build(deps): update Helm v4 to 4.0.1 and helm-secrets to 4.7.4 (#2304)

* build(deps): update Helm v4 from 4.0.0 to 4.0.1

Update Helm v4 binary and Go library dependency to version 4.0.1.

Changes:
- Update helm.sh/helm/v4 Go module from v4.0.0 to v4.0.1
- Update Helm binary version in all Dockerfiles (alpine, ubuntu, debian)
- Update SHA256 checksums for linux/amd64 and linux/arm64
- Update CI workflow matrix to test against v4.0.1
- Update HelmRecommendedVersion constant in pkg/app/init.go
- Update test mocks to return v4.0.1 version string
- Update test plugin fixture version

Signed-off-by: Aditya Menon <amenon@canarytechnologies.com>

* build(deps): update helm-secrets from 4.7.0 to 4.7.4

Update helm-secrets plugin version across all configurations:
- Docker images (all 3 variants) - use ARG variable for version
- CI test matrix
- Integration test defaults
- Unit test fixtures and expectations
- HelmSecretsRecommendedVersion constant
- Dynamic plugin installation in exec.go

Also update plugin filename format from helm-secrets-*.tgz to
secrets-{version}.tgz to match the new release naming convention.

Update suppress-output-line-regex test expected output for Helm 4.0.1
which now suppresses Service diff after ipFamily normalization.

Signed-off-by: Aditya Menon <amenon@canarytechnologies.com>

---------

Signed-off-by: Aditya Menon <amenon@canarytechnologies.com>
This commit is contained in:
Aditya Menon
2025-11-28 08:43:54 +08:00
committed by GitHub
parent 9c70adc038
commit 534d0b618c
17 changed files with 68 additions and 128 deletions
+1 -1
View File
@@ -1,4 +1,4 @@
HELM_VERSION ?= v4.0.0
HELM_VERSION ?= v4.0.1
KUSTOMIZE_VERSION ?= v5.8.0
K8S_VERSION ?= v1.34.0
MINIKUBE_VERSION ?= v1.37.0
+12 -12
View File
@@ -37,7 +37,7 @@ jobs:
runs-on: ubuntu-latest
strategy:
matrix:
helm-version: [v3.18.6, v3.19.2, v4.0.0]
helm-version: [v3.18.6, v3.19.2, v4.0.1]
steps:
- uses: actions/checkout@v6
with:
@@ -67,16 +67,16 @@ jobs:
env:
HELMFILE_HELM4: ${{ startsWith(matrix.helm-version, 'v4') && '1' || '0' }}
- name: Archive built binaries
if: matrix.helm-version == 'v4.0.0'
if: matrix.helm-version == 'v4.0.1'
run: tar -cvf built-binaries.tar helmfile diff-yamls dyff
- uses: actions/upload-artifact@v5
if: matrix.helm-version == 'v4.0.0'
if: matrix.helm-version == 'v4.0.1'
with:
name: built-binaries-${{ github.run_id }}
path: built-binaries.tar
retention-days: 1
- name: Display built binaries
if: matrix.helm-version == 'v4.0.0'
if: matrix.helm-version == 'v4.0.1'
run: ls -l helmfile diff-yamls dyff
integration_tests:
@@ -95,35 +95,35 @@ jobs:
# and instruct users to upgrade helm and helm-secrets at once.
- helm-version: v3.18.6
kustomize-version: v5.8.0
plugin-secrets-version: 4.7.0
plugin-secrets-version: 4.7.4
plugin-diff-version: 3.14.1
extra-helmfile-flags: ''
# In case you need to test some optional helmfile features,
# enable it via extra-helmfile-flags below.
- helm-version: v3.18.6
kustomize-version: v5.8.0
plugin-secrets-version: 4.7.0
plugin-secrets-version: 4.7.4
plugin-diff-version: 3.14.1
extra-helmfile-flags: '--enable-live-output'
- helm-version: v3.19.2
kustomize-version: v5.8.0
plugin-secrets-version: 4.7.0
plugin-secrets-version: 4.7.4
plugin-diff-version: 3.14.1
extra-helmfile-flags: ''
- helm-version: v3.19.2
kustomize-version: v5.8.0
plugin-secrets-version: 4.7.0
plugin-secrets-version: 4.7.4
plugin-diff-version: 3.14.1
extra-helmfile-flags: '--enable-live-output'
# Helmfile now supports both Helm 3.x and Helm 4.x
- helm-version: v4.0.0
- helm-version: v4.0.1
kustomize-version: v5.8.0
plugin-secrets-version: 4.7.0
plugin-secrets-version: 4.7.4
plugin-diff-version: 3.14.1
extra-helmfile-flags: ''
- helm-version: v4.0.0
- helm-version: v4.0.1
kustomize-version: v5.8.0
plugin-secrets-version: 4.7.0
plugin-secrets-version: 4.7.4
plugin-diff-version: 3.14.1
extra-helmfile-flags: '--enable-live-output'
steps: