<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Fleet Management - Giant Swarm Changes and Releases</title><link>https://docs.giantswarm.io/changes/fleet-management/</link><description>Recent changes and releases in the Fleet Management category</description><language>en</language><lastBuildDate>Tue, 16 Jun 2026 15:30:01 +0000</lastBuildDate><atom:link href="https://docs.giantswarm.io/changes/fleet-management/index.xml" rel="self" type="application/rss+xml"/><item><title>zot release v2.8.0</title><link>https://docs.giantswarm.io/changes/fleet-management/zot/v2.8.0/</link><pubDate>Tue, 16 Jun 2026 15:30:01 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/zot/v2.8.0/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Update to upstream Helm Chart &lt;code&gt;v0.1.117&lt;/code&gt; and Zot &lt;code&gt;v2.1.17&lt;/code&gt;.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>keda-app release v5.0.4</title><link>https://docs.giantswarm.io/changes/fleet-management/keda-app/v5.0.4/</link><pubDate>Mon, 15 Jun 2026 22:28:30 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/keda-app/v5.0.4/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Fix ABS config to not override AppVersion in Chart.yaml&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>keda-app release v5.0.3</title><link>https://docs.giantswarm.io/changes/fleet-management/keda-app/v5.0.3/</link><pubDate>Mon, 15 Jun 2026 16:02:51 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/keda-app/v5.0.3/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Use Giant Swarm hosted app icon&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v5.6.4</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.6.4/</link><pubDate>Mon, 01 Jun 2026 11:04:04 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.6.4/</guid><description>&lt;h3 id="added"&gt;Added&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;&lt;code&gt;login&lt;/code&gt;: new &lt;code&gt;--oidc-scope&lt;/code&gt; flag (repeatable, comma-separated) appends extra scopes to the direct workload-cluster OIDC request. Use &lt;code&gt;--oidc-scope=groups&lt;/code&gt; with Okta to receive group memberships in the ID token when the workload cluster&amp;rsquo;s structured auth is configured with &lt;code&gt;groupsClaim&lt;/code&gt;.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>capa-karpenter-taint-remover release v1.1.0</title><link>https://docs.giantswarm.io/changes/fleet-management/capa-karpenter-taint-remover/v1.1.0/</link><pubDate>Fri, 29 May 2026 09:05:32 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/capa-karpenter-taint-remover/v1.1.0/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Build and publish a multi-arch (linux/amd64 + linux/arm64) container image.&lt;/li&gt;
&lt;li&gt;Add &lt;code&gt;io.giantswarm.application.audience: all&lt;/code&gt; annotation to publish the app to the customer Backstage catalog.&lt;/li&gt;
&lt;li&gt;Migrate chart metadata annotations to &lt;code&gt;io.giantswarm.application.*&lt;/code&gt; format.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>aws-load-balancer-controller-app release v5.2.0</title><link>https://docs.giantswarm.io/changes/fleet-management/aws-load-balancer-controller-app/v5.2.0/</link><pubDate>Fri, 29 May 2026 08:07:02 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/aws-load-balancer-controller-app/v5.2.0/</guid><description>&lt;h3 id="added"&gt;Added&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Add &lt;code&gt;valuesFromSecret&lt;/code&gt; value to optionally inject a Secret as an additional &lt;code&gt;valuesFrom&lt;/code&gt; source in the HelmRelease.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v5.6.3</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.6.3/</link><pubDate>Thu, 28 May 2026 11:52:50 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.6.3/</guid><description>&lt;h3 id="fixed"&gt;Fixed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;&lt;code&gt;login&lt;/code&gt;: stop silently rerouting client-certificate logins to direct OIDC. Passing any cert-only flag now skips structured-auth detection.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;&lt;code&gt;template cluster&lt;/code&gt;: expand the command&amp;rsquo;s &lt;code&gt;--help&lt;/code&gt; with a multi-line &lt;code&gt;Long&lt;/code&gt; description, a docs URL, and worked examples — including how to add an arm64 worker node pool to the generated values.yaml for AWS clusters.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v5.6.2</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.6.2/</link><pubDate>Fri, 22 May 2026 15:19:35 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.6.2/</guid><description>&lt;h3 id="fixed"&gt;Fixed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;&lt;code&gt;login&lt;/code&gt;: do not break the generated kubeconfig when the OIDC provider does not return a refresh token. The plugin now serves the still-valid ID token first and only requires a refresh token at renewal time.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v5.6.1</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.6.1/</link><pubDate>Fri, 22 May 2026 08:23:46 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.6.1/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Upgrading Flux API versions to match the ones considered stable in Flux 2.6.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v5.6.0</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.6.0/</link><pubDate>Tue, 19 May 2026 12:58:47 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.6.0/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;&lt;code&gt;login&lt;/code&gt;: when a workload cluster&amp;rsquo;s structured authentication exposes multiple OIDC issuers and no &lt;code&gt;--oidc-issuer&lt;/code&gt; / &lt;code&gt;--oidc-client-id&lt;/code&gt; flag is set, prompt the user to pick one from a numbered menu (interactive TTY only). Non-interactive invocations keep the previous error listing the available issuers so scripted callers stay informative.&lt;/li&gt;
&lt;li&gt;Bump &lt;code&gt;giantswarm/architect&lt;/code&gt; orb to &lt;code&gt;8.2.2&lt;/code&gt; and re-enable cosign keyless chart signing (&lt;code&gt;sign: false&lt;/code&gt; removed from every &lt;code&gt;push-to-app-catalog*&lt;/code&gt; invocation). v8.2.2 ships &lt;a href="https://github.com/giantswarm/architect-orb/pull/772"&gt;architect-orb#772&lt;/a&gt; which upgrades the &lt;code&gt;app-build-suite&lt;/code&gt; executor image from &lt;code&gt;1.8.0-circleci&lt;/code&gt; to &lt;code&gt;1.8.1-circleci&lt;/code&gt; &amp;ndash; the new image includes the &lt;code&gt;cosign&lt;/code&gt; binary that v8.2.0&amp;rsquo;s chart signing defaults require. Closes &lt;a href="https://github.com/giantswarm/architect-orb/issues/769"&gt;architect-orb#769&lt;/a&gt;.&lt;/li&gt;
&lt;li&gt;Bump &lt;code&gt;giantswarm/architect&lt;/code&gt; orb to &lt;code&gt;8.2.1&lt;/code&gt; to pick up &lt;a href="https://github.com/giantswarm/architect-orb/pull/767"&gt;architect-orb#767&lt;/a&gt;: &lt;code&gt;image-login-to-registries&lt;/code&gt; is now POSIX-portable, unblocking &lt;code&gt;architect/sync-china-registry&lt;/code&gt; (the gsoci -&amp;gt; Aliyun mirror via the in-China &lt;code&gt;giantswarm/galaxy-runner&lt;/code&gt;). The v8.1.0 refactor accidentally introduced bash-only &lt;code&gt;${!var}&lt;/code&gt; indirect expansion in the shared login command, which BusyBox &lt;code&gt;/bin/sh&lt;/code&gt; (used by the regctl executor) rejected with &lt;code&gt;bad substitution&lt;/code&gt; &amp;ndash; so no Aliyun mirror has been happening since the migration to &lt;code&gt;split-china-push: true&lt;/code&gt;. v8.2.x also enables cosign keyless signing, SLSA provenance, and SBOM attestations by default for public images and charts.&lt;/li&gt;
&lt;li&gt;Enable &lt;code&gt;split-china-push: true&lt;/code&gt; on the tag-build &lt;code&gt;push-to-registries-multiarch&lt;/code&gt; job and add a companion &lt;code&gt;sync-china-registry&lt;/code&gt; job. The cross-Pacific &lt;code&gt;docker buildx&lt;/code&gt; push to the Aliyun mirror is replaced with a &lt;code&gt;regctl image copy&lt;/code&gt; from gsoci to Aliyun executed on the in-China &lt;code&gt;giantswarm/galaxy-runner&lt;/code&gt; self-hosted CircleCI runner.&lt;/li&gt;
&lt;li&gt;Bump &lt;code&gt;giantswarm/architect&lt;/code&gt; orb to &lt;code&gt;8.1.0&lt;/code&gt; and replace the hand-rolled inline &lt;code&gt;push-to-registries-multiarch&lt;/code&gt; job (~75 lines of &lt;code&gt;docker buildx&lt;/code&gt; wrapper) with &lt;code&gt;architect/push-to-registries&lt;/code&gt; and &lt;code&gt;multiarch: true&lt;/code&gt;. The orb job builds the multi-arch image from the per-arch binaries produced by &lt;code&gt;go-build-{amd64,arm64}&lt;/code&gt; and reuses the Dockerfile&amp;rsquo;s &lt;code&gt;COPY ./kubectl-gs-${TARGETARCH}&lt;/code&gt; step. Picks up the v8.1.0 QEMU/binfmt auto-registration, hardened buildx bootstrap, and standard OCI image labels for free.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="fixed"&gt;Fixed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;&lt;code&gt;login&lt;/code&gt;: enable PKCE (RFC 7636) on the direct OIDC flow used for workload clusters with Kubernetes structured authentication. Public OIDC clients registered without a &lt;code&gt;client_secret&lt;/code&gt; (e.g. Okta SPA / Native apps) previously failed the token exchange with &lt;code&gt;invalid_client&lt;/code&gt; because neither client authentication nor a PKCE code verifier was sent. The Dex-mediated management cluster flow is unaffected.&lt;/li&gt;
&lt;li&gt;Drop &lt;code&gt;linux/386&lt;/code&gt; from the docker image&amp;rsquo;s &lt;code&gt;--platform&lt;/code&gt; list. The base image &lt;code&gt;gsoci.azurecr.io/giantswarm/alpine&lt;/code&gt; does not ship a &lt;code&gt;linux/386&lt;/code&gt; variant, so the legacy inline &lt;code&gt;push-to-registries-multiarch&lt;/code&gt; job&amp;rsquo;s &lt;code&gt;buildx&lt;/code&gt; invocation has been silently failing for that platform on every run &amp;ndash; the bug was masked by the script&amp;rsquo;s &lt;code&gt;... | tee .docker.log&lt;/code&gt; pipe always returning &lt;code&gt;0&lt;/code&gt;, so the failed buildx output never affected the job&amp;rsquo;s exit code. The pushed multi-arch image therefore never actually contained a &lt;code&gt;linux/386&lt;/code&gt; variant. The standalone &lt;code&gt;linux/386&lt;/code&gt; &lt;code&gt;kubectl-gs&lt;/code&gt; binary continues to be produced by &lt;code&gt;go-build-386&lt;/code&gt; and shipped through GitHub releases / krew.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v5.5.0</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.5.0/</link><pubDate>Tue, 12 May 2026 10:12:09 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.5.0/</guid><description>&lt;h3 id="added"&gt;Added&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;&lt;code&gt;login&lt;/code&gt;: support direct OIDC authentication for workload clusters (Kubernetes structured authentication). The appropriate workload-cluster authentication mode is now selected automatically based on the cluster&amp;rsquo;s configuration.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>zot release v2.7.0</title><link>https://docs.giantswarm.io/changes/fleet-management/zot/v2.7.0/</link><pubDate>Thu, 07 May 2026 11:50:13 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/zot/v2.7.0/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Update to upstream Helm Chart &lt;code&gt;v0.1.112&lt;/code&gt; and Zot &lt;code&gt;v2.1.16&lt;/code&gt;.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v5.4.0</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.4.0/</link><pubDate>Mon, 04 May 2026 09:55:40 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.4.0/</guid><description>&lt;h3 id="added"&gt;Added&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Add &lt;code&gt;global.release.version&lt;/code&gt; to template output for EKS&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="removed"&gt;Removed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Remove unused code (error variables, helper functions, types, and dead templates)&lt;/li&gt;
&lt;li&gt;Stop templating the deprecated &lt;code&gt;default-apps-eks&lt;/code&gt; App&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v5.3.1</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.3.1/</link><pubDate>Sat, 04 Apr 2026 06:14:43 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.3.1/</guid><description>&lt;h3 id="fixed"&gt;Fixed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Updated dependencies&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v5.3.0</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.3.0/</link><pubDate>Fri, 27 Mar 2026 11:18:25 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.3.0/</guid><description>&lt;h3 id="added"&gt;Added&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Usage info now also shows aliases for subcommands.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v5.2.0</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.2.0/</link><pubDate>Thu, 26 Mar 2026 16:59:12 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.2.0/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Deprecated app-related commands: &lt;code&gt;get apps&lt;/code&gt;, &lt;code&gt;get catalogs&lt;/code&gt;, &lt;code&gt;gitops add app&lt;/code&gt;, &lt;code&gt;update app&lt;/code&gt;, &lt;code&gt;validate apps&lt;/code&gt;.&lt;/li&gt;
&lt;li&gt;Added extra error logging when doing login and cache operations.&lt;/li&gt;
&lt;li&gt;Added handler for Exec AuthType.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v5.1.0</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.1.0/</link><pubDate>Thu, 26 Mar 2026 07:04:12 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.1.0/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Migrate &lt;code&gt;cluster.x-k8s.io&lt;/code&gt; API usage from &lt;code&gt;v1beta1&lt;/code&gt; to &lt;code&gt;v1beta2&lt;/code&gt;. MachinePool CRD reference updated from &lt;code&gt;exp.cluster.x-k8s.io&lt;/code&gt; to &lt;code&gt;cluster.x-k8s.io&lt;/code&gt;.&lt;/li&gt;
&lt;li&gt;Mark &lt;code&gt;template app&lt;/code&gt; command as deprecated&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="added"&gt;Added&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Add &lt;code&gt;deploy chart&lt;/code&gt; command.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>aws-load-balancer-controller-app release v5.1.0</title><link>https://docs.giantswarm.io/changes/fleet-management/aws-load-balancer-controller-app/v5.1.0/</link><pubDate>Wed, 25 Mar 2026 14:43:04 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/aws-load-balancer-controller-app/v5.1.0/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Update chart icon URL to use Giant Swarm hosted SVG icon.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>aws-efs-csi-driver release v3.3.0</title><link>https://docs.giantswarm.io/changes/fleet-management/aws-efs-csi-driver/v3.3.0/</link><pubDate>Wed, 25 Mar 2026 09:19:43 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/aws-efs-csi-driver/v3.3.0/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Migrate chart metadata annotations to &lt;code&gt;io.giantswarm.application.*&lt;/code&gt; format for both the app and bundle charts.&lt;/li&gt;
&lt;li&gt;Use upstream Helm chart as a dependency instead of forking templates.&lt;/li&gt;
&lt;li&gt;Update ABS config to replace &lt;code&gt;.appVersion&lt;/code&gt; in Chart.yaml with version detected by ABS.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="fixed"&gt;Fixed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Use &lt;code&gt;.Chart.AppVersion&lt;/code&gt; instead of &lt;code&gt;.Chart.Version&lt;/code&gt; for OCIRepository tag.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v5.0.2</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.0.2/</link><pubDate>Tue, 10 Mar 2026 14:22:56 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.0.2/</guid><description>&lt;h3 id="fixed"&gt;Fixed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Fix Windows build failure caused by &lt;code&gt;syscall.Flock&lt;/code&gt; usage in credential cache (not available on Windows).&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v5.0.1</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.0.1/</link><pubDate>Tue, 10 Mar 2026 13:55:04 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.0.1/</guid><description>&lt;h3 id="fixed"&gt;Fixed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Apply &lt;code&gt;--label&lt;/code&gt; flag values to the Cluster CR via Helm values (&lt;code&gt;global.metadata.labels&lt;/code&gt;), the App CR, and the ConfigMap when using &lt;code&gt;template cluster&lt;/code&gt;.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v5.0.0</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.0.0/</link><pubDate>Tue, 10 Mar 2026 12:36:05 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v5.0.0/</guid><description>&lt;h3 id="removed"&gt;Removed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Remove &lt;code&gt;template nodepool&lt;/code&gt; command.&lt;/li&gt;
&lt;li&gt;Remove &lt;code&gt;template networkpool&lt;/code&gt; command.&lt;/li&gt;
&lt;li&gt;Remove AWS vintage and Azure vintage providers from &lt;code&gt;template cluster&lt;/code&gt; command.&lt;/li&gt;
&lt;li&gt;Remove AWS vintage and Azure vintage providers from &lt;code&gt;get clusters&lt;/code&gt; and &lt;code&gt;get nodepools&lt;/code&gt; commands.&lt;/li&gt;
&lt;li&gt;Remove typed dependencies on &lt;code&gt;sigs.k8s.io/cluster-api&lt;/code&gt;, &lt;code&gt;sigs.k8s.io/cluster-api-provider-aws&lt;/code&gt;, and &lt;code&gt;sigs.k8s.io/cluster-api-provider-azure&lt;/code&gt; in favor of unstructured objects.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="fixed"&gt;Fixed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Fix flaky nodepool, orgs, and clusters tests caused by timing race in AGE column rendering.&lt;/li&gt;
&lt;li&gt;Update documentation URL from &lt;code&gt;docs.giantswarm.io/use-the-api/kubectl-gs/&lt;/code&gt; to &lt;code&gt;docs.giantswarm.io/reference/kubectl-gs/&lt;/code&gt;.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v4.12.0</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v4.12.0/</link><pubDate>Wed, 04 Mar 2026 21:53:20 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v4.12.0/</guid><description>&lt;h3 id="added"&gt;Added&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Add locks to cache writing when doing &lt;code&gt;kubectl-gs login&lt;/code&gt; to prevent race-condition between multiple kubectl calls.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>aws-load-balancer-controller-app release v5.0.3</title><link>https://docs.giantswarm.io/changes/fleet-management/aws-load-balancer-controller-app/v5.0.3/</link><pubDate>Fri, 27 Feb 2026 13:31:46 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/aws-load-balancer-controller-app/v5.0.3/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Update ABS config to replace &lt;code&gt;.appVersion&lt;/code&gt; in Chart.yaml with version detected by ABS.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="fixed"&gt;Fixed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Use &lt;code&gt;.Chart.AppVersion&lt;/code&gt; instead of &lt;code&gt;.Chart.Version&lt;/code&gt; for OCIRepository tag.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>aws-load-balancer-controller-app release v5.0.2</title><link>https://docs.giantswarm.io/changes/fleet-management/aws-load-balancer-controller-app/v5.0.2/</link><pubDate>Thu, 26 Feb 2026 09:49:42 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/aws-load-balancer-controller-app/v5.0.2/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Update IAM Policy in bundle to match the requirements for v3.0.0.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>vertical-pod-autoscaler-app release v6.1.2</title><link>https://docs.giantswarm.io/changes/fleet-management/vertical-pod-autoscaler-app/v6.1.2/</link><pubDate>Tue, 24 Feb 2026 12:16:26 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/vertical-pod-autoscaler-app/v6.1.2/</guid><description>&lt;h3 id="fixed"&gt;Fixed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Pushed helm chart to OCI repository.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v4.11.0</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v4.11.0/</link><pubDate>Fri, 20 Feb 2026 14:57:48 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v4.11.0/</guid><description>&lt;h3 id="added"&gt;Added&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Use &lt;code&gt;release-&amp;lt;provider&amp;gt;&lt;/code&gt; chart name for Release versions (major &amp;gt;= 35) in &lt;code&gt;template cluster&lt;/code&gt; command for all providers (CAPA, CAPZ, VSphere, Cloud Director, EKS).&lt;/li&gt;
&lt;li&gt;Omit &lt;code&gt;global.release.version&lt;/code&gt; from user config for Release versions, as it is baked into the chart.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>capa-karpenter-taint-remover release v1.0.2</title><link>https://docs.giantswarm.io/changes/fleet-management/capa-karpenter-taint-remover/v1.0.2/</link><pubDate>Thu, 19 Feb 2026 15:12:07 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/capa-karpenter-taint-remover/v1.0.2/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Migrate to App Build Suite (ABS) for building and publishing Helm charts.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>keda-app release v5.0.2</title><link>https://docs.giantswarm.io/changes/fleet-management/keda-app/v5.0.2/</link><pubDate>Mon, 16 Feb 2026 14:59:58 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/keda-app/v5.0.2/</guid><description>&lt;h3 id="added"&gt;Added&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Added Backstage audience annotations.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>keda-app release v5.0.1</title><link>https://docs.giantswarm.io/changes/fleet-management/keda-app/v5.0.1/</link><pubDate>Mon, 16 Feb 2026 08:19:54 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/keda-app/v5.0.1/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Change team annotation in &lt;code&gt;Chart.yaml&lt;/code&gt; to OpenContainers format (&lt;code&gt;io.giantswarm.application.team&lt;/code&gt;).&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>aws-node-termination-handler-app release v1.23.1</title><link>https://docs.giantswarm.io/changes/fleet-management/aws-node-termination-handler-app/v1.23.1/</link><pubDate>Thu, 12 Feb 2026 16:55:44 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/aws-node-termination-handler-app/v1.23.1/</guid><description>&lt;h3 id="fixed"&gt;Fixed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Push the chart to the default catalog.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v4.10.1</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v4.10.1/</link><pubDate>Thu, 12 Feb 2026 14:51:25 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v4.10.1/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Change cache logic so initial &lt;code&gt;id_token&lt;/code&gt; doesn&amp;rsquo;t get discarded.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>keda-app release v5.0.0</title><link>https://docs.giantswarm.io/changes/fleet-management/keda-app/v5.0.0/</link><pubDate>Wed, 11 Feb 2026 12:46:45 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/keda-app/v5.0.0/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Upgrade app to version 2.19.0 to support kubernetes 1.32 to 1.34.&lt;/li&gt;
&lt;li&gt;Upgrade chart to upstream version 2.19.0.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>keda-app release v4.0.0</title><link>https://docs.giantswarm.io/changes/fleet-management/keda-app/v4.0.0/</link><pubDate>Wed, 11 Feb 2026 11:37:15 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/keda-app/v4.0.0/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Upgrade app to version 2.18.3 to support kubernetes 1.31 to 1.33.&lt;/li&gt;
&lt;li&gt;Upgrade chart to upstream version 2.18.3.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>aws-efs-csi-driver release v3.2.0</title><link>https://docs.giantswarm.io/changes/fleet-management/aws-efs-csi-driver/v3.2.0/</link><pubDate>Wed, 04 Feb 2026 14:59:06 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/aws-efs-csi-driver/v3.2.0/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Upgrade upstream AWS EFS CSI Driver from v2.1.9 to v2.3.0.&lt;/li&gt;
&lt;li&gt;Update sidecar images:
&lt;ul&gt;
&lt;li&gt;livenessprobe: v2.16.0 -&amp;gt; v2.17.0&lt;/li&gt;
&lt;li&gt;csi-node-driver-registrar: v2.14.0 -&amp;gt; v2.15.0&lt;/li&gt;
&lt;li&gt;csi-provisioner: v5.3.0 -&amp;gt; v6.1.0&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="added"&gt;Added&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Add &lt;code&gt;controller.revisionHistoryLimit&lt;/code&gt; and &lt;code&gt;node.revisionHistoryLimit&lt;/code&gt; for controlling rollback history.&lt;/li&gt;
&lt;li&gt;Add &lt;code&gt;controller.socketDirVolume.emptyDir&lt;/code&gt; for configuring CSI socket volume (sizeLimit, medium).&lt;/li&gt;
&lt;li&gt;Add &lt;code&gt;controller.fileSystemIdRefs.enabled&lt;/code&gt; for dynamic filesystem ID resolution from ConfigMap/Secret.&lt;/li&gt;
&lt;li&gt;Add &lt;code&gt;node.serviceAccount.disableMutation&lt;/code&gt; for disabling mutating permissions in security-sensitive environments.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="security"&gt;Security&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Multiple CVE fixes in upstream (sidecars, openssl, Golang 1.25.5).&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>keda-app release v3.1.1</title><link>https://docs.giantswarm.io/changes/fleet-management/keda-app/v3.1.1/</link><pubDate>Sat, 31 Jan 2026 18:37:51 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/keda-app/v3.1.1/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Build with up-to-date pipelines.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>aws-load-balancer-controller-app release v5.0.1</title><link>https://docs.giantswarm.io/changes/fleet-management/aws-load-balancer-controller-app/v5.0.1/</link><pubDate>Thu, 29 Jan 2026 16:19:18 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/aws-load-balancer-controller-app/v5.0.1/</guid><description>&lt;h3 id="fixed"&gt;Fixed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Fix JSON Schema &lt;code&gt;values.schema.json&lt;/code&gt; fields that were incorrectly defined as &lt;code&gt;&amp;quot;type&amp;quot;: &amp;quot;null&amp;quot;&lt;/code&gt; to allow actual configuration values (strings, integers, booleans, arrays, objects) in addition to null.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>aws-load-balancer-controller-app release v5.0.0</title><link>https://docs.giantswarm.io/changes/fleet-management/aws-load-balancer-controller-app/v5.0.0/</link><pubDate>Thu, 29 Jan 2026 13:33:18 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/aws-load-balancer-controller-app/v5.0.0/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Upgrade aws-load-balancer-controller from v2.8.3 to v3.0.0.&lt;/li&gt;
&lt;li&gt;Remove PSPs&lt;/li&gt;
&lt;li&gt;Move PolicyException to policy-exceptions namespace.&lt;/li&gt;
&lt;li&gt;Migrate from ClusterID to ClusterName&lt;/li&gt;
&lt;li&gt;Add additional permissions elasticloadbalancing:DescribeListenerAttributes&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>zot release v2.6.2</title><link>https://docs.giantswarm.io/changes/fleet-management/zot/v2.6.2/</link><pubDate>Fri, 23 Jan 2026 10:34:06 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/zot/v2.6.2/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Update to upstream Helm Chart &lt;code&gt;v0.1.95&lt;/code&gt; and Zot &lt;code&gt;v2.11.13&lt;/code&gt;.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>zot release v2.6.1</title><link>https://docs.giantswarm.io/changes/fleet-management/zot/v2.6.1/</link><pubDate>Thu, 22 Jan 2026 14:30:40 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/zot/v2.6.1/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Updated chart metadata&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>aws-load-balancer-controller-app release v4.0.0</title><link>https://docs.giantswarm.io/changes/fleet-management/aws-load-balancer-controller-app/v4.0.0/</link><pubDate>Tue, 20 Jan 2026 15:02:42 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/aws-load-balancer-controller-app/v4.0.0/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Move Giant Swarm specific values to the bundle chart. Clean up the aws-load-balancer-controller chart from any GS specific stuff.&lt;/li&gt;
&lt;li&gt;Shorten bundle chart name to &lt;code&gt;aws-lb-controller-bundle&lt;/code&gt;&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>aws-efs-csi-driver release v3.1.0</title><link>https://docs.giantswarm.io/changes/fleet-management/aws-efs-csi-driver/v3.1.0/</link><pubDate>Tue, 20 Jan 2026 11:03:20 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/aws-efs-csi-driver/v3.1.0/</guid><description>&lt;h3 id="added"&gt;Added&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Add additional permissions to the controller IAM role.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Document upgrade path from v2 to v3&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="fixed"&gt;Fixed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Configure the efs-csi-driver chart to use the IAM role managed by the bundle chart.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v4.10.0</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v4.10.0/</link><pubDate>Fri, 16 Jan 2026 10:47:23 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v4.10.0/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Replace &lt;code&gt;github.com/giantswarm/release-operator/v4/api/v1alpha1&lt;/code&gt; with &lt;code&gt;github.com/giantswarm/releases/sdk/api/v1alpha1&lt;/code&gt; for Release CRD types.&lt;/li&gt;
&lt;li&gt;Update k8s dependencies to v0.35.0.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>zot release v2.6.0</title><link>https://docs.giantswarm.io/changes/fleet-management/zot/v2.6.0/</link><pubDate>Mon, 12 Jan 2026 08:53:05 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/zot/v2.6.0/</guid><description>&lt;h3 id="added"&gt;Added&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Add Envoy Gateway BackendTrafficPolicy to support custom buffer size.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v4.9.1</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v4.9.1/</link><pubDate>Mon, 05 Jan 2026 22:06:50 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v4.9.1/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Update CI so the update-krew-index job waits until the binaries have been pushed to the registries.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>kubectl-gs release v4.9.0</title><link>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v4.9.0/</link><pubDate>Mon, 05 Jan 2026 21:49:43 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/kubectl-gs/v4.9.0/</guid><description>&lt;h3 id="added"&gt;Added&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Add support for &lt;code&gt;user.Exec&lt;/code&gt; using &lt;code&gt;client-go&lt;/code&gt; credential plugin framework.&lt;/li&gt;
&lt;li&gt;Support non-default session timeout lengths.&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Update &lt;code&gt;github.com/3th1nk/cidr&lt;/code&gt; to v0.3.0, adapt internal CIDR mask size calculation in the &lt;code&gt;tempalte cluster&lt;/code&gt; command.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>zot release v2.5.0</title><link>https://docs.giantswarm.io/changes/fleet-management/zot/v2.5.0/</link><pubDate>Thu, 18 Dec 2025 15:21:54 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/zot/v2.5.0/</guid><description>&lt;h3 id="added"&gt;Added&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Add Gateway API support with HTTPRoute template (also supports GRPCRoute, TCPRoute, TLSRoute, UDPRoute).&lt;/li&gt;
&lt;li&gt;Add Envoy Gateway SecurityPolicy support for authentication and authorization (basicAuth, CORS, JWT, OIDC, extAuth, authorization).&lt;/li&gt;
&lt;/ul&gt;
&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Migrate Chart.yaml annotations to new format as per &lt;a href="https://docs.giantswarm.io/reference/platform-api/chart-metadata/"&gt;https://docs.giantswarm.io/reference/platform-api/chart-metadata/&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>aws-load-balancer-controller-app release v3.0.0</title><link>https://docs.giantswarm.io/changes/fleet-management/aws-load-balancer-controller-app/v3.0.0/</link><pubDate>Thu, 04 Dec 2025 08:28:28 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/aws-load-balancer-controller-app/v3.0.0/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Merge both the bundle and app chart into the same repository. Now the AWS Load Balancer Controller app and the bundle containing the necessary IAM resources (managed by Crossplane) will live in this repository.&lt;/li&gt;
&lt;li&gt;The bundle chart now deploys the workload cluster chart using Flux HelmRelease instead of App CR.&lt;/li&gt;
&lt;li&gt;Make sure both the bundle and app charts have been pushed to the catalogs before pushing to the capa app collection&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>zot release v2.4.0</title><link>https://docs.giantswarm.io/changes/fleet-management/zot/v2.4.0/</link><pubDate>Fri, 21 Nov 2025 16:08:47 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/zot/v2.4.0/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Update to upstream Helm Chart &lt;code&gt;v0.1.91&lt;/code&gt; and Zot &lt;code&gt;v2.1.11&lt;/code&gt;.&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>aws-efs-csi-driver release v3.0.0</title><link>https://docs.giantswarm.io/changes/fleet-management/aws-efs-csi-driver/v3.0.0/</link><pubDate>Wed, 19 Nov 2025 08:53:26 +0000</pubDate><guid>https://docs.giantswarm.io/changes/fleet-management/aws-efs-csi-driver/v3.0.0/</guid><description>&lt;h3 id="changed"&gt;Changed&lt;/h3&gt;
&lt;ul&gt;
&lt;li&gt;Merge both the bundle and app chart into the same repository. Now the AWS EFS Driver app and the bundle containing the necessary IAM resources (managed by Crossplane) will live in this repository.&lt;/li&gt;
&lt;/ul&gt;</description></item></channel></rss>