apiVersion: "helm-expt.confighub.com/v1alpha1"
kind: "Top100PromotionWave"
metadata:
  name: "strict-priority-2-promotion-review"
  generatedBy: "scripts/generate-top100-promotion-wave.mjs"
spec:
  sourceQueue: "data/top100-coverage/work-queue.csv"
  sourceReview: "data/catalog-promotion-review/review.csv"
  sourceBaseOutcomes: "data/outcome-coverage/base-outcomes.csv"
  scope: "Priority-2 top100 rows: proof-grade charts with multiple variants and strict parity evidence, but no production disposition yet."
  boundary: "This wave is a promotion review queue, not a catalog support claim. Promotion still requires explicit support decisions and current target-scoped evidence."
  rows:
    -
      chart: "aqua/trivy-operator"
      version: "0.32.1"
      variants:
        - "default"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        []
      scan:
        high: 0
        medium: 19
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/aqua/trivy-operator/0.32.1/revisions/default/r001/variant-revision.yaml"
        - "recipes/aqua/trivy-operator/0.32.1/helm-pain-report.yaml"
        - "recipes/aqua/trivy-operator/0.32.1/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/aqua/trivy-operator/0.32.1/control-points.yaml"
        - "recipes/aqua/trivy-operator/0.32.1/value-model.yaml"
        - "recipes/aqua/trivy-operator/0.32.1/helm-plan.yaml"
        - "recipes/aqua/trivy-operator/0.32.1/CATALOG.md"
        - "recipes/aqua/trivy-operator/0.32.1/helm-pain-report.yaml"
    -
      chart: "argo-cd/argo-events"
      version: "2.4.21"
      variants:
        - "default"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        []
      scan:
        high: 0
        medium: 5
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/argo-cd/argo-events/2.4.21/revisions/default/r001/variant-revision.yaml"
        - "recipes/argo-cd/argo-events/2.4.21/helm-pain-report.yaml"
        - "recipes/argo-cd/argo-events/2.4.21/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/argo-cd/argo-events/2.4.21/control-points.yaml"
        - "recipes/argo-cd/argo-events/2.4.21/value-model.yaml"
        - "recipes/argo-cd/argo-events/2.4.21/helm-plan.yaml"
        - "recipes/argo-cd/argo-events/2.4.21/CATALOG.md"
        - "recipes/argo-cd/argo-events/2.4.21/helm-pain-report.yaml"
    -
      chart: "argo-cd/argo-rollouts"
      version: "2.40.9"
      variants:
        - "default"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        []
      scan:
        high: 0
        medium: 10
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/argo-cd/argo-rollouts/2.40.9/revisions/default/r001/variant-revision.yaml"
        - "recipes/argo-cd/argo-rollouts/2.40.9/helm-pain-report.yaml"
        - "recipes/argo-cd/argo-rollouts/2.40.9/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/argo-cd/argo-rollouts/2.40.9/control-points.yaml"
        - "recipes/argo-cd/argo-rollouts/2.40.9/value-model.yaml"
        - "recipes/argo-cd/argo-rollouts/2.40.9/helm-plan.yaml"
        - "recipes/argo-cd/argo-rollouts/2.40.9/CATALOG.md"
        - "recipes/argo-cd/argo-rollouts/2.40.9/helm-pain-report.yaml"
    -
      chart: "argo-cd/argo-workflows"
      version: "1.0.14"
      variants:
        - "default"
        - "controller-default-reviewed"
        - "minimal-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        []
      scan:
        high: 0
        medium: 22
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/argo-cd/argo-workflows/1.0.14/revisions/controller-default-reviewed/r001/variant-revision.yaml"
        - "recipes/argo-cd/argo-workflows/1.0.14/helm-pain-report.yaml"
        - "recipes/argo-cd/argo-workflows/1.0.14/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/argo-cd/argo-workflows/1.0.14/control-points.yaml"
        - "recipes/argo-cd/argo-workflows/1.0.14/value-model.yaml"
        - "recipes/argo-cd/argo-workflows/1.0.14/helm-plan.yaml"
        - "recipes/argo-cd/argo-workflows/1.0.14/CATALOG.md"
