This generated wave is the first strict promotion-review slice from the top-100 coverage queue.
It selects proof-grade charts that already have:
- multiple named variants;
- strict parity evidence: two-cluster kind parity or live Helm-vs-ConfigHub parity;
- no named limitation blocking review.
Catalog support still requires a human promotion decision, production disposition, and a current support boundary for each row.
Summary
wave rows: 31
live Helm-vs-ConfigHub parity rows: 31
two-cluster kind parity rows: 0
missing item: scan and production disposition
Selected Rows
| Chart | Variants | Scan/gate | Feature focus | First step |
|---|---|---|---|---|
aqua/trivy-operator@0.32.1 | default;no-crds | high=0, medium=19, gates=allow;warn | - | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
argo-cd/argo-events@2.4.21 | default;no-crds | high=0, medium=5, gates=allow;warn | - | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
argo-cd/argo-rollouts@2.40.9 | default;no-crds | high=0, medium=10, gates=allow;warn | - | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
argo-cd/argo-workflows@1.0.14 | default;controller-default-reviewed;minimal-crds | high=0, medium=22, gates=allow;warn | - | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
autoscaler/cluster-autoscaler@9.57.0 | default;controller-default-reviewed | high=1, medium=4, gates=warn | - | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
autoscaler/vertical-pod-autoscaler@0.9.0 | default;no-crds | high=0, medium=25, gates=allow;warn | - | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
cloudnative-pg/cloudnative-pg@0.28.2 | default;no-crds | high=0, medium=16, gates=allow;warn | generated-facts;tpl;crds;cluster-rbac;webhooks | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
elastic/eck-operator@3.4.0 | default;ha;no-crds | high=0, medium=18, gates=allow;warn | tpl;capabilities;cluster-rbac;webhooks;stateful-storage | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
elastic/logstash@8.5.1 | default;ha | high=0, medium=0, gates=allow | tpl;capabilities;stateful-storage | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
external-dns/external-dns@1.21.1 | default;no-crds;dry-run-txt-registry | high=0, medium=3, gates=allow;warn | tpl;crds;cluster-rbac | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
fairwinds-stable/vpa@4.11.0 | default;no-crds | high=0, medium=21, gates=allow;warn | lookup;tpl;capabilities;crds;cluster-rbac;webhooks | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
gatekeeper/gatekeeper@3.22.2 | default;no-crds | high=0, medium=22, gates=allow;warn | capabilities;hooks;crds;cluster-rbac;webhooks | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
grafana/alloy@1.8.2 | default;no-crds | high=0, medium=3, gates=allow;warn | tpl;capabilities;crds;cluster-rbac;stateful-storage | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
grafana/rollout-operator@0.49.0 | default;no-crds | high=0, medium=8, gates=allow;warn | - | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
jaegertracing/jaeger-operator@2.57.0 | default;no-crds | high=0, medium=3, gates=allow;warn | crds;webhooks | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
jetstack/trust-manager@v0.22.1 | default;no-crds | high=0, medium=4, gates=allow;warn | - | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
kedacore/keda@2.19.0 | default;no-crds | high=0, medium=17, gates=allow;warn | tpl;capabilities;crds;cluster-rbac;webhooks | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
nats/nack@0.34.0 | default;no-crds | high=0, medium=8, gates=allow;warn | - | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
nats/nats@2.14.0 | default;ha | high=0, medium=1, gates=allow;warn | tpl | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
open-telemetry/opentelemetry-operator@0.114.0 | default;no-crds | high=0, medium=9, gates=allow;warn | - | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
percona/pg-operator@3.0.0 | default;no-crds | high=0, medium=8, gates=allow;warn | - | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
percona/psmdb-operator@1.22.0 | default;no-crds | high=0, medium=3, gates=allow;warn | - | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
percona/pxc-operator@1.19.1 | default;no-crds | high=0, medium=3, gates=allow;warn | lookup;crds;cluster-rbac | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
prometheus-community/alertmanager@1.37.0 | default;ha | high=0, medium=0, gates=allow | tpl;stateful-storage | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
prometheus-community/kube-state-metrics@7.4.0 | default;cluster-metrics-readonly | high=0, medium=4, gates=warn | generated-facts;tpl;capabilities;cluster-rbac;stateful-storage | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
prometheus-community/prometheus-blackbox-exporter@11.10.0 | default;cluster-metrics-readonly | high=0, medium=0, gates=allow | tpl;capabilities | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
prometheus-community/prometheus-node-exporter@4.55.0 | default;cluster-metrics-readonly | high=0, medium=2, gates=warn | generated-facts;tpl;capabilities;cluster-rbac | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
sealed-secrets/sealed-secrets@2.18.6 | default;no-crds | high=0, medium=3, gates=allow;warn | - | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
stakater/reloader@2.2.12 | default;controller-default-reviewed | high=0, medium=4, gates=warn | tpl;capabilities;cluster-rbac | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
strimzi/strimzi-kafka-operator@1.0.0 | default;no-crds | high=0, medium=20, gates=allow;warn | tpl;capabilities;crds;cluster-rbac | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
vm/victoria-metrics-single@0.39.0 | default;default-reviewed | high=0, medium=0, gates=allow | - | review the existing variants, then write production disposition or support-decision artifacts before changing catalog status |
Review Details
This table is the first promotion-review work packet. It shows what is known, what is missing, and what must be true before the chart can become a catalog offer.
| Chart | Current state | Gaps to review | Done when |
|---|---|---|---|
aqua/trivy-operator@0.32.1 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
argo-cd/argo-events@2.4.21 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
argo-cd/argo-rollouts@2.40.9 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
argo-cd/argo-workflows@1.0.14 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
autoscaler/cluster-autoscaler@9.57.0 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>high scan findings require review before catalog support<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
autoscaler/vertical-pod-autoscaler@0.9.0 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
cloudnative-pg/cloudnative-pg@0.28.2 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
elastic/eck-operator@3.4.0 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readable<br>stateful storage and rollback policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
elastic/logstash@8.5.1 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>stateful storage and rollback policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
external-dns/external-dns@1.21.1 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
fairwinds-stable/vpa@4.11.0 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
gatekeeper/gatekeeper@3.22.2 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
grafana/alloy@1.8.2 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
grafana/rollout-operator@0.49.0 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
jaegertracing/jaeger-operator@2.57.0 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
jetstack/trust-manager@v0.22.1 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
kedacore/keda@2.19.0 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
nats/nack@0.34.0 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
nats/nats@2.14.0 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>stateful storage and rollback policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
open-telemetry/opentelemetry-operator@0.114.0 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
percona/pg-operator@3.0.0 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
percona/psmdb-operator@1.22.0 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
percona/pxc-operator@1.19.1 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
prometheus-community/alertmanager@1.37.0 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>stateful storage and rollback policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
prometheus-community/kube-state-metrics@7.4.0 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
prometheus-community/prometheus-blackbox-exporter@11.10.0 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
prometheus-community/prometheus-node-exporter@4.55.0 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
sealed-secrets/sealed-secrets@2.18.6 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
stakater/reloader@2.2.12 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
strimzi/strimzi-kafka-operator@1.0.0 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
vm/victoria-metrics-single@0.39.0 | support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-grade | human review needed: confirm variants are the obvious Helm-user paths<br>stateful storage and rollback policy must be catalog-readable | a selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral |
Feature Mix
| Feature | Rows |
|---|---|
tpl | 14 |
cluster-rbac | 12 |
capabilities | 11 |
crds | 9 |
webhooks | 6 |
stateful-storage | 5 |
generated-facts | 3 |
lookup | 2 |
hooks | 1 |
Promotion Review Checklist
For each row:
- Pick the variant that is a real user path, not merely a rendered baseline.
- Review the scan and install-gate warnings for that variant.
- Record accepted, patched, deferred, or blocked dispositions.
- Name the support scope and delivery path.
- Link live evidence or write a routed deferral if live proof is not applicable yet.
- Only then update catalog support status.
Files
| File | Use |
|---|---|
| wave.csv | Spreadsheet queue for the selected promotion-review rows. |
| wave.yaml | Machine-readable wave input for future tooling. |
| fast-track.md | Low-residue promotion-review subset with clean scan/gate state. |
| fast-track.csv | Spreadsheet form of the fast-track subset. |
| review-packets/README.md | One review packet per selected promotion-wave chart. |
| work-orders.md | Assignable chart-by-chart review tasks for the first promotion wave. |
| work-orders.csv | Spreadsheet form of the promotion review work orders. |
| ../top100-coverage/work-queue.md | Full strict top-100 work queue. |
| ../catalog-promotion-review/summary.md | Machine proof and product gaps for all 100 recipes. |
Regenerate:
npm run top100:promotion-wave
npm run top100:promotion-wave:verify