apiVersion: "catalog.confighub.com/v1alpha1"
kind: "BaseVariantRecord"
metadata:
  name: "istio-istiod-1-30-0-default"
  labels:
    sourceType: "helm"
    component: "istio/istiod"
    sourceVersion: "1.30.0"
    base: "default"
spec:
  source:
    type: "helm"
    name: "istio/istiod"
    version: "1.30.0"
    record: "data/helm-render-intents/intents/istio-istiod-1-30-0-default.yaml"
    packageOciRef: "oci://europe-west1-docker.pkg.dev/nth-fort-499605-q5/helm-expt/istio-istiod:1.30.0"
  baseVariant:
    name: "default"
    revision: "r001"
    digest: "add9fe5f59c4bee135be299995f91da3b8411969240948dcf387d04cbde45663"
  configuration:
    format: "kubernetes-yaml"
    objects: "recipes/istio/istiod/1.30.0/revisions/default/r001/rendered/release-objects.yaml"
    inventory: "recipes/istio/istiod/1.30.0/revisions/default/r001/rendered/object-inventory.yaml"
    objectCount: 17
  inputs:
    fixedAtBuildTime:
      - "chart=istio/istiod"
      - "version=1.30.0"
      - "base=default"
      - "valuesProfile=recipes/istio/istiod/1.30.0/effective-values.yaml"
      - "namespace=default"
      - "releaseName=istiod"
      - "capabilityProfile={\"apiVersions\":[],\"kubeVersion\":\"1.30.0\"}"
    installTime:
      -
        name: "istio-system"
        type: "requiredNamespaces"
        required: true
        details:
          deliveryLanes:
            - "regularHelm"
            - "cubInstallerApply"
            - "configHubKubectlApply"
            - "configHubOciArgo"
          evidence:
            - "runs/live-helm-confighub-compare/istio-istiod-default/receipt.yaml"
            - "runs/live-kind-parity/istio-istiod-default/receipt.yaml"
          name: "istio-system"
          purpose: "The chart renders service-account and RBAC objects into istio-system, and Helm blocks when the namespace is absent."
          sourcePath: "../../target-prerequisite-plan.yaml"
          suggestedSource: "kubectl create namespace istio-system --dry-run=client -o yaml | kubectl apply -f -"
    installTimeStatus: "partly-declared"
  routing:
    routes:
      []
    targetFacts:
      status: "declared-target-facts-and-observed-action-records"
      declared:
        requiredNamespaces:
          -
            deliveryLanes:
              - "regularHelm"
              - "cubInstallerApply"
              - "configHubKubectlApply"
              - "configHubOciArgo"
            evidence:
              - "runs/live-helm-confighub-compare/istio-istiod-default/receipt.yaml"
              - "runs/live-kind-parity/istio-istiod-default/receipt.yaml"
            name: "istio-system"
            purpose: "The chart renders service-account and RBAC objects into istio-system, and Helm blocks when the namespace is absent."
            sourcePath: "../../target-prerequisite-plan.yaml"
            suggestedSource: "kubectl create namespace istio-system --dry-run=client -o yaml | kubectl apply -f -"
      requirements:
        -
          category: "namespace"
          name: "istio-system"
          namespace: ""
          requiredBefore: "apply"
          freshness:
            policy: "recheck-before-apply"
            maxAge: "one-apply"
          purpose: "The chart renders service-account and RBAC objects into istio-system, and Helm blocks when the namespace is absent."
          check: "kubectl create namespace istio-system --dry-run=client -o yaml | kubectl apply -f -"
          declarationPath: "recipes/istio/istiod/1.30.0/variants/default/variant.yaml"
          sourceVariant: ""
          sourcePath: "../../target-prerequisite-plan.yaml"
          deliveryLanes:
            - "regularHelm"
            - "cubInstallerApply"
            - "configHubKubectlApply"
            - "configHubOciArgo"
          evidence:
            - "recipes/istio/istiod/1.30.0/variants/default/variant.yaml"
            - "runs/live-helm-confighub-compare/istio-istiod-default/receipt.yaml"
            - "runs/live-kind-parity/istio-istiod-default/receipt.yaml"
      actions:
        -
          lane: "G/P"
          prerequisiteKind: "namespace"
          prerequisiteName: "unknown"
          actionKind: "create-namespace"
          ownerClass: "user-stage"
          requiredInputs: "the target Namespace named by the chart"
          evidenceRequired: "the named Namespace exists on the target before apply; then a fresh G/P parity receipt for this base"
          automatic: false
          supportArtifact: "recipes/istio/istiod/1.30.0/target-prerequisite-plan.yaml"
          sourceReceipt: "runs/live-helm-confighub-compare/istio-istiod-default/receipt.yaml"
          rerunCommand: "npm run live-parity:run -- --recipe recipes/istio/istiod/1.30.0 --base default"
          requiredBefore: "apply"
          freshness:
            policy: "recheck-before-apply"
            maxAge: "one-apply"
          evidence:
            - "runs/live-helm-confighub-compare/istio-istiod-default/receipt.yaml"
            - "recipes/istio/istiod/1.30.0/target-prerequisite-plan.yaml"
        -
          lane: "K"
          prerequisiteKind: "namespace"
          prerequisiteName: "Namespace istio-system"
          actionKind: "create-namespace"
          ownerClass: "user-stage"
          requiredInputs: "Namespace istio-system"
          evidenceRequired: "the named Namespace exists on the target before apply; then a fresh K parity receipt for this base"
          automatic: false
          supportArtifact: "recipes/istio/istiod/1.30.0/target-prerequisite-plan.yaml"
          sourceReceipt: "runs/live-kind-parity/istio-istiod-default/receipt.yaml"
          rerunCommand: "npm run kind-parity:run -- --chart istio/istiod --version 1.30.0 --base default"
          requiredBefore: "apply"
          freshness:
            policy: "recheck-before-apply"
            maxAge: "one-apply"
          evidence:
            - "runs/live-kind-parity/istio-istiod-default/receipt.yaml"
            - "recipes/istio/istiod/1.30.0/target-prerequisite-plan.yaml"
      coverage:
        state: "attached-with-observed-actions"
        reason: "1 prerequisite declaration and 2 follow-up action records are attached."
        declarationSource: "recipes/istio/istiod/1.30.0/variants/default/variant.yaml"
        nextAction: ""
    sourceRecord: "data/helm-render-intents/intents/istio-istiod-1-30-0-default.yaml"
  delivery:
    literalConfigOci:
      status: "not-published-in-this-record"
      note: "The installer package contains several preset configurations. A literal OCI bundle for this one base needs its own publication receipt."
    configHubReleaseOci:
      status: "not-recorded-for-this-base"
      note: "No current ConfigHub Space release OCI receipt is recorded for this exact base."
    argoCd: "not-recorded-for-this-base"
    flux: "not-recorded-for-this-base"
    direct: "not-recorded-for-this-base"
    historicalGitopsOciStatus: "no"
  policy:
    profile: "catalog-standard"
    productionAdds:
      - "human-approval"
  evidence:
    renderParity: "yes"
    confighubScanOps: "yes"
    localKind: "no"
    lifecycleObserved: "n/a"
    gitopsOciLive: "no"
    liveDualParity: "no"
    twoClusterKind: "no"
    variantPromotion: "proven"
  operations:
    resourceClass: "not-yet-classified"
    ownerClass: "not-yet-classified"
    changeCadence: "not-yet-classified"
status:
  level: "available"
  claim: "The Helm source record, committed rendered objects, revision digest, routes, target facts, and proof-lane statuses are indexed here."
  limits:
    - "This record does not claim that the base has been uploaded to a live ConfigHub Space."
    - "The small typed install-time surface is not yet complete for every Helm base."
    - "A multi-preset installer package OCI is not the same as a single literal configuration OCI."