        - "recipes/argo-cd/argo-workflows/1.0.14/helm-pain-report.yaml"
    -
      chart: "autoscaler/cluster-autoscaler"
      version: "9.57.0"
      variants:
        - "default"
        - "controller-default-reviewed"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        []
      scan:
        high: 1
        medium: 4
        gateDecisions:
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "high scan findings require review before catalog support"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/autoscaler/cluster-autoscaler/9.57.0/revisions/controller-default-reviewed/r001/variant-revision.yaml"
        - "recipes/autoscaler/cluster-autoscaler/9.57.0/helm-pain-report.yaml"
        - "recipes/autoscaler/cluster-autoscaler/9.57.0/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/autoscaler/cluster-autoscaler/9.57.0/control-points.yaml"
        - "recipes/autoscaler/cluster-autoscaler/9.57.0/value-model.yaml"
        - "recipes/autoscaler/cluster-autoscaler/9.57.0/helm-plan.yaml"
        - "recipes/autoscaler/cluster-autoscaler/9.57.0/CATALOG.md"
        - "recipes/autoscaler/cluster-autoscaler/9.57.0/helm-pain-report.yaml"
    -
      chart: "autoscaler/vertical-pod-autoscaler"
      version: "0.9.0"
      variants:
        - "default"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        []
      scan:
        high: 0
        medium: 25
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
        - "webhook readiness/observation policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/autoscaler/vertical-pod-autoscaler/0.9.0/revisions/default/r001/variant-revision.yaml"
        - "recipes/autoscaler/vertical-pod-autoscaler/0.9.0/helm-pain-report.yaml"
        - "recipes/autoscaler/vertical-pod-autoscaler/0.9.0/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/autoscaler/vertical-pod-autoscaler/0.9.0/control-points.yaml"
        - "recipes/autoscaler/vertical-pod-autoscaler/0.9.0/value-model.yaml"
        - "recipes/autoscaler/vertical-pod-autoscaler/0.9.0/helm-plan.yaml"
        - "recipes/autoscaler/vertical-pod-autoscaler/0.9.0/CATALOG.md"
        - "recipes/autoscaler/vertical-pod-autoscaler/0.9.0/helm-pain-report.yaml"
    -
      chart: "cloudnative-pg/cloudnative-pg"
      version: "0.28.2"
      variants:
        - "default"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        - "generated-facts"
        - "tpl"
        - "crds"
        - "cluster-rbac"
        - "webhooks"
      scan:
        high: 0
        medium: 16
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
        - "webhook readiness/observation policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/cloudnative-pg/cloudnative-pg/0.28.2/revisions/default/r001/variant-revision.yaml"
        - "recipes/cloudnative-pg/cloudnative-pg/0.28.2/helm-pain-report.yaml"
        - "recipes/cloudnative-pg/cloudnative-pg/0.28.2/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/cloudnative-pg/cloudnative-pg/0.28.2/control-points.yaml"
        - "recipes/cloudnative-pg/cloudnative-pg/0.28.2/value-model.yaml"
        - "recipes/cloudnative-pg/cloudnative-pg/0.28.2/helm-plan.yaml"
        - "recipes/cloudnative-pg/cloudnative-pg/0.28.2/CATALOG.md"
        - "recipes/cloudnative-pg/cloudnative-pg/0.28.2/helm-pain-report.yaml"
    -
      chart: "elastic/eck-operator"
      version: "3.4.0"
      variants:
        - "default"
        - "ha"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        - "tpl"
        - "capabilities"
        - "cluster-rbac"
        - "webhooks"
        - "stateful-storage"
      scan:
        high: 0
        medium: 18
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
        - "webhook readiness/observation policy must be catalog-readable"
        - "stateful storage and rollback policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/elastic/eck-operator/3.4.0/revisions/default/r001/variant-revision.yaml"
