Skip to content

Update images digests - #21551

Merged
kylos101 merged 1 commit into
mainfrom
update-digests-20260728
Jul 28, 2026
Merged

Update images digests#21551
kylos101 merged 1 commit into
mainfrom
update-digests-20260728

Conversation

@kylos101

@kylos101 kylos101 commented Jul 28, 2026

Copy link
Copy Markdown
Contributor

Update images digests using the latest version available for image/s

How to test

  • Start a workspace in the preview environment and verify that it functions properly.

Preview status

Gitpod was successfully deployed to your preview environment.

Preview Environment / Integration Tests
  • /werft with-preview
  • /werft with-gce-vm
    If enabled this will create the environment on GCE infra
  • /werft preemptible
    Saves cost. Untick this only if you're really sure you need a non-preemtible machine.
  • with-integration-tests=ssh
    Valid options are all, workspace, webapp, ide, jetbrains, vscode, ssh. If enabled, with-preview and with-large-vm will be enabled.

Co-authored-by: Ona <no-reply@ona.com>
@kylos101
kylos101 enabled auto-merge (squash) July 28, 2026 09:20

@ona-integrations ona-integrations Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Reviewed the changes. Implementation looks solid: good code quality, appropriate test coverage, and follows established patterns. No significant concerns.

This is a mechanical image-digest bump — a single chainguard/wolfi-base digest updated consistently across 26 Dockerfile occurrences (including commented debug lines and multi-stage build aliases), one chainguard/helm digest bump, and two internal Go digest constants (chainguard/redis and oliver006/redis_exporter) in install/installer/pkg/components/redis/constants.go. The image:tag@sha256:digest pinning convention is preserved everywhere, with no stale or mixed pins.

Documentation review ran as a docs-drift check (code-only PR): no documentation changes are required, since the images keep the same repositories and tags and these digests have no documentation surface.

Low-risk determination: Approved
This change meets all low-risk criteria under Ona's change management policy. A human engineer is still responsible for the merge, which constitutes the traceable approval for SOC 2 purposes.

  • Size: 64 changed lines, well under the 1,000-line threshold ✓
  • Protobuf: no protobuf definitions added or modified ✓
  • Database migrations: no migration files added or modified ✓
  • Infrastructure/CI: no CI or platform configuration changed; only component build Dockerfiles and an internal Go constants file ✓
  • Auth and authorisation: no auth, RBAC, policy, session, or access-control logic affected ✓
  • Audit logging and monitoring: no logging, metrics, tracing, or observability configuration affected ✓

@kylos101
kylos101 deployed to branch-build July 28, 2026 10:46 — with GitHub Actions Active
@kylos101
kylos101 merged commit 6696bca into main Jul 28, 2026
14 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants