This PR contains the following updates: | Package | Type | Update | Change | Pending | |---|---|---|---|---| | [helmfile/helmfile-action](https://github.com/helmfile/helmfile-action) | action | minor | `v2.3.1` → `v2.4.0` | `v2.4.1` | --- ### Release Notes <details> <summary>helmfile/helmfile-action (helmfile/helmfile-action)</summary> ### [`v2.4.0`](https://github.com/helmfile/helmfile-action/releases/tag/v2.4.0) [Compare Source](https://github.com/helmfile/helmfile-action/compare/v2.3.1...v2.4.0) ##### What's Changed - build(deps-dev): bump [@​types/node](https://github.com/types/node) from 25.3.3 to 25.3.5 by [@​dependabot](https://github.com/dependabot)\[bot] in [#​655](https://github.com/helmfile/helmfile-action/pull/655) - build(deps-dev): bump [@​eslint/eslintrc](https://github.com/eslint/eslintrc) from 3.3.4 to 3.3.5 by [@​dependabot](https://github.com/dependabot)\[bot] in [#​657](https://github.com/helmfile/helmfile-action/pull/657) - build(deps-dev): bump [@​eslint/js](https://github.com/eslint/js) from 9.39.3 to 9.39.4 by [@​dependabot](https://github.com/dependabot)\[bot] in [#​656](https://github.com/helmfile/helmfile-action/pull/656) - build(deps-dev): bump jest from 30.2.0 to 30.3.0 by [@​dependabot](https://github.com/dependabot)\[bot] in [#​659](https://github.com/helmfile/helmfile-action/pull/659) - Use node24 on runners by [@​Cardds](https://github.com/Cardds) in [#​662](https://github.com/helmfile/helmfile-action/pull/662) - build(deps-dev): bump [@​types/node](https://github.com/types/node) from 25.3.5 to 25.5.0 by [@​dependabot](https://github.com/dependabot)\[bot] in [#​660](https://github.com/helmfile/helmfile-action/pull/660) ##### New Contributors - [@​Cardds](https://github.com/Cardds) made their first contribution in [#​662](https://github.com/helmfile/helmfile-action/pull/662) **Full Changelog**: <https://github.com/helmfile/helmfile-action/compare/v2.3.1...v2.4.0> </details> --- ### Configuration 📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined). 🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR has been generated by [Renovate Bot](https://github.com/renovatebot/renovate). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0My41LjQiLCJ1cGRhdGVkSW5WZXIiOiI0My41LjQiLCJ0YXJnZXRCcmFuY2giOiJtYWluIiwibGFiZWxzIjpbImFjdGlvbiIsImRlcHMiXX0=--> Reviewed-on: #37 Reviewed-by: t.behrendt <t.behrendt@noreply.localhost> Co-authored-by: Renovate Bot <renovate@t00n.de> Co-committed-by: Renovate Bot <renovate@t00n.de>
Warning
Repo is currently not in use and not tested. We are waiting for proper shared workflow UI support in gitea. Otherwise errors are hard to identify. Follow https://github.com/go-gitea/gitea/issues/24604
Reusable CI Workflow for Kubernetes Services
This directory contains a reusable CI workflow that automatically detects and validates your Kubernetes services, whether they use Helm + Kubernetes or just Kubernetes manifests.
Features
- Automatic Detection: Automatically detects if your service uses Helm (helmfile.yaml) or just Kubernetes manifests
- Conditional Validation: Only runs Helm validation when helmfile.yaml exists
- Flexible Paths: Configurable paths for k8s directory and helmfile
- Comprehensive Validation: Validates both Kubernetes manifests and Helm charts
- CI Summary: Provides a clear summary of what was validated
Usage
Basic Usage (Recommended)
Simply call the workflow without any parameters - it will automatically detect your service type:
jobs:
ci:
uses: ./.gitea/workflows/ci.yaml
Advanced Usage with Custom Paths
If your service uses non-standard directory names:
jobs:
ci:
uses: ./.gitea/workflows/ci.yaml
with:
k8s_dir: "kubernetes/"
helmfile_path: "helm/helmfile.yaml"
Force Skip Helm Validation
If you want to skip Helm validation even when helmfile.yaml exists:
jobs:
ci:
uses: ./.gitea/workflows/ci.yaml
with:
skip_helm_validation: true
Input Parameters
| Parameter | Description | Default | Required |
|---|---|---|---|
k8s_dir |
Path to Kubernetes manifests directory | k8s/ |
No |
helmfile_path |
Path to helmfile.yaml | helmfile.yaml |
No |
skip_helm_validation |
Skip Helm validation even if helmfile exists | false |
No |
Directory Structure Requirements
For Kubernetes-only services:
your-service/
├── k8s/
│ ├── deployment.yaml
│ ├── service.yaml
│ └── ...
└── .gitea/workflows/your-workflow.yaml
For Helm + Kubernetes services:
your-service/
├── k8s/
│ ├── deployment.yaml
│ ├── service.yaml
│ └── ...
├── helmfile.yaml
└── .gitea/workflows/your-workflow.yaml
What Gets Validated
Always (if k8s/ directory exists):
- Kubernetes manifest validation using
kubectl --dry-run - Namespace extraction from repository name
- Basic Kubernetes syntax and schema validation
Conditionally (if helmfile.yaml exists and Helm validation not skipped):
- Helm chart validation using
helmfile diff - Kubernetes manifests in Helm context
- Helm-specific configurations and values
Example Workflows
See example-usage.yaml for complete examples of how to use this workflow in different scenarios.
Available Actions
Extract Chart Name from Repository Name
The extract-chart-name-from-repo-name action extracts the chart name from repository names following the helm-<chart-name> convention.
Usage
- name: Extract chart name
uses: ./.gitea/actions/extract-chart-name-from-repo-name
with:
repo: ${{ github.repository_name }} # e.g., "helm-my-service"
Inputs
| Parameter | Description | Required |
|---|---|---|
repo |
The full repository name (e.g., "helm-my-chart") | Yes |
Outputs
| Output | Description |
|---|---|
chart-name |
The extracted chart name (e.g., "my-chart" from "helm-my-chart") |
Example
For a repository named helm-user-service, this action will extract user-service as the chart name.
Dependencies
This workflow requires:
./.gitea/actions/extract-namespace-from-repo-nameaction./.gitea/actions/extract-chart-name-from-repo-nameactionKUBECONFIGsecret configured in your repository- Access to your Kubernetes cluster
Troubleshooting
Helm validation skipped unexpectedly
- Check if
helmfile.yamlexists in the expected location - Verify the
skip_helm_validationparameter is not set totrue - Ensure the file path is correct if using custom paths
Kubernetes validation skipped
- Verify the
k8s/directory (or custom path) exists - Check the directory contains valid Kubernetes manifests
Permission issues
- Ensure the
KUBECONFIGsecret is properly configured - Verify the workflow has access to your Kubernetes cluster