        - "recipes/elastic/eck-operator/3.4.0/helm-pain-report.yaml"
        - "recipes/elastic/eck-operator/3.4.0/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/elastic/eck-operator/3.4.0/control-points.yaml"
        - "recipes/elastic/eck-operator/3.4.0/value-model.yaml"
        - "recipes/elastic/eck-operator/3.4.0/helm-plan.yaml"
        - "recipes/elastic/eck-operator/3.4.0/CATALOG.md"
        - "recipes/elastic/eck-operator/3.4.0/helm-pain-report.yaml"
    -
      chart: "elastic/logstash"
      version: "8.5.1"
      variants:
        - "default"
        - "ha"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        - "tpl"
        - "capabilities"
        - "stateful-storage"
      scan:
        high: 0
        medium: 0
        gateDecisions:
          - "allow"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "stateful storage and rollback policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/elastic/logstash/8.5.1/revisions/default/r001/variant-revision.yaml"
        - "recipes/elastic/logstash/8.5.1/helm-pain-report.yaml"
        - "recipes/elastic/logstash/8.5.1/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/elastic/logstash/8.5.1/control-points.yaml"
        - "recipes/elastic/logstash/8.5.1/value-model.yaml"
        - "recipes/elastic/logstash/8.5.1/helm-plan.yaml"
        - "recipes/elastic/logstash/8.5.1/CATALOG.md"
        - "recipes/elastic/logstash/8.5.1/helm-pain-report.yaml"
    -
      chart: "external-dns/external-dns"
      version: "1.21.1"
      variants:
        - "default"
        - "no-crds"
        - "dry-run-txt-registry"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        - "tpl"
        - "crds"
        - "cluster-rbac"
      scan:
        high: 0
        medium: 3
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/external-dns/external-dns/1.21.1/revisions/default/r001/variant-revision.yaml"
        - "recipes/external-dns/external-dns/1.21.1/helm-pain-report.yaml"
        - "recipes/external-dns/external-dns/1.21.1/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/external-dns/external-dns/1.21.1/control-points.yaml"
        - "recipes/external-dns/external-dns/1.21.1/value-model.yaml"
        - "recipes/external-dns/external-dns/1.21.1/helm-plan.yaml"
        - "recipes/external-dns/external-dns/1.21.1/CATALOG.md"
        - "recipes/external-dns/external-dns/1.21.1/helm-pain-report.yaml"
    -
      chart: "fairwinds-stable/vpa"
      version: "4.11.0"
      variants:
        - "default"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        - "lookup"
        - "tpl"
        - "capabilities"
        - "crds"
        - "cluster-rbac"
        - "webhooks"
      scan:
        high: 0
        medium: 21
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
        - "webhook readiness/observation policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/fairwinds-stable/vpa/4.11.0/revisions/default/r001/variant-revision.yaml"
        - "recipes/fairwinds-stable/vpa/4.11.0/helm-pain-report.yaml"
        - "recipes/fairwinds-stable/vpa/4.11.0/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/fairwinds-stable/vpa/4.11.0/control-points.yaml"
        - "recipes/fairwinds-stable/vpa/4.11.0/value-model.yaml"
        - "recipes/fairwinds-stable/vpa/4.11.0/helm-plan.yaml"
        - "recipes/fairwinds-stable/vpa/4.11.0/CATALOG.md"
        - "recipes/fairwinds-stable/vpa/4.11.0/helm-pain-report.yaml"
    -
      chart: "gatekeeper/gatekeeper"
      version: "3.22.2"
      variants:
        - "default"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        - "capabilities"
        - "hooks"
        - "crds"
        - "cluster-rbac"
        - "webhooks"
      scan:
        high: 0
        medium: 22
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
        - "webhook readiness/observation policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/gatekeeper/gatekeeper/3.22.2/revisions/default/r001/variant-revision.yaml"
        - "recipes/gatekeeper/gatekeeper/3.22.2/helm-pain-report.yaml"
        - "recipes/gatekeeper/gatekeeper/3.22.2/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/gatekeeper/gatekeeper/3.22.2/control-points.yaml"
        - "recipes/gatekeeper/gatekeeper/3.22.2/value-model.yaml"
        - "recipes/gatekeeper/gatekeeper/3.22.2/helm-plan.yaml"
        - "recipes/gatekeeper/gatekeeper/3.22.2/CATALOG.md"
        - "recipes/gatekeeper/gatekeeper/3.22.2/helm-pain-report.yaml"
    -
      chart: "grafana/alloy"
      version: "1.8.2"
      variants:
        - "default"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        - "tpl"
        - "capabilities"
        - "crds"
        - "cluster-rbac"
        - "stateful-storage"
      scan:
        high: 0
        medium: 3
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/grafana/alloy/1.8.2/revisions/default/r001/variant-revision.yaml"
        - "recipes/grafana/alloy/1.8.2/helm-pain-report.yaml"
        - "recipes/grafana/alloy/1.8.2/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/grafana/alloy/1.8.2/control-points.yaml"
        - "recipes/grafana/alloy/1.8.2/value-model.yaml"
        - "recipes/grafana/alloy/1.8.2/helm-plan.yaml"
        - "recipes/grafana/alloy/1.8.2/CATALOG.md"
        - "recipes/grafana/alloy/1.8.2/helm-pain-report.yaml"
    -
      chart: "grafana/rollout-operator"
      version: "0.49.0"
      variants:
        - "default"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        []
      scan:
        high: 0
        medium: 8
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
        - "webhook readiness/observation policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/grafana/rollout-operator/0.49.0/revisions/default/r001/variant-revision.yaml"
        - "recipes/grafana/rollout-operator/0.49.0/helm-pain-report.yaml"
        - "recipes/grafana/rollout-operator/0.49.0/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/grafana/rollout-operator/0.49.0/control-points.yaml"
        - "recipes/grafana/rollout-operator/0.49.0/value-model.yaml"
        - "recipes/grafana/rollout-operator/0.49.0/helm-plan.yaml"
        - "recipes/grafana/rollout-operator/0.49.0/CATALOG.md"
        - "recipes/grafana/rollout-operator/0.49.0/helm-pain-report.yaml"
    -
      chart: "jaegertracing/jaeger-operator"
      version: "2.57.0"
      variants:
        - "default"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        - "crds"
        - "webhooks"
      scan:
        high: 0
        medium: 3
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
        - "webhook readiness/observation policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/jaegertracing/jaeger-operator/2.57.0/revisions/default/r001/variant-revision.yaml"
        - "recipes/jaegertracing/jaeger-operator/2.57.0/helm-pain-report.yaml"
        - "recipes/jaegertracing/jaeger-operator/2.57.0/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/jaegertracing/jaeger-operator/2.57.0/control-points.yaml"
        - "recipes/jaegertracing/jaeger-operator/2.57.0/value-model.yaml"
        - "recipes/jaegertracing/jaeger-operator/2.57.0/helm-plan.yaml"
        - "recipes/jaegertracing/jaeger-operator/2.57.0/CATALOG.md"
        - "recipes/jaegertracing/jaeger-operator/2.57.0/helm-pain-report.yaml"
    -
      chart: "jetstack/trust-manager"
      version: "v0.22.1"
      variants:
        - "default"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        []
      scan:
        high: 0
        medium: 4
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
        - "webhook readiness/observation policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/jetstack/trust-manager/v0.22.1/revisions/default/r001/variant-revision.yaml"
        - "recipes/jetstack/trust-manager/v0.22.1/helm-pain-report.yaml"
        - "recipes/jetstack/trust-manager/v0.22.1/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/jetstack/trust-manager/v0.22.1/control-points.yaml"
        - "recipes/jetstack/trust-manager/v0.22.1/value-model.yaml"
        - "recipes/jetstack/trust-manager/v0.22.1/helm-plan.yaml"
        - "recipes/jetstack/trust-manager/v0.22.1/CATALOG.md"
        - "recipes/jetstack/trust-manager/v0.22.1/helm-pain-report.yaml"
    -
      chart: "kedacore/keda"
      version: "2.19.0"
      variants:
        - "default"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        - "tpl"
        - "capabilities"
        - "crds"
        - "cluster-rbac"
        - "webhooks"
      scan:
        high: 0
        medium: 17
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
        - "webhook readiness/observation policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/kedacore/keda/2.19.0/revisions/default/r001/variant-revision.yaml"
        - "recipes/kedacore/keda/2.19.0/helm-pain-report.yaml"
        - "recipes/kedacore/keda/2.19.0/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/kedacore/keda/2.19.0/control-points.yaml"
        - "recipes/kedacore/keda/2.19.0/value-model.yaml"
        - "recipes/kedacore/keda/2.19.0/helm-plan.yaml"
        - "recipes/kedacore/keda/2.19.0/CATALOG.md"
        - "recipes/kedacore/keda/2.19.0/helm-pain-report.yaml"
    -
      chart: "nats/nack"
      version: "0.34.0"
      variants:
        - "default"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        []
      scan:
        high: 0
        medium: 8
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/nats/nack/0.34.0/revisions/default/r001/variant-revision.yaml"
        - "recipes/nats/nack/0.34.0/helm-pain-report.yaml"
        - "recipes/nats/nack/0.34.0/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/nats/nack/0.34.0/control-points.yaml"
        - "recipes/nats/nack/0.34.0/value-model.yaml"
        - "recipes/nats/nack/0.34.0/helm-plan.yaml"
        - "recipes/nats/nack/0.34.0/CATALOG.md"
        - "recipes/nats/nack/0.34.0/helm-pain-report.yaml"
    -
      chart: "nats/nats"
      version: "2.14.0"
      variants:
        - "default"
        - "ha"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        - "tpl"
      scan:
        high: 0
        medium: 1
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "stateful storage and rollback policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/nats/nats/2.14.0/revisions/default/r001/variant-revision.yaml"
        - "recipes/nats/nats/2.14.0/helm-pain-report.yaml"
        - "recipes/nats/nats/2.14.0/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/nats/nats/2.14.0/control-points.yaml"
        - "recipes/nats/nats/2.14.0/value-model.yaml"
        - "recipes/nats/nats/2.14.0/helm-plan.yaml"
        - "recipes/nats/nats/2.14.0/CATALOG.md"
        - "recipes/nats/nats/2.14.0/helm-pain-report.yaml"
    -
      chart: "open-telemetry/opentelemetry-operator"
      version: "0.114.0"
      variants:
        - "default"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        []
      scan:
        high: 0
        medium: 9
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
        - "webhook readiness/observation policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/open-telemetry/opentelemetry-operator/0.114.0/revisions/default/r001/variant-revision.yaml"
        - "recipes/open-telemetry/opentelemetry-operator/0.114.0/helm-pain-report.yaml"
        - "recipes/open-telemetry/opentelemetry-operator/0.114.0/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/open-telemetry/opentelemetry-operator/0.114.0/control-points.yaml"
        - "recipes/open-telemetry/opentelemetry-operator/0.114.0/value-model.yaml"
        - "recipes/open-telemetry/opentelemetry-operator/0.114.0/helm-plan.yaml"
        - "recipes/open-telemetry/opentelemetry-operator/0.114.0/CATALOG.md"
        - "recipes/open-telemetry/opentelemetry-operator/0.114.0/helm-pain-report.yaml"
    -
      chart: "percona/pg-operator"
      version: "3.0.0"
      variants:
        - "default"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        []
      scan:
        high: 0
        medium: 8
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/percona/pg-operator/3.0.0/revisions/default/r001/variant-revision.yaml"
        - "recipes/percona/pg-operator/3.0.0/helm-pain-report.yaml"
        - "recipes/percona/pg-operator/3.0.0/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/percona/pg-operator/3.0.0/control-points.yaml"
        - "recipes/percona/pg-operator/3.0.0/value-model.yaml"
        - "recipes/percona/pg-operator/3.0.0/helm-plan.yaml"
        - "recipes/percona/pg-operator/3.0.0/CATALOG.md"
        - "recipes/percona/pg-operator/3.0.0/helm-pain-report.yaml"
    -
      chart: "percona/psmdb-operator"
      version: "1.22.0"
      variants:
        - "default"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        []
      scan:
        high: 0
        medium: 3
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/percona/psmdb-operator/1.22.0/revisions/default/r001/variant-revision.yaml"
        - "recipes/percona/psmdb-operator/1.22.0/helm-pain-report.yaml"
        - "recipes/percona/psmdb-operator/1.22.0/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/percona/psmdb-operator/1.22.0/control-points.yaml"
        - "recipes/percona/psmdb-operator/1.22.0/value-model.yaml"
        - "recipes/percona/psmdb-operator/1.22.0/helm-plan.yaml"
        - "recipes/percona/psmdb-operator/1.22.0/CATALOG.md"
        - "recipes/percona/psmdb-operator/1.22.0/helm-pain-report.yaml"
    -
      chart: "percona/pxc-operator"
      version: "1.19.1"
      variants:
        - "default"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        - "lookup"
        - "crds"
        - "cluster-rbac"
      scan:
        high: 0
        medium: 3
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/percona/pxc-operator/1.19.1/revisions/default/r001/variant-revision.yaml"
        - "recipes/percona/pxc-operator/1.19.1/helm-pain-report.yaml"
        - "recipes/percona/pxc-operator/1.19.1/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/percona/pxc-operator/1.19.1/control-points.yaml"
        - "recipes/percona/pxc-operator/1.19.1/value-model.yaml"
        - "recipes/percona/pxc-operator/1.19.1/helm-plan.yaml"
        - "recipes/percona/pxc-operator/1.19.1/CATALOG.md"
        - "recipes/percona/pxc-operator/1.19.1/helm-pain-report.yaml"
    -
      chart: "prometheus-community/alertmanager"
      version: "1.37.0"
      variants:
        - "default"
        - "ha"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        - "tpl"
        - "stateful-storage"
      scan:
        high: 0
        medium: 0
        gateDecisions:
          - "allow"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "stateful storage and rollback policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/prometheus-community/alertmanager/1.37.0/revisions/default/r001/variant-revision.yaml"
        - "recipes/prometheus-community/alertmanager/1.37.0/helm-pain-report.yaml"
        - "recipes/prometheus-community/alertmanager/1.37.0/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/prometheus-community/alertmanager/1.37.0/control-points.yaml"
        - "recipes/prometheus-community/alertmanager/1.37.0/value-model.yaml"
        - "recipes/prometheus-community/alertmanager/1.37.0/helm-plan.yaml"
        - "recipes/prometheus-community/alertmanager/1.37.0/CATALOG.md"
        - "recipes/prometheus-community/alertmanager/1.37.0/helm-pain-report.yaml"
    -
      chart: "prometheus-community/kube-state-metrics"
      version: "7.4.0"
      variants:
        - "default"
        - "cluster-metrics-readonly"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        - "generated-facts"
        - "tpl"
        - "capabilities"
        - "cluster-rbac"
        - "stateful-storage"
      scan:
        high: 0
        medium: 4
        gateDecisions:
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/prometheus-community/kube-state-metrics/7.4.0/revisions/cluster-metrics-readonly/r001/variant-revision.yaml"
        - "recipes/prometheus-community/kube-state-metrics/7.4.0/helm-pain-report.yaml"
        - "recipes/prometheus-community/kube-state-metrics/7.4.0/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/prometheus-community/kube-state-metrics/7.4.0/control-points.yaml"
        - "recipes/prometheus-community/kube-state-metrics/7.4.0/value-model.yaml"
        - "recipes/prometheus-community/kube-state-metrics/7.4.0/helm-plan.yaml"
        - "recipes/prometheus-community/kube-state-metrics/7.4.0/CATALOG.md"
        - "recipes/prometheus-community/kube-state-metrics/7.4.0/helm-pain-report.yaml"
    -
      chart: "prometheus-community/prometheus-blackbox-exporter"
      version: "11.10.0"
      variants:
        - "default"
        - "cluster-metrics-readonly"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        - "tpl"
        - "capabilities"
      scan:
        high: 0
        medium: 0
        gateDecisions:
          - "allow"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/prometheus-community/prometheus-blackbox-exporter/11.10.0/revisions/cluster-metrics-readonly/r001/variant-revision.yaml"
        - "recipes/prometheus-community/prometheus-blackbox-exporter/11.10.0/helm-pain-report.yaml"
        - "recipes/prometheus-community/prometheus-blackbox-exporter/11.10.0/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/prometheus-community/prometheus-blackbox-exporter/11.10.0/control-points.yaml"
        - "recipes/prometheus-community/prometheus-blackbox-exporter/11.10.0/value-model.yaml"
        - "recipes/prometheus-community/prometheus-blackbox-exporter/11.10.0/helm-plan.yaml"
        - "recipes/prometheus-community/prometheus-blackbox-exporter/11.10.0/CATALOG.md"
        - "recipes/prometheus-community/prometheus-blackbox-exporter/11.10.0/helm-pain-report.yaml"
    -
      chart: "prometheus-community/prometheus-node-exporter"
      version: "4.55.0"
      variants:
        - "default"
        - "cluster-metrics-readonly"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        - "generated-facts"
        - "tpl"
        - "capabilities"
        - "cluster-rbac"
      scan:
        high: 0
        medium: 2
        gateDecisions:
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/prometheus-community/prometheus-node-exporter/4.55.0/revisions/cluster-metrics-readonly/r001/variant-revision.yaml"
        - "recipes/prometheus-community/prometheus-node-exporter/4.55.0/helm-pain-report.yaml"
        - "recipes/prometheus-community/prometheus-node-exporter/4.55.0/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/prometheus-community/prometheus-node-exporter/4.55.0/control-points.yaml"
        - "recipes/prometheus-community/prometheus-node-exporter/4.55.0/value-model.yaml"
        - "recipes/prometheus-community/prometheus-node-exporter/4.55.0/helm-plan.yaml"
        - "recipes/prometheus-community/prometheus-node-exporter/4.55.0/CATALOG.md"
        - "recipes/prometheus-community/prometheus-node-exporter/4.55.0/helm-pain-report.yaml"
    -
      chart: "sealed-secrets/sealed-secrets"
      version: "2.18.6"
      variants:
        - "default"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        []
      scan:
        high: 0
        medium: 3
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/sealed-secrets/sealed-secrets/2.18.6/revisions/default/r001/variant-revision.yaml"
        - "recipes/sealed-secrets/sealed-secrets/2.18.6/helm-pain-report.yaml"
        - "recipes/sealed-secrets/sealed-secrets/2.18.6/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/sealed-secrets/sealed-secrets/2.18.6/control-points.yaml"
        - "recipes/sealed-secrets/sealed-secrets/2.18.6/value-model.yaml"
        - "recipes/sealed-secrets/sealed-secrets/2.18.6/helm-plan.yaml"
        - "recipes/sealed-secrets/sealed-secrets/2.18.6/CATALOG.md"
        - "recipes/sealed-secrets/sealed-secrets/2.18.6/helm-pain-report.yaml"
    -
      chart: "stakater/reloader"
      version: "2.2.12"
      variants:
        - "default"
        - "controller-default-reviewed"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        - "tpl"
        - "capabilities"
        - "cluster-rbac"
      scan:
        high: 0
        medium: 4
        gateDecisions:
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/stakater/reloader/2.2.12/revisions/controller-default-reviewed/r001/variant-revision.yaml"
        - "recipes/stakater/reloader/2.2.12/helm-pain-report.yaml"
        - "recipes/stakater/reloader/2.2.12/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/stakater/reloader/2.2.12/control-points.yaml"
        - "recipes/stakater/reloader/2.2.12/value-model.yaml"
        - "recipes/stakater/reloader/2.2.12/helm-plan.yaml"
        - "recipes/stakater/reloader/2.2.12/CATALOG.md"
        - "recipes/stakater/reloader/2.2.12/helm-pain-report.yaml"
    -
      chart: "strimzi/strimzi-kafka-operator"
      version: "1.0.0"
      variants:
        - "default"
        - "no-crds"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        - "tpl"
        - "capabilities"
        - "crds"
        - "cluster-rbac"
      scan:
        high: 0
        medium: 20
        gateDecisions:
          - "allow"
          - "warn"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "medium scan findings require review or waiver before production support"
        - "install gate warns"
        - "production support requires documented disposition or acceptance"
        - "CRD lifecycle policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/strimzi/strimzi-kafka-operator/1.0.0/revisions/default/r001/variant-revision.yaml"
        - "recipes/strimzi/strimzi-kafka-operator/1.0.0/helm-pain-report.yaml"
        - "recipes/strimzi/strimzi-kafka-operator/1.0.0/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/strimzi/strimzi-kafka-operator/1.0.0/control-points.yaml"
        - "recipes/strimzi/strimzi-kafka-operator/1.0.0/value-model.yaml"
        - "recipes/strimzi/strimzi-kafka-operator/1.0.0/helm-plan.yaml"
        - "recipes/strimzi/strimzi-kafka-operator/1.0.0/CATALOG.md"
        - "recipes/strimzi/strimzi-kafka-operator/1.0.0/helm-pain-report.yaml"
    -
      chart: "vm/victoria-metrics-single"
      version: "0.39.0"
      variants:
        - "default"
        - "default-reviewed"
      strongestEvidence: "live-helm-vs-confighub-parity"
      sourceFeatures:
        []
      scan:
        high: 0
        medium: 0
        gateDecisions:
          - "allow"
      currentState:
        supportLevel: "machine-proof-only"
        productionReadiness: "not-reviewed-for-production"
        catalogStatus: "proof-grade"
        supportedVariants:
          []
      gaps:
        - "human review needed: confirm variants are the obvious Helm-user paths"
        - "stateful storage and rollback policy must be catalog-readable"
      firstStep: "review the existing variants, then write production disposition or support-decision artifacts before changing catalog status"
      doneWhen: "a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral"
      evidence:
        - "recipes/vm/victoria-metrics-single/0.39.0/revisions/default/r001/variant-revision.yaml"
        - "recipes/vm/victoria-metrics-single/0.39.0/helm-pain-report.yaml"
        - "recipes/vm/victoria-metrics-single/0.39.0/control-points.yaml"
        - "data/outcome-coverage/feature-outcomes.csv"
        - "recipes/vm/victoria-metrics-single/0.39.0/control-points.yaml"
        - "recipes/vm/victoria-metrics-single/0.39.0/value-model.yaml"
        - "recipes/vm/victoria-metrics-single/0.39.0/helm-plan.yaml"
        - "recipes/vm/victoria-metrics-single/0.39.0/CATALOG.md"
        - "recipes/vm/victoria-metrics-single/0.39.0/helm-pain-report.yaml"
