd/flux2/pull/5649)\n\n**Full
        Changelog**: <https://github.com/fluxcd/flux2/compare/v2.7.4...v2.7.5>\n\n###
        [`v2.7.4`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.7.4)\n\n[Compare
        Source](https://redirect.github.com/fluxcd/flux2/compare/v2.7.3...v2.7.4)\n\n#####
        Highlights\n\nFlux v2.7.4 is a patch release that comes with various fixes.
        Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F  Please
        follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
        for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
        Add `DisableConfigWatchers` feature gate to all controllers for disabling
        the Secrets/ConfigMaps watchers\n- Fix Workload Identity for Azure China Cloud
        in all controllers\n- Update Helm Go SDK to v3.19.2 fixing schema validation
        issues in helm-controller\n- Skip secret decryption for remote kustomize patches
        in kustomize-controller\n- Improve post-build error reporting in kustomize-controller\n-
        Add `ArtifactGenerator` to aggregated RBAC roles\n\n:warning: Note that signature
        verification for OCI artifacts in source-controller is not compatible with
        Cosign v3.\nFlux users are advised to use [Cosign v2.6](https://fluxcd.io/flux/flux-gh-action/#push-and-sign-kubernetes-manifests-to-container-registries)
        for signing Flux OCI artifacts and Helm charts, until support for Cosign v3
        is added in Flux v2.8.\n\n##### Components changelog\n\n- source-controller
        [v1.7.4](https://redirect.github.com/fluxcd/source-controller/blob/v1.7.4/CHANGELOG.md)\n-
        kustomize-controller [v1.7.3](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.7.3/CHANGELOG.md)\n-
        notification-controller [v1.7.5](https://redirect.github.com/fluxcd/notification-controller/blob/v1.7.5/CHANGELOG.md)\n-
        helm-controller [v1.4.4](https://redirect.github.com/fluxcd/helm-controller/blob/v1.4.4/CHANGELOG.md)\n-
        image-reflector-controller [v1.0.4](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.0.4/CHANGELOG.md)\n-
        image-automation-controller [v1.0.4](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.0.4/CHANGELOG.md)\n-
        source-watcher [v2.0.3](https://redirect.github.com/fluxcd/source-watcher/blob/v2.0.3/CHANGELOG.md)\n\n#####
        CLI changelog\n\n- \\[release/v2.7.x] ci: Include source-watcher in the e2e
        test suite by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot) in
        [#&#8203;5615](https://redirect.github.com/fluxcd/flux2/pull/5615)\n- \\[release/v2.7.x]
        Add source.extensions.fluxcd.io group to aggregated RBAC roles by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
        in [#&#8203;5628](https://redirect.github.com/fluxcd/flux2/pull/5628)\n- \\[release/v2.7.x]
        Fix panic on rec\n\n> \u2702 **Note**\n> \n> PR body was truncated to here.\n\n\n</details>\n\n---\n\n###
        Configuration\n\n\U0001F4C5 **Schedule**: (UTC)\n\n- Branch creation\n  -
        At any time (no schedule defined)\n- Automerge\n  - At any time (no schedule
        defined)\n\n\U0001F6A6 **Automerge**: Disabled by config. Please merge this
        manually once you are satisfied.\n\n\u267B **Rebasing**: Whenever PR becomes
        conflicted, or you tick the rebase/retry checkbox.\n\n\U0001F515 **Ignore**:
        Close this PR and you won't be reminded about this update again.\n\n---\n\n
        - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this
        box\n\n---\n\nThis PR was generated by [Mend Renovate](https://mend.io/renovate/).
        View the [repository job log](https://developer.mend.io/github/vexxhost/atmosphere.common).\n<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4xMzEuOSIsInVwZGF0ZWRJblZlciI6IjQ0LjEyLjAiLCJ0YXJnZXRCcmFuY2giOiJtYWluIiwibGFiZWxzIjpbXX0=-->\n"
      change_url: https://github.com/vexxhost/atmosphere.common/pull/102
      child_jobs: []
      commit_id: 4b7d2c33963a0d5d8d07efbeae714265f786c145
      event_id: 9e55dab0-927d-11f1-9efd-084e02453125
      executor:
        hostname: 2d72f0692154
        inventory_file: /var/lib/zuul/builds/b0e4d46600524eaf84dbead5c978eb39/ansible/inventory.yaml
        log_root: /var/lib/zuul/builds/b0e4d46600524eaf84dbead5c978eb39/work/logs
        result_data_file: /var/lib/zuul/builds/b0e4d46600524eaf84dbead5c978eb39/work/results.json
        src_root: /var/lib/zuul/builds/b0e4d46600524eaf84dbead5c978eb39/work/src
        work_root: /var/lib/zuul/builds/b0e4d46600524eaf84dbead5c978eb39/work
      include_vars: []
      items:
      - branch: main
        change: '102'
        change_message: "chore(deps): update dependency fluxcd/flux2 to v2.9.4\n\n>
          \u2139\uFE0F **Note**\n> \n> This PR body was truncated due to platform
          limits.\n\nThis PR contains the following updates:\n\n| Package | Update
          | Change |\n|---|---|---|\n| [fluxcd/flux2](https://redirect.github.com/fluxcd/flux2)
          | minor | `2.6.4` \u2192 `2.9.4` |\n\n---\n\n### Release Notes\n\n<details>\n<summary>fluxcd/flux2
          (fluxcd/flux2)</summary>\n\n### [`v2.9.4`](https://redirect.github.com/fluxcd/flux2/compare/v2.9.3...v2.9.4)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.9.3...v2.9.4)\n\n###
          [`v2.9.3`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.9.3)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.9.2...v2.9.3)\n\n####
          Highlights\n\nFlux v2.9.3 is a patch release. It fixes empty lines vanishing
          from rendered Helm chart manifests, HelmReleases being marked as tested
          when their Helm test hooks never ran, and `spec.images` entries that set
          only some image fields discarding the remaining fields already declared
          for the same image in the `kustomization.yaml`. The latter affects both
          kustomize-controller and the `flux build|diff kustomization` commands. Users
          are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F Please
          follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix empty lines vanishing from rendered chart manifests (helm-controller)\n-
          Fix `HasBeenTested` for all corner cases, where a release could be marked
          as tested although its Helm test hooks never ran (helm-controller)\n- Fix
          a `spec.images` entry setting only some of the image fields discarding the
          remaining fields already declared for the same image in the `kustomization.yaml`
          at `spec.path`, e.g. overriding only `newName` produced an untagged image
          reference (kustomize-controller, flux CLI)\n\nImprovements:\n\n- Update
          fluxcd/pkg dependencies\n- Include source-watcher in the OCI flux-manifests
          artifact\n\n#### Components changelog\n\n- kustomize-controller [v1.9.4](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.9.4/CHANGELOG.md)\n-
          helm-controller [v1.6.3](https://redirect.github.com/fluxcd/helm-controller/blob/v1.6.3/CHANGELOG.md)\n\n####
          CLI changelog\n\n- \\[release/v2.9.x] Include source-watcher to oci flux-manifests
          by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot) in [#&#8203;5996](https://redirect.github.com/fluxcd/flux2/pull/5996)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;6006](https://redirect.github.com/fluxcd/flux2/pull/6006)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;6011](https://redirect.github.com/fluxcd/flux2/pull/6011)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.9.2...v2.9.3>\n\n###
          [`v2.9.2`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.9.2)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.9.1...v2.9.2)\n\n#####
          Highlights\n\nFlux v2.9.2 is a patch release. The main fix addresses a regression
          introduced in\nv2.9.1 where a Kustomization with `openapi.path` pointing
          to a URL failed to\nreconcile with `failed to read OpenAPI schema`. This
          release also corrects several\nCRD field descriptions that contained inaccurate
          or leaked content. Users are\nencouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix a regression where a Kustomization with `openapi.path` pointing to a
          URL failed to reconcile with `failed to read OpenAPI schema` (kustomize-controller)\n-
          Fix the `HelmChart` CRD description for `.status.url`, which pointed users
          at `BucketStatus.Artifact` instead of `HelmChartStatus.Artifact` (source-controller)\n-
          Fix the `ImageRepository` CRD description for `.status.observedExclusionList`,
          which referred to `spec.lastScanResult` instead of `status.lastScanResult`
          (image-reflector-controller)\n- Fix the `ImageUpdateAutomation` CRD description
          for `.status.observedSourceRevision`, which had a stray Go struct declaration
          leaking into it (image-automation-controller)\n\nImprovements:\n\n- Update
          fluxcd/pkg dependencies\n\n##### Components changelog\n\n- source-controller
          [v1.9.3](https://redirect.github.com/fluxcd/source-controller/blob/v1.9.3/CHANGELOG.md)\n-
          kustomize-controller [v1.9.3](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.9.3/CHANGELOG.md)\n-
          helm-controller [v1.6.2](https://redirect.github.com/fluxcd/helm-controller/blob/v1.6.2/CHANGELOG.md)\n-
          notification-controller [v1.9.2](https://redirect.github.com/fluxcd/notification-controller/blob/v1.9.2/CHANGELOG.md)\n-
          image-reflector-controller [v1.2.3](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.2.3/CHANGELOG.md)\n-
          image-automation-controller [v1.2.3](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.2.3/CHANGELOG.md)\n-
          source-watcher [v2.2.2](https://redirect.github.com/fluxcd/source-watcher/blob/v2.2.2/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5984](https://redirect.github.com/fluxcd/flux2/pull/5984)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5990](https://redirect.github.com/fluxcd/flux2/pull/5990)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5994](https://redirect.github.com/fluxcd/flux2/pull/5994)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.9.1...v2.9.2>\n\n###
          [`v2.9.1`](https://redirect.github.com/fluxcd/flux2/compare/v2.9.0...v2.9.1)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.9.0...v2.9.1)\n\n###
          [`v2.9.0`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.9.0)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.8...v2.9.0)\n\n####
          Highlights\n\nFlux v2.9.0 is a feature release. Users are encouraged to
          upgrade for the best experience.\n\nFor a compressive overview of new features
          and API changes included in this release, please refer to the [Announcing
          Flux 2.9 GA blog post](https://fluxcd.io/blog/2026/06/flux-v2.9.0/).\n\nOverview
          of the new features:\n\n- Flux CLI Plugin System with the Mirror and Schema
          plugins (`flux plugin`)\n- Server-Side Apply field ignore rules for fine-grained
          drift control (`Kustomization`)\n- SOPS decryption with the Age post-quantum
          cipher (`Kustomization`)\n- Kubernetes Workload Identity authentication
          for OpenBao and Vault (`Kustomization`)\n- Helm post-render strategies,
          including chart hooks support (`HelmRelease`)\n- Literal mode for Helm values
          references mirroring `helm --set-literal` (`HelmRelease`)\n- Allow empty
          kind in CEL health check expressions (`Kustomization`, `HelmRelease`)\n-
          Git commit signing and verification with SSH keys (`GitRepository`, `ImageUpdateAutomation`)\n-
          AWS CodeCommit authentication using Workload Identity (`GitRepository`)\n-
          Custom Sigstore trusted root for keyless verification in air-gapped environments
          (`OCIRepository`)\n- Path pattern directory discovery for monorepos (`ArtifactGenerator`)\n-
          Secret-less, OIDC-secured webhook Receivers (`Receiver`)\n\n\u2764\uFE0F
          Big thanks to all the Flux contributors that helped us with this release!\n\n#####
          Kubernetes compatibility\n\nThis release is compatible with the following
          Kubernetes versions:\n\n| Kubernetes version | Minimum required |\n| ------------------
          | ---------------- |\n| `v1.34`            | `>= 1.34.1`      |\n| `v1.35`
          \           | `>= 1.35.0`      |\n| `v1.36`            | `>= 1.36.0`      |\n\n>
          \\[!NOTE]\n> Note that the Flux project offers support only for the latest
          three minor versions of Kubernetes.\n> Backwards compatibility with older
          versions of Kubernetes and OpenShift is offered by vendors such as\n> [ControlPlane](https://control-plane.io/enterprise-for-flux-cd/)
          that provide enterprise support for Flux.\n\n##### OpenShift compatibility\n\nFlux
          can be installed on Red Hat OpenShift cluster directly from OperatorHub
          using [Flux Operator](https://operatorhub.io/operator/flux-operator). The
          operator allows the configuration of Flux multi-tenancy lockdown, network
          policies, persistent storage, sharding, vertical scaling and the synchronization
          of the cluster state from Git repositories, OCI artifacts, and S3-compatible
          storage.\n\n#### Upgrade procedure\n\n:warning: The Flux APIs `image.toolkit.fluxcd.io/v1beta2`
          and `notification.toolkit.fluxcd.io/v1beta2`\nhave reached end-of-life and
          have been removed from the CRDs.\n\nPlease follow the [Upgrade Procedure
          for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from older versions of Flux to v2.9.\n\n#### Components
          changelog\n\n- source-controller [v1.9.1](https://redirect.github.com/fluxcd/source-controller/blob/v1.9.1/CHANGELOG.md)\n-
          kustomize-controller [v1.9.1](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.9.1/CHANGELOG.md)\n-
          notification-controller [v1.9.1](https://redirect.github.com/fluxcd/notification-controller/blob/v1.9.1/CHANGELOG.md)\n-
          helm-controller [v1.6.1](https://redirect.github.com/fluxcd/helm-controller/blob/v1.6.1/CHANGELOG.md)\n-
          image-reflector-controller [v1.2.1](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.2.1/CHANGELOG.md)\n-
          image-automation-controller [v1.2.1](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.2.1/CHANGELOG.md)\n-
          source-watcher [v2.2.1](https://redirect.github.com/fluxcd/source-watcher/blob/v2.2.1/CHANGELOG.md)\n\n####
          CLI changelog\n\n- Add backport label for Flux 2.8 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5732](https://redirect.github.com/fluxcd/flux2/pull/5732)\n-
          Remove no longer needed workaround for Flux 2.8 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5733](https://redirect.github.com/fluxcd/flux2/pull/5733)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5740](https://redirect.github.com/fluxcd/flux2/pull/5740)\n-
          Add missing things to release notes template by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5743](https://redirect.github.com/fluxcd/flux2/pull/5743)\n-
          ci: add top-level permissions to upgrade-fluxcd-pkg workflow by [@&#8203;gaganhr94](https://redirect.github.com/gaganhr94)
          in [#&#8203;5763](https://redirect.github.com/fluxcd/flux2/pull/5763)\n-
          build(deps): bump the ci group across 1 directory with 11 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
          in [#&#8203;5764](https://redirect.github.com/fluxcd/flux2/pull/5764)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5766](https://redirect.github.com/fluxcd/flux2/pull/5766)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5769](https://redirect.github.com/fluxcd/flux2/pull/5769)\n-
          Add target branch name to update branch by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5773](https://redirect.github.com/fluxcd/flux2/pull/5773)\n-
          Fix/resume exit code by [@&#8203;Aman-Cool](https://redirect.github.com/Aman-Cool)
          in [#&#8203;5701](https://redirect.github.com/fluxcd/flux2/pull/5701)\n-
          Mark RFC 0010, 0011 and 0012 as implemented by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5776](https://redirect.github.com/fluxcd/flux2/pull/5776)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5780](https://redirect.github.com/fluxcd/flux2/pull/5780)\n-
          Add --resolve-symlinks flag to build and push artifact commands by [@&#8203;rohansood10](https://redirect.github.com/rohansood10)
          in [#&#8203;5724](https://redirect.github.com/fluxcd/flux2/pull/5724)\n-
          fix: validate --source flag in create kustomization command by [@&#8203;gma1k](https://redirect.github.com/gma1k)
          in [#&#8203;5798](https://redirect.github.com/fluxcd/flux2/pull/5798)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5821](https://redirect.github.com/fluxcd/flux2/pull/5821)\n-
          Add `--show-source` to `flux get ks` and `flux get hr`  by [@&#8203;rafaelperoco](https://redirect.github.com/rafaelperoco)
          in [#&#8203;5828](https://redirect.github.com/fluxcd/flux2/pull/5828)\n-
          Add `flux create secret receiver` command by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5835](https://redirect.github.com/fluxcd/flux2/pull/5835)\n-
          fix: handle multiple symlinks to same target in build artifact by [@&#8203;Iam-Karan-Suresh](https://redirect.github.com/Iam-Karan-Suresh)
          in [#&#8203;5833](https://redirect.github.com/fluxcd/flux2/pull/5833)\n-
          Add `--in-memory-build` to `flux build ks` and `flux diff ks` by [@&#8203;rycli](https://redirect.github.com/rycli)
          in [#&#8203;5794](https://redirect.github.com/fluxcd/flux2/pull/5794)\n-
          Migrate end-to-end test to latest cloud SDKs  by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5840](https://redirect.github.com/fluxcd/flux2/pull/5840)\n-
          docs: Add AI Coding Assistants Guidance  by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5841](https://redirect.github.com/fluxcd/flux2/pull/5841)\n-
          Add AI Agents guidance by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5847](https://redirect.github.com/fluxcd/flux2/pull/5847)\n-
          \\[RFC-0013] Flux CLI Plugin System by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5795](https://redirect.github.com/fluxcd/flux2/pull/5795)\n-
