{
    "apiVersion": "v1",
    "items": [
        {
            "apiVersion": "v1",
            "data": {
                "config.yaml": "default-pipeline-name: docker-build-oci-ta-min\npipelines:\n- bundle: quay.io/konflux-ci/tekton-catalog/pipeline-fbc-builder@sha256:67c8ed02ac8077cf45377576cbcd1e0fbe9d3a6f76bab6e686107e52c55762e6\n  name: fbc-builder\n- bundle: quay.io/konflux-ci/tekton-catalog/pipeline-docker-build@sha256:32155302448e19eb690196c42542759a86c9aa2d0cd93b5c33f3c964c10d8983\n  name: docker-build\n- bundle: quay.io/konflux-ci/tekton-catalog/pipeline-docker-build-oci-ta@sha256:8fc0e3c8ec28075407456341feb157267916d386d246bba8ac738d3119f2e2ff\n  name: docker-build-oci-ta\n- bundle: quay.io/konflux-ci/tekton-catalog/pipeline-tekton-bundle-builder@sha256:898452084a74663a0654213ba3b8394ed37eba5bec7f19c1a15ed2b825b1dbb3\n  name: tekton-bundle-builder\n- bundle: quay.io/konflux-ci/tekton-catalog/pipeline-tekton-bundle-builder-oci-ta@sha256:aed80bb2ab1b79cbea4ac0366d7107e8ef4a32a43099b54d743b07a93d236284\n  name: tekton-bundle-builder-oci-ta\n- bundle: quay.io/konflux-ci/tekton-catalog/pipeline-docker-build-oci-ta-min@sha256:a08f2b0ba1a30246cec42e9f4d7c3dfe7e780a9c62b5404a3a02232ca6290b1f\n  description: minimal version of the docker-build-oci-ta pipeline, which requires\n    less compute resources. In addition, it doesn't contain tasks which require user\n    provided secrets.\n  name: docker-build-oci-ta-min\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:43:14Z",
                "labels": {
                    "konflux.konflux-ci.dev/component": "build-service",
                    "konflux.konflux-ci.dev/owner": "konflux-build-service"
                },
                "name": "build-pipeline-config",
                "namespace": "build-service",
                "ownerReferences": [
                    {
                        "apiVersion": "konflux.konflux-ci.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "KonfluxBuildService",
                        "name": "konflux-build-service",
                        "uid": "4be36abb-198f-4422-a3bc-8a19b684b804"
                    }
                ],
                "resourceVersion": "6571",
                "uid": "ee30edda-2930-4319-bec5-09fc8ee303ef"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----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\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:39:12Z",
                "name": "kube-root-ca.crt",
                "namespace": "build-service",
                "resourceVersion": "4532",
                "uid": "20180512-4408-4338-8590-d96e924ef6f4"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "webhook-config.json": "{}"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:43:11Z",
                "labels": {
                    "konflux.konflux-ci.dev/webhook-config": "true"
                },
                "name": "webhook-config-44136fa355",
                "namespace": "build-service",
                "ownerReferences": [
                    {
                        "apiVersion": "konflux.konflux-ci.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "KonfluxBuildService",
                        "name": "konflux-build-service",
                        "uid": "4be36abb-198f-4422-a3bc-8a19b684b804"
                    }
                ],
                "resourceVersion": "6270",
                "uid": "5cae6226-35b4-4483-a693-624b39511a79"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----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\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:32:22Z",
                "name": "kube-root-ca.crt",
                "namespace": "cert-manager",
                "resourceVersion": "781",
                "uid": "d8f9d73c-a7d5-485a-907e-b6db9111507e"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----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\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:29:05Z",
                "name": "kube-root-ca.crt",
                "namespace": "default",
                "resourceVersion": "346",
                "uid": "a7ac1d30-4cc1-4fd5-8676-e9b28690f726"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "verify_conforma_task_ta_git_pathInRepo": "tasks/verify-conforma-konflux-ta/0.1/verify-conforma-konflux-ta.yaml",
                "verify_ec_task_bundle": "quay.io/conforma/tekton-task:latest@sha256:e097724eb48295d640d245591576273dc33e2d3e70248f2cc241684f35d47dbf",
                "verify_ec_task_git_pathInRepo": "tasks/verify-enterprise-contract/0.1/verify-enterprise-contract.yaml",
                "verify_ec_task_git_revision": "0250ec50382270294955ee4baab5d910f685b74f",
                "verify_ec_task_git_url": "https://github.com/conforma/cli.git"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:43:14Z",
                "labels": {
                    "konflux.konflux-ci.dev/component": "enterprise-contract",
                    "konflux.konflux-ci.dev/owner": "konflux-enterprise-contract"
                },
                "name": "ec-defaults",
                "namespace": "enterprise-contract-service",
                "ownerReferences": [
                    {
                        "apiVersion": "konflux.konflux-ci.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "KonfluxEnterpriseContract",
                        "name": "konflux-enterprise-contract",
                        "uid": "f62603d3-af67-4728-9f26-596f040e6c60"
                    }
                ],
                "resourceVersion": "6546",
                "uid": "ca3315ad-5600-45b7-b338-7b6a66194395"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----\nMIIDBTCCAe2gAwIBAgIITKMe4a1ABSgwDQYJKoZIhvcNAQELBQAwFTETMBEGA1UE\nAxMKa3ViZXJuZXRlczAeFw0yNjA4MTIxMjIzNDdaFw0zNjA4MDkxMjI4NDdaMBUx\nEzARBgNVBAMTCmt1YmVybmV0ZXMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK\nAoIBAQCs11nQcU0gTG+VICswqSDLlIyHanC/F65wGJ6T3LdSmcYd70JjidSHPNop\nJcZa0kpHfaxdnnn5mthX5dyNUvDS5oz1C38JoAtiNZ97tpn1KXTyAfsjFnswLZWs\nE2Rjxx3yky/4Aw7TVwoiwRxX3NPi9MS5UEFwZPTy1kXX34omQWvWNcN3WryRMcgV\nZPb8zWV5XVYnUkDAxd7Jr2GCfs4PGiMxA9XLTlvF/m22ea5U/w7aeOPVWebn4kGL\noFVlwFKbMmekDiq8UPp+Pr8XGYrcNegRNsmDYGg8m4Pc1WukYsa3QsqzsrWa2Y26\nRDwmK5ad11Z1msf83A52ipDR9n7dAgMBAAGjWTBXMA4GA1UdDwEB/wQEAwICpDAP\nBgNVHRMBAf8EBTADAQH/MB0GA1UdDgQWBBRdhSatGAA1IfWR4f/qUENdeSeAPzAV\nBgNVHREEDjAMggprdWJlcm5ldGVzMA0GCSqGSIb3DQEBCwUAA4IBAQCnx5DdK55P\ncspd4+0A8NvoRxw1NszledJB9a2mhAVQ1SMVAkw4F6QCtx4vOuEHH0MxJlguqIaJ\n49ZhBJy23lxR3l24XxwUtisH2EZoamcBsh7DPIY3E82M/euSXvtawCc6ZCnej476\nUDzU5qKvVp7V3ZyYegsl2aD9SWokvWItBql5VGmR1pBwG6ldfoh6z7EQbw7law5S\ntNqCsuusFp+OgTGj/MwmRObwn1+MC0S8jLjUjNwanLcPxGOlO6UYhmuGI6xvkyQq\nSKm+2x+/3v6zXP9m0J4PZmM9H8TXURN35dXmBV67Bs+NOQ4SGJywRUsRK5KRbMq7\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:43:12Z",
                "name": "kube-root-ca.crt",
                "namespace": "enterprise-contract-service",
                "resourceVersion": "6360",
                "uid": "5ee67431-ce80-47c4-9796-27862dd0f2e6"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----\nMIIDBTCCAe2gAwIBAgIITKMe4a1ABSgwDQYJKoZIhvcNAQELBQAwFTETMBEGA1UE\nAxMKa3ViZXJuZXRlczAeFw0yNjA4MTIxMjIzNDdaFw0zNjA4MDkxMjI4NDdaMBUx\nEzARBgNVBAMTCmt1YmVybmV0ZXMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK\nAoIBAQCs11nQcU0gTG+VICswqSDLlIyHanC/F65wGJ6T3LdSmcYd70JjidSHPNop\nJcZa0kpHfaxdnnn5mthX5dyNUvDS5oz1C38JoAtiNZ97tpn1KXTyAfsjFnswLZWs\nE2Rjxx3yky/4Aw7TVwoiwRxX3NPi9MS5UEFwZPTy1kXX34omQWvWNcN3WryRMcgV\nZPb8zWV5XVYnUkDAxd7Jr2GCfs4PGiMxA9XLTlvF/m22ea5U/w7aeOPVWebn4kGL\noFVlwFKbMmekDiq8UPp+Pr8XGYrcNegRNsmDYGg8m4Pc1WukYsa3QsqzsrWa2Y26\nRDwmK5ad11Z1msf83A52ipDR9n7dAgMBAAGjWTBXMA4GA1UdDwEB/wQEAwICpDAP\nBgNVHRMBAf8EBTADAQH/MB0GA1UdDgQWBBRdhSatGAA1IfWR4f/qUENdeSeAPzAV\nBgNVHREEDjAMggprdWJlcm5ldGVzMA0GCSqGSIb3DQEBCwUAA4IBAQCnx5DdK55P\ncspd4+0A8NvoRxw1NszledJB9a2mhAVQ1SMVAkw4F6QCtx4vOuEHH0MxJlguqIaJ\n49ZhBJy23lxR3l24XxwUtisH2EZoamcBsh7DPIY3E82M/euSXvtawCc6ZCnej476\nUDzU5qKvVp7V3ZyYegsl2aD9SWokvWItBql5VGmR1pBwG6ldfoh6z7EQbw7law5S\ntNqCsuusFp+OgTGj/MwmRObwn1+MC0S8jLjUjNwanLcPxGOlO6UYhmuGI6xvkyQq\nSKm+2x+/3v6zXP9m0J4PZmM9H8TXURN35dXmBV67Bs+NOQ4SGJywRUsRK5KRbMq7\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:48:03Z",
                "name": "kube-root-ca.crt",
                "namespace": "ex-registry-sh-0e7f0382",
                "resourceVersion": "9459",
                "uid": "23357762-1313-4963-8154-a425707088cf"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----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\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:48:04Z",
                "name": "kube-root-ca.crt",
                "namespace": "ex-registry-sh-managed-0e7f0382",
                "resourceVersion": "9483",
                "uid": "cc429f36-59dd-4531-9deb-1690d2fd9d97"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "controller_manager_config.yaml": "apiVersion: controller-runtime.sigs.k8s.io/v1alpha1\nkind: ControllerManagerConfig\nhealth:\n  healthProbeBindAddress: :8081\nmetrics:\n  bindAddress: 127.0.0.1:8080\nwebhook:\n  port: 9443\nleaderElection:\n  leaderElect: true\n  resourceName: f1944211.redhat.com\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:43:17Z",
                "labels": {
                    "konflux.konflux-ci.dev/component": "integration",
                    "konflux.konflux-ci.dev/owner": "konflux-integration-service"
                },
                "name": "integration-service-manager-config",
                "namespace": "integration-service",
                "ownerReferences": [
                    {
                        "apiVersion": "konflux.konflux-ci.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "KonfluxIntegrationService",
                        "name": "konflux-integration-service",
                        "uid": "785eac0a-9297-4e14-9739-64a0ea4e65ea"
                    }
                ],
                "resourceVersion": "6801",
                "uid": "4e09d835-c4f4-489d-9f93-c108ce9541f4"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----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\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:39:15Z",
                "name": "kube-root-ca.crt",
                "namespace": "integration-service",
                "resourceVersion": "4576",
                "uid": "73094012-da3e-4cc0-81bc-3eb2264185c8"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "create-tenant.sh": "#!/bin/bash -e\n\n# Script to create a new Konflux tenant namespace with all required resources\n\nusage() {\n    cat \u003c\u003cEOF\nUsage: $(basename \"$0\") -n \u003cnamespace\u003e -u \u003cadmin-user\u003e\n\nCreate a new Konflux tenant namespace with all required resources.\n\nRequired arguments:\n  -n, --namespace    Name of the tenant namespace to create\n  -u, --admin-user   Name of the admin user (e.g., user1@konflux.dev)\n\nExample:\n  $(basename \"$0\") -n my-tenant -u user1@konflux.dev\nEOF\n    exit 1\n}\n\n# Parse arguments\nwhile [[ $# -gt 0 ]]; do\n    case $1 in\n        -n|--namespace)\n            NAMESPACE=\"$2\"\n            shift 2\n            ;;\n        -u|--admin-user)\n            ADMIN_USER=\"$2\"\n            shift 2\n            ;;\n        -h|--help)\n            usage\n            ;;\n        *)\n            echo \"Unknown option: $1\"\n            usage\n            ;;\n    esac\ndone\n\n# Validate required arguments\nif [[ -z \"${NAMESPACE}\" ]]; then\n    echo \"Error: Namespace is required\"\n    usage\nfi\n\nif [[ -z \"${ADMIN_USER}\" ]]; then\n    echo \"Error: Admin user is required\"\n    usage\nfi\n\necho \"🏗️  Creating Konflux tenant namespace: ${NAMESPACE}\"\n\n# Create the namespace with tenant label\necho \"📦 Creating namespace...\"\nkubectl apply -f - \u003c\u003cEOF\napiVersion: v1\nkind: Namespace\nmetadata:\n  name: ${NAMESPACE}\n  labels:\n    konflux-ci.dev/type: tenant\nEOF\n\n# Create the konflux-integration-runner ServiceAccount\necho \"👤 Creating konflux-integration-runner ServiceAccount...\"\nkubectl apply -f - \u003c\u003cEOF\napiVersion: v1\nkind: ServiceAccount\nmetadata:\n  name: konflux-integration-runner\n  namespace: ${NAMESPACE}\nEOF\n\n# Create RoleBinding for konflux-integration-runner ServiceAccount\necho \"🔗 Creating RoleBinding for konflux-integration-runner...\"\nkubectl apply -f - \u003c\u003cEOF\napiVersion: rbac.authorization.k8s.io/v1\nkind: RoleBinding\nmetadata:\n  name: konflux-integration-runner\n  namespace: ${NAMESPACE}\nroleRef:\n  apiGroup: rbac.authorization.k8s.io\n  kind: ClusterRole\n  name: konflux-integration-runner\nsubjects:\n- kind: ServiceAccount\n  name: konflux-integration-runner\n  namespace: ${NAMESPACE}\nEOF\n\n# Create RoleBinding for admin user\necho \"👑 Creating RoleBinding for admin user: ${ADMIN_USER}...\"\nkubectl apply -f - \u003c\u003cEOF\napiVersion: rbac.authorization.k8s.io/v1\nkind: RoleBinding\nmetadata:\n  name: ${ADMIN_USER%%@*}-konflux-admin\n  namespace: ${NAMESPACE}\nroleRef:\n  apiGroup: rbac.authorization.k8s.io\n  kind: ClusterRole\n  name: konflux-admin-user-actions\nsubjects:\n- kind: User\n  name: ${ADMIN_USER}\n  apiGroup: rbac.authorization.k8s.io\nEOF\n\necho \"✅ Tenant namespace '${NAMESPACE}' created successfully!\"\necho \"\"\necho \"Resources created:\"\necho \"  - Namespace: ${NAMESPACE} (with label konflux-ci.dev/type: tenant)\"\necho \"  - ServiceAccount: konflux-integration-runner\"\necho \"  - RoleBinding: konflux-integration-runner -\u003e ClusterRole/konflux-integration-runner\"\necho \"  - RoleBinding: ${ADMIN_USER%%@*}-konflux-admin -\u003e ClusterRole/konflux-admin-user-actions\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:43:13Z",
                "labels": {
                    "konflux.konflux-ci.dev/component": "cli",
                    "konflux.konflux-ci.dev/owner": "konflux-cli"
                },
                "name": "create-tenant",
                "namespace": "konflux-cli",
                "ownerReferences": [
                    {
                        "apiVersion": "konflux.konflux-ci.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "KonfluxCLI",
                        "name": "konflux-cli",
                        "uid": "276f5be2-1cc0-49f1-88ae-a6b2264e649b"
                    }
                ],
                "resourceVersion": "6513",
                "uid": "dcec0401-951e-4d9c-97de-164309e25a17"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----\nMIIDBTCCAe2gAwIBAgIITKMe4a1ABSgwDQYJKoZIhvcNAQELBQAwFTETMBEGA1UE\nAxMKa3ViZXJuZXRlczAeFw0yNjA4MTIxMjIzNDdaFw0zNjA4MDkxMjI4NDdaMBUx\nEzARBgNVBAMTCmt1YmVybmV0ZXMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK\nAoIBAQCs11nQcU0gTG+VICswqSDLlIyHanC/F65wGJ6T3LdSmcYd70JjidSHPNop\nJcZa0kpHfaxdnnn5mthX5dyNUvDS5oz1C38JoAtiNZ97tpn1KXTyAfsjFnswLZWs\nE2Rjxx3yky/4Aw7TVwoiwRxX3NPi9MS5UEFwZPTy1kXX34omQWvWNcN3WryRMcgV\nZPb8zWV5XVYnUkDAxd7Jr2GCfs4PGiMxA9XLTlvF/m22ea5U/w7aeOPVWebn4kGL\noFVlwFKbMmekDiq8UPp+Pr8XGYrcNegRNsmDYGg8m4Pc1WukYsa3QsqzsrWa2Y26\nRDwmK5ad11Z1msf83A52ipDR9n7dAgMBAAGjWTBXMA4GA1UdDwEB/wQEAwICpDAP\nBgNVHRMBAf8EBTADAQH/MB0GA1UdDgQWBBRdhSatGAA1IfWR4f/qUENdeSeAPzAV\nBgNVHREEDjAMggprdWJlcm5ldGVzMA0GCSqGSIb3DQEBCwUAA4IBAQCnx5DdK55P\ncspd4+0A8NvoRxw1NszledJB9a2mhAVQ1SMVAkw4F6QCtx4vOuEHH0MxJlguqIaJ\n49ZhBJy23lxR3l24XxwUtisH2EZoamcBsh7DPIY3E82M/euSXvtawCc6ZCnej476\nUDzU5qKvVp7V3ZyYegsl2aD9SWokvWItBql5VGmR1pBwG6ldfoh6z7EQbw7law5S\ntNqCsuusFp+OgTGj/MwmRObwn1+MC0S8jLjUjNwanLcPxGOlO6UYhmuGI6xvkyQq\nSKm+2x+/3v6zXP9m0J4PZmM9H8TXURN35dXmBV67Bs+NOQ4SGJywRUsRK5KRbMq7\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:43:13Z",
                "name": "kube-root-ca.crt",
                "namespace": "konflux-cli",
                "resourceVersion": "6412",
                "uid": "34211330-bde3-4dd9-bb3f-eb4cf6ba76cf"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "setup-release.sh": "#!/bin/bash -e\n\n# Script to set up release resources for a Konflux application.\n# Creates a managed namespace with all required resources (EnterpriseContractPolicy,\n# ImageRepositories, ReleasePlanAdmission) and a ReleasePlan in the tenant namespace.\n# Note: this script needs to be compatible with Bash 3.x to support both macOS and Linux.\n\nset -o pipefail\nset -eu\n\nWAIT_TIMEOUT=120  # seconds to wait for ImageRepositories to become ready\nPOLL_INTERVAL=5   # seconds between polls\n\nusage() {\n    cat \u003c\u003cEOF\nUsage: $(basename \"$0\") [OPTIONS]\n\nSet up release resources for a Konflux application. Creates a managed namespace\nwith ImageRepositories, EnterpriseContractPolicy, and ReleasePlanAdmission,\nand a ReleasePlan in the tenant namespace.\n\nOptions:\n  -t, --tenant-namespace    Source tenant namespace (default: default-tenant)\n  -m, --managed-namespace   Managed namespace for releases (default: default-managed-tenant)\n  -a, --application         Application name (default: sample-component)\n  -p, --product-name        Product name to add to the ReleaseNotes (default: --application)\n  -v, --product-version     Product version to add to the ReleaseNotes (default: 0.1)\n  -c, --component           Component name (repeatable for multiple components;\n                            if omitted, auto-detects all components from the application)\n  -e, --conforma-policy     EnterpriseContractPolicy name to copy from\n                            enterprise-contract-service namespace (default: default)\n  -r, --release-name        Name for the ReleasePlan and ReleasePlanAdmission\n                            resources (default: local-release)\n  -R, --catalog-revision    Release service catalog git revision (default: production)\n  -I, --image-name-prefix   Prefix for Quay image repository names. Must be unique\n                            across concurrent CI runs to avoid credential collisions.\n                            (default: auto-generated from managed namespace + random suffix)\n  -h, --help                Show this help message\n\nExamples:\n  # Use all defaults with auto-detected components\n  $(basename \"$0\")\n\n  # Set up release for a specific application (auto-detects its components)\n  $(basename \"$0\") -a my-app\n\n  # Specify a custom managed namespace\n  $(basename \"$0\") -m my-managed-ns\n\n  # Explicitly specify components\n  $(basename \"$0\") -c component-a -c component-b\n\n  # Full customization\n  $(basename \"$0\") -t my-tenant -m my-managed -a my-app -c comp1 -c comp2\nEOF\n    exit 1\n}\n\n# Wait for an ImageRepository to reach \"ready\" state\nwait_for_imagerepository() {\n    local name=\"$1\"\n    local elapsed=0\n    while [[ $elapsed -lt $WAIT_TIMEOUT ]]; do\n        local state\n        state=$(kubectl get imagerepository \"${name}\" -n \"${MANAGED_NS}\" \\\n            -o jsonpath='{.status.state}' 2\u003e/dev/null || true)\n        if [[ \"${state}\" == \"ready\" ]]; then\n            return 0\n        fi\n        sleep \"${POLL_INTERVAL}\"\n        elapsed=$((elapsed + POLL_INTERVAL))\n    done\n    echo \"Error: ImageRepository '${name}' did not become ready within ${WAIT_TIMEOUT}s\"\n    echo \"  Current state: $(kubectl get imagerepository \"${name}\" -n \"${MANAGED_NS}\" -o jsonpath='{.status.state}' 2\u003e/dev/null || echo 'unknown')\"\n    echo \"  Message: $(kubectl get imagerepository \"${name}\" -n \"${MANAGED_NS}\" -o jsonpath='{.status.message}' 2\u003e/dev/null || echo 'none')\"\n    return 1\n}\n\n# Parse arguments\nTENANT_NS=\"default-tenant\"\nMANAGED_NS=\"default-managed-tenant\"\nAPPLICATION=\"sample-component\"\nPRODUCT_VERSION=\"0.1\"\nCONFORMA_POLICY=\"default\"\nRELEASE_NAME=\"local-release\"\n# renovate: datasource=git-refs depName=https://github.com/konflux-ci/release-service-catalog currentValue=development\nCATALOG_REVISION=\"acbaf0738b24edf5947e9f66fa42cb905a77f00b\"\nIMAGE_NAME_PREFIX=\"\"\nCOMPONENTS=()\n\nwhile [[ $# -gt 0 ]]; do\n    case $1 in\n        -t|--tenant-namespace)\n            TENANT_NS=\"$2\"\n            shift 2\n            ;;\n        -m|--managed-namespace)\n            MANAGED_NS=\"$2\"\n            shift 2\n            ;;\n        -a|--application)\n            APPLICATION=\"$2\"\n            shift 2\n            ;;\n        -p|--product-name)\n            PRODUCT_NAME=\"$2\"\n            shift 2\n            ;;\n        -v|--product-version)\n            PRODUCT_VERSION=\"$2\"\n            shift 2\n            ;;\n        -c|--component)\n            COMPONENTS+=(\"$2\")\n            shift 2\n            ;;\n        -e|--conforma-policy)\n            CONFORMA_POLICY=\"$2\"\n            shift 2\n            ;;\n        -r|--release-name)\n            RELEASE_NAME=\"$2\"\n            shift 2\n            ;;\n        -R|--catalog-revision)\n            CATALOG_REVISION=\"$2\"\n            shift 2\n            ;;\n        -I|--image-name-prefix)\n            IMAGE_NAME_PREFIX=\"$2\"\n            shift 2\n            ;;\n        -h|--help)\n            usage\n            ;;\n        *)\n            echo \"Unknown option: $1\"\n            usage\n            ;;\n    esac\ndone\n\n# Parse PRODUCT_NAME default value based on APPLICATION value (after args parsing)\nPRODUCT_NAME=${PRODUCT_NAME:-$APPLICATION}\n\n# Generate a unique image name prefix to avoid credential collisions between\n# concurrent CI runs that share the same Quay organization.\nif [[ -z \"${IMAGE_NAME_PREFIX}\" ]]; then\n    RANDOM_SUFFIX=$(od -An -tx1 -N3 /dev/urandom | tr -d ' ')\n    IMAGE_NAME_PREFIX=\"${MANAGED_NS}-${RANDOM_SUFFIX}\"\nfi\n\n# OpenShift registers config.openshift.io API resources. Without -o name, kubectl still exits 0\n# when the group is absent (header-only table); -o name yields no lines on vanilla k8s / Kind.\nIS_OPENSHIFT=false\nif [[ -n \"$(kubectl api-resources --api-group=config.openshift.io -o name 2\u003e/dev/null)\" ]]; then\n    IS_OPENSHIFT=true\nfi\n# Auto-detect components if none specified\nif [[ ${#COMPONENTS[@]} -eq 0 ]]; then\n    echo \"🔍 No components specified, auto-detecting from application '${APPLICATION}' in namespace '${TENANT_NS}'...\"\n    while IFS= read -r line; do\n        COMPONENTS+=(\"$line\")\n    done \u003c \u003c(kubectl get components -n \"${TENANT_NS}\" \\\n        -o jsonpath=\"{range .items[?(@.spec.application==\\\"${APPLICATION}\\\")]}{.metadata.name}{\\\"\\n\\\"}{end}\" \\\n        2\u003e/dev/null | grep -v '^$')\n\n    if [[ ${#COMPONENTS[@]} -eq 0 ]]; then\n        echo \"Error: No components found for application '${APPLICATION}' in namespace '${TENANT_NS}'.\"\n        echo \"Make sure the application and its components exist, or specify components explicitly with -c.\"\n        exit 1\n    fi\n    echo \"   Found ${#COMPONENTS[@]} component(s): ${COMPONENTS[*]}\"\nfi\n\necho \"\"\necho \"🏗️  Setting up release resources\"\necho \"   Tenant namespace:  ${TENANT_NS}\"\necho \"   Managed namespace: ${MANAGED_NS}\"\necho \"   Application:       ${APPLICATION}\"\necho \"   Product Name:      ${PRODUCT_NAME}\"\necho \"   Product Version:   ${PRODUCT_VERSION}\"\necho \"   EC policy:         ${CONFORMA_POLICY}\"\necho \"   Release name:      ${RELEASE_NAME}\"\necho \"   Catalog revision:  ${CATALOG_REVISION}\"\necho \"   Image name prefix: ${IMAGE_NAME_PREFIX}\"\necho \"   Components:        ${COMPONENTS[*]}\"\necho \"\"\n\n# Step 1: Create managed namespace\necho \"📦 Creating managed namespace '${MANAGED_NS}'...\"\nkubectl apply -f - \u003c\u003cEOF\napiVersion: v1\nkind: Namespace\nmetadata:\n  name: ${MANAGED_NS}\n  labels:\n    konflux-ci.dev/type: tenant\nEOF\n\n# Step 2: On OpenShift, create a ConfigMap to inject the cluster-wide trusted CA bundle\nif [[ \"${IS_OPENSHIFT}\" == \"true\" ]]; then\n    echo \"🔒 OpenShift detected — creating trusted-ca ConfigMap in '${MANAGED_NS}'...\"\n    # Use server-side apply with --force-conflicts because this ConfigMap is also\n    # managed by a Kyverno policy in some environments. Plain apply would fail with\n    # resource version conflicts when both managers update the resource concurrently.\n    kubectl apply --server-side --force-conflicts -f - \u003c\u003cEOF\napiVersion: v1\nkind: ConfigMap\nmetadata:\n  name: trusted-ca\n  namespace: ${MANAGED_NS}\n  labels:\n    config.openshift.io/inject-trusted-cabundle: \"true\"\ndata: {}\nEOF\nfi\n\n# Step 3: Copy EnterpriseContractPolicy from enterprise-contract-service namespace\necho \"📜 Copying EnterpriseContractPolicy '${CONFORMA_POLICY}' from enterprise-contract-service namespace...\"\nkubectl get enterprisecontractpolicy \"${CONFORMA_POLICY}\" -n enterprise-contract-service -o json \\\n    | jq 'del(.metadata.resourceVersion, .metadata.uid, .metadata.creationTimestamp, .metadata.generation, .metadata.managedFields, .metadata.ownerReferences, .status) | .metadata.namespace = \"'\"${MANAGED_NS}\"'\"' \\\n    | kubectl apply -f -\n\n# Step 4: Create RoleBinding for authenticated users\necho \"🔗 Creating RoleBinding for authenticated users...\"\nkubectl apply -f - \u003c\u003cEOF\napiVersion: rbac.authorization.k8s.io/v1\nkind: RoleBinding\nmetadata:\n  name: authenticated-konflux-viewer\n  namespace: ${MANAGED_NS}\nroleRef:\n  apiGroup: rbac.authorization.k8s.io\n  kind: ClusterRole\n  name: konflux-viewer-user-actions\nsubjects:\n  - kind: Group\n    name: system:authenticated\n    apiGroup: rbac.authorization.k8s.io\nEOF\n\n# Step 5: Create ImageRepository for trusted-artifacts\necho \"🖼️  Creating ImageRepository for trusted-artifacts...\"\nkubectl apply -f - \u003c\u003cEOF\napiVersion: appstudio.redhat.com/v1alpha1\nkind: ImageRepository\nmetadata:\n  name: trusted-artifacts\n  namespace: ${MANAGED_NS}\nspec:\n  image:\n    name: ${IMAGE_NAME_PREFIX}/trusted-artifacts\n    visibility: public\nEOF\n\n# Step 6: Create ImageRepository for each component\nfor COMPONENT in \"${COMPONENTS[@]}\"; do\n    echo \"🖼️  Creating ImageRepository for component '${COMPONENT}'...\"\n    kubectl apply -f - \u003c\u003cEOF\napiVersion: appstudio.redhat.com/v1alpha1\nkind: ImageRepository\nmetadata:\n  name: ${COMPONENT}\n  namespace: ${MANAGED_NS}\nspec:\n  image:\n    name: ${IMAGE_NAME_PREFIX}/${COMPONENT}\n    visibility: public\nEOF\ndone\n\n# Step 7: Wait for all ImageRepositories to become ready\necho \"\"\necho \"⏳ Waiting for ImageRepositories to become ready (timeout: ${WAIT_TIMEOUT}s)...\"\n\nALL_REPOS=(\"trusted-artifacts\" \"${COMPONENTS[@]}\")\n\nfor repo in \"${ALL_REPOS[@]}\"; do\n    echo \"   Waiting for '${repo}'...\"\n    wait_for_imagerepository \"${repo}\"\n    echo \"   ✅ '${repo}' is ready\"\ndone\n\n# Step 8: Fetch dynamic values from ImageRepository status\necho \"\"\necho \"📡 Fetching image URLs and push secrets from ImageRepository status...\"\n\nTA_PUSH_SECRET=$(kubectl get imagerepository trusted-artifacts -n \"${MANAGED_NS}\" \\\n    -o jsonpath='{.status.credentials.push-secret}')\nTA_IMAGE_URL=$(kubectl get imagerepository trusted-artifacts -n \"${MANAGED_NS}\" \\\n    -o jsonpath='{.status.image.url}')\necho \"   trusted-artifacts:\"\necho \"     Image URL:   ${TA_IMAGE_URL}\"\n\n# Per-component ImageRepository push secret and image URL; index i matches COMPONENTS[i].\nREPO_PUSH_SECRETS=()\nREPO_IMAGE_URLS=()\nfor ((i = 0; i \u003c ${#COMPONENTS[@]}; i++)); do\n    COMPONENT=\"${COMPONENTS[i]}\"\n    REPO_PUSH_SECRETS[i]=$(kubectl get imagerepository \"${COMPONENT}\" -n \"${MANAGED_NS}\" \\\n        -o jsonpath='{.status.credentials.push-secret}')\n    REPO_IMAGE_URLS[i]=$(kubectl get imagerepository \"${COMPONENT}\" -n \"${MANAGED_NS}\" \\\n        -o jsonpath='{.status.image.url}')\n    echo \"   ${COMPONENT}:\"\n    echo \"     Image URL:   ${REPO_IMAGE_URLS[i]}\"\ndone\n\n# Step 9: Create release-pipeline ServiceAccount with push secrets\necho \"\"\necho \"👤 Creating release-pipeline ServiceAccount...\"\n\n# Build the secrets list YAML\nSECRETS_YAML=\"  - name: ${TA_PUSH_SECRET}\"\nfor ((i = 0; i \u003c ${#COMPONENTS[@]}; i++)); do\n    SECRETS_YAML=\"${SECRETS_YAML}\n  - name: ${REPO_PUSH_SECRETS[i]}\"\ndone\n\nkubectl apply -f - \u003c\u003cEOF\napiVersion: v1\nkind: ServiceAccount\nmetadata:\n  name: release-pipeline\n  namespace: ${MANAGED_NS}\nsecrets:\n${SECRETS_YAML}\nEOF\n\n# Step 10: Create RoleBinding for release-pipeline ServiceAccount\necho \"🔗 Creating RoleBinding for release-pipeline ServiceAccount...\"\nkubectl apply -f - \u003c\u003cEOF\napiVersion: rbac.authorization.k8s.io/v1\nkind: RoleBinding\nmetadata:\n  name: release-pipeline-resource-role-binding\n  namespace: ${MANAGED_NS}\nroleRef:\n  apiGroup: rbac.authorization.k8s.io\n  kind: ClusterRole\n  name: release-pipeline-resource-role\nsubjects:\n  - kind: ServiceAccount\n    name: release-pipeline\n    namespace: ${MANAGED_NS}\nEOF\n\n# Step 11: Copy SSO credentials from tpa-realm-clients secret in tsf namespace\nSSO_SECRET_CREATED=false\nSSO_ACCOUNT=release\nSSO_TOKEN=$(kubectl get secret tpa-realm-clients -n tsf \\\n  --ignore-not-found -o jsonpath=\"{.data.$SSO_ACCOUNT}\")\nif [ -n \"$SSO_TOKEN\" ]; then\n    echo \"🔑 Creating SSO credentials secret from tpa-realm-clients...\"\n    kubectl apply -f - \u003c\u003cEOF\napiVersion: v1\nkind: Secret\nmetadata:\n  name: release-sso-secret\n  namespace: ${MANAGED_NS}\ntype: Opaque\nstringData:\n  sso_account: ${SSO_ACCOUNT}\ndata:\n  sso_token: ${SSO_TOKEN}\nEOF\n    SSO_SECRET_CREATED=true\nfi\nif [ \"$SSO_SECRET_CREATED\" == false ]; then\n    echo \"⚠️ Secret 'tpa-realm-client' in namespace 'tsf' not found, skipping SSO credentials creation\"\nfi\n\n# Step 12: Create ReleasePlanAdmission\necho \"📋 Creating ReleasePlanAdmission...\"\n\n# Build the components mapping YAML\nCOMPONENTS_YAML=\"\"\nfor ((i = 0; i \u003c ${#COMPONENTS[@]}; i++)); do\n    COMPONENT=\"${COMPONENTS[i]}\"\n    COMPONENTS_YAML=\"${COMPONENTS_YAML}\n        - name: ${COMPONENT}\n          repositories:\n            - url: ${REPO_IMAGE_URLS[i]}\"\ndone\n\nkubectl apply -f - \u003c\u003cEOF\napiVersion: appstudio.redhat.com/v1alpha1\nkind: ReleasePlanAdmission\nmetadata:\n  name: ${RELEASE_NAME}\n  namespace: ${MANAGED_NS}\n  labels:\n    release.appstudio.openshift.io/auto-release: 'true'\nspec:\n  applications:\n    - ${APPLICATION}\n  origin: ${TENANT_NS}\n  policy: ${CONFORMA_POLICY}\n  data:\n    mapping:\n      defaults:\n        pushSourceContainer: false\n        tags:\n          - latest\n          - '{{ git_sha }}'\n      components:${COMPONENTS_YAML}\n    releaseNotes:\n      product_name: '${PRODUCT_NAME}'\n      product_version: '${PRODUCT_VERSION}'\n  pipeline:\n    pipelineRef:\n      resolver: git\n      ociStorage: ${TA_IMAGE_URL}\n      useEmptyDir: true\n      params:\n        - name: url\n          value: \"https://github.com/konflux-ci/release-service-catalog.git\"\n        - name: revision\n          value: ${CATALOG_REVISION}\n        - name: pathInRepo\n          value: \"pipelines/managed/push-to-external-registry/push-to-external-registry.yaml\"\n    serviceAccountName: release-pipeline\n    taskRunSpecs:\n      - pipelineTaskName: push-snapshot\n        stepSpecs:\n          - name: push-snapshot\n            computeResources:\n              requests:\n                cpu: 10m\n                memory: 256Mi\n              limits:\n                memory: 1Gi\nEOF\n\n# Step 13: Create ReleasePlan in tenant namespace\necho \"📋 Creating ReleasePlan in tenant namespace '${TENANT_NS}'...\"\nkubectl apply -f - \u003c\u003cEOF\napiVersion: appstudio.redhat.com/v1alpha1\nkind: ReleasePlan\nmetadata:\n  labels:\n    release.appstudio.openshift.io/auto-release: \"true\"\n    release.appstudio.openshift.io/standing-attribution: \"true\"\n  name: ${RELEASE_NAME}\n  namespace: ${TENANT_NS}\nspec:\n  application: ${APPLICATION}\n  target: ${MANAGED_NS}\nEOF\n\necho \"\"\necho \"✅ Release setup completed successfully!\"\necho \"\"\necho \"Resources created in managed namespace '${MANAGED_NS}':\"\necho \"  - Namespace: ${MANAGED_NS} (with label konflux-ci.dev/type: tenant)\"\nif [[ \"${IS_OPENSHIFT}\" == \"true\" ]]; then\n    echo \"  - ConfigMap: trusted-ca (OpenShift trusted CA bundle injection)\"\nfi\necho \"  - EnterpriseContractPolicy: ${CONFORMA_POLICY}\"\necho \"  - RoleBinding: authenticated-konflux-viewer -\u003e ClusterRole/konflux-viewer-user-actions\"\necho \"  - ImageRepository: trusted-artifacts\"\nfor COMPONENT in \"${COMPONENTS[@]}\"; do\n    echo \"  - ImageRepository: ${COMPONENT}\"\ndone\necho \"  - ServiceAccount: release-pipeline (with push secrets)\"\necho \"  - RoleBinding: release-pipeline-resource-role-binding -\u003e ClusterRole/release-pipeline-resource-role\"\nif [[ \"${SSO_SECRET_CREATED}\" == \"true\" ]]; then\n    echo \"  - Secret: release-sso-secret (SSO credentials from 'tpa-realm-clients')\"\nelse\n    echo \"  - Secret: release-sso-secret (SKIPPED - Secret 'tpa-realm-client' in 'tsf' not found)\"\nfi\necho \"  - ReleasePlanAdmission: ${RELEASE_NAME}\"\necho \"\"\necho \"Resources created in tenant namespace '${TENANT_NS}':\"\necho \"  - ReleasePlan: ${RELEASE_NAME} -\u003e ${MANAGED_NS}\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:43:13Z",
                "labels": {
                    "konflux.konflux-ci.dev/component": "cli",
                    "konflux.konflux-ci.dev/owner": "konflux-cli"
                },
                "name": "setup-release",
                "namespace": "konflux-cli",
                "ownerReferences": [
                    {
                        "apiVersion": "konflux.konflux-ci.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "KonfluxCLI",
                        "name": "konflux-cli",
                        "uid": "276f5be2-1cc0-49f1-88ae-a6b2264e649b"
                    }
                ],
                "resourceVersion": "6527",
                "uid": "4944dbf1-9e3e-4628-a075-df4fa676bf93"
            }
        },
        {
            "apiVersion": "v1",
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:43:13Z",
                "labels": {
                    "konflux.konflux-ci.dev/component": "info",
                    "konflux.konflux-ci.dev/owner": "konflux-info"
                },
                "name": "cluster-config",
                "namespace": "konflux-info",
                "ownerReferences": [
                    {
                        "apiVersion": "konflux.konflux-ci.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "KonfluxInfo",
                        "name": "konflux-info",
                        "uid": "996d16e0-12ec-45da-803d-f31322762002"
                    }
                ],
                "resourceVersion": "6402",
                "uid": "c9719b45-5b14-4ef1-bf42-326e95e60d93"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "banner-content.yaml": "null\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:43:12Z",
                "labels": {
                    "konflux.konflux-ci.dev/component": "info",
                    "konflux.konflux-ci.dev/owner": "konflux-info"
                },
                "name": "konflux-banner-configmap",
                "namespace": "konflux-info",
                "ownerReferences": [
                    {
                        "apiVersion": "konflux.konflux-ci.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "KonfluxInfo",
                        "name": "konflux-info",
                        "uid": "996d16e0-12ec-45da-803d-f31322762002"
                    }
                ],
                "resourceVersion": "6368",
                "uid": "76e5d7cb-3a3b-43b6-98ba-25dee7c9c511"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "info.json": "{\n    \"environment\": \"development\",\n    \"visibility\": \"public\",\n    \"clusterId\": \"81fe131d-4865-4870-8a2c-1a851439af63\",\n    \"konfluxVersion\": \"40bff2e6b92e67a286e04f8bac90ab096a86dd14\",\n    \"kubernetesVersion\": \"v1.32.5\",\n    \"rbac\": [\n        {\n            \"displayName\": \"admin\",\n            \"description\": \"Full access to Konflux resources including secrets\",\n            \"roleRef\": {\n                \"apiGroup\": \"rbac.authorization.k8s.io\",\n                \"kind\": \"ClusterRole\",\n                \"name\": \"konflux-admin-user-actions\"\n            }\n        },\n        {\n            \"displayName\": \"maintainer\",\n            \"description\": \"Partial access to Konflux resources without access to secrets\",\n            \"roleRef\": {\n                \"apiGroup\": \"rbac.authorization.k8s.io\",\n                \"kind\": \"ClusterRole\",\n                \"name\": \"konflux-maintainer-user-actions\"\n            }\n        },\n        {\n            \"displayName\": \"contributor\",\n            \"description\": \"View access to Konflux resources without access to secrets\",\n            \"roleRef\": {\n                \"apiGroup\": \"rbac.authorization.k8s.io\",\n                \"kind\": \"ClusterRole\",\n                \"name\": \"konflux-contributor-user-actions\"\n            }\n        }\n    ]\n}"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:43:12Z",
                "labels": {
                    "konflux.konflux-ci.dev/component": "info",
                    "konflux.konflux-ci.dev/owner": "konflux-info"
                },
                "name": "konflux-public-info",
                "namespace": "konflux-info",
                "ownerReferences": [
                    {
                        "apiVersion": "konflux.konflux-ci.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "KonfluxInfo",
                        "name": "konflux-info",
                        "uid": "996d16e0-12ec-45da-803d-f31322762002"
                    }
                ],
                "resourceVersion": "6350",
                "uid": "7b9072ec-39d5-454c-8999-29542c3c17de"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----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\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:43:12Z",
                "name": "kube-root-ca.crt",
                "namespace": "konflux-info",
                "resourceVersion": "6323",
                "uid": "57d0e6e5-a1f4-44bc-8a4a-ec4d48c90f82"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "config.yaml": "enablePasswordDB: true\nissuer: https://localhost:9443/idp/\noauth2:\n  skipApprovalScreen: true\nstaticClients:\n- id: oauth2-proxy\n  name: oauth2-proxy\n  redirectURIs:\n  - https://localhost:9443/oauth2/callback\n  secretEnv: CLIENT_SECRET\nstorage:\n  config:\n    inCluster: true\n  type: kubernetes\ntelemetry:\n  http: 0.0.0.0:5558\nweb:\n  https: 0.0.0.0:9443\n  tlsCert: /etc/dex/tls/tls.crt\n  tlsKey: /etc/dex/tls/tls.key\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:43:12Z",
                "labels": {
                    "app.kubernetes.io/managed-by-konflux-ui-reconciler": "true"
                },
                "name": "dex-a1e0d64847",
                "namespace": "konflux-ui",
                "ownerReferences": [
                    {
                        "apiVersion": "konflux.konflux-ci.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "KonfluxUI",
                        "name": "konflux-ui",
                        "uid": "ccf21c6f-cca1-473f-88c8-ebd79062841e"
                    }
                ],
                "resourceVersion": "6305",
                "uid": "a5535f84-b4d8-420d-a2bc-dec0332a6a26"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----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\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:43:11Z",
                "name": "kube-root-ca.crt",
                "namespace": "konflux-ui",
                "resourceVersion": "6287",
                "uid": "906b9b44-61ab-4907-8da8-4067ea9f1aca"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "kite.caddy": "handle_path /api/k8s/plugins/kite/* {\n    route {\n        forward_auth 127.0.0.1:6000 {\n            uri /oauth2/auth\n            copy_headers X-Auth-Request-Email X-Auth-Request-Groups\n        }\n\t\timpersonate\n\t\tinject_cached_vars\n        reverse_proxy https://__KITE_HOSTNAME__ {\n            header_up Authorization \"Bearer {http.vars.kube_token}\"\n            import /mnt/caddy-snippets/backend-tls.conf\n        }\n    }\n}\n",
                "kubearchive.caddy": "handle_path /api/k8s/plugins/kubearchive/* {\n    route {\n        forward_auth 127.0.0.1:6000 {\n            uri /oauth2/auth\n            copy_headers X-Auth-Request-Email X-Auth-Request-Groups\n        }\n\t\timpersonate\n\t\tinject_cached_vars\n        reverse_proxy https://__KUBEARCHIVE_HOSTNAME__:8081 {\n            header_up Authorization \"Bearer {http.vars.kube_token}\"\n            import /mnt/caddy-snippets/backend-tls.conf\n        }\n    }\n}\n",
                "tekton-results.caddy": "handle_path /api/k8s/plugins/tekton-results/* {\n    route {\n        forward_auth 127.0.0.1:6000 {\n            uri /oauth2/auth\n            copy_headers X-Auth-Request-Email X-Auth-Request-Groups\n        }\n\t\timpersonate\n\t\tinject_cached_vars\n        reverse_proxy https://__TEKTON_RESULTS_HOSTNAME__:8080 {\n            # TODO: switch to {http.vars.backend_token} once Tekton Results\n            # accepts the \"konflux-backend\" audience in TokenReview.\n            # See backend-token volume in proxy.yaml for context.\n            header_up Authorization \"Bearer {http.vars.kube_token}\"\n            import /mnt/caddy-snippets/backend-tls.conf\n        }\n    }\n}\n",
                "watson.caddy": "handle_path /api/chatbot/* {\n    route {\n        forward_auth 127.0.0.1:6000 {\n            uri /oauth2/auth\n            copy_headers X-Auth-Request-Email X-Auth-Request-Groups\n        }\n        inject_cached_vars\n        reverse_proxy https://__WATSON_HOST__ {\n            header_up Authorization \"Basic {http.vars.watson_auth}\"\n            header_up Host __WATSON_HOST__\n            import /mnt/caddy-snippets/watson-tls.conf\n        }\n    }\n}\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:43:14Z",
                "labels": {
                    "konflux.konflux-ci.dev/component": "ui",
                    "konflux.konflux-ci.dev/owner": "konflux-ui"
                },
                "name": "proxy-caddy-templates-46ctfh6tk7",
                "namespace": "konflux-ui",
                "ownerReferences": [
                    {
                        "apiVersion": "konflux.konflux-ci.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "KonfluxUI",
                        "name": "konflux-ui",
                        "uid": "ccf21c6f-cca1-473f-88c8-ebd79062841e"
                    }
                ],
                "resourceVersion": "6552",
                "uid": "2a9f7297-c9ec-4c5c-ab80-f503ed44367e"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "Caddyfile": "{\n\tauto_https off\n\tadmin off\n\t# Enable HTTP middleware metrics (scraped via :2112 /metrics).\n\t# Do not add per_host — Host labels are unbounded on this catch-all :9443 site.\n\tmetrics\n\torder inject_cached_vars before reverse_proxy\n\tfile_watcher {\n\t\tcache kube_token /var/run/secrets/konflux-ci.dev/serviceaccount/token\n\t\tcache backend_token /var/run/secrets/konflux-ci.dev/backend/token\n\t\tcache watson_auth /mnt/watson-config/API_KEY {\n\t\t\tdefault \"\"\n\t\t}\n\t\twatch /var/run/secrets/kubernetes.io/serviceaccount\n\t\twatch /mnt/cluster-ca\n\t\twatch /mnt/service-ca\n\t\twatch /mnt/serving-cert\n\t}\n}\n\n# TODO: protect metrics with kube-rbac-proxy sidecar (https://github.com/openshift/kube-rbac-proxy)\n:2112 {\n\tmetrics /metrics\n}\n\n:9443 {\n\ttls {\n\t\tget_certificate file {\n\t\t\tcert /mnt/serving-cert/tls.crt\n\t\t\tkey /mnt/serving-cert/tls.key\n\t\t}\n\t}\n\n\t# Strip any client-supplied impersonation and proxy-auth headers to\n\t# prevent spoofing. This runs at the server level, before any\n\t# handle/route blocks.\n\trequest_header -Impersonate-User\n\trequest_header -Impersonate-Group\n\trequest_header -Impersonate-Uid\n\trequest_header -Impersonate-Extra-*\n\trequest_header -X-User\n\trequest_header -X-Group\n\n\t# Health endpoint for liveness/readiness probes\n\thandle /health {\n\t\trespond 200\n\t}\n\n\t# Segment bridge files\n\thandle /segment/* {\n\t\troot * /opt/app-root/src\n\t\theader Content-Type text/plain\n\t\tfile_server\n\t}\n\n\t# OAuth2 proxy - browser-facing auth UI/callback\n\thandle /oauth2/* {\n\t\treverse_proxy 127.0.0.1:6000\n\t}\n\n\t# Namespace lister (GET only on exact paths)\n\t# The namespace-lister performs in-memory RBAC authorization: it checks\n\t# RoleBindings for the user AND their groups to decide which namespaces\n\t# to return. Without group headers, a user only sees namespaces where\n\t# they are bound individually — group-based bindings are invisible.\n\t@nsListGet {\n\t\tmethod GET\n\t\tpath /api/k8s/api/v1/namespaces /api/k8s/api/v1/namespaces/\n\t}\n\thandle @nsListGet {\n\t\troute {\n\t\t\tforward_auth 127.0.0.1:6000 {\n\t\t\t\turi /oauth2/auth\n\t\t\t\tcopy_headers X-Auth-Request-Email X-Auth-Request-Groups\n\t\t\t}\n\t\t\timpersonate {\n\t\t\t\ttarget_user X-User\n\t\t\t\ttarget_group X-Group\n\t\t\t}\n\t\t\trewrite * /api/v1/namespaces\n\t\t\treverse_proxy https://namespace-lister.namespace-lister.svc.cluster.local:8080 {\n\t\t\t\theader_down -X-Correlation-ID\n\t\t\t\ttransport http {\n\t\t\t\t\tread_timeout 30m\n\t\t\t\t\twrite_timeout 30m\n\t\t\t\t\ttls_trust_pool file /mnt/cluster-ca/ca-bundle.crt\n\t\t\t\t}\n\t\t\t}\n\t\t}\n\t}\n\n\t# Backend snippets (tekton-results, kubearchive, etc.) loaded from init-generated configs.\n\t# NOTE: Imported snippets MUST use paths more specific than /api/k8s/ to avoid\n\t# shadowing the Kube API catch-all handler below. Caddy evaluates handle blocks\n\t# by specificity (longest path match first), so e.g. /api/k8s/plugins/tekton-results/\n\t# is safe because it is more specific than /api/k8s/.\n\timport /mnt/caddy-snippets/*.caddy\n\n\t# WebSocket to Kube API\n\thandle_path /wss/k8s/* {\n\t\troute {\n\t\t\tforward_auth 127.0.0.1:6000 {\n\t\t\t\turi /oauth2/auth\n\t\t\t\tcopy_headers X-Auth-Request-Email X-Auth-Request-Groups\n\t\t\t}\n\t\t\timpersonate\n\t\t\tinject_cached_vars\n\t\t\treverse_proxy https://kubernetes.default.svc {\n\t\t\t\theader_up Authorization \"Bearer {http.vars.kube_token}\"\n\t\t\t\ttransport http {\n\t\t\t\t\tread_timeout 30m\n\t\t\t\t\twrite_timeout 30m\n\t\t\t\t\ttls_trust_pool file /var/run/secrets/kubernetes.io/serviceaccount/ca.crt\n\t\t\t\t}\n\t\t\t}\n\t\t}\n\t}\n\n\t# Kube API (catch-all for /api/k8s/)\n\thandle_path /api/k8s/* {\n\t\troute {\n\t\t\tforward_auth 127.0.0.1:6000 {\n\t\t\t\turi /oauth2/auth\n\t\t\t\tcopy_headers X-Auth-Request-Email X-Auth-Request-Groups\n\t\t\t}\n\t\t\timpersonate\n\t\t\tinject_cached_vars\n\t\t\treverse_proxy https://kubernetes.default.svc {\n\t\t\t\theader_up Authorization \"Bearer {http.vars.kube_token}\"\n\t\t\t\ttransport http {\n\t\t\t\t\tread_timeout 30m\n\t\t\t\t\twrite_timeout 30m\n\t\t\t\t\ttls_trust_pool file /var/run/secrets/kubernetes.io/serviceaccount/ca.crt\n\t\t\t\t}\n\t\t\t}\n\t\t}\n\t}\n\n\t# Dex Identity Provider\n\thandle /idp/* {\n\t\treverse_proxy https://dex.konflux-ui.svc.cluster.local:9443 {\n\t\t\theader_up X-Forwarded-Port \"9443\"\n\t\t\ttransport http {\n\t\t\t\ttls_trust_pool file /mnt/serving-cert/ca.crt\n\t\t\t}\n\t\t}\n\t}\n\n\t# Static SPA (catch-all, must be last)\n\thandle {\n\t\troot * /opt/app-root/src/static-content\n\t\ttry_files {path} /index.html\n\t\tfile_server\n\t}\n}\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:43:14Z",
                "labels": {
                    "konflux.konflux-ci.dev/component": "ui",
                    "konflux.konflux-ci.dev/owner": "konflux-ui"
                },
                "name": "proxy-caddyfile-45hm8d8b52",
                "namespace": "konflux-ui",
                "ownerReferences": [
                    {
                        "apiVersion": "konflux.konflux-ci.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "KonfluxUI",
                        "name": "konflux-ui",
                        "uid": "ccf21c6f-cca1-473f-88c8-ebd79062841e"
                    }
                ],
                "resourceVersion": "6560",
                "uid": "2c08f205-f8d2-4542-97c0-180dd8ef7a67"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "generate-proxy-config.sh": "#!/bin/sh\n\nset -eu\n\nTEMPLATES_DIR=/mnt/caddy-templates\nSNIPPETS_DIR=/mnt/caddy-snippets\nSERVICE_CA_PATH=/mnt/service-ca/service-ca.crt\n\nfor cmd in sed getent printf; do\n  command -v \"${cmd}\" \u003e/dev/null 2\u003e\u00261 || { echo \"required command not found: ${cmd}\"; exit 1; }\ndone\n\nlog() { echo \"$(date -Iseconds) generate-proxy-config: $*\"; }\n\n# resolve_tekton_results outputs the tekton-results hostname.\n# Env var TEKTON_RESULTS_HOSTNAME takes precedence over DNS probing.\nresolve_tekton_results() {\n  if [ -n \"${TEKTON_RESULTS_HOSTNAME:-}\" ]; then\n    echo \"${TEKTON_RESULTS_HOSTNAME}\"\n    return 0\n  fi\n\n  for host in \\\n    tekton-results-api-service.tekton-pipelines.svc.cluster.local \\\n    tekton-results-api-service.openshift-pipelines.svc.cluster.local \\\n    tekton-results-api-service.tekton-results.svc.cluster.local; do\n    if getent hosts \"${host}\" \u003e /dev/null 2\u003e\u00261; then\n      echo \"${host}\"\n      return 0\n    fi\n  done\n\n  return 1\n}\n\n# Process tekton-results template\nif [ -f \"${TEMPLATES_DIR}/tekton-results.caddy\" ]; then\n  if hostname=$(resolve_tekton_results); then\n    log \"tekton-results resolved to ${hostname}\"\n    sed \"s/__TEKTON_RESULTS_HOSTNAME__/${hostname}/\" \\\n      \"${TEMPLATES_DIR}/tekton-results.caddy\" \u003e \"${SNIPPETS_DIR}/tekton-results.caddy\"\n  else\n    log \"tekton-results not available, skipping\"\n  fi\nfi\n\n# Process kite template\nif [ \"${KITE_ENABLED:-}\" = \"true\" ] \u0026\u0026 [ -f \"${TEMPLATES_DIR}/kite.caddy\" ]; then\n  hostname=\"${KITE_HOSTNAME:-konflux-kite.konflux-kite.svc.cluster.local}\"\n  sed \"s/__KITE_HOSTNAME__/${hostname}/g\" \\\n    \"${TEMPLATES_DIR}/kite.caddy\" \u003e \"${SNIPPETS_DIR}/kite.caddy\"\n  log \"kite endpoint enabled (${hostname})\"\nfi\n\n# Process kubearchive template\nif [ \"${KUBEARCHIVE_ENABLED:-}\" = \"true\" ] \u0026\u0026 [ -f \"${TEMPLATES_DIR}/kubearchive.caddy\" ]; then\n  hostname=\"${KUBEARCHIVE_HOSTNAME:-kubearchive-api-server.product-kubearchive.svc.cluster.local}\"\n  sed \"s/__KUBEARCHIVE_HOSTNAME__/${hostname}/g\" \\\n    \"${TEMPLATES_DIR}/kubearchive.caddy\" \u003e \"${SNIPPETS_DIR}/kubearchive.caddy\"\n  log \"kubearchive endpoint enabled (${hostname})\"\nfi\n\n# Process watson template.\n# The API_KEY value is cached by file_watcher directly from the mounted Secret;\n# the init container only generates the Caddy route and TLS snippets.\nif [ \"${WATSON_ENABLED:-}\" = \"true\" ] \u0026\u0026 [ -f \"${TEMPLATES_DIR}/watson.caddy\" ]; then\n  watson_host=\"${WATSON_HOSTNAME:-api.us-east.assistant.watson.cloud.ibm.com}\"\n  watson_default_host=\"api.us-east.assistant.watson.cloud.ibm.com\"\n\n  sed \"s/__WATSON_HOST__/${watson_host}/g\" \\\n    \"${TEMPLATES_DIR}/watson.caddy\" \u003e \"${SNIPPETS_DIR}/watson.caddy\"\n\n  # Generate watson TLS transport config.\n  # - Default external host: always use system roots with SNI (never skip verification)\n  # - Overridden hostname + service CA: use service CA\n  # - Overridden hostname, no service CA: skip verification (in-cluster self-signed)\n  if [ \"${watson_host}\" = \"${watson_default_host}\" ]; then\n    printf 'transport http {\\n    tls_server_name %s\\n}\\n' \"${watson_host}\" \\\n      \u003e \"${SNIPPETS_DIR}/watson-tls.conf\"\n    log \"watson TLS: system roots with SNI (external host)\"\n  elif [ -f \"${SERVICE_CA_PATH}\" ]; then\n    printf 'transport http {\\n    tls_trust_pool file %s\\n}\\n' \"${SERVICE_CA_PATH}\" \\\n      \u003e \"${SNIPPETS_DIR}/watson-tls.conf\"\n    log \"watson TLS: service CA (in-cluster override)\"\n  else\n    printf 'transport http {\\n    tls_insecure_skip_verify\\n}\\n' \\\n      \u003e \"${SNIPPETS_DIR}/watson-tls.conf\"\n    log \"watson TLS: insecure (in-cluster, no service CA)\"\n  fi\n\n  log \"watson endpoint enabled (${watson_host})\"\nfi\n\n# Generate TLS transport config for backend services (Tekton Results, KubeArchive, etc.).\n# On OpenShift, the service-ca-operator injects the CA bundle into a ConfigMap\n# mounted at SERVICE_CA_PATH. When present, backends are verified against this CA.\n# Otherwise, fall back to skipping verification (the default for non-OpenShift\n# clusters; see docs for how to configure cert-manager to issue trusted certs).\nif [ -f \"${SERVICE_CA_PATH}\" ]; then\n  printf 'transport http {\\n    tls_trust_pool file %s\\n}\\n' \"${SERVICE_CA_PATH}\" \\\n    \u003e \"${SNIPPETS_DIR}/backend-tls.conf\"\n  log \"using service CA for backend TLS verification\"\nelse\n  printf 'transport http {\\n    tls_insecure_skip_verify\\n}\\n' \\\n    \u003e \"${SNIPPETS_DIR}/backend-tls.conf\"\n  log \"no service CA found, backend TLS verification disabled\"\nfi\n\nSTATIC_DIR=/opt/app-root/src/static-content\nout=\"${STATIC_DIR}/runtime-config.js\"\nprintf 'window.KONFLUX_RUNTIME = window.KONFLUX_RUNTIME || {};\\n' \u003e \"$out\"\nenv | grep '^RUNTIME_' | sort | while IFS= read -r var; do\n  name=\"${var%%=*}\"\n  name=\"${name#RUNTIME_}\"\n  value=\"${var#*=}\"\n  esc=$(printf '%s' \"$value\" | sed -e 's/\\\\/\\\\\\\\/g' -e 's/\"/\\\\\"/g' -e \"s/$(printf '\\r')/\\\\\\\\r/g\")\n  printf 'window.KONFLUX_RUNTIME[\"%s\"] = \"%s\";\\n' \"$name\" \"$esc\" \u003e\u003e \"$out\"\ndone\nlog \"runtime-config.js generated\"\n\nlog \"done\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:43:14Z",
                "labels": {
                    "konflux.konflux-ci.dev/component": "ui",
                    "konflux.konflux-ci.dev/owner": "konflux-ui"
                },
                "name": "proxy-generate-config-hf55g9gkh2",
                "namespace": "konflux-ui",
                "ownerReferences": [
                    {
                        "apiVersion": "konflux.konflux-ci.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "KonfluxUI",
                        "name": "konflux-ui",
                        "uid": "ccf21c6f-cca1-473f-88c8-ebd79062841e"
                    }
                ],
                "resourceVersion": "6570",
                "uid": "75abacde-9abc-495d-a95c-6e09d383b900"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "run-dex.sh": "#!/bin/bash\n\nset -euo pipefail\n\nORIGINAL_TOKEN=/tmp/var/run/secrets/dex/serviceaccount/token\nTOKEN_PATH=${TOKEN_PATH:-/var/run/secrets/kubernetes.io/serviceaccount/token}\nWAIT_TIME=10\nHALT_TIMEOUT=100\nMAX_JITTER_TIME=10\n\n# auxiliary log function\nlog() { printf \"%s: %s\\n\" \"$(date -Iseconds)\" \"$*\"; }\n\n# forward SIGTERM/SIGINT for graceful shutdown\n#\n# shellcheck disable=SC2329\n# ShellCheck is currently bad at figuring out functions that are invoked via trap\nshutdown() {\n  log \"received signal, shutting down\"\n  if [ -n \"${dex_pid:-}\" ] \u0026\u0026 [ -d \"/proc/${dex_pid}\" ]; then\n    kill -s TERM \"${dex_pid}\" 2\u003e/dev/null || true\n    wait_for_halt || true\n  fi\n  exit 143\n}\n\nwait_for_halt() (\n  counter=0\n  while [ -d \"/proc/${dex_pid}\" ] \u0026\u0026 [ $(( counter++ )) -le \"${HALT_TIMEOUT}\" ]; do \n    sleep 1\n  done\n\n  if [ -d \"/proc/${dex_pid}\" ]; then\n    return 1\n  fi\n  return 0\n)\n\nstart_with_reload() {\n  while true; do\n    # copy the original token for later use\n    log \"copying the token to ${ORIGINAL_TOKEN}\"\n    mkdir -p \"$(dirname \"${ORIGINAL_TOKEN}\")\"\n    rm \"${ORIGINAL_TOKEN}\" || true\n    cp \"${TOKEN_PATH}\" \"${ORIGINAL_TOKEN}\"\n\n    # run dex in a subprocess\n    OPENSHIFT_OAUTH_CLIENT_SECRET=\"$(cat \"${ORIGINAL_TOKEN}\")\" \\\n    OPENSHIFT_OAUTH_CLIENT_ID=\"${OPENSHIFT_OAUTH_CLIENT_ID:-system:serviceaccount:${NAMESPACE}:${POD_SERVICE_ACCOUNT}}\" \\\n      /usr/local/bin/dex serve /etc/dex/cfg/config.yaml \u0026\n    dex_pid=\"$!\"\n    log \"run Dex in background with pid ${dex_pid}\"\n\n    # wait for the token to be refresh by kubelet\n    log \"waiting for the token to be refreshed\"\n    while [ \"$(cksum \u003c \"${ORIGINAL_TOKEN}\")\" = \"$(cksum \u003c \"${TOKEN_PATH}\")\" ]; do sleep \"${WAIT_TIME}\"; done\n\n    # reduce likelihood of having all replicas refreshing at the same time\n    jitter=\"$(( $(od -An -N2 -i /dev/urandom) % MAX_JITTER_TIME ))\"\n    log \"sleeping ${jitter} seconds to prevent all replicas to restart at the same time\"\n    sleep \"${jitter}\"\n\n    # Send SIGTERM to Dex\n    log \"token refreshed, halting Dex via SIGTERM\"\n    if [ -d \"/proc/${dex_pid}\" ]; then\n      kill -s TERM \"${dex_pid}\" || true\n    fi\n\n    # Wait for Dex to halt\n    log \"waiting for Dex to gracefully stop\"\n    if ! wait_for_halt; then\n      log \"Dex didn't stop in ${HALT_TIMEOUT} seconds, breaking\"\n      exit 1\n    fi\n  done\n\n  log \"the loop broke unexpectedly\"\n  exit 1\n}\n\nmain() {\n  trap shutdown TERM INT\n\n  start_with_reload\n}\n\nmain\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:43:14Z",
                "labels": {
                    "konflux.konflux-ci.dev/component": "ui",
                    "konflux.konflux-ci.dev/owner": "konflux-ui"
                },
                "name": "run-dex-f654f6k7th",
                "namespace": "konflux-ui",
                "ownerReferences": [
                    {
                        "apiVersion": "konflux.konflux-ci.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "KonfluxUI",
                        "name": "konflux-ui",
                        "uid": "ccf21c6f-cca1-473f-88c8-ebd79062841e"
                    }
                ],
                "resourceVersion": "6584",
                "uid": "f478676c-35bc-4f32-a833-1c1e83035818"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----\nMIIDBTCCAe2gAwIBAgIITKMe4a1ABSgwDQYJKoZIhvcNAQELBQAwFTETMBEGA1UE\nAxMKa3ViZXJuZXRlczAeFw0yNjA4MTIxMjIzNDdaFw0zNjA4MDkxMjI4NDdaMBUx\nEzARBgNVBAMTCmt1YmVybmV0ZXMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK\nAoIBAQCs11nQcU0gTG+VICswqSDLlIyHanC/F65wGJ6T3LdSmcYd70JjidSHPNop\nJcZa0kpHfaxdnnn5mthX5dyNUvDS5oz1C38JoAtiNZ97tpn1KXTyAfsjFnswLZWs\nE2Rjxx3yky/4Aw7TVwoiwRxX3NPi9MS5UEFwZPTy1kXX34omQWvWNcN3WryRMcgV\nZPb8zWV5XVYnUkDAxd7Jr2GCfs4PGiMxA9XLTlvF/m22ea5U/w7aeOPVWebn4kGL\noFVlwFKbMmekDiq8UPp+Pr8XGYrcNegRNsmDYGg8m4Pc1WukYsa3QsqzsrWa2Y26\nRDwmK5ad11Z1msf83A52ipDR9n7dAgMBAAGjWTBXMA4GA1UdDwEB/wQEAwICpDAP\nBgNVHRMBAf8EBTADAQH/MB0GA1UdDgQWBBRdhSatGAA1IfWR4f/qUENdeSeAPzAV\nBgNVHREEDjAMggprdWJlcm5ldGVzMA0GCSqGSIb3DQEBCwUAA4IBAQCnx5DdK55P\ncspd4+0A8NvoRxw1NszledJB9a2mhAVQ1SMVAkw4F6QCtx4vOuEHH0MxJlguqIaJ\n49ZhBJy23lxR3l24XxwUtisH2EZoamcBsh7DPIY3E82M/euSXvtawCc6ZCnej476\nUDzU5qKvVp7V3ZyYegsl2aD9SWokvWItBql5VGmR1pBwG6ldfoh6z7EQbw7law5S\ntNqCsuusFp+OgTGj/MwmRObwn1+MC0S8jLjUjNwanLcPxGOlO6UYhmuGI6xvkyQq\nSKm+2x+/3v6zXP9m0J4PZmM9H8TXURN35dXmBV67Bs+NOQ4SGJywRUsRK5KRbMq7\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:29:05Z",
                "name": "kube-root-ca.crt",
                "namespace": "kube-node-lease",
                "resourceVersion": "347",
                "uid": "0b17a55c-bdfc-4531-8bcf-08ad9d52ef78"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "jws-kubeconfig-abcdef": "eyJhbGciOiJIUzI1NiIsImtpZCI6ImFiY2RlZiJ9..h0O1FilhtcAePSN0sbA3WZOtaMmqe5RwPAFPpn8egg4",
                "kubeconfig": "apiVersion: v1\nclusters:\n- cluster:\n    certificate-authority-data: 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\n    server: https://kind-mapt-control-plane:6443\n  name: \"\"\ncontexts: null\ncurrent-context: \"\"\nkind: Config\npreferences: {}\nusers: null\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:29:00Z",
                "name": "cluster-info",
                "namespace": "kube-public",
                "resourceVersion": "366",
                "uid": "8bcb2c42-c59c-433d-be25-f8498d12ce36"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----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\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:29:05Z",
                "name": "kube-root-ca.crt",
                "namespace": "kube-public",
                "resourceVersion": "348",
                "uid": "8a74dfe8-7c03-4581-b48e-d3cf3064f753"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "Corefile": ".:53 {\n    errors\n    health {\n       lameduck 5s\n    }\n    ready\n    kubernetes cluster.local in-addr.arpa ip6.arpa {\n       pods insecure\n       fallthrough in-addr.arpa ip6.arpa\n       ttl 30\n    }\n    prometheus :9153\n    forward . /etc/resolv.conf {\n       max_concurrent 1000\n    }\n    cache 30 {\n       disable success cluster.local\n       disable denial cluster.local\n    }\n    loop\n    reload\n    loadbalance\n}\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:29:00Z",
                "name": "coredns",
                "namespace": "kube-system",
                "resourceVersion": "255",
                "uid": "45f7e62a-acc8-42e9-99c1-b48ef1d90d27"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "client-ca-file": "-----BEGIN CERTIFICATE-----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\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n",
                "requestheader-allowed-names": "[\"front-proxy-client\"]",
                "requestheader-client-ca-file": "-----BEGIN CERTIFICATE-----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\nHinwcyBeHE3hqWLUNwUNyHRGx4yG\n-----END CERTIFICATE-----\n",
                "requestheader-extra-headers-prefix": "[\"X-Remote-Extra-\"]",
                "requestheader-group-headers": "[\"X-Remote-Group\"]",
                "requestheader-username-headers": "[\"X-Remote-User\"]"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:28:58Z",
                "name": "extension-apiserver-authentication",
                "namespace": "kube-system",
                "resourceVersion": "31",
                "uid": "24d0dfde-fa05-4a98-b55d-cbce8dc974ff"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "since": "2026-08-12"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:28:58Z",
                "name": "kube-apiserver-legacy-service-account-token-tracking",
                "namespace": "kube-system",
                "resourceVersion": "43",
                "uid": "ac80155e-0418-4f34-be49-43bde2802ef3"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "config.conf": "apiVersion: kubeproxy.config.k8s.io/v1alpha1\nbindAddress: 0.0.0.0\nbindAddressHardFail: false\nclientConnection:\n  acceptContentTypes: \"\"\n  burst: 0\n  contentType: \"\"\n  kubeconfig: /var/lib/kube-proxy/kubeconfig.conf\n  qps: 0\nclusterCIDR: 10.244.0.0/16\nconfigSyncPeriod: 0s\nconntrack:\n  maxPerCore: 0\n  min: null\n  tcpBeLiberal: false\n  tcpCloseWaitTimeout: null\n  tcpEstablishedTimeout: null\n  udpStreamTimeout: 0s\n  udpTimeout: 0s\ndetectLocal:\n  bridgeInterface: \"\"\n  interfaceNamePrefix: \"\"\ndetectLocalMode: \"\"\nenableProfiling: false\nhealthzBindAddress: \"\"\nhostnameOverride: \"\"\niptables:\n  localhostNodePorts: null\n  masqueradeAll: false\n  masqueradeBit: null\n  minSyncPeriod: 1s\n  syncPeriod: 0s\nipvs:\n  excludeCIDRs: null\n  minSyncPeriod: 0s\n  scheduler: \"\"\n  strictARP: false\n  syncPeriod: 0s\n  tcpFinTimeout: 0s\n  tcpTimeout: 0s\n  udpTimeout: 0s\nkind: KubeProxyConfiguration\nlogging:\n  flushFrequency: 0\n  options:\n    json:\n      infoBufferSize: \"0\"\n    text:\n      infoBufferSize: \"0\"\n  verbosity: 0\nmetricsBindAddress: \"\"\nmode: iptables\nnftables:\n  masqueradeAll: false\n  masqueradeBit: null\n  minSyncPeriod: 0s\n  syncPeriod: 0s\nnodePortAddresses: null\noomScoreAdj: null\nportRange: \"\"\nshowHiddenMetricsForVersion: \"\"\nwinkernel:\n  enableDSR: false\n  forwardHealthCheckVip: false\n  networkName: \"\"\n  rootHnsEndpointName: \"\"\n  sourceVip: \"\"",
                "kubeconfig.conf": "apiVersion: v1\nkind: Config\nclusters:\n- cluster:\n    certificate-authority: /var/run/secrets/kubernetes.io/serviceaccount/ca.crt\n    server: https://kind-mapt-control-plane:6443\n  name: default\ncontexts:\n- context:\n    cluster: default\n    namespace: default\n    user: default\n  name: default\ncurrent-context: default\nusers:\n- name: default\n  user:\n    tokenFile: /var/run/secrets/kubernetes.io/serviceaccount/token"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:29:01Z",
                "labels": {
                    "app": "kube-proxy"
                },
                "name": "kube-proxy",
                "namespace": "kube-system",
                "resourceVersion": "285",
                "uid": "43b4e497-620f-40ac-85b7-387c84082416"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----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\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:29:05Z",
                "name": "kube-root-ca.crt",
                "namespace": "kube-system",
                "resourceVersion": "349",
                "uid": "0fded944-a5df-4b47-b240-388b8e5eb188"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ClusterConfiguration": "apiServer:\n  certSANs:\n  - 13.204.187.131\n  extraArgs:\n  - name: runtime-config\n    value: \"\"\napiVersion: kubeadm.k8s.io/v1beta4\ncaCertificateValidityPeriod: 87600h0m0s\ncertificateValidityPeriod: 8760h0m0s\ncertificatesDir: /etc/kubernetes/pki\nclusterName: kind-mapt\ncontrolPlaneEndpoint: kind-mapt-control-plane:6443\ncontrollerManager:\n  extraArgs:\n  - name: enable-hostpath-provisioner\n    value: \"true\"\ndns: {}\nencryptionAlgorithm: RSA-2048\netcd:\n  local:\n    dataDir: /var/lib/etcd\nimageRepository: registry.k8s.io\nkind: ClusterConfiguration\nkubernetesVersion: v1.32.5\nnetworking:\n  dnsDomain: cluster.local\n  podSubnet: 10.244.0.0/16\n  serviceSubnet: 10.96.0.0/16\nproxy: {}\nscheduler: {}\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:29:00Z",
                "name": "kubeadm-config",
                "namespace": "kube-system",
                "resourceVersion": "238",
                "uid": "5e656fab-358f-4be3-b912-599cf68c3da7"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "kubelet": "apiVersion: kubelet.config.k8s.io/v1beta1\nauthentication:\n  anonymous:\n    enabled: false\n  webhook:\n    cacheTTL: 0s\n    enabled: true\n  x509:\n    clientCAFile: /etc/kubernetes/pki/ca.crt\nauthorization:\n  mode: Webhook\n  webhook:\n    cacheAuthorizedTTL: 0s\n    cacheUnauthorizedTTL: 0s\ncgroupDriver: systemd\ncgroupRoot: /kubelet\nclusterDNS:\n- 10.96.0.10\nclusterDomain: cluster.local\ncontainerRuntimeEndpoint: \"\"\ncpuManagerReconcilePeriod: 0s\ncrashLoopBackOff: {}\nevictionHard:\n  imagefs.available: 0%\n  nodefs.available: 0%\n  nodefs.inodesFree: 0%\nevictionPressureTransitionPeriod: 0s\nfailSwapOn: false\nfileCheckFrequency: 0s\nhealthzBindAddress: 127.0.0.1\nhealthzPort: 10248\nhttpCheckFrequency: 0s\nimageGCHighThresholdPercent: 100\nimageMaximumGCAge: 0s\nimageMinimumGCAge: 0s\nkind: KubeletConfiguration\nlogging:\n  flushFrequency: 0\n  options:\n    json:\n      infoBufferSize: \"0\"\n    text:\n      infoBufferSize: \"0\"\n  verbosity: 0\nmemorySwap: {}\nnodeStatusReportFrequency: 0s\nnodeStatusUpdateFrequency: 0s\nrotateCertificates: true\nruntimeRequestTimeout: 0s\nshutdownGracePeriod: 0s\nshutdownGracePeriodCriticalPods: 0s\nstaticPodPath: /etc/kubernetes/manifests\nstreamingConnectionIdleTimeout: 0s\nsyncFrequency: 0s\nvolumeStatsAggPeriod: 0s\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:29:00Z",
                "name": "kubelet-config",
                "namespace": "kube-system",
                "resourceVersion": "241",
                "uid": "8a5c77b5-3e48-4cb3-a750-60c88edc64e3"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----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\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:29:05Z",
                "name": "kube-root-ca.crt",
                "namespace": "local-path-storage",
                "resourceVersion": "350",
                "uid": "27859d92-3fe6-43ca-a7be-cb962e029205"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "config.json": "{\n        \"nodePathMap\":[\n        {\n                \"node\":\"DEFAULT_PATH_FOR_NON_LISTED_NODES\",\n                \"paths\":[\"/var/local-path-provisioner\"]\n        }\n        ]\n}",
                "helperPod.yaml": "apiVersion: v1\nkind: Pod\nmetadata:\n  name: helper-pod\nspec:\n  priorityClassName: system-node-critical\n  tolerations:\n    - key: node.kubernetes.io/disk-pressure\n      operator: Exists\n      effect: NoSchedule\n  containers:\n  - name: helper-pod\n    image: docker.io/kindest/local-path-helper:v20241212-8ac705d0\n    imagePullPolicy: IfNotPresent",
                "setup": "#!/bin/sh\nset -eu\nmkdir -m 0777 -p \"$VOL_DIR\"",
                "teardown": "#!/bin/sh\nset -eu\nrm -rf \"$VOL_DIR\""
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubectl.kubernetes.io/last-applied-configuration": "{\"apiVersion\":\"v1\",\"data\":{\"config.json\":\"{\\n        \\\"nodePathMap\\\":[\\n        {\\n                \\\"node\\\":\\\"DEFAULT_PATH_FOR_NON_LISTED_NODES\\\",\\n                \\\"paths\\\":[\\\"/var/local-path-provisioner\\\"]\\n        }\\n        ]\\n}\",\"helperPod.yaml\":\"apiVersion: v1\\nkind: Pod\\nmetadata:\\n  name: helper-pod\\nspec:\\n  priorityClassName: system-node-critical\\n  tolerations:\\n    - key: node.kubernetes.io/disk-pressure\\n      operator: Exists\\n      effect: NoSchedule\\n  containers:\\n  - name: helper-pod\\n    image: docker.io/kindest/local-path-helper:v20241212-8ac705d0\\n    imagePullPolicy: IfNotPresent\",\"setup\":\"#!/bin/sh\\nset -eu\\nmkdir -m 0777 -p \\\"$VOL_DIR\\\"\",\"teardown\":\"#!/bin/sh\\nset -eu\\nrm -rf \\\"$VOL_DIR\\\"\"},\"kind\":\"ConfigMap\",\"metadata\":{\"annotations\":{},\"name\":\"local-path-config\",\"namespace\":\"local-path-storage\"}}\n"
                },
                "creationTimestamp": "2026-08-12T12:29:03Z",
                "name": "local-path-config",
                "namespace": "local-path-storage",
                "resourceVersion": "329",
                "uid": "39217256-c985-46b9-b771-8df03f805709"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----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\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:43:12Z",
                "name": "kube-root-ca.crt",
                "namespace": "namespace-lister",
                "resourceVersion": "6341",
                "uid": "a2c90e30-3dad-49d6-93aa-079c1b9e40cb"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----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\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:38:06Z",
                "name": "kube-root-ca.crt",
                "namespace": "openshift-pipelines",
                "resourceVersion": "3919",
                "uid": "0c7109ba-d3ab-44f8-b814-099498a000b2"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----\nMIIDBTCCAe2gAwIBAgIITKMe4a1ABSgwDQYJKoZIhvcNAQELBQAwFTETMBEGA1UE\nAxMKa3ViZXJuZXRlczAeFw0yNjA4MTIxMjIzNDdaFw0zNjA4MDkxMjI4NDdaMBUx\nEzARBgNVBAMTCmt1YmVybmV0ZXMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK\nAoIBAQCs11nQcU0gTG+VICswqSDLlIyHanC/F65wGJ6T3LdSmcYd70JjidSHPNop\nJcZa0kpHfaxdnnn5mthX5dyNUvDS5oz1C38JoAtiNZ97tpn1KXTyAfsjFnswLZWs\nE2Rjxx3yky/4Aw7TVwoiwRxX3NPi9MS5UEFwZPTy1kXX34omQWvWNcN3WryRMcgV\nZPb8zWV5XVYnUkDAxd7Jr2GCfs4PGiMxA9XLTlvF/m22ea5U/w7aeOPVWebn4kGL\noFVlwFKbMmekDiq8UPp+Pr8XGYrcNegRNsmDYGg8m4Pc1WukYsa3QsqzsrWa2Y26\nRDwmK5ad11Z1msf83A52ipDR9n7dAgMBAAGjWTBXMA4GA1UdDwEB/wQEAwICpDAP\nBgNVHRMBAf8EBTADAQH/MB0GA1UdDgQWBBRdhSatGAA1IfWR4f/qUENdeSeAPzAV\nBgNVHREEDjAMggprdWJlcm5ldGVzMA0GCSqGSIb3DQEBCwUAA4IBAQCnx5DdK55P\ncspd4+0A8NvoRxw1NszledJB9a2mhAVQ1SMVAkw4F6QCtx4vOuEHH0MxJlguqIaJ\n49ZhBJy23lxR3l24XxwUtisH2EZoamcBsh7DPIY3E82M/euSXvtawCc6ZCnej476\nUDzU5qKvVp7V3ZyYegsl2aD9SWokvWItBql5VGmR1pBwG6ldfoh6z7EQbw7law5S\ntNqCsuusFp+OgTGj/MwmRObwn1+MC0S8jLjUjNwanLcPxGOlO6UYhmuGI6xvkyQq\nSKm+2x+/3v6zXP9m0J4PZmM9H8TXURN35dXmBV67Bs+NOQ4SGJywRUsRK5KRbMq7\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:45:07Z",
                "name": "kube-root-ca.crt",
                "namespace": "quay",
                "resourceVersion": "8065",
                "uid": "1f534e6a-a615-4b4a-9dda-7b61eb22ed94"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "setup-extensions.sh": "#!/bin/bash\npsql -d \"${POSTGRESQL_DATABASE}\" -U \"${POSTGRESQL_USER}\" -c \"CREATE EXTENSION IF NOT EXISTS pg_trgm;\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubectl.kubernetes.io/last-applied-configuration": "{\"apiVersion\":\"v1\",\"data\":{\"setup-extensions.sh\":\"#!/bin/bash\\npsql -d \\\"${POSTGRESQL_DATABASE}\\\" -U \\\"${POSTGRESQL_USER}\\\" -c \\\"CREATE EXTENSION IF NOT EXISTS pg_trgm;\\\"\\n\"},\"kind\":\"ConfigMap\",\"metadata\":{\"annotations\":{},\"name\":\"quay-postgres-init\",\"namespace\":\"quay\"}}\n"
                },
                "creationTimestamp": "2026-08-12T12:45:08Z",
                "name": "quay-postgres-init",
                "namespace": "quay",
                "resourceVersion": "8081",
                "uid": "fbe85c8d-2d4c-468b-b78d-f7ab231dcf95"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----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\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:43:11Z",
                "name": "kube-root-ca.crt",
                "namespace": "release-service",
                "resourceVersion": "6277",
                "uid": "de7121a6-17d0-4ac1-8fd9-d118fe95c2fa"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "controller_manager_config.yaml": "apiVersion: controller-runtime.sigs.k8s.io/v1alpha1\nkind: ControllerManagerConfig\nhealth:\n  healthProbeBindAddress: :8081\nmetrics:\n  bindAddress: 127.0.0.1:8080\nwebhook:\n  port: 9443\nleaderElection:\n  leaderElect: true\n  resourceName: f3d4c01a.redhat.com\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:43:19Z",
                "labels": {
                    "konflux.konflux-ci.dev/component": "release",
                    "konflux.konflux-ci.dev/owner": "konflux-release-service"
                },
                "name": "release-service-manager-config",
                "namespace": "release-service",
                "ownerReferences": [
                    {
                        "apiVersion": "konflux.konflux-ci.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "KonfluxReleaseService",
                        "name": "konflux-release-service",
                        "uid": "6e101968-0519-4963-8ccf-351412fbd09c"
                    }
                ],
                "resourceVersion": "6980",
                "uid": "4388e6bb-c399-4695-999f-41b03266fef8"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "DEFAULT_RELEASE_PVC": "",
                "DEFAULT_RELEASE_WORKSPACE_NAME": "",
                "DEFAULT_RELEASE_WORKSPACE_SIZE": ""
            },
            "kind": "ConfigMap",
            "metadata": {
                "creationTimestamp": "2026-08-12T12:43:20Z",
                "labels": {
                    "konflux.konflux-ci.dev/component": "release",
                    "konflux.konflux-ci.dev/owner": "konflux-release-service"
                },
                "name": "release-service-manager-properties",
                "namespace": "release-service",
                "ownerReferences": [
                    {
                        "apiVersion": "konflux.konflux-ci.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "KonfluxReleaseService",
                        "name": "konflux-release-service",
                        "uid": "6e101968-0519-4963-8ccf-351412fbd09c"
                    }
                ],
                "resourceVersion": "6992",
                "uid": "ee9f7249-4d13-48f6-9378-b34f9331c58e"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----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\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:38:51Z",
                "name": "kube-root-ca.crt",
                "namespace": "smee-client",
                "resourceVersion": "4362",
                "uid": "a6626a40-96af-43aa-bf7b-d4e861b72491"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n\n# Common configuration for all Knative codebase\nzap-logger-config: |\n  {\n    \"level\": \"info\",\n    \"development\": false,\n    \"outputPaths\": [\"stdout\"],\n    \"errorOutputPaths\": [\"stderr\"],\n    \"encoding\": \"json\",\n    \"encoderConfig\": {\n      \"timeKey\": \"ts\",\n      \"levelKey\": \"level\",\n      \"nameKey\": \"logger\",\n      \"callerKey\": \"caller\",\n      \"messageKey\": \"msg\",\n      \"stacktraceKey\": \"stacktrace\",\n      \"lineEnding\": \"\",\n      \"levelEncoder\": \"\",\n      \"timeEncoder\": \"iso8601\",\n      \"durationEncoder\": \"\",\n      \"callerEncoder\": \"\"\n    }\n  }\n",
                "loglevel.tekton-operator-cluster-operations": "info",
                "loglevel.tekton-operator-lifecycle": "info",
                "loglevel.tekton-operator-webhook": "info",
                "zap-logger-config": "{\n  \"level\": \"info\",\n  \"development\": false,\n  \"sampling\": {\n    \"initial\": 100,\n    \"thereafter\": 100\n  },\n  \"outputPaths\": [\"stdout\"],\n  \"errorOutputPaths\": [\"stderr\"],\n  \"encoding\": \"json\",\n  \"encoderConfig\": {\n    \"timeKey\": \"timestamp\",\n    \"levelKey\": \"level\",\n    \"nameKey\": \"logger\",\n    \"callerKey\": \"caller\",\n    \"messageKey\": \"msg\",\n    \"stacktraceKey\": \"stacktrace\",\n    \"lineEnding\": \"\",\n    \"levelEncoder\": \"\",\n    \"timeEncoder\": \"iso8601\",\n    \"durationEncoder\": \"\",\n    \"callerEncoder\": \"\"\n  }\n}\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubectl.kubernetes.io/last-applied-configuration": "{\"apiVersion\":\"v1\",\"data\":{\"_example\":\"################################\\n#                              #\\n#    EXAMPLE CONFIGURATION     #\\n#                              #\\n################################\\n\\n# This block is not actually functional configuration,\\n# but serves to illustrate the available configuration\\n# options and document them in a way that is accessible\\n# to users that `kubectl edit` this config map.\\n#\\n# These sample configuration options may be copied out of\\n# this example block and unindented to be in the data block\\n# to actually change the configuration.\\n\\n# Common configuration for all Knative codebase\\nzap-logger-config: |\\n  {\\n    \\\"level\\\": \\\"info\\\",\\n    \\\"development\\\": false,\\n    \\\"outputPaths\\\": [\\\"stdout\\\"],\\n    \\\"errorOutputPaths\\\": [\\\"stderr\\\"],\\n    \\\"encoding\\\": \\\"json\\\",\\n    \\\"encoderConfig\\\": {\\n      \\\"timeKey\\\": \\\"ts\\\",\\n      \\\"levelKey\\\": \\\"level\\\",\\n      \\\"nameKey\\\": \\\"logger\\\",\\n      \\\"callerKey\\\": \\\"caller\\\",\\n      \\\"messageKey\\\": \\\"msg\\\",\\n      \\\"stacktraceKey\\\": \\\"stacktrace\\\",\\n      \\\"lineEnding\\\": \\\"\\\",\\n      \\\"levelEncoder\\\": \\\"\\\",\\n      \\\"timeEncoder\\\": \\\"iso8601\\\",\\n      \\\"durationEncoder\\\": \\\"\\\",\\n      \\\"callerEncoder\\\": \\\"\\\"\\n    }\\n  }\\n\",\"loglevel.tekton-operator-cluster-operations\":\"info\",\"loglevel.tekton-operator-lifecycle\":\"info\",\"loglevel.tekton-operator-webhook\":\"info\",\"zap-logger-config\":\"{\\n  \\\"level\\\": \\\"info\\\",\\n  \\\"development\\\": false,\\n  \\\"sampling\\\": {\\n    \\\"initial\\\": 100,\\n    \\\"thereafter\\\": 100\\n  },\\n  \\\"outputPaths\\\": [\\\"stdout\\\"],\\n  \\\"errorOutputPaths\\\": [\\\"stderr\\\"],\\n  \\\"encoding\\\": \\\"json\\\",\\n  \\\"encoderConfig\\\": {\\n    \\\"timeKey\\\": \\\"timestamp\\\",\\n    \\\"levelKey\\\": \\\"level\\\",\\n    \\\"nameKey\\\": \\\"logger\\\",\\n    \\\"callerKey\\\": \\\"caller\\\",\\n    \\\"messageKey\\\": \\\"msg\\\",\\n    \\\"stacktraceKey\\\": \\\"stacktrace\\\",\\n    \\\"lineEnding\\\": \\\"\\\",\\n    \\\"levelEncoder\\\": \\\"\\\",\\n    \\\"timeEncoder\\\": \\\"iso8601\\\",\\n    \\\"durationEncoder\\\": \\\"\\\",\\n    \\\"callerEncoder\\\": \\\"\\\"\\n  }\\n}\\n\"},\"kind\":\"ConfigMap\",\"metadata\":{\"annotations\":{},\"labels\":{\"operator.tekton.dev/release\":\"v0.81.0\"},\"name\":\"config-logging\",\"namespace\":\"tekton-operator\"}}\n"
                },
                "creationTimestamp": "2026-08-12T12:33:54Z",
                "labels": {
                    "operator.tekton.dev/release": "v0.81.0"
                },
                "name": "config-logging",
                "namespace": "tekton-operator",
                "resourceVersion": "1251",
                "uid": "c765c0fe-4714-41ae-bf59-4e10d08021d0"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----\nMIIDBTCCAe2gAwIBAgIITKMe4a1ABSgwDQYJKoZIhvcNAQELBQAwFTETMBEGA1UE\nAxMKa3ViZXJuZXRlczAeFw0yNjA4MTIxMjIzNDdaFw0zNjA4MDkxMjI4NDdaMBUx\nEzARBgNVBAMTCmt1YmVybmV0ZXMwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK\nAoIBAQCs11nQcU0gTG+VICswqSDLlIyHanC/F65wGJ6T3LdSmcYd70JjidSHPNop\nJcZa0kpHfaxdnnn5mthX5dyNUvDS5oz1C38JoAtiNZ97tpn1KXTyAfsjFnswLZWs\nE2Rjxx3yky/4Aw7TVwoiwRxX3NPi9MS5UEFwZPTy1kXX34omQWvWNcN3WryRMcgV\nZPb8zWV5XVYnUkDAxd7Jr2GCfs4PGiMxA9XLTlvF/m22ea5U/w7aeOPVWebn4kGL\noFVlwFKbMmekDiq8UPp+Pr8XGYrcNegRNsmDYGg8m4Pc1WukYsa3QsqzsrWa2Y26\nRDwmK5ad11Z1msf83A52ipDR9n7dAgMBAAGjWTBXMA4GA1UdDwEB/wQEAwICpDAP\nBgNVHRMBAf8EBTADAQH/MB0GA1UdDgQWBBRdhSatGAA1IfWR4f/qUENdeSeAPzAV\nBgNVHREEDjAMggprdWJlcm5ldGVzMA0GCSqGSIb3DQEBCwUAA4IBAQCnx5DdK55P\ncspd4+0A8NvoRxw1NszledJB9a2mhAVQ1SMVAkw4F6QCtx4vOuEHH0MxJlguqIaJ\n49ZhBJy23lxR3l24XxwUtisH2EZoamcBsh7DPIY3E82M/euSXvtawCc6ZCnej476\nUDzU5qKvVp7V3ZyYegsl2aD9SWokvWItBql5VGmR1pBwG6ldfoh6z7EQbw7law5S\ntNqCsuusFp+OgTGj/MwmRObwn1+MC0S8jLjUjNwanLcPxGOlO6UYhmuGI6xvkyQq\nSKm+2x+/3v6zXP9m0J4PZmM9H8TXURN35dXmBV67Bs+NOQ4SGJywRUsRK5KRbMq7\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:33:41Z",
                "name": "kube-root-ca.crt",
                "namespace": "tekton-operator",
                "resourceVersion": "1167",
                "uid": "27a9b982-f135-4a6b-b36a-18665fa6460e"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "AUTOINSTALL_COMPONENTS": "true",
                "DEFAULT_TARGET_NAMESPACE": "tekton-pipelines"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubectl.kubernetes.io/last-applied-configuration": "{\"apiVersion\":\"v1\",\"data\":{\"AUTOINSTALL_COMPONENTS\":\"true\",\"DEFAULT_TARGET_NAMESPACE\":\"tekton-pipelines\"},\"kind\":\"ConfigMap\",\"metadata\":{\"annotations\":{},\"labels\":{\"operator.tekton.dev/release\":\"v0.81.0\"},\"name\":\"tekton-config-defaults\",\"namespace\":\"tekton-operator\"}}\n"
                },
                "creationTimestamp": "2026-08-12T12:33:55Z",
                "labels": {
                    "operator.tekton.dev/release": "v0.81.0"
                },
                "name": "tekton-config-defaults",
                "namespace": "tekton-operator",
                "resourceVersion": "1253",
                "uid": "af462d35-f0a3-4919-8cfa-52f90037cddf"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n\n# OpenTelemetry Metrics Configuration\n# Protocol for metrics export (prometheus, grpc, http/protobuf, none)\n# Default: prometheus\nmetrics-protocol: prometheus\n\n# Metrics endpoint (for grpc/http protocols)\n# Default: empty (uses default OTLP endpoint)\nmetrics-endpoint: \"\"\n\n# Metrics export interval (e.g., \"30s\", \"1m\")\n# Default: empty (uses SDK default)\nmetrics-export-interval: \"\"\n\n# OpenTelemetry Tracing Configuration\n# Protocol for tracing export (grpc, http/protobuf, none, stdout)\n# Default: none\ntracing-protocol: none\n\n# Tracing endpoint (for grpc/http protocols)\n# Default: empty\ntracing-endpoint: \"\"\n\n# Tracing sampling rate (0.0 to 1.0)\n# Default: 1.0 (100% sampling)\ntracing-sampling-rate: \"1.0\"\n\n# Runtime Configuration\n# Enable profiling (enabled, disabled)\n# Default: disabled\nruntime-profiling: disabled\n\n# Runtime export interval (e.g., \"15s\")\n# Default: 15s\nruntime-export-interval: \"15s\"\n\n# Note: Legacy OpenCensus configuration keys (metrics.backend-destination,\n# metrics.stackdriver-project-id, metrics.allow-stackdriver-custom-metrics)\n# are no longer recognized. Use the OpenTelemetry options above.\n",
                "metrics-protocol": "prometheus"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubectl.kubernetes.io/last-applied-configuration": "{\"apiVersion\":\"v1\",\"data\":{\"_example\":\"################################\\n#                              #\\n#    EXAMPLE CONFIGURATION     #\\n#                              #\\n################################\\n\\n# This block is not actually functional configuration,\\n# but serves to illustrate the available configuration\\n# options and document them in a way that is accessible\\n# to users that `kubectl edit` this config map.\\n#\\n# These sample configuration options may be copied out of\\n# this example block and unindented to be in the data block\\n# to actually change the configuration.\\n\\n# OpenTelemetry Metrics Configuration\\n# Protocol for metrics export (prometheus, grpc, http/protobuf, none)\\n# Default: prometheus\\nmetrics-protocol: prometheus\\n\\n# Metrics endpoint (for grpc/http protocols)\\n# Default: empty (uses default OTLP endpoint)\\nmetrics-endpoint: \\\"\\\"\\n\\n# Metrics export interval (e.g., \\\"30s\\\", \\\"1m\\\")\\n# Default: empty (uses SDK default)\\nmetrics-export-interval: \\\"\\\"\\n\\n# OpenTelemetry Tracing Configuration\\n# Protocol for tracing export (grpc, http/protobuf, none, stdout)\\n# Default: none\\ntracing-protocol: none\\n\\n# Tracing endpoint (for grpc/http protocols)\\n# Default: empty\\ntracing-endpoint: \\\"\\\"\\n\\n# Tracing sampling rate (0.0 to 1.0)\\n# Default: 1.0 (100% sampling)\\ntracing-sampling-rate: \\\"1.0\\\"\\n\\n# Runtime Configuration\\n# Enable profiling (enabled, disabled)\\n# Default: disabled\\nruntime-profiling: disabled\\n\\n# Runtime export interval (e.g., \\\"15s\\\")\\n# Default: 15s\\nruntime-export-interval: \\\"15s\\\"\\n\\n# Note: Legacy OpenCensus configuration keys (metrics.backend-destination,\\n# metrics.stackdriver-project-id, metrics.allow-stackdriver-custom-metrics)\\n# are no longer recognized. Use the OpenTelemetry options above.\\n\",\"metrics-protocol\":\"prometheus\"},\"kind\":\"ConfigMap\",\"metadata\":{\"annotations\":{},\"labels\":{\"app.kubernetes.io/instance\":\"default\"},\"name\":\"tekton-config-observability\",\"namespace\":\"tekton-operator\"}}\n"
                },
                "creationTimestamp": "2026-08-12T12:33:56Z",
                "labels": {
                    "app.kubernetes.io/instance": "default"
                },
                "name": "tekton-config-observability",
                "namespace": "tekton-operator",
                "resourceVersion": "1256",
                "uid": "784880a8-8eac-4fb1-a712-0fb58cbc2e6f"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n# lease-duration is how long non-leaders will wait to try to acquire the\n# lock; 15 seconds is the value used by core kubernetes controllers.\nlease-duration: \"60s\"\n# renew-deadline is how long a leader will try to renew the lease before\n# giving up; 10 seconds is the value used by core kubernetes controllers.\nrenew-deadline: \"40s\"\n# retry-period is how long the leader election client waits between tries of\n# actions; 2 seconds is the value used by core kubernetes controllers.\nretry-period: \"10s\"\n# buckets is the number of buckets used to partition key space of each\n# Reconciler. If this number is M and the replica number of the controller\n# is N, the N replicas will compete for the M buckets. The owner of a\n# bucket will take care of the reconciling for the keys partitioned into\n# that bucket.\nbuckets: \"1\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubectl.kubernetes.io/last-applied-configuration": "{\"apiVersion\":\"v1\",\"data\":{\"_example\":\"################################\\n#                              #\\n#    EXAMPLE CONFIGURATION     #\\n#                              #\\n################################\\n# This block is not actually functional configuration,\\n# but serves to illustrate the available configuration\\n# options and document them in a way that is accessible\\n# to users that `kubectl edit` this config map.\\n#\\n# These sample configuration options may be copied out of\\n# this example block and unindented to be in the data block\\n# to actually change the configuration.\\n# lease-duration is how long non-leaders will wait to try to acquire the\\n# lock; 15 seconds is the value used by core kubernetes controllers.\\nlease-duration: \\\"60s\\\"\\n# renew-deadline is how long a leader will try to renew the lease before\\n# giving up; 10 seconds is the value used by core kubernetes controllers.\\nrenew-deadline: \\\"40s\\\"\\n# retry-period is how long the leader election client waits between tries of\\n# actions; 2 seconds is the value used by core kubernetes controllers.\\nretry-period: \\\"10s\\\"\\n# buckets is the number of buckets used to partition key space of each\\n# Reconciler. If this number is M and the replica number of the controller\\n# is N, the N replicas will compete for the M buckets. The owner of a\\n# bucket will take care of the reconciling for the keys partitioned into\\n# that bucket.\\nbuckets: \\\"1\\\"\\n\"},\"kind\":\"ConfigMap\",\"metadata\":{\"annotations\":{},\"labels\":{\"app.kubernetes.io/instance\":\"default\",\"operator.tekton.dev/release\":\"v0.81.0\"},\"name\":\"tekton-operator-controller-config-leader-election\",\"namespace\":\"tekton-operator\"}}\n"
                },
                "creationTimestamp": "2026-08-12T12:33:56Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "operator.tekton.dev/release": "v0.81.0"
                },
                "name": "tekton-operator-controller-config-leader-election",
                "namespace": "tekton-operator",
                "resourceVersion": "1258",
                "uid": "7bf90e14-b4ed-481a-bdcd-e721578c00a7"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "version": "v0.81.0"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubectl.kubernetes.io/last-applied-configuration": "{\"apiVersion\":\"v1\",\"data\":{\"version\":\"v0.81.0\"},\"kind\":\"ConfigMap\",\"metadata\":{\"annotations\":{},\"labels\":{\"app.kubernetes.io/instance\":\"default\"},\"name\":\"tekton-operator-info\",\"namespace\":\"tekton-operator\"}}\n"
                },
                "creationTimestamp": "2026-08-12T12:33:57Z",
                "labels": {
                    "app.kubernetes.io/instance": "default"
                },
                "name": "tekton-operator-info",
                "namespace": "tekton-operator",
                "resourceVersion": "1259",
                "uid": "76c8a951-6708-4c75-b19c-20f7b687e31f"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n# lease-duration is how long non-leaders will wait to try to acquire the\n# lock; 15 seconds is the value used by core kubernetes controllers.\nlease-duration: \"60s\"\n# renew-deadline is how long a leader will try to renew the lease before\n# giving up; 10 seconds is the value used by core kubernetes controllers.\nrenew-deadline: \"40s\"\n# retry-period is how long the leader election client waits between tries of\n# actions; 2 seconds is the value used by core kubernetes controllers.\nretry-period: \"10s\"\n# buckets is the number of buckets used to partition key space of each\n# Reconciler. If this number is M and the replica number of the controller\n# is N, the N replicas will compete for the M buckets. The owner of a\n# bucket will take care of the reconciling for the keys partitioned into\n# that bucket.\nbuckets: \"1\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubectl.kubernetes.io/last-applied-configuration": "{\"apiVersion\":\"v1\",\"data\":{\"_example\":\"################################\\n#                              #\\n#    EXAMPLE CONFIGURATION     #\\n#                              #\\n################################\\n# This block is not actually functional configuration,\\n# but serves to illustrate the available configuration\\n# options and document them in a way that is accessible\\n# to users that `kubectl edit` this config map.\\n#\\n# These sample configuration options may be copied out of\\n# this example block and unindented to be in the data block\\n# to actually change the configuration.\\n# lease-duration is how long non-leaders will wait to try to acquire the\\n# lock; 15 seconds is the value used by core kubernetes controllers.\\nlease-duration: \\\"60s\\\"\\n# renew-deadline is how long a leader will try to renew the lease before\\n# giving up; 10 seconds is the value used by core kubernetes controllers.\\nrenew-deadline: \\\"40s\\\"\\n# retry-period is how long the leader election client waits between tries of\\n# actions; 2 seconds is the value used by core kubernetes controllers.\\nretry-period: \\\"10s\\\"\\n# buckets is the number of buckets used to partition key space of each\\n# Reconciler. If this number is M and the replica number of the controller\\n# is N, the N replicas will compete for the M buckets. The owner of a\\n# bucket will take care of the reconciling for the keys partitioned into\\n# that bucket.\\nbuckets: \\\"1\\\"\\n\"},\"kind\":\"ConfigMap\",\"metadata\":{\"annotations\":{},\"labels\":{\"app.kubernetes.io/instance\":\"default\",\"operator.tekton.dev/release\":\"v0.81.0\"},\"name\":\"tekton-operator-webhook-config-leader-election\",\"namespace\":\"tekton-operator\"}}\n"
                },
                "creationTimestamp": "2026-08-12T12:33:57Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "operator.tekton.dev/release": "v0.81.0"
                },
                "name": "tekton-operator-webhook-config-leader-election",
                "namespace": "tekton-operator",
                "resourceVersion": "1264",
                "uid": "64de8264-49ec-4120-a6fc-0c2e4e5c70dd"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "backoff-cap": "15m",
                "backoff-duration": "15s",
                "backoff-factor": "2.0",
                "backoff-steps": "10",
                "default-kind": "task",
                "default-service-account": "default",
                "fetch-timeout": "2m"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubectl.kubernetes.io/last-applied-configuration": "{\"apiVersion\":\"v1\",\"data\":{\"backoff-cap\":\"15m\",\"backoff-duration\":\"15s\",\"backoff-factor\":\"2.0\",\"backoff-steps\":\"10\",\"default-kind\":\"task\",\"default-service-account\":\"default\",\"fetch-timeout\":\"2m\"},\"kind\":\"ConfigMap\",\"metadata\":{\"annotations\":{\"operator.tekton.dev/last-applied-hash\":\"17cf69783afa26f30459a308aa2f52782400501f95de97c54668535051f5ff7b\"},\"labels\":{\"app.kubernetes.io/component\":\"resolvers\",\"app.kubernetes.io/instance\":\"default\",\"app.kubernetes.io/part-of\":\"tekton-pipelines\",\"operator.tekton.dev/operand-name\":\"tektoncd-pipelines\"},\"name\":\"bundleresolver-config\",\"namespace\":\"tekton-pipelines\",\"ownerReferences\":[{\"apiVersion\":\"operator.tekton.dev/v1alpha1\",\"blockOwnerDeletion\":true,\"controller\":true,\"kind\":\"TektonInstallerSet\",\"name\":\"pipeline-main-static-2z2nx\",\"uid\":\"b7701397-2ea6-4e8d-b846-d854f7eb6ed3\"}]}}\n",
                    "operator.tekton.dev/last-applied-hash": "17cf69783afa26f30459a308aa2f52782400501f95de97c54668535051f5ff7b"
                },
                "creationTimestamp": "2026-08-12T12:34:30Z",
                "labels": {
                    "app.kubernetes.io/component": "resolvers",
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "bundleresolver-config",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "4011",
                "uid": "0296620d-f00d-4321-88ca-ef9151a76f07"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "artifacts.oci.format": "simplesigning",
                "artifacts.oci.storage": "oci",
                "artifacts.pipelinerun.enable-deep-inspection": "true",
                "artifacts.pipelinerun.format": "in-toto",
                "artifacts.pipelinerun.storage": "oci",
                "artifacts.taskrun.format": "in-toto",
                "artifacts.taskrun.storage": "",
                "performance": "disable-ha: false\n",
                "transparency.enabled": "false"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "0d25afa87f2bc5f73684374c02889926a3f5e7ccb141ed198e2e19013444f0ca"
                },
                "creationTimestamp": "2026-08-12T12:38:04Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-chains",
                    "operator.tekton.dev/operand-name": "tektoncd-chains"
                },
                "name": "chains-config",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "chain-config-jmwl7",
                        "uid": "394b0119-61cc-4099-87ae-4066d9dd3050"
                    }
                ],
                "resourceVersion": "3816",
                "uid": "931b112c-a347-4460-b5e3-a12eb7ec4fc4"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "version": "v0.29.0"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "5268b3363ae1644ec9c9061b0a3473485a8ac62a518e07af627ef67d0264a71a"
                },
                "creationTimestamp": "2026-08-12T12:36:02Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-chains",
                    "operator.tekton.dev/operand-name": "tektoncd-chains"
                },
                "name": "chains-info",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "chain-rsbff",
                        "uid": "373502e9-ceca-4ce0-aa6b-4853e40bb112"
                    }
                ],
                "resourceVersion": "2489",
                "uid": "62c1ee18-7b12-4b76-839f-a8c195dabcd6"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "allowed-namespaces": "",
                "blocked-namespaces": "",
                "default-kind": "task",
                "default-namespace": ""
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "093bf384f327f9ad7b9ac035b33477e693087928dff08da56463ccd369779355"
                },
                "creationTimestamp": "2026-08-12T12:34:30Z",
                "labels": {
                    "app.kubernetes.io/component": "resolvers",
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "cluster-resolver-config",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "1539",
                "uid": "15eb095e-1010-4078-a349-23d751f491fa"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n\n# default-timeout-minutes contains the default number of\n# minutes to use for TaskRun and PipelineRun, if none is specified.\ndefault-timeout-minutes: \"60\"  # 60 minutes\n\n# default-service-account contains the default service account name\n# to use for TaskRun and PipelineRun, if none is specified.\ndefault-service-account: \"default\"\n\n# default-managed-by-label-value contains the default value given to the\n# \"app.kubernetes.io/managed-by\" label applied to all Pods created for\n# TaskRuns. If a user's requested TaskRun specifies another value for this\n# label, the user's request supercedes.\ndefault-managed-by-label-value: \"tekton-pipelines\"\n\n# default-pod-template contains the default pod template to use for\n# TaskRun and PipelineRun. If a pod template is specified on the\n# PipelineRun, the default-pod-template is merged with that one.\n# default-pod-template:\n\n# default-affinity-assistant-pod-template contains the default pod template\n# to use for affinity assistant pods. If a pod template is specified on the\n# PipelineRun, the default-affinity-assistant-pod-template is merged with\n# that one.\n# default-affinity-assistant-pod-template:\n\n# default-cloud-events-sink contains the default CloudEvents sink to be\n# used for TaskRun and PipelineRun, when no sink is specified.\n# Note that right now it is still not possible to set a PipelineRun or\n# TaskRun specific sink, so the default is the only option available.\n# If no sink is specified, no CloudEvent is generated\n# default-cloud-events-sink:\n\n# default-task-run-workspace-binding contains the default workspace\n# configuration provided for any Workspaces that a Task declares\n# but that a TaskRun does not explicitly provide.\n# default-task-run-workspace-binding: |\n#   emptyDir: {}\n\n# default-max-matrix-combinations-count contains the default maximum number\n# of combinations from a Matrix, if none is specified.\ndefault-max-matrix-combinations-count: \"256\"\n\n# default-forbidden-env contains comma seperated environment variables that cannot be\n# overridden by podTemplate.\ndefault-forbidden-env:\n\n# default-resolver-type contains the default resolver type to be used in the cluster,\n# no default-resolver-type is specified by default\ndefault-resolver-type:\n\n# default-imagepullbackoff-timeout contains the default duration to wait\n# before requeuing the TaskRun to retry, specifying 0 here is equivalent to fail fast\n# possible values could be 1m, 5m, 10s, 1h, etc\n# default-imagepullbackoff-timeout: \"5m\"\n\n# default-create-container-error-timeout contains the default duration to wait\n# before failing a TaskRun when a container fails with \"context deadline exceeded\"\n# (e.g. CRI-O under heavy load). Specifying 0 here is equivalent to fail fast.\n# possible values could be 1m, 5m, 10s, 1h, etc\n# default-create-container-error-timeout: \"5m\"\n\n# default-maximum-resolution-timeout specifies the default duration used by the\n# resolution controller before timing out when exceeded.\n# Possible values include \"1m\", \"5m\", \"10s\", \"1h\", etc.\n# Example: default-maximum-resolution-timeout: \"1m\"\n\n# default-container-resource-requirements allow users to configure default resource\n# requirements for init containers and containers in pods created by the controller.\n# No resource requirements are applied by default when this key is unset.\n# Note: All the resource requirements are applied to init-containers and containers\n# only if the existing resource requirements are empty, except Tekton internal\n# containers can be overridden by named entries such as prepare or place-scripts.\n# default-container-resource-requirements: |\n#   place-scripts: # updates resource requirements of a 'place-scripts' container\n#     requests:\n#       memory: \"64Mi\"\n#       cpu: \"250m\"\n#     limits:\n#       memory: \"128Mi\"\n#       cpu: \"500m\"\n#\n#   prepare: # updates resource requirements of a 'prepare' container\n#     requests:\n#       memory: \"64Mi\"\n#       cpu: \"250m\"\n#     limits:\n#       memory: \"256Mi\"\n#       cpu: \"500m\"\n#\n#   working-dir-initializer: # updates resource requirements of a 'working-dir-initializer' container\n#     requests:\n#       memory: \"64Mi\"\n#       cpu: \"250m\"\n#     limits:\n#       memory: \"512Mi\"\n#       cpu: \"500m\"\n#\n#   prefix-scripts: # updates resource requirements of containers which starts with 'scripts-'\n#     requests:\n#       memory: \"64Mi\"\n#       cpu: \"250m\"\n#     limits:\n#       memory: \"128Mi\"\n#       cpu: \"500m\"\n#\n#   prefix-sidecar-scripts: # updates resource requirements of containers which starts with 'sidecar-scripts-'\n#     requests:\n#       memory: \"64Mi\"\n#       cpu: \"250m\"\n#     limits:\n#       memory: \"128Mi\"\n#       cpu: \"500m\"\n#\n#   default: # updates resource requirements of init-containers and containers which has empty resource requirements\n#     requests:\n#       memory: \"64Mi\"\n#       cpu: \"250m\"\n#     limits:\n#       memory: \"256Mi\"\n#       cpu: \"500m\"\n\n# default-sidecar-log-polling-interval specifies the polling interval for the Tekton sidecar log results container.\n# This controls how frequently the sidecar checks for step completion files written by steps in a TaskRun.\n# Lower values (e.g., \"10ms\") make the sidecar more responsive but may increase CPU usage; higher values (e.g., \"1s\")\n# reduce resource usage but may delay result collection.\n# This value is used by the sidecar-tekton-log-results container and can be tuned for performance or test scenarios.\n# Example values: \"100ms\", \"500ms\", \"1s\"\ndefault-sidecar-log-polling-interval: \"100ms\"\n\n# default-step-ref-concurrency-limit specifies the concurrency limit for resolving step references.\n# This setting controls the maximum number of concurrent goroutines used to resolve\n# step references (`step.ref` fields) simultaneously. This limit acts as a throttle\n# to prevent overwhelming remote servers (e.g., git providers, OCI registries) or\n# the Kubernetes API server, especially when a TaskRun contains many steps that\n# reference StepActions.\ndefault-step-ref-concurrency-limit: \"5\"\n",
                "default-imagepullbackoff-timeout": "15m",
                "default-service-account": "default"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubectl.kubernetes.io/last-applied-configuration": "{\"apiVersion\":\"v1\",\"data\":{\"_example\":\"################################\\n#                              #\\n#    EXAMPLE CONFIGURATION     #\\n#                              #\\n################################\\n\\n# This block is not actually functional configuration,\\n# but serves to illustrate the available configuration\\n# options and document them in a way that is accessible\\n# to users that `kubectl edit` this config map.\\n#\\n# These sample configuration options may be copied out of\\n# this example block and unindented to be in the data block\\n# to actually change the configuration.\\n\\n# default-timeout-minutes contains the default number of\\n# minutes to use for TaskRun and PipelineRun, if none is specified.\\ndefault-timeout-minutes: \\\"60\\\"  # 60 minutes\\n\\n# default-service-account contains the default service account name\\n# to use for TaskRun and PipelineRun, if none is specified.\\ndefault-service-account: \\\"default\\\"\\n\\n# default-managed-by-label-value contains the default value given to the\\n# \\\"app.kubernetes.io/managed-by\\\" label applied to all Pods created for\\n# TaskRuns. If a user's requested TaskRun specifies another value for this\\n# label, the user's request supercedes.\\ndefault-managed-by-label-value: \\\"tekton-pipelines\\\"\\n\\n# default-pod-template contains the default pod template to use for\\n# TaskRun and PipelineRun. If a pod template is specified on the\\n# PipelineRun, the default-pod-template is merged with that one.\\n# default-pod-template:\\n\\n# default-affinity-assistant-pod-template contains the default pod template\\n# to use for affinity assistant pods. If a pod template is specified on the\\n# PipelineRun, the default-affinity-assistant-pod-template is merged with\\n# that one.\\n# default-affinity-assistant-pod-template:\\n\\n# default-cloud-events-sink contains the default CloudEvents sink to be\\n# used for TaskRun and PipelineRun, when no sink is specified.\\n# Note that right now it is still not possible to set a PipelineRun or\\n# TaskRun specific sink, so the default is the only option available.\\n# If no sink is specified, no CloudEvent is generated\\n# default-cloud-events-sink:\\n\\n# default-task-run-workspace-binding contains the default workspace\\n# configuration provided for any Workspaces that a Task declares\\n# but that a TaskRun does not explicitly provide.\\n# default-task-run-workspace-binding: |\\n#   emptyDir: {}\\n\\n# default-max-matrix-combinations-count contains the default maximum number\\n# of combinations from a Matrix, if none is specified.\\ndefault-max-matrix-combinations-count: \\\"256\\\"\\n\\n# default-forbidden-env contains comma seperated environment variables that cannot be\\n# overridden by podTemplate.\\ndefault-forbidden-env:\\n\\n# default-resolver-type contains the default resolver type to be used in the cluster,\\n# no default-resolver-type is specified by default\\ndefault-resolver-type:\\n\\n# default-imagepullbackoff-timeout contains the default duration to wait\\n# before requeuing the TaskRun to retry, specifying 0 here is equivalent to fail fast\\n# possible values could be 1m, 5m, 10s, 1h, etc\\n# default-imagepullbackoff-timeout: \\\"5m\\\"\\n\\n# default-create-container-error-timeout contains the default duration to wait\\n# before failing a TaskRun when a container fails with \\\"context deadline exceeded\\\"\\n# (e.g. CRI-O under heavy load). Specifying 0 here is equivalent to fail fast.\\n# possible values could be 1m, 5m, 10s, 1h, etc\\n# default-create-container-error-timeout: \\\"5m\\\"\\n\\n# default-maximum-resolution-timeout specifies the default duration used by the\\n# resolution controller before timing out when exceeded.\\n# Possible values include \\\"1m\\\", \\\"5m\\\", \\\"10s\\\", \\\"1h\\\", etc.\\n# Example: default-maximum-resolution-timeout: \\\"1m\\\"\\n\\n# default-container-resource-requirements allow users to configure default resource\\n# requirements for init containers and containers in pods created by the controller.\\n# No resource requirements are applied by default when this key is unset.\\n# Note: All the resource requirements are applied to init-containers and containers\\n# only if the existing resource requirements are empty, except Tekton internal\\n# containers can be overridden by named entries such as prepare or place-scripts.