apiVersion: helm-expt.confighub.com/v1alpha1
kind: CatalogStatus
metadata:
  name: "prometheus-community-kube-prometheus-stack-85.3.3"
spec:
  chart: "prometheus-community/kube-prometheus-stack"
  version: "85.3.3"
  status: "catalog-supported"
  supportLevel: "supported-for-declared-scopes"
  supportedScopes:
    - local-test
  productionReadiness: "production-review-ready"
  supportedVariants:
    - "default"
    - "no-crds"
  candidateVariants:
    []
  deferredVariants: []
  review:
    lastReviewed: "2026-05-27"
    humanReviewRequired: false
    productReviewRequired: false
  notes:
    - "Supported for local-test and proof-demo usage through real cub installer and ConfigHub receipts."
    - "default preserves the normal kube-prometheus-stack install shape."
    - "no-crds is supported when CRD lifecycle is owned outside this package."
    - "default is the stronger first production-review base because it includes CRDs and has local observation evidence."
    - "no-crds is supported only when compatible Prometheus Operator CRDs are already staged and observed in the target cluster."
    - "CRD ownership, cluster RBAC, generated Grafana credential binding, raw monitoring extension slots, webhook readiness, and scan/gate warnings are recorded as production review input."
    - "Production recommendation remains a separate decision; kube-prometheus-stack needs target CRD ownership, webhook TLS lifecycle, resource/security posture, scrape scope, and fresh runtime checks before support."
    - "The committed ConfigHub apply and OCI/Argo live rows demonstrate semantic parity but remain runtime-watch until Prometheus Operator readiness is resolved for the target."