          Add `--ignore-not-found` to `flux diff ks` by [@&#8203;rycli](https://redirect.github.com/rycli)
          in [#&#8203;5845](https://redirect.github.com/fluxcd/flux2/pull/5845)\n-
          \\[RFC-0013] Implement plugin system by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5849](https://redirect.github.com/fluxcd/flux2/pull/5849)\n-
          build(deps): bump github.com/go-git/go-git/v5 from 5.17.1 to 5.18.0 by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
          in [#&#8203;5853](https://redirect.github.com/fluxcd/flux2/pull/5853)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5856](https://redirect.github.com/fluxcd/flux2/pull/5856)\n-
          Add digest pinning support to `flux plugin install` by [@&#8203;Iam-Karan-Suresh](https://redirect.github.com/Iam-Karan-Suresh)
          in [#&#8203;5872](https://redirect.github.com/fluxcd/flux2/pull/5872)\n-
          Add `--ns-follows-kube-context` global flag for using the kubeconfig context
          namespace by [@&#8203;jtyr](https://redirect.github.com/jtyr) in [#&#8203;5831](https://redirect.github.com/fluxcd/flux2/pull/5831)\n-
          include source-watcher in install.yaml manifests by [@&#8203;tmmorin](https://redirect.github.com/tmmorin)
          in [#&#8203;5881](https://redirect.github.com/fluxcd/flux2/pull/5881)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5890](https://redirect.github.com/fluxcd/flux2/pull/5890)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5903](https://redirect.github.com/fluxcd/flux2/pull/5903)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5907](https://redirect.github.com/fluxcd/flux2/pull/5907)\n-
          Validate Helm source URL schemes by [@&#8203;immanuwell](https://redirect.github.com/immanuwell)
          in [#&#8203;5909](https://redirect.github.com/fluxcd/flux2/pull/5909)\n-
          Introduce `flux trigger receiver` by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5908](https://redirect.github.com/fluxcd/flux2/pull/5908)\n-
          refactor(api): migrate MakeDependsOn to shared apis/meta func by [@&#8203;vecil](https://redirect.github.com/vecil)
          in [#&#8203;5912](https://redirect.github.com/fluxcd/flux2/pull/5912)\n-
          Update to Kubernetes 1.36 and Go 1.26 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5924](https://redirect.github.com/fluxcd/flux2/pull/5924)\n-
          build(deps): bump the ci group across 1 directory with 19 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
          in [#&#8203;5925](https://redirect.github.com/fluxcd/flux2/pull/5925)\n-
          Run conformance tests for Kubernetes 1.36 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5926](https://redirect.github.com/fluxcd/flux2/pull/5926)\n-
          Add support for AWS CodeCommit to `flux bootstrap git` by [@&#8203;taraspos](https://redirect.github.com/taraspos)
          in [#&#8203;5868](https://redirect.github.com/fluxcd/flux2/pull/5868)\n-
          Validate plugin binary path by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5927](https://redirect.github.com/fluxcd/flux2/pull/5927)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5928](https://redirect.github.com/fluxcd/flux2/pull/5928)\n-
          fix: preserve invalid metadata.labels in `flux build ks` by [@&#8203;raffis](https://redirect.github.com/raffis)
          in [#&#8203;5906](https://redirect.github.com/fluxcd/flux2/pull/5906)\n-
          build: target host arch for local builds/envtest by [@&#8203;stealthybox](https://redirect.github.com/stealthybox)
          in [#&#8203;5932](https://redirect.github.com/fluxcd/flux2/pull/5932)\n-
          build(deps): bump the ci group with 6 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
          in [#&#8203;5938](https://redirect.github.com/fluxcd/flux2/pull/5938)\n-
          Support specifing sparseCheckout in flux bootstrap by [@&#8203;piny940](https://redirect.github.com/piny940)
          in [#&#8203;5918](https://redirect.github.com/fluxcd/flux2/pull/5918)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5944](https://redirect.github.com/fluxcd/flux2/pull/5944)\n-
          Honor `ks.spec.postBuild.substituteStrategy` by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5945](https://redirect.github.com/fluxcd/flux2/pull/5945)\n-
          Add DriftIgnoreRules support to flux diff kustomization by [@&#8203;dipti-pai](https://redirect.github.com/dipti-pai)
          in [#&#8203;5923](https://redirect.github.com/fluxcd/flux2/pull/5923)\n-
          Allow signing commits using SSH key by [@&#8203;hiddeco](https://redirect.github.com/hiddeco)
          in [#&#8203;5920](https://redirect.github.com/fluxcd/flux2/pull/5920)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5950](https://redirect.github.com/fluxcd/flux2/pull/5950)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5937](https://redirect.github.com/fluxcd/flux2/pull/5937)\n-
          cmd: support `type!=status` in get --status-selector by [@&#8203;3uzbcqje](https://redirect.github.com/3uzbcqje)
          in [#&#8203;5952](https://redirect.github.com/fluxcd/flux2/pull/5952)\n-
          Fix `flux get all --status-selector` for empty results and notification
          resources by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5954](https://redirect.github.com/fluxcd/flux2/pull/5954)\n-
          Upgrade go-git-providers to v0.27.0 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5956](https://redirect.github.com/fluxcd/flux2/pull/5956)\n-
          Fix using Receiver adapter for ArtifactGenerator by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5957](https://redirect.github.com/fluxcd/flux2/pull/5957)\n-
          feat: Install Plugins alongside Flux setup in gh actions by [@&#8203;gat786](https://redirect.github.com/gat786)
          in [#&#8203;5955](https://redirect.github.com/fluxcd/flux2/pull/5955)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5960](https://redirect.github.com/fluxcd/flux2/pull/5960)\n-
          Add CLI support for OCIRepository.spec.layerSelector in flux create source
          oci by [@&#8203;dme86](https://redirect.github.com/dme86) in [#&#8203;5892](https://redirect.github.com/fluxcd/flux2/pull/5892)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5963](https://redirect.github.com/fluxcd/flux2/pull/5963)\n\n####
          New Contributors\n\n- [@&#8203;gaganhr94](https://redirect.github.com/gaganhr94)
          made their first contribution in [#&#8203;5763](https://redirect.github.com/fluxcd/flux2/pull/5763)\n-
          [@&#8203;rohansood10](https://redirect.github.com/rohansood10) made their
          first contribution in [#&#8203;5724](https://redirect.github.com/fluxcd/flux2/pull/5724)\n-
          [@&#8203;gma1k](https://redirect.github.com/gma1k) made their first contribution
          in [#&#8203;5798](https://redirect.github.com/fluxcd/flux2/pull/5798)\n-
          [@&#8203;rafaelperoco](https://redirect.github.com/rafaelperoco) made their
          first contribution in [#&#8203;5828](https://redirect.github.com/fluxcd/flux2/pull/5828)\n-
          [@&#8203;Iam-Karan-Suresh](https://redirect.github.com/Iam-Karan-Suresh)
          made their first contribution in [#&#8203;5833](https://redirect.github.com/fluxcd/flux2/pull/5833)\n-
          [@&#8203;rycli](https://redirect.github.com/rycli) made their first contribution
          in [#&#8203;5794](https://redirect.github.com/fluxcd/flux2/pull/5794)\n-
          [@&#8203;jtyr](https://redirect.github.com/jtyr) made their first contribution
          in [#&#8203;5831](https://redirect.github.com/fluxcd/flux2/pull/5831)\n-
          [@&#8203;tmmorin](https://redirect.github.com/tmmorin) made their first
          contribution in [#&#8203;5881](https://redirect.github.com/fluxcd/flux2/pull/5881)\n-
          [@&#8203;immanuwell](https://redirect.github.com/immanuwell) made their
          first contribution in [#&#8203;5909](https://redirect.github.com/fluxcd/flux2/pull/5909)\n-
          [@&#8203;vecil](https://redirect.github.com/vecil) made their first contribution
          in [#&#8203;5912](https://redirect.github.com/fluxcd/flux2/pull/5912)\n-
          [@&#8203;taraspos](https://redirect.github.com/taraspos) made their first
          contribution in [#&#8203;5868](https://redirect.github.com/fluxcd/flux2/pull/5868)\n-
          [@&#8203;piny940](https://redirect.github.com/piny940) made their first
          contribution in [#&#8203;5918](https://redirect.github.com/fluxcd/flux2/pull/5918)\n-
          [@&#8203;3uzbcqje](https://redirect.github.com/3uzbcqje) made their first
          contribution in [#&#8203;5952](https://redirect.github.com/fluxcd/flux2/pull/5952)\n-
          [@&#8203;gat786](https://redirect.github.com/gat786) made their first contribution
          in [#&#8203;5955](https://redirect.github.com/fluxcd/flux2/pull/5955)\n-
          [@&#8203;dme86](https://redirect.github.com/dme86) made their first contribution
          in [#&#8203;5892](https://redirect.github.com/fluxcd/flux2/pull/5892)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.0...v2.9.0>\n\n###
          [`v2.8.8`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.8)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.7...v2.8.8)\n\n#####
          Highlights\n\nFlux v2.8.8 is a patch release that includes CVE fixes via
          go-git v5.19.1 (source-controller, image-automation-controller), reliability
          fixes in helm-controller and source-controller, the move of Helm back to
          upstream v4.2.0, support for GCP sovereign cloud artifact registries, and
          dependency updates. Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Add a configurable HTTP timeout for artifact fetching, preventing fetches
          that could block indefinitely and stall reconciliations (helm-controller)\n-
          Fix unbounded memory growth caused by a Kubernetes client transport retry
          wrapper accumulating on every reconcile (helm-controller)\n- Stop force-applying
          non-CRD objects placed under a chart's `crds/` directory (helm-controller)\n-
          Fix the Helm test action failing to find releases with names longer than
          53 characters (helm-controller)\n- Improve path handling in the source reconcilers
          (source-controller)\n- Support Helm semver build-metadata encoding in OCIRepository
          tags (source-controller)\n\nImprovements:\n\n- Update go-git to v5.19.1
          which fixes [CVE-2026-45571](https://redirect.github.com/advisories/GHSA-crhj-59gh-8x96)
          and [CVE-2026-45570](https://redirect.github.com/advisories/GHSA-m7cr-m3pv-hgrp)
          (source-controller, image-automation-controller)\n- Move Helm back to upstream
          v4.2.0 (source-controller, helm-controller)\n- Add support for GCP sovereign
          cloud artifact registries (source-controller, image-reflector-controller)\n-
          Upgrade Kubernetes to 1.36.1 (source-controller, helm-controller)\n- Update
          fluxcd/pkg dependencies\n\n##### Components changelog\n\n- helm-controller
          [v1.5.5](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.5/CHANGELOG.md)\n-
          image-automation-controller [v1.1.4](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.4/CHANGELOG.md)\n-
          image-reflector-controller [v1.1.2](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.1.2/CHANGELOG.md)\n-
          source-controller [v1.8.5](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.5/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5904](https://redirect.github.com/fluxcd/flux2/pull/5904)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.7...v2.8.8>\n\n###
          [`v2.8.7`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.7)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.6...v2.8.7)\n\n#####
          Highlights\n\nFlux v2.8.7 is a patch release that includes a bug fix in
          kustomize-controller, a CVE fix in source-controller and image-automation-controller
          via go-git v5.19.0, and dependency updates. Users are encouraged to upgrade
          for the best experience.\n\n\u2139\uFE0F Please follow the [Upgrade Procedure
          for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix management of objects annotated with `kustomize.toolkit.fluxcd.io/ssa:
          IfNotPresent` where non-namespaced resources were being deleted and recreated
          on each reconciliation (kustomize-controller)\n\nImprovements:\n\n- Update
          go-git to v5.19.0 which fixes [CVE-2026-45022](https://redirect.github.com/advisories/GHSA-389r-gv7p-r3rp)
          (source-controller, image-automation-controller)\n- Update fluxcd/pkg dependencies
          (source-controller, kustomize-controller, image-automation-controller)\n\n#####
          Components changelog\n\n- helm-controller [v1.5.4](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.4/CHANGELOG.md)\n-
          image-automation-controller [v1.1.3](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.3/CHANGELOG.md)\n-
          kustomize-controller [v1.8.5](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.5/CHANGELOG.md)\n-
          notification-controller [v1.8.4](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.4/CHANGELOG.md)\n-
          source-controller [v1.8.4](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.4/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5891](https://redirect.github.com/fluxcd/flux2/pull/5891)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.6...v2.8.7>\n\n###
          [`v2.8.6`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.6)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.5...v2.8.6)\n\n#####
          Highlights\n\nFlux v2.8.6 is a patch release that includes bug fixes and
          improvements across helm-controller, image-automation-controller, kustomize-controller,
          notification-controller, and source-controller. Users are encouraged to
          upgrade for the best experience.\n\n\u2139\uFE0F Please follow the [Upgrade
          Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix a post-renderer conflict between overlapping hooks and templates (helm-controller)\n-
          Ignore force replace when server-side apply is enabled (helm-controller)\n-
          Fix a regression where generic providers would not forward commit status
          events (notification-controller)\n- Require the `audience` field on the
          GCR Receiver secret for tighter verification \u2014 will become mandatory
          in Flux v2.9 (notification-controller)\n\nImprovements:\n\n- Introduce the
          `MigrateAPIVersion` feature gate for migrating the API version of resources
          in managed field entries (kustomize-controller)\n- Update go-git to v5.18.0
          bringing performance improvements for Git operations (source-controller,
          image-automation-controller)\n\n##### Components changelog\n\n- helm-controller
          [v1.5.4](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.4/CHANGELOG.md)\n-
          image-automation-controller [v1.1.2](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.2/CHANGELOG.md)\n-
          kustomize-controller [v1.8.4](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.4/CHANGELOG.md)\n-
          notification-controller [v1.8.4](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.4/CHANGELOG.md)\n-
          source-controller [v1.8.3](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.3/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5857](https://redirect.github.com/fluxcd/flux2/pull/5857)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.5...v2.8.6>\n\n###
          [`v2.8.5`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.5)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.4...v2.8.5)\n\n#####
          Highlights\n\nFlux v2.8.5 is a patch release that includes bug fixes and
          improvements across kustomize-controller, source-controller, and notification-controller.
          Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix a race condition where a cancelled reconciliation could leave stale
          data in the cache, causing Kustomizations to get stuck (kustomize-controller)\n-
          Fix Azure Blob prefix option not being passed to the storage client (source-controller)\n\nImprovements:\n\n-
          Improve error message for encrypted SSH keys without password (source-controller)\n-
          Add optional `email` and `audience` fields to the GCR Receiver for tighter
          verification (notification-controller)\n- Add provider manifest example
          for Azure Event Hub managed identity authentication (notification-controller)\n\n#####
          Components changelog\n\n- kustomize-controller [v1.8.3](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.3/CHANGELOG.md)\n-
          source-controller [v1.8.2](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.2/CHANGELOG.md)\n-
          notification-controller [v1.8.3](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.3/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5822](https://redirect.github.com/fluxcd/flux2/pull/5822)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.4...v2.8.5>\n\n###
          [`v2.8.4`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.4)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.3...v2.8.4)\n\n#####
          Highlights\n\nFlux v2.8.4 is a patch release that includes fixes for the
          Flux CLI. Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix `flux build ks` and `flux diff ks` on Windows\n- Fix `--source` flag
          validation in `create kustomization` command\n\n##### CLI changelog\n\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5796](https://redirect.github.com/fluxcd/flux2/pull/5796)\n-
          \\[release/v2.8.x] fix: validate --source flag in create kustomization command
          by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot) in [#&#8203;5799](https://redirect.github.com/fluxcd/flux2/pull/5799)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.3...v2.8.4>\n\n###
          [`v2.8.3`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.3)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.2...v2.8.3)\n\n#####
          Highlights\n\nFlux v2.8.3 is a patch release that fixes a regression in
          helm-controller. Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix templating errors for charts that include `---` in the content, e.g.
          YAML separators, embedded scripts, CAs inside ConfigMaps (helm-controller)\n\n#####
          Components changelog\n\n- helm-controller [v1.5.3](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.3/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- \\[release/v2.8.x] Add target branch name to update branch
          by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot) in [#&#8203;5774](https://redirect.github.com/fluxcd/flux2/pull/5774)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5779](https://redirect.github.com/fluxcd/flux2/pull/5779)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.2...v2.8.3>\n\n###
          [`v2.8.2`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.2)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.1...v2.8.2)\n\n#####
          Highlights\n\nFlux v2.8.2 is a patch release that comes with various fixes.
          Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix enqueuing new reconciliation requests for events on source Flux objects
          when they are already reconciling the revision present in the watch event
          (kustomize-controller, helm-controller)\n- Fix the Go templates bug of YAML
          separator `---` getting concatenated to `apiVersion:` by updating to Helm
          4.1.3 (helm-controller)\n- Fix canceled HelmReleases getting stuck when
          they don't have a retry strategy configured by introducing a new feature
          gate `DefaultToRetryOnFailure` that improves the experience when the `CancelHealthCheckOnNewRevision`
          is enabled (helm-controller)\n- Fix the auth scope for Azure Container Registry
          to use the ACR-specific scope (source-controller, image-reflector-controller)\n-
          Fix potential Denial of Service (DoS) during TLS handshakes (CVE-2026-27138)
          by building all controllers with Go 1.26.1\n\n##### Components changelog\n\n-
          source-controller [v1.8.1](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.1/CHANGELOG.md)\n-
          kustomize-controller [v1.8.2](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.2/CHANGELOG.md)\n-
          notification-controller [v1.8.2](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.2/CHANGELOG.md)\n-
          helm-controller [v1.5.2](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.2/CHANGELOG.md)\n-
          image-reflector-controller [v1.1.1](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.1.1/CHANGELOG.md)\n-
          image-automation-controller [v1.1.1](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.1/CHANGELOG.md)\n-
          source-watcher [v2.1.1](https://redirect.github.com/fluxcd/source-watcher/blob/v2.1.1/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- \\[release/v2.8.x] build(deps): bump the ci group across
          1 directory with 11 updates by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5765](https://redirect.github.com/fluxcd/flux2/pull/5765)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5767](https://redirect.github.com/fluxcd/flux2/pull/5767)\n-
          Update toolkit components by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5770](https://redirect.github.com/fluxcd/flux2/pull/5770)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5771](https://redirect.github.com/fluxcd/flux2/pull/5771)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.1...v2.8.2>\n\n###
          [`v2.8.1`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.1)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.8.0...v2.8.1)\n\n#####
          Highlights\n\nFlux v2.8.1 is a patch release that comes with various fixes.
          Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix Git commit status events being dropped for Kustomizations (notification-controller)\n-
          Fix health check for StatefulSets when the Pods are Pending/Unschedulable
          during rollout (helm-controller, kustomize-controller)\n\n##### Components
          changelog\n\n- kustomize-controller [v1.8.1](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.1/CHANGELOG.md)\n-
          notification-controller [v1.8.1](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.1/CHANGELOG.md)\n-
          helm-controller [v1.5.1](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.1/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- \\[release/v2.8.x] Remove no longer needed workaround
          for Flux 2.8 by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5735](https://redirect.github.com/fluxcd/flux2/pull/5735)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5739](https://redirect.github.com/fluxcd/flux2/pull/5739)\n-
          \\[release/v2.8.x] Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5741](https://redirect.github.com/fluxcd/flux2/pull/5741)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.8.0...v2.8.1>\n\n###
          [`v2.8.0`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.8.0)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.7.5...v2.8.0)\n\n#####
          Highlights\n\nFlux v2.8.0 is a feature release. Users are encouraged to
          upgrade for the best experience.\n\nFor a compressive overview of new features
          and API changes included in this release, please refer to the [Announcing
          Flux 2.8 GA blog post](https://fluxcd.io/blog/2026/02/flux-v2.8.0/).\n\nOverview
          of the new features:\n\n- Helm v4 support, including server-side apply and
          kstatus-based health checking (`HelmRelease`)\n- Readiness evaluation of
          Helm-managed objects with CEL expressions (`HelmRelease`)\n- Improved observability
          of Helm releases with inventory tracking in `.status.inventory` (`HelmRelease`)\n-
          Reduced the mean time to recovery of Flux-managed applications via `CancelHealthCheckOnNewRevision`
          feature gate (`Kustomization`, `HelmRelease`)\n- Support for commenting
          on Pull Requests directly from Flux notifications (`Provider`)\n- Custom
          SSA apply stages for ordering resource application in kustomize-controller
          (`Kustomization`)\n- Automatic GitHub App installation ID lookup from the
          repository owner (`GitRepository`, `ImageUpdateAutomation`, `Provider`)\n-
          Support for Cosign v3 for verifying OCI artifacts and container images (`OCIRepository`)\n-
          ArtifactGenerator support for extracting and modifying Helm charts (`ArtifactGenerator`)\n-
          Bypass cache when fetching source objects via `DirectSourceFetch` feature
          gate (`Kustomization`, `HelmRelease`, `ArtifactGenerator`)\n\n\u2764\uFE0F
          Big thanks to all the Flux contributors that helped us with this release!\n\n#####
          Kubernetes compatibility\n\nThis release is compatible with the following
          Kubernetes versions:\n\n| Kubernetes version | Minimum required |\n| ------------------
          | ---------------- |\n| `v1.33`            | `>= 1.32.0`      |\n| `v1.34`
          \           | `>= 1.34.1`      |\n| `v1.35`            | `>= 1.35.0`      |\n\n>
          \\[!NOTE]\n> Note that the Flux project offers support only for the latest
          three minor versions of Kubernetes.\n> Backwards compatibility with older
          versions of Kubernetes and OpenShift is offered by vendors such as\n> [ControlPlane](https://control-plane.io/enterprise-for-flux-cd/)
          that provide enterprise support for Flux.\n\n##### OpenShift compatibility\n\nFlux
          can be installed on Red Hat OpenShift cluster directly from OperatorHub
          using [Flux Operator](https://operatorhub.io/operator/flux-operator). The
          operator allows the configuration of Flux multi-tenancy lockdown, network
          policies, persistent storage, sharding, vertical scaling and the synchronization
          of the cluster state from Git repositories, OCI artifacts, and S3-compatible
          storage.\n\n##### Upgrade procedure\n\n:warning: The Flux APIs `v1beta2`
          and `v2beta2` (deprecated in 2024) have reached end-of-life and have been
          removed from the CRDs.\n\nPlease follow the [Upgrade Procedure for Flux
          v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572) for a
          smooth upgrade from older versions of Flux to v2.8.\n\n##### Components
          changelog\n\n- source-controller [v1.8.0](https://redirect.github.com/fluxcd/source-controller/blob/v1.8.0/CHANGELOG.md)\n-
          kustomize-controller [v1.8.0](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.8.0/CHANGELOG.md)\n-
          notification-controller [v1.8.0](https://redirect.github.com/fluxcd/notification-controller/blob/v1.8.0/CHANGELOG.md)\n-
          helm-controller [v1.5.0](https://redirect.github.com/fluxcd/helm-controller/blob/v1.5.0/CHANGELOG.md)\n-
          image-reflector-controller [v1.1.0](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.1.0/CHANGELOG.md)\n-
          image-automation-controller [v1.1.0](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.1.0/CHANGELOG.md)\n-
          source-watcher [v2.1.0](https://redirect.github.com/fluxcd/source-watcher/blob/v2.1.0/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- ci: Set `GITHUB_TOKEN` in the `release-flux-manifests`
          workflow by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5547](https://redirect.github.com/fluxcd/flux2/pull/5547)\n-
          Add backport label for Flux 2.7 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5550](https://redirect.github.com/fluxcd/flux2/pull/5550)\n-
          build(deps): bump the ci group across 1 directory with 3 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
          in [#&#8203;5548](https://redirect.github.com/fluxcd/flux2/pull/5548)\n-
          Fix `flux push artifact` not working with `--provider` by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5551](https://redirect.github.com/fluxcd/flux2/pull/5551)\n-
          Extend `flux migrate` to work with local files by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5554](https://redirect.github.com/fluxcd/flux2/pull/5554)\n-
          Improve `flux migrate` for live cluster migrations by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5558](https://redirect.github.com/fluxcd/flux2/pull/5558)\n-
          Fix `flux migrate -f` command to work with comments by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5560](https://redirect.github.com/fluxcd/flux2/pull/5560)\n-
          Add source-watcher to docs by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5562](https://redirect.github.com/fluxcd/flux2/pull/5562)\n-
          Fix `flux migrate -f` not considering kind comments by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5563](https://redirect.github.com/fluxcd/flux2/pull/5563)\n-
          refactor: convert `Kustomization` resource into unstructured map only once
          during variable substitution by [@&#8203;ramasai1](https://redirect.github.com/ramasai1)
          in [#&#8203;5566](https://redirect.github.com/fluxcd/flux2/pull/5566)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5568](https://redirect.github.com/fluxcd/flux2/pull/5568)\n-
          Disable AUR publishing by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5570](https://redirect.github.com/fluxcd/flux2/pull/5570)\n-
          Fix manifest generation for `--storage-adv-addr` and `--events-addr` flags
          by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan) in [#&#8203;5574](https://redirect.github.com/fluxcd/flux2/pull/5574)\n-
          Update dependencies to Kubernetes v1.34.1 and Go 1.25.2 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5576](https://redirect.github.com/fluxcd/flux2/pull/5576)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5578](https://redirect.github.com/fluxcd/flux2/pull/5578)\n-
          Restore GitHub PAT for backports by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5581](https://redirect.github.com/fluxcd/flux2/pull/5581)\n-
          \\[RFC-0012] Add command `flux get source external` by [@&#8203;dgunzy](https://redirect.github.com/dgunzy)
          in [#&#8203;5555](https://redirect.github.com/fluxcd/flux2/pull/5555)\n-
          fix: handle error when writing password prompt to stdout by [@&#8203;akshatsinha0](https://redirect.github.com/akshatsinha0)
          in [#&#8203;5589](https://redirect.github.com/fluxcd/flux2/pull/5589)\n-
          Pin cosign to v2.6.1 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5594](https://redirect.github.com/fluxcd/flux2/pull/5594)\n-
          \\[RFC-0012] Add command `flux export source external` by [@&#8203;dgunzy](https://redirect.github.com/dgunzy)
          in [#&#8203;5583](https://redirect.github.com/fluxcd/flux2/pull/5583)\n-
          Fix bootstrap e2e test for image policy by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5604](https://redirect.github.com/fluxcd/flux2/pull/5604)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5603](https://redirect.github.com/fluxcd/flux2/pull/5603)\n-
          fix: return accepted values for flags when calling Values.Type() by [@&#8203;jaxels10](https://redirect.github.com/jaxels10)
          in [#&#8203;5602](https://redirect.github.com/fluxcd/flux2/pull/5602)\n-
          ci: Include source-watcher in the e2e test suite by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5614](https://redirect.github.com/fluxcd/flux2/pull/5614)\n-
          Add source.extensions.fluxcd.io group to aggregated RBAC roles by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5627](https://redirect.github.com/fluxcd/flux2/pull/5627)\n-
          Fix panic on reconcile with source of ExternalArtifact kind by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5630](https://redirect.github.com/fluxcd/flux2/pull/5630)\n-
          Upgrade k8s to 1.34.2, c-r to 0.22.4 and helm to 3.19.2 by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5633](https://redirect.github.com/fluxcd/flux2/pull/5633)\n-
          diff: report if object is skipped by [@&#8203;hown3d](https://redirect.github.com/hown3d)
          in [#&#8203;5625](https://redirect.github.com/fluxcd/flux2/pull/5625)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5639](https://redirect.github.com/fluxcd/flux2/pull/5639)\n-
          Allow option to skip tenant namespace creation by [@&#8203;anshuishere](https://redirect.github.com/anshuishere)
          in [#&#8203;5597](https://redirect.github.com/fluxcd/flux2/pull/5597)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5648](https://redirect.github.com/fluxcd/flux2/pull/5648)\n-
          fix: [#&#8203;5654](https://redirect.github.com/fluxcd/flux2/issues/5654)
          by checking if both --chart and --chart-ref are set by [@&#8203;jaxels10](https://redirect.github.com/jaxels10)
          in [#&#8203;5656](https://redirect.github.com/fluxcd/flux2/pull/5656)\n-
          Added retry logic with delays to the Flux CLI download by [@&#8203;ivan-munteanu](https://redirect.github.com/ivan-munteanu)
          in [#&#8203;5659](https://redirect.github.com/fluxcd/flux2/pull/5659)\n-
          Run conformance tests for Kubernetes 1.35.0  by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5663](https://redirect.github.com/fluxcd/flux2/pull/5663)\n-
          fix: normalize path for Windows compatibility by [@&#8203;sibasispadhi](https://redirect.github.com/sibasispadhi)
          in [#&#8203;5674](https://redirect.github.com/fluxcd/flux2/pull/5674)\n-
          Introduce support for looking up GH app installation ID by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5682](https://redirect.github.com/fluxcd/flux2/pull/5682)\n-
          Update dependencies to Kubernetes v1.35.0 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5688](https://redirect.github.com/fluxcd/flux2/pull/5688)\n-
          Fix resume command logging success after reconciliation failure by [@&#8203;Aman-Cool](https://redirect.github.com/Aman-Cool)
          in [#&#8203;5690](https://redirect.github.com/fluxcd/flux2/pull/5690)\n-
          Add 2.8 to supported versions for `flux migrate -f` by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5713](https://redirect.github.com/fluxcd/flux2/pull/5713)\n-
          Introduce workflow for bumping fluxcd/pkg deps by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5717](https://redirect.github.com/fluxcd/flux2/pull/5717)\n-
          Update fluxcd/pkg dependencies by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5719](https://redirect.github.com/fluxcd/flux2/pull/5719)\n-
          Fix event listing ignoring pagination token by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5721](https://redirect.github.com/fluxcd/flux2/pull/5721)\n-
          Build with Go 1.26 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5723](https://redirect.github.com/fluxcd/flux2/pull/5723)\n-
          Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5722](https://redirect.github.com/fluxcd/flux2/pull/5722)\n-
          Update helm-controller to v1.5.0 by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5725](https://redirect.github.com/fluxcd/flux2/pull/5725)\n-
          build(deps): bump the ci group across 1 directory with 12 updates by [@&#8203;dependabot](https://redirect.github.com/dependabot)\\[bot]
          in [#&#8203;5720](https://redirect.github.com/fluxcd/flux2/pull/5720)\n-
          Fix bootstrap failure on Windows cross-drive paths by [@&#8203;veeceey](https://redirect.github.com/veeceey)
          in [#&#8203;5726](https://redirect.github.com/fluxcd/flux2/pull/5726)\n-
          Dump debug info on e2e tests by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5729](https://redirect.github.com/fluxcd/flux2/pull/5729)\n-
          Set Kubernetes 1.33 as min supported version by [@&#8203;matheuscscp](https://redirect.github.com/matheuscscp)
          in [#&#8203;5730](https://redirect.github.com/fluxcd/flux2/pull/5730)\n-
          Update conformance tests to min Kubernetes 1.33 by [@&#8203;stefanprodan](https://redirect.github.com/stefanprodan)
          in [#&#8203;5731](https://redirect.github.com/fluxcd/flux2/pull/5731)\n\n#####
          New Contributors\n\n- [@&#8203;ramasai1](https://redirect.github.com/ramasai1)
          made their first contribution in [#&#8203;5566](https://redirect.github.com/fluxcd/flux2/pull/5566)\n-
          [@&#8203;akshatsinha0](https://redirect.github.com/akshatsinha0) made their
          first contribution in [#&#8203;5589](https://redirect.github.com/fluxcd/flux2/pull/5589)\n-
          [@&#8203;jaxels10](https://redirect.github.com/jaxels10) made their first
          contribution in [#&#8203;5602](https://redirect.github.com/fluxcd/flux2/pull/5602)\n-
          [@&#8203;hown3d](https://redirect.github.com/hown3d) made their first contribution
          in [#&#8203;5625](https://redirect.github.com/fluxcd/flux2/pull/5625)\n-
          [@&#8203;anshuishere](https://redirect.github.com/anshuishere) made their
          first contribution in [#&#8203;5597](https://redirect.github.com/fluxcd/flux2/pull/5597)\n-
          [@&#8203;ivan-munteanu](https://redirect.github.com/ivan-munteanu) made
          their first contribution in [#&#8203;5659](https://redirect.github.com/fluxcd/flux2/pull/5659)\n-
          [@&#8203;sibasispadhi](https://redirect.github.com/sibasispadhi) made their
          first contribution in [#&#8203;5674](https://redirect.github.com/fluxcd/flux2/pull/5674)\n-
          [@&#8203;Aman-Cool](https://redirect.github.com/Aman-Cool) made their first
          contribution in [#&#8203;5690](https://redirect.github.com/fluxcd/flux2/pull/5690)\n-
          [@&#8203;veeceey](https://redirect.github.com/veeceey) made their first
          contribution in [#&#8203;5726](https://redirect.github.com/fluxcd/flux2/pull/5726)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.7.0...v2.8.0>\n\n###
          [`v2.7.5`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.7.5)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.7.4...v2.7.5)\n\n#####
          Highlights\n\nFlux v2.7.5 is a patch release that comes with fixes to helm-controller.
          Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Fix HelmRelease history truncation when using the `RetryOnFailure` strategy.\n\n:warning:
          Note that signature verification for OCI artifacts in source-controller
          is not compatible with Cosign v3.\nFlux users are advised to use [Cosign
          v2.6](https://fluxcd.io/flux/flux-gh-action/#push-and-sign-kubernetes-manifests-to-container-registries)
          for signing Flux OCI artifacts and Helm charts, until support for Cosign
          v3 is added in Flux v2.8.\n\n##### Components changelog\n\n- helm-controller
          [v1.4.5](https://redirect.github.com/fluxcd/helm-controller/blob/v1.4.5/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- \\[release/v2.7.x] Update toolkit components by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5649](https://redirect.github.com/fluxcd/flux2/pull/5649)\n\n**Full
          Changelog**: <https://github.com/fluxcd/flux2/compare/v2.7.4...v2.7.5>\n\n###
          [`v2.7.4`](https://redirect.github.com/fluxcd/flux2/releases/tag/v2.7.4)\n\n[Compare
          Source](https://redirect.github.com/fluxcd/flux2/compare/v2.7.3...v2.7.4)\n\n#####
          Highlights\n\nFlux v2.7.4 is a patch release that comes with various fixes.
          Users are encouraged to upgrade for the best experience.\n\n\u2139\uFE0F
          \ Please follow the [Upgrade Procedure for Flux v2.7+](https://redirect.github.com/fluxcd/flux2/discussions/5572)
          for a smooth upgrade from Flux v2.6 to the latest version.\n\nFixes:\n\n-
          Add `DisableConfigWatchers` feature gate to all controllers for disabling
          the Secrets/ConfigMaps watchers\n- Fix Workload Identity for Azure China
          Cloud in all controllers\n- Update Helm Go SDK to v3.19.2 fixing schema
          validation issues in helm-controller\n- Skip secret decryption for remote
          kustomize patches in kustomize-controller\n- Improve post-build error reporting
          in kustomize-controller\n- Add `ArtifactGenerator` to aggregated RBAC roles\n\n:warning:
          Note that signature verification for OCI artifacts in source-controller
          is not compatible with Cosign v3.\nFlux users are advised to use [Cosign
          v2.6](https://fluxcd.io/flux/flux-gh-action/#push-and-sign-kubernetes-manifests-to-container-registries)
          for signing Flux OCI artifacts and Helm charts, until support for Cosign
          v3 is added in Flux v2.8.\n\n##### Components changelog\n\n- source-controller
          [v1.7.4](https://redirect.github.com/fluxcd/source-controller/blob/v1.7.4/CHANGELOG.md)\n-
          kustomize-controller [v1.7.3](https://redirect.github.com/fluxcd/kustomize-controller/blob/v1.7.3/CHANGELOG.md)\n-
          notification-controller [v1.7.5](https://redirect.github.com/fluxcd/notification-controller/blob/v1.7.5/CHANGELOG.md)\n-
          helm-controller [v1.4.4](https://redirect.github.com/fluxcd/helm-controller/blob/v1.4.4/CHANGELOG.md)\n-
          image-reflector-controller [v1.0.4](https://redirect.github.com/fluxcd/image-reflector-controller/blob/v1.0.4/CHANGELOG.md)\n-
          image-automation-controller [v1.0.4](https://redirect.github.com/fluxcd/image-automation-controller/blob/v1.0.4/CHANGELOG.md)\n-
          source-watcher [v2.0.3](https://redirect.github.com/fluxcd/source-watcher/blob/v2.0.3/CHANGELOG.md)\n\n#####
          CLI changelog\n\n- \\[release/v2.7.x] ci: Include source-watcher in the
          e2e test suite by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot)
          in [#&#8203;5615](https://redirect.github.com/fluxcd/flux2/pull/5615)\n-
          \\[release/v2.7.x] Add source.extensions.fluxcd.io group to aggregated RBAC
          roles by [@&#8203;fluxcdbot](https://redirect.github.com/fluxcdbot) in [#&#8203;5628](https://redirect.github.com/fluxcd/flux2/pull/5628)\n-
          \\[release/v2.7.x] Fix panic on rec\n\n> \u2702 **Note**\n> \n> PR body
          was truncated to here.\n\n\n</details>\n\n---\n\n### Configuration\n\n\U0001F4C5
          **Schedule**: (UTC)\n\n- Branch creation\n  - At any time (no schedule defined)\n-
          Automerge\n  - At any time (no schedule defined)\n\n\U0001F6A6 **Automerge**:
          Disabled by config. Please merge this manually once you are satisfied.\n\n\u267B
          **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry
          checkbox.\n\n\U0001F515 **Ignore**: Close this PR and you won't be reminded
          about this update again.\n\n---\n\n - [ ] <!-- rebase-check -->If you want
          to rebase/retry this PR, check this box\n\n---\n\nThis PR was generated
          by [Mend Renovate](https://mend.io/renovate/). View the [repository job
          log](https://developer.mend.io/github/vexxhost/atmosphere.common).\n<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4xMzEuOSIsInVwZGF0ZWRJblZlciI6IjQ0LjEyLjAiLCJ0YXJnZXRCcmFuY2giOiJtYWluIiwibGFiZWxzIjpbXX0=-->\n"
        change_url: https://github.com/vexxhost/atmosphere.common/pull/102
        commit_id: 4b7d2c33963a0d5d8d07efbeae714265f786c145
        patchset: 4b7d2c33963a0d5d8d07efbeae714265f786c145
        project:
          canonical_hostname: github.com
          canonical_name: github.com/vexxhost/atmosphere.common
          name: vexxhost/atmosphere.common
          short_name: atmosphere.common
          src_dir: src/github.com/vexxhost/atmosphere.common
        topic: null
      job: atmosphere-common-molecule-secretgen-controller
      jobtags: []
      max_attempts: 3
      message: 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
      patchset: 4b7d2c33963a0d5d8d07efbeae714265f786c145
      pipeline: check
      playbook_context:
        playbook_projects:
          trusted/project_0/github.com/vexxhost/zuul-config:
            canonical_name: github.com/vexxhost/zuul-config
            checkout: main
            commit: 298983cd1253e6833abdb49d87d912527e0e6597
          trusted/project_1/opendev.org/zuul/zuul-jobs:
            canonical_name: opendev.org/zuul/zuul-jobs
            checkout: master
            commit: 1a6ce7475e62704e5dde6282210bb88276736841
          trusted/project_2/github.com/vexxhost/zuul-jobs:
            canonical_name: github.com/vexxhost/zuul-jobs
            checkout: main
            commit: c286bf94224b5660b8e49e9a058289e61062a9a0
          untrusted/project_0/github.com/vexxhost/zuul-jobs:
            canonical_name: github.com/vexxhost/zuul-jobs
            checkout: main
            commit: c286bf94224b5660b8e49e9a058289e61062a9a0
          untrusted/project_1/github.com/vexxhost/zuul-config:
            canonical_name: github.com/vexxhost/zuul-config
            checkout: main
            commit: 298983cd1253e6833abdb49d87d912527e0e6597
          untrusted/project_2/opendev.org/zuul/zuul-jobs:
            canonical_name: opendev.org/zuul/zuul-jobs
            checkout: master
            commit: 1a6ce7475e62704e5dde6282210bb88276736841
          untrusted/project_3/github.com/vexxhost/atmosphere.common:
            canonical_name: github.com/vexxhost/atmosphere.common
            checkout: main
            commit: 8cefa008510ba5ca459e2b76a3b6ca21a4e07956
          untrusted/project_4/opendev.org/openstack/openstack-helm:
            canonical_name: opendev.org/openstack/openstack-helm
            checkout: master
            commit: 7fd58999542d370d9d576cd548fdd325cb4ae945
        playbooks:
        - path: untrusted/project_0/github.com/vexxhost/zuul-jobs/playbooks/molecule/run.yaml
          roles:
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/playbook_0/role_1/zuul-jobs
            link_target: untrusted/project_2/opendev.org/zuul/zuul-jobs
            role_path: ansible/playbook_0/role_1/zuul-jobs/roles
          - checkout: main
            checkout_description: playbook branch
            link_name: ansible/playbook_0/role_2/zuul-jobs
            link_target: untrusted/project_0/github.com/vexxhost/zuul-jobs
            role_path: ansible/playbook_0/role_2/zuul-jobs/roles
        post_playbooks:
        - path: untrusted/project_3/github.com/vexxhost/atmosphere.common/test-playbooks/molecule/post.yml
          roles:
          - checkout: main
            checkout_description: playbook branch
            link_name: ansible/post_playbook_0/role_0/atmosphere.common
            link_target: untrusted/project_3/github.com/vexxhost/atmosphere.common
            role_path: ansible/post_playbook_0/role_0/atmosphere.common/roles
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/post_playbook_0/role_1/openstack-helm
            link_target: untrusted/project_4/opendev.org/openstack/openstack-helm
            role_path: ansible/post_playbook_0/role_1/openstack-helm/roles
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/post_playbook_0/role_3/zuul-jobs
            link_target: untrusted/project_2/opendev.org/zuul/zuul-jobs
            role_path: ansible/post_playbook_0/role_3/zuul-jobs/roles
          - checkout: main
            checkout_description: zuul branch
            link_name: ansible/post_playbook_0/role_4/zuul-jobs
            link_target: untrusted/project_0/github.com/vexxhost/zuul-jobs
            role_path: ansible/post_playbook_0/role_4/zuul-jobs/roles
        - path: trusted/project_0/github.com/vexxhost/zuul-config/playbooks/base/post.yaml
          roles:
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/post_playbook_1/role_1/zuul-jobs
            link_target: trusted/project_1/opendev.org/zuul/zuul-jobs
            role_path: ansible/post_playbook_1/role_1/zuul-jobs/roles
          - checkout: main
            checkout_description: zuul branch
            link_name: ansible/post_playbook_1/role_2/zuul-jobs
            link_target: trusted/project_2/github.com/vexxhost/zuul-jobs
            role_path: ansible/post_playbook_1/role_2/zuul-jobs/roles
        - path: trusted/project_0/github.com/vexxhost/zuul-config/playbooks/base/post-logs.yaml
          roles:
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/post_playbook_2/role_1/zuul-jobs
            link_target: trusted/project_1/opendev.org/zuul/zuul-jobs
            role_path: ansible/post_playbook_2/role_1/zuul-jobs/roles
          - checkout: main
            checkout_description: zuul branch
            link_name: ansible/post_playbook_2/role_2/zuul-jobs
            link_target: trusted/project_2/github.com/vexxhost/zuul-jobs
            role_path: ansible/post_playbook_2/role_2/zuul-jobs/roles
        pre_playbooks:
        - path: trusted/project_0/github.com/vexxhost/zuul-config/playbooks/base/pre.yaml
          roles:
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/pre_playbook_0/role_1/zuul-jobs
            link_target: trusted/project_1/opendev.org/zuul/zuul-jobs
            role_path: ansible/pre_playbook_0/role_1/zuul-jobs/roles
          - checkout: main
            checkout_description: zuul branch
            link_name: ansible/pre_playbook_0/role_2/zuul-jobs
            link_target: trusted/project_2/github.com/vexxhost/zuul-jobs
            role_path: ansible/pre_playbook_0/role_2/zuul-jobs/roles
        - path: untrusted/project_0/github.com/vexxhost/zuul-jobs/playbooks/molecule/pre.yaml
          roles:
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/pre_playbook_1/role_1/zuul-jobs
            link_target: untrusted/project_2/opendev.org/zuul/zuul-jobs
            role_path: ansible/pre_playbook_1/role_1/zuul-jobs/roles
          - checkout: main
            checkout_description: playbook branch
            link_name: ansible/pre_playbook_1/role_2/zuul-jobs
            link_target: untrusted/project_0/github.com/vexxhost/zuul-jobs
            role_path: ansible/pre_playbook_1/role_2/zuul-jobs/roles
        - path: untrusted/project_3/github.com/vexxhost/atmosphere.common/test-playbooks/molecule/pre.yml
          roles:
          - checkout: main
            checkout_description: playbook branch
            link_name: ansible/pre_playbook_2/role_0/atmosphere.common
            link_target: untrusted/project_3/github.com/vexxhost/atmosphere.common
            role_path: ansible/pre_playbook_2/role_0/atmosphere.common/roles
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/pre_playbook_2/role_1/openstack-helm
            link_target: untrusted/project_4/opendev.org/openstack/openstack-helm
            role_path: ansible/pre_playbook_2/role_1/openstack-helm/roles
          - checkout: master
            checkout_description: project default branch
            link_name: ansible/pre_playbook_2/role_3/zuul-jobs
            link_target: untrusted/project_2/opendev.org/zuul/zuul-jobs
            role_path: ansible/pre_playbook_2/role_3/zuul-jobs/roles
          - checkout: main
            checkout_description: zuul branch
            link_name: ansible/pre_playbook_2/role_4/zuul-jobs
            link_target: untrusted/project_0/github.com/vexxhost/zuul-jobs
            role_path: ansible/pre_playbook_2/role_4/zuul-jobs/roles
      post_review: false
      post_timeout: null
      pre_timeout: null
      project:
        canonical_hostname: github.com
        canonical_name: github.com/vexxhost/atmosphere.common
        name: vexxhost/atmosphere.common
        short_name: atmosphere.common
        src_dir: src/github.com/vexxhost/atmosphere.common
      projects:
        github.com/vexxhost/atmosphere.common:
          canonical_hostname: github.com
          canonical_name: github.com/vexxhost/atmosphere.common
          checkout: main
          checkout_description: zuul branch
          commit: 8cefa008510ba5ca459e2b76a3b6ca21a4e07956
          name: vexxhost/atmosphere.common
          required: false
          short_name: atmosphere.common
          src_dir: src/github.com/vexxhost/atmosphere.common
      ref: refs/pull/102/head
      resources: {}
      tenant: oss
      timeout: 1800
      topic: null
      voting: true
