Top-100 Promotion Wave

A repository document, rendered for the site. View source markdown.

Generated at: 2026-07-30T12:38:02.000Z UTC · source: committed helm-expt evidence for this rendered repository document.

This generated wave is the first strict promotion-review slice from the top-100 coverage queue.

It selects proof-grade charts that already have:

Catalog support still requires a human promotion decision, production disposition, and a current support boundary for each row.

Summary

wave rows: 31
live Helm-vs-ConfigHub parity rows: 31
two-cluster kind parity rows: 0
missing item: scan and production disposition

Selected Rows

ChartVariantsScan/gateFeature focusFirst step
aqua/trivy-operator@0.32.1default;no-crdshigh=0, medium=19, gates=allow;warn-review the existing variants, then write production disposition or support-decision artifacts before changing catalog status
argo-cd/argo-events@2.4.21default;no-crdshigh=0, medium=5, gates=allow;warn-review the existing variants, then write production disposition or support-decision artifacts before changing catalog status
argo-cd/argo-rollouts@2.40.9default;no-crdshigh=0, medium=10, gates=allow;warn-review the existing variants, then write production disposition or support-decision artifacts before changing catalog status
argo-cd/argo-workflows@1.0.14default;controller-default-reviewed;minimal-crdshigh=0, medium=22, gates=allow;warn-review the existing variants, then write production disposition or support-decision artifacts before changing catalog status
autoscaler/cluster-autoscaler@9.57.0default;controller-default-reviewedhigh=1, medium=4, gates=warn-review the existing variants, then write production disposition or support-decision artifacts before changing catalog status
autoscaler/vertical-pod-autoscaler@0.9.0default;no-crdshigh=0, medium=25, gates=allow;warn-review the existing variants, then write production disposition or support-decision artifacts before changing catalog status
cloudnative-pg/cloudnative-pg@0.28.2default;no-crdshigh=0, medium=16, gates=allow;warngenerated-facts;tpl;crds;cluster-rbac;webhooksreview the existing variants, then write production disposition or support-decision artifacts before changing catalog status
elastic/eck-operator@3.4.0default;ha;no-crdshigh=0, medium=18, gates=allow;warntpl;capabilities;cluster-rbac;webhooks;stateful-storagereview the existing variants, then write production disposition or support-decision artifacts before changing catalog status
elastic/logstash@8.5.1default;hahigh=0, medium=0, gates=allowtpl;capabilities;stateful-storagereview the existing variants, then write production disposition or support-decision artifacts before changing catalog status
external-dns/external-dns@1.21.1default;no-crds;dry-run-txt-registryhigh=0, medium=3, gates=allow;warntpl;crds;cluster-rbacreview the existing variants, then write production disposition or support-decision artifacts before changing catalog status
fairwinds-stable/vpa@4.11.0default;no-crdshigh=0, medium=21, gates=allow;warnlookup;tpl;capabilities;crds;cluster-rbac;webhooksreview the existing variants, then write production disposition or support-decision artifacts before changing catalog status
gatekeeper/gatekeeper@3.22.2default;no-crdshigh=0, medium=22, gates=allow;warncapabilities;hooks;crds;cluster-rbac;webhooksreview the existing variants, then write production disposition or support-decision artifacts before changing catalog status
grafana/alloy@1.8.2default;no-crdshigh=0, medium=3, gates=allow;warntpl;capabilities;crds;cluster-rbac;stateful-storagereview the existing variants, then write production disposition or support-decision artifacts before changing catalog status
grafana/rollout-operator@0.49.0default;no-crdshigh=0, medium=8, gates=allow;warn-review the existing variants, then write production disposition or support-decision artifacts before changing catalog status
jaegertracing/jaeger-operator@2.57.0default;no-crdshigh=0, medium=3, gates=allow;warncrds;webhooksreview the existing variants, then write production disposition or support-decision artifacts before changing catalog status
jetstack/trust-manager@v0.22.1default;no-crdshigh=0, medium=4, gates=allow;warn-review the existing variants, then write production disposition or support-decision artifacts before changing catalog status
kedacore/keda@2.19.0default;no-crdshigh=0, medium=17, gates=allow;warntpl;capabilities;crds;cluster-rbac;webhooksreview the existing variants, then write production disposition or support-decision artifacts before changing catalog status
nats/nack@0.34.0default;no-crdshigh=0, medium=8, gates=allow;warn-review the existing variants, then write production disposition or support-decision artifacts before changing catalog status
nats/nats@2.14.0default;hahigh=0, medium=1, gates=allow;warntplreview the existing variants, then write production disposition or support-decision artifacts before changing catalog status
open-telemetry/opentelemetry-operator@0.114.0default;no-crdshigh=0, medium=9, gates=allow;warn-review the existing variants, then write production disposition or support-decision artifacts before changing catalog status
percona/pg-operator@3.0.0default;no-crdshigh=0, medium=8, gates=allow;warn-review the existing variants, then write production disposition or support-decision artifacts before changing catalog status
percona/psmdb-operator@1.22.0default;no-crdshigh=0, medium=3, gates=allow;warn-review the existing variants, then write production disposition or support-decision artifacts before changing catalog status
percona/pxc-operator@1.19.1default;no-crdshigh=0, medium=3, gates=allow;warnlookup;crds;cluster-rbacreview the existing variants, then write production disposition or support-decision artifacts before changing catalog status
prometheus-community/alertmanager@1.37.0default;hahigh=0, medium=0, gates=allowtpl;stateful-storagereview the existing variants, then write production disposition or support-decision artifacts before changing catalog status
prometheus-community/kube-state-metrics@7.4.0default;cluster-metrics-readonlyhigh=0, medium=4, gates=warngenerated-facts;tpl;capabilities;cluster-rbac;stateful-storagereview the existing variants, then write production disposition or support-decision artifacts before changing catalog status
prometheus-community/prometheus-blackbox-exporter@11.10.0default;cluster-metrics-readonlyhigh=0, medium=0, gates=allowtpl;capabilitiesreview the existing variants, then write production disposition or support-decision artifacts before changing catalog status
prometheus-community/prometheus-node-exporter@4.55.0default;cluster-metrics-readonlyhigh=0, medium=2, gates=warngenerated-facts;tpl;capabilities;cluster-rbacreview the existing variants, then write production disposition or support-decision artifacts before changing catalog status
sealed-secrets/sealed-secrets@2.18.6default;no-crdshigh=0, medium=3, gates=allow;warn-review the existing variants, then write production disposition or support-decision artifacts before changing catalog status
stakater/reloader@2.2.12default;controller-default-reviewedhigh=0, medium=4, gates=warntpl;capabilities;cluster-rbacreview the existing variants, then write production disposition or support-decision artifacts before changing catalog status
strimzi/strimzi-kafka-operator@1.0.0default;no-crdshigh=0, medium=20, gates=allow;warntpl;capabilities;crds;cluster-rbacreview the existing variants, then write production disposition or support-decision artifacts before changing catalog status
vm/victoria-metrics-single@0.39.0default;default-reviewedhigh=0, medium=0, gates=allow-review the existing variants, then write production disposition or support-decision artifacts before changing catalog status

Review Details

This table is the first promotion-review work packet. It shows what is known, what is missing, and what must be true before the chart can become a catalog offer.

ChartCurrent stateGaps to reviewDone when
aqua/trivy-operator@0.32.1support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
argo-cd/argo-events@2.4.21support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
argo-cd/argo-rollouts@2.40.9support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
argo-cd/argo-workflows@1.0.14support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptancea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
autoscaler/cluster-autoscaler@9.57.0support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>high scan findings require review before catalog support<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptancea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
autoscaler/vertical-pod-autoscaler@0.9.0support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
cloudnative-pg/cloudnative-pg@0.28.2support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
elastic/eck-operator@3.4.0support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readable<br>stateful storage and rollback policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
elastic/logstash@8.5.1support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>stateful storage and rollback policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
external-dns/external-dns@1.21.1support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
fairwinds-stable/vpa@4.11.0support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
gatekeeper/gatekeeper@3.22.2support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
grafana/alloy@1.8.2support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
grafana/rollout-operator@0.49.0support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
jaegertracing/jaeger-operator@2.57.0support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
jetstack/trust-manager@v0.22.1support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
kedacore/keda@2.19.0support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
nats/nack@0.34.0support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
nats/nats@2.14.0support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>stateful storage and rollback policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
open-telemetry/opentelemetry-operator@0.114.0support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readable<br>webhook readiness/observation policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
percona/pg-operator@3.0.0support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
percona/psmdb-operator@1.22.0support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
percona/pxc-operator@1.19.1support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
prometheus-community/alertmanager@1.37.0support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>stateful storage and rollback policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
prometheus-community/kube-state-metrics@7.4.0support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptancea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
prometheus-community/prometheus-blackbox-exporter@11.10.0support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user pathsa selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
prometheus-community/prometheus-node-exporter@4.55.0support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptancea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
sealed-secrets/sealed-secrets@2.18.6support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
stakater/reloader@2.2.12support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptancea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
strimzi/strimzi-kafka-operator@1.0.0support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>medium scan findings require review or waiver before production support<br>install gate warns<br>production support requires documented disposition or acceptance<br>CRD lifecycle policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral
vm/victoria-metrics-single@0.39.0support=machine-proof-only; production=not-reviewed-for-production; catalog=proof-gradehuman review needed: confirm variants are the obvious Helm-user paths<br>stateful storage and rollback policy must be catalog-readablea selected variant has explicit scan/gate disposition, production support boundary, and live evidence or routed deferral

Feature Mix

FeatureRows
tpl14
cluster-rbac12
capabilities11
crds9
webhooks6
stateful-storage5
generated-facts3
lookup2
hooks1

Promotion Review Checklist

For each row:

  1. Pick the variant that is a real user path, not merely a rendered baseline.
  2. Review the scan and install-gate warnings for that variant.
  3. Record accepted, patched, deferred, or blocked dispositions.
  4. Name the support scope and delivery path.
  5. Link live evidence or write a routed deferral if live proof is not applicable yet.
  6. Only then update catalog support status.

Files

FileUse
wave.csvSpreadsheet queue for the selected promotion-review rows.
wave.yamlMachine-readable wave input for future tooling.
fast-track.mdLow-residue promotion-review subset with clean scan/gate state.
fast-track.csvSpreadsheet form of the fast-track subset.
review-packets/README.mdOne review packet per selected promotion-wave chart.
work-orders.mdAssignable chart-by-chart review tasks for the first promotion wave.
work-orders.csvSpreadsheet form of the promotion review work orders.
../top100-coverage/work-queue.mdFull strict top-100 work queue.
../catalog-promotion-review/summary.mdMachine proof and product gaps for all 100 recipes.

Regenerate:

npm run top100:promotion-wave
npm run top100:promotion-wave:verify