Hard Proof Gaps Shortlist

A repository document, rendered for the site. View source markdown.

Generated at: 2026-07-30T12:38:02.000Z UTC · source: committed helm-expt evidence for this rendered repository document.

This generated shortlist joins the P0 source-quirk queue with remote dependency closure and hook route candidate data. It is the short assignment surface for the top-100 rows most likely to damage trust if the project overclaims them.

It does not say these charts are unsupported. It says the named gap must be modeled, routed, observed, or explicitly refused before stronger catalog or production claims are made.

Summary

shortlist rows: 25
catalog-supported rows on shortlist: 3
rows with remote dependency work: 20
rows with hook route candidates: 9

Main Gap Types

GapRows
create-recipe-import-candidate13
apiservice4
dependency-range-policy4
semver-compare4

First Rows

RankChartMain gapWhy it mattersFirst action
1k8s-dashboard/kubernetes-dashboard@7.14.0apiserviceAPIService aggregation can pass render parity while failing at API aggregation or TLS/runtime readiness.create recipe/import candidate and write dependency-lock.yaml before treating the chart as a catalog offer
2gitlab/gitlab@10.0.0create-recipe-import-candidatesource-only charts have no maintained recipe path, so catalog claims would be disconnected from proof artifacts.create recipe/import candidate and write dependency-lock.yaml before treating the chart as a catalog offer
3datadog/datadog@3.214.0apiserviceAPIService aggregation can pass render parity while failing at API aggregation or TLS/runtime readiness.create recipe/import candidate and write dependency-lock.yaml before treating the chart as a catalog offer
4kong/kong@3.2.0create-recipe-import-candidatesource-only charts have no maintained recipe path, so catalog claims would be disconnected from proof artifacts.create recipe/import candidate and write dependency-lock.yaml before treating the chart as a catalog offer
5bitnami/kafka@32.4.3create-recipe-import-candidatesource-only charts have no maintained recipe path, so catalog claims would be disconnected from proof artifacts.create recipe/import candidate and write dependency-lock.yaml before treating the chart as a catalog offer
6bitnami/minio@17.0.21create-recipe-import-candidatesource-only charts have no maintained recipe path, so catalog claims would be disconnected from proof artifacts.create recipe/import candidate and write dependency-lock.yaml before treating the chart as a catalog offer
7bitnami/thanos@17.3.1create-recipe-import-candidatesource-only charts have no maintained recipe path, so catalog claims would be disconnected from proof artifacts.create recipe/import candidate and write dependency-lock.yaml before treating the chart as a catalog offer
8prometheus-community/kube-prometheus-stack@85.3.0semver-compareversion-conditional templates can change rendered objects under a different Kubernetes, chart, or dependency version.promote version-conditional rendering into chart facts and variant-path coverage
9grafana/loki@7.0.0semver-compareversion-conditional templates can change rendered objects under a different Kubernetes, chart, or dependency version.promote version-conditional rendering into chart facts and variant-path coverage
10apache-airflow/airflow@1.21.0create-recipe-import-candidatesource-only charts have no maintained recipe path, so catalog claims would be disconnected from proof artifacts.create recipe/import candidate and write dependency-lock.yaml before treating the chart as a catalog offer
11kyverno/kyverno@3.8.1dependency-range-policynon-exact dependency ranges can silently change the rendered dependency closure during refresh.record dependency range policy and refresh-survival check for non-exact dependency constraints
12bitnami/keycloak@25.2.0create-recipe-import-candidatesource-only charts have no maintained recipe path, so catalog claims would be disconnected from proof artifacts.create recipe/import candidate and write dependency-lock.yaml before treating the chart as a catalog offer

Catalog Rows On The Shortlist

These rows are visible because they are already public catalog entries or have strong proof surfaces. They should be kept honest first.

ChartMain gapNext artifact
prometheus-community/kube-prometheus-stack@85.3.0semver-comparechart facts axis plus capability/version matrix row
grafana/loki@7.0.0semver-comparechart facts axis plus capability/version matrix row
metrics-server/metrics-server@3.13.0apiservicechart facts axis plus lifecycle observation receipt

How To Use This

  1. Pick a row from the top of the table.
  2. Open the source evidence and required artifact.
  3. Decide whether the gap becomes a modeled fact, a route receipt, a runtime observation, a better base variant, or an explicit blocker.
  4. Regenerate the owning queue before changing any support or catalog claim.

Source Tables

SourceUse
quirk-work-queue/top100-queue.csvP0 source-quirk queue and first action.
remote-dependency-closure/top100.csvDependency closure and refresh-survival workstreams.
hook-route-candidates/candidates.csvCandidate routes for hook-bearing source charts not yet in the maintained queue.
top100-coverage/work-queue.csvCurrent top-100 promotion, variant, and limitation queues.