Update images digests - #21551
Conversation
Co-authored-by: Ona <no-reply@ona.com>
There was a problem hiding this comment.
Reviewed the changes. Implementation looks solid: good code quality, appropriate test coverage, and follows established patterns. No significant concerns.
This is a mechanical image-digest bump — a single chainguard/wolfi-base digest updated consistently across 26 Dockerfile occurrences (including commented debug lines and multi-stage build aliases), one chainguard/helm digest bump, and two internal Go digest constants (chainguard/redis and oliver006/redis_exporter) in install/installer/pkg/components/redis/constants.go. The image:tag@sha256:digest pinning convention is preserved everywhere, with no stale or mixed pins.
Documentation review ran as a docs-drift check (code-only PR): no documentation changes are required, since the images keep the same repositories and tags and these digests have no documentation surface.
Low-risk determination: Approved
This change meets all low-risk criteria under Ona's change management policy. A human engineer is still responsible for the merge, which constitutes the traceable approval for SOC 2 purposes.
- Size: 64 changed lines, well under the 1,000-line threshold ✓
- Protobuf: no protobuf definitions added or modified ✓
- Database migrations: no migration files added or modified ✓
- Infrastructure/CI: no CI or platform configuration changed; only component build Dockerfiles and an internal Go constants file ✓
- Auth and authorisation: no auth, RBAC, policy, session, or access-control logic affected ✓
- Audit logging and monitoring: no logging, metrics, tracing, or observability configuration affected ✓
Update images digests using the latest version available for image/s
How to test
Preview status
Gitpod was successfully deployed to your preview environment.
Preview Environment / Integration Tests
If enabled this will create the environment on GCE infra
Saves cost. Untick this only if you're really sure you need a non-preemtible machine.
Valid options are
all,workspace,webapp,ide,jetbrains,vscode,ssh. If enabled,with-previewandwith-large-vmwill be enabled.