Skip to content

Story 16.5 — helm test smoke + comprehensive CI/CD - #10

Merged
fupelaqu merged 3 commits into
feature/16.4from
feature/16.5
Jun 23, 2026
Merged

Story 16.5 — helm test smoke + comprehensive CI/CD#10
fupelaqu merged 3 commits into
feature/16.4from
feature/16.5

Conversation

@fupelaqu

Copy link
Copy Markdown
Contributor

Adds the chart-repo CI workflow (.github/workflows/federation-helm.yml), the deploy-es.sh / install-sealed-secrets.sh scripts, and the helm test smoke Job (ADBC Flight SQL GetCatalogs; 1/3/3 per example).

CI redesign for a chart-only repo (no sbt build): the original sbt build-images job is replaced by an image-availability job that docker manifest inspects the PUBLIC DockerHub federation + sidecar images; live-install jobs docker pull + kind load those public tags and are gated on images_published — they skip-with-warning until the images are published (OQ-1). JFROG_USER/JFROG_PASSWORD and setup-java/setup-sbt removed. All static-validation gates (helm lint, helm template + kubeconform -strict, golden-file diff, zero kind: Secret, type = "duckdb-attach" discriminator) run unconditionally. Trigger paths updated to softclient4es-federation/**.

Static gates: helm lint OK (base + 3 examples), kubeconform OK, all 7 goldens match unchanged; workflow YAML parses (7 jobs).

Stacked on Story 16.4 (base: feature/16.4). Part of the Epic-16 stacked chart chain. Live kind installs pull public DockerHub images, gated until published (OQ-1).

Closes #9

🤖 Generated with Claude Code

Add the chart-repo CI workflow (.github/workflows/federation-helm.yml) plus the
deploy-es.sh / install-sealed-secrets.sh scripts, and the helm test smoke Job.

CI redesigned for the chart-only repo: the sbt build-images job is replaced by an
image-availability probe that docker-pulls the PUBLIC DockerHub federation + sidecar
images and kind-loads them; live-install jobs are gated on image publication and
skip-with-warning until published (OQ-1). JFROG creds + setup-java/setup-sbt removed.
All static-validation gates (lint, template+kubeconform, golden diff, zero kind:Secret,
duckdb-attach discriminator) run unconditionally. Trigger paths updated to
softclient4es-federation/**. Smoke = ADBC GetCatalogs (1/3/3 per example).

README CI section + Chart.yaml metadata rewritten to match (softclient4es.dev,
softclient4es-helm sources, public DockerHub images, private-repo references removed).

Closes #9

Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
fupelaqu and others added 2 commits June 23, 2026 10:48
Add the canonical operator guide (softclient4es-federation/docs/operator-guide.md)
that ships with the chart: prerequisites, single-cluster + multi-cluster paths,
configuration reference, secret-backend chooser, licensing quota, migration,
upgrades/rollback, troubleshooting + SRE incident-triage walkthrough. Authoritative
copy — mirror language and private-repo references removed; working-directory
convention uses softclient4es-federation/. Same Chart.yaml/README/CI rewrites as
prior stories (softclient4es.dev metadata, public DockerHub images, chart-only CI).

Closes #12
Refs #11

Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
@fupelaqu
fupelaqu marked this pull request as ready for review June 23, 2026 11:51
@fupelaqu
fupelaqu merged commit 9b18b41 into feature/16.4 Jun 23, 2026
7 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant