Latest Top-20 Refresh

A repository document, rendered for the site. View source markdown.

Generated at: 2026-07-30T12:38:02.000Z UTC · source: committed helm-expt evidence for this rendered repository document.

Generated: 2026-06-10T13:58:40.027Z

Helm client: v4.1.4+g05fa379

This snapshot compares the currently supported top-20 catalog proofs with the latest versions available from the configured Helm repositories.

Result

Current chart proofs: 13 / 20
Update candidates: 7 / 20

Update Candidates

RankChartCurrent proofLatest chartNext action
1argo-cd/argo-cd9.5.159.5.17write target-scoped replacement decision before changing catalog support
2bitnami/mongodb19.0.719.1.0refresh candidate from retained 19.0.9 proof to latest 19.1.0 before replacement decision
4bitnami/nginx24.0.225.0.0refresh candidate from retained 24.0.4 proof to latest 25.0.0 before replacement decision
5bitnami/postgresql18.6.718.7.0refresh candidate from retained 18.6.10 proof to latest 18.7.0 before replacement decision
7bitnami/redis25.5.327.0.0promote candidate root paths and complete remaining proof lanes before replacement decision
18prometheus-community/kube-prometheus-stack85.3.386.1.0write target-scoped replacement decision before changing catalog support
19prometheus-community/prometheus29.8.029.9.0write target-scoped replacement decision before changing catalog support

Doctrine

An update candidate is not automatically a supported catalog entry. It becomes supported only after the new chart version has its own recipe/package path, source and dependency locks, supported variants, rendered objects, Helm-equivalence receipt, scan/gate receipts, ConfigHub proof receipts, and live e2e evidence.

No public catalog row should silently roll forward from the current proof version to the latest chart version.

Candidate Proofs

Some retained update candidates have proof-complete root paths under:

recipes/
packages/

The retained candidate source artifacts remain under:

data/latest-top20-refresh/candidates/

Verify them with:

npm run top20:latest-candidates:verify
npm run top20:latest-promote-root-paths:verify
npm run top20:latest-promotion-readiness:verify
npm run top20:latest-replacement-decisions:verify

Some retained candidates may already be behind the latest upstream chart version. For those rows, refresh the candidate before making a replacement decision. Some retained candidates may have render/package proof but no root paths or live lanes yet. For those rows, promote the candidate root paths and complete the remaining proof lanes before making a replacement decision. For rows where the retained candidate still matches the latest upstream version and has proof-complete root paths, the proof shows that the candidate has its own recipe/package paths, rendered objects, Helm-equivalence evidence, ConfigHub proof receipts, live e2e receipts, live parity receipts, production-disposition boundary, catalog status, and top-100/top-500 refresh coverage.

They are still not catalog-supported replacements. The next step is a target-scoped replacement decision that chooses whether to replace, defer, or keep both versions.

The replacement-decision queue records that final review surface.

update rows: 7
replacement-decision-ready candidates: 3
retained candidates superseded by newer upstream versions: 3
retained render/package candidates needing root/live work: 1
update rows without a retained candidate: 0

Next Work

  1. Write or accept a target-scoped replacement decision for each candidate.
  2. If replacement is accepted, update the production support decision and catalog-supported state for that target scope.
  3. Keep the previous chart version available for legacy patch and rollback review even after a newer version is accepted.