\\n# default-container-resource-requirements: |\\n#   place-scripts: # updates resource requirements of a 'place-scripts' container\\n#     requests:\\n#       memory: \\\"64Mi\\\"\\n#       cpu: \\\"250m\\\"\\n#     limits:\\n#       memory: \\\"128Mi\\\"\\n#       cpu: \\\"500m\\\"\\n#\\n#   prepare: # updates resource requirements of a 'prepare' container\\n#     requests:\\n#       memory: \\\"64Mi\\\"\\n#       cpu: \\\"250m\\\"\\n#     limits:\\n#       memory: \\\"256Mi\\\"\\n#       cpu: \\\"500m\\\"\\n#\\n#   working-dir-initializer: # updates resource requirements of a 'working-dir-initializer' container\\n#     requests:\\n#       memory: \\\"64Mi\\\"\\n#       cpu: \\\"250m\\\"\\n#     limits:\\n#       memory: \\\"512Mi\\\"\\n#       cpu: \\\"500m\\\"\\n#\\n#   prefix-scripts: # updates resource requirements of containers which starts with 'scripts-'\\n#     requests:\\n#       memory: \\\"64Mi\\\"\\n#       cpu: \\\"250m\\\"\\n#     limits:\\n#       memory: \\\"128Mi\\\"\\n#       cpu: \\\"500m\\\"\\n#\\n#   prefix-sidecar-scripts: # updates resource requirements of containers which starts with 'sidecar-scripts-'\\n#     requests:\\n#       memory: \\\"64Mi\\\"\\n#       cpu: \\\"250m\\\"\\n#     limits:\\n#       memory: \\\"128Mi\\\"\\n#       cpu: \\\"500m\\\"\\n#\\n#   default: # updates resource requirements of init-containers and containers which has empty resource requirements\\n#     requests:\\n#       memory: \\\"64Mi\\\"\\n#       cpu: \\\"250m\\\"\\n#     limits:\\n#       memory: \\\"256Mi\\\"\\n#       cpu: \\\"500m\\\"\\n\\n# default-sidecar-log-polling-interval specifies the polling interval for the Tekton sidecar log results container.\\n# This controls how frequently the sidecar checks for step completion files written by steps in a TaskRun.\\n# Lower values (e.g., \\\"10ms\\\") make the sidecar more responsive but may increase CPU usage; higher values (e.g., \\\"1s\\\")\\n# reduce resource usage but may delay result collection.\\n# This value is used by the sidecar-tekton-log-results container and can be tuned for performance or test scenarios.\\n# Example values: \\\"100ms\\\", \\\"500ms\\\", \\\"1s\\\"\\ndefault-sidecar-log-polling-interval: \\\"100ms\\\"\\n\\n# default-step-ref-concurrency-limit specifies the concurrency limit for resolving step references.\\n# This setting controls the maximum number of concurrent goroutines used to resolve\\n# step references (`step.ref` fields) simultaneously. This limit acts as a throttle\\n# to prevent overwhelming remote servers (e.g., git providers, OCI registries) or\\n# the Kubernetes API server, especially when a TaskRun contains many steps that\\n# reference StepActions.\\ndefault-step-ref-concurrency-limit: \\\"5\\\"\\n\",\"default-imagepullbackoff-timeout\":\"15m\",\"default-service-account\":\"default\"},\"kind\":\"ConfigMap\",\"metadata\":{\"annotations\":{\"operator.tekton.dev/last-applied-hash\":\"5f9ae4dcaedc24c3a0ba6e64c2f3003daab4c417e616f2f7767a6e1b388707ab\"},\"labels\":{\"app.kubernetes.io/instance\":\"default\",\"app.kubernetes.io/part-of\":\"tekton-pipelines\",\"operator.tekton.dev/operand-name\":\"tektoncd-pipelines\"},\"name\":\"config-defaults\",\"namespace\":\"tekton-pipelines\",\"ownerReferences\":[{\"apiVersion\":\"operator.tekton.dev/v1alpha1\",\"blockOwnerDeletion\":true,\"controller\":true,\"kind\":\"TektonInstallerSet\",\"name\":\"pipeline-main-static-2z2nx\",\"uid\":\"b7701397-2ea6-4e8d-b846-d854f7eb6ed3\"}]}}\n",
                    "operator.tekton.dev/last-applied-hash": "5f9ae4dcaedc24c3a0ba6e64c2f3003daab4c417e616f2f7767a6e1b388707ab"
                },
                "creationTimestamp": "2026-08-12T12:34:29Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "config-defaults",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "3956",
                "uid": "fc975882-e698-430c-a7c7-e2288010d96f"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n\n# default-service-account contains the default service account name\n# to use for TaskRun and PipelineRun, if none is specified.\ndefault-service-account: \"default\"\ndefault-run-as-user: \"65532\"\ndefault-run-as-group: \"65532\"\ndefault-fs-group: \"65532\"\ndefault-run-as-non-root: \"true\" # allowed values are true and false\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "8664f69311b46bbf965b2f565f07d182a44c62448bafdbf9de680a292fc12a85"
                },
                "creationTimestamp": "2026-08-12T12:35:23Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-triggers",
                    "operator.tekton.dev/operand-name": "tektoncd-triggers"
                },
                "name": "config-defaults-triggers",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "trigger-main-static-jwgtw",
                        "uid": "ab3ea735-3312-476a-a5f3-bbe9f9d0bd59"
                    }
                ],
                "resourceVersion": "2079",
                "uid": "823da745-4c99-4353-9cd9-26ae0db1ca05"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n\n# formats contains a comma separated list of event formats to be used\n# the only format supported today is \"tektonv1\". An empty string is not\n# a valid configuration. To disable events, do not specify the sink.\nformats: \"tektonv1\"\n\n# sink contains the event sink to be used for TaskRun, PipelineRun and\n# CustomRun. If no sink is specified, no CloudEvent is generated.\n# This setting supercedes the \"default-cloud-events-sink\" from the\n# \"config-defaults\" config map\nsink: \"https://events.sink/cdevents\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "d7ab390abcdaf5d2ab35fbf81317be1fbb66a8107947d2c31ca5ecee4bb90f33"
                },
                "creationTimestamp": "2026-08-12T12:34:29Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "config-events",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "1519",
                "uid": "302c0661-5bcf-4108-81a6-e1b26ed46e7d"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n# lease-duration is how long non-leaders will wait to try to acquire the\n# lock; 15 seconds is the value used by core kubernetes controllers.\nlease-duration: \"60s\"\n# renew-deadline is how long a leader will try to renew the lease before\n# giving up; 10 seconds is the value used by core kubernetes controllers.\nrenew-deadline: \"40s\"\n# retry-period is how long the leader election client waits between tries of\n# actions; 2 seconds is the value used by core kubernetes controllers.\nretry-period: \"10s\"\n# buckets is the number of buckets used to partition key space of each\n# Reconciler. If this number is M and the replica number of the controller\n# is N, the N replicas will compete for the M buckets. The owner of a\n# bucket will take care of the reconciling for the keys partitioned into\n# that bucket.\nbuckets: \"1\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "4e4b3335310927e9dc276a2a0c4f14f8c809d1e709cfcbd7adf7b68cabd113b4"
                },
                "creationTimestamp": "2026-08-12T12:34:29Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "config-leader-election-controller",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "1522",
                "uid": "c402f0d3-2762-484a-bb1a-6ac4cb523ce6"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n# lease-duration is how long non-leaders will wait to try to acquire the\n# lock; 15 seconds is the value used by core kubernetes controllers.\nlease-duration: \"60s\"\n# renew-deadline is how long a leader will try to renew the lease before\n# giving up; 10 seconds is the value used by core kubernetes controllers.\nrenew-deadline: \"40s\"\n# retry-period is how long the leader election client waits between tries of\n# actions; 2 seconds is the value used by core kubernetes controllers.\nretry-period: \"10s\"\n# buckets is the number of buckets used to partition key space of each\n# Reconciler. If this number is M and the replica number of the controller\n# is N, the N replicas will compete for the M buckets. The owner of a\n# bucket will take care of the reconciling for the keys partitioned into\n# that bucket.\nbuckets: \"1\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "6840db0c38bc5282a27fc530562cb0c493efeb8004c3e75a7c8c8943d1a73fff"
                },
                "creationTimestamp": "2026-08-12T12:34:29Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "config-leader-election-events",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "1523",
                "uid": "6c1b1f37-3470-4e5a-81e7-9694b8867d2a"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n# lease-duration is how long non-leaders will wait to try to acquire the\n# lock; 15 seconds is the value used by core kubernetes controllers.\nlease-duration: \"60s\"\n# renew-deadline is how long a leader will try to renew the lease before\n# giving up; 10 seconds is the value used by core kubernetes controllers.\nrenew-deadline: \"40s\"\n# retry-period is how long the leader election client waits between tries of\n# actions; 2 seconds is the value used by core kubernetes controllers.\nretry-period: \"10s\"\n# buckets is the number of buckets used to partition key space of each\n# Reconciler. If this number is M and the replica number of the controller\n# is N, the N replicas will compete for the M buckets. The owner of a\n# bucket will take care of the reconciling for the keys partitioned into\n# that bucket.\nbuckets: \"1\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "4e610a0f6bdf57879699e4b3f304c3dd0917a0f624ab7576c4445937cd6a7561"
                },
                "creationTimestamp": "2026-08-12T12:34:30Z",
                "labels": {
                    "app.kubernetes.io/component": "resolvers",
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "config-leader-election-resolvers",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "1541",
                "uid": "02a37f25-fffa-4926-b99e-81ec54911c0a"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n# lease-duration is how long non-leaders will wait to try to acquire the\n# lock; 15 seconds is the value used by core kubernetes controllers.\nlease-duration: \"60s\"\n# renew-deadline is how long a leader will try to renew the lease before\n# giving up; 10 seconds is the value used by core kubernetes controllers.\nrenew-deadline: \"40s\"\n# retry-period is how long the leader election client waits between tries of\n# actions; 2 seconds is the value used by core kubernetes controllers.\nretry-period: \"10s\"\n# buckets is the number of buckets used to partition key space of each\n# Reconciler. If this number is M and the replica number of the controller\n# is N, the N replicas will compete for the M buckets. The owner of a\n# bucket will take care of the reconciling for the keys partitioned into\n# that bucket.\nbuckets: \"1\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "650c9c03c28eab498093f45585f2f24d530b129ffd7b015814abf362b033e6e6"
                },
                "creationTimestamp": "2026-08-12T12:35:23Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-triggers",
                    "operator.tekton.dev/operand-name": "tektoncd-triggers"
                },
                "name": "config-leader-election-triggers-controller",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "trigger-main-static-jwgtw",
                        "uid": "ab3ea735-3312-476a-a5f3-bbe9f9d0bd59"
                    }
                ],
                "resourceVersion": "2093",
                "uid": "0bee83ea-70d5-4f92-9f06-d9691ec8be71"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n# lease-duration is how long non-leaders will wait to try to acquire the\n# lock; 15 seconds is the value used by core kubernetes controllers.\nlease-duration: \"60s\"\n# renew-deadline is how long a leader will try to renew the lease before\n# giving up; 10 seconds is the value used by core kubernetes controllers.\nrenew-deadline: \"40s\"\n# retry-period is how long the leader election client waits between tries of\n# actions; 2 seconds is the value used by core kubernetes controllers.\nretry-period: \"10s\"\n# buckets is the number of buckets used to partition key space of each\n# Reconciler. If this number is M and the replica number of the controller\n# is N, the N replicas will compete for the M buckets. The owner of a\n# bucket will take care of the reconciling for the keys partitioned into\n# that bucket.\nbuckets: \"1\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "7c98828af74e1a2b8ceb66600877f16e81785ec8ee8d319007732edf27a83e10"
                },
                "creationTimestamp": "2026-08-12T12:35:24Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-triggers",
                    "operator.tekton.dev/operand-name": "tektoncd-triggers"
                },
                "name": "config-leader-election-triggers-webhook",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "trigger-main-static-jwgtw",
                        "uid": "ab3ea735-3312-476a-a5f3-bbe9f9d0bd59"
                    }
                ],
                "resourceVersion": "2094",
                "uid": "1a310ae2-2bac-46c1-b4ca-b7bc4d3c5464"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n# lease-duration is how long non-leaders will wait to try to acquire the\n# lock; 15 seconds is the value used by core kubernetes controllers.\nlease-duration: \"60s\"\n# renew-deadline is how long a leader will try to renew the lease before\n# giving up; 10 seconds is the value used by core kubernetes controllers.\nrenew-deadline: \"40s\"\n# retry-period is how long the leader election client waits between tries of\n# actions; 2 seconds is the value used by core kubernetes controllers.\nretry-period: \"10s\"\n# buckets is the number of buckets used to partition key space of each\n# Reconciler. If this number is M and the replica number of the controller\n# is N, the N replicas will compete for the M buckets. The owner of a\n# bucket will take care of the reconciling for the keys partitioned into\n# that bucket.\nbuckets: \"1\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "2ca5966c10165b8744c2d5b1550f45961a111d8e745a78f5f36a48dd6b807762"
                },
                "creationTimestamp": "2026-08-12T12:34:29Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "config-leader-election-webhook",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "1524",
                "uid": "5434c73f-3885-4512-ab3d-6a0390262986"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "loglevel.controller": "info",
                "loglevel.webhook": "info",
                "zap-logger-config": "{\n  \"level\": \"info\",\n  \"development\": false,\n  \"sampling\": {\n    \"initial\": 100,\n    \"thereafter\": 100\n  },\n  \"outputPaths\": [\"stdout\"],\n  \"errorOutputPaths\": [\"stderr\"],\n  \"encoding\": \"json\",\n  \"encoderConfig\": {\n    \"timeKey\": \"ts\",\n    \"levelKey\": \"level\",\n    \"nameKey\": \"logger\",\n    \"callerKey\": \"caller\",\n    \"messageKey\": \"msg\",\n    \"stacktraceKey\": \"stacktrace\",\n    \"lineEnding\": \"\",\n    \"levelEncoder\": \"\",\n    \"timeEncoder\": \"iso8601\",\n    \"durationEncoder\": \"\",\n    \"callerEncoder\": \"\"\n  }\n}\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubectl.kubernetes.io/last-applied-configuration": "{\"apiVersion\":\"v1\",\"data\":{\"loglevel.controller\":\"info\",\"loglevel.webhook\":\"info\",\"zap-logger-config\":\"{\\n  \\\"level\\\": \\\"info\\\",\\n  \\\"development\\\": false,\\n  \\\"sampling\\\": {\\n    \\\"initial\\\": 100,\\n    \\\"thereafter\\\": 100\\n  },\\n  \\\"outputPaths\\\": [\\\"stdout\\\"],\\n  \\\"errorOutputPaths\\\": [\\\"stderr\\\"],\\n  \\\"encoding\\\": \\\"json\\\",\\n  \\\"encoderConfig\\\": {\\n    \\\"timeKey\\\": \\\"ts\\\",\\n    \\\"levelKey\\\": \\\"level\\\",\\n    \\\"nameKey\\\": \\\"logger\\\",\\n    \\\"callerKey\\\": \\\"caller\\\",\\n    \\\"messageKey\\\": \\\"msg\\\",\\n    \\\"stacktraceKey\\\": \\\"stacktrace\\\",\\n    \\\"lineEnding\\\": \\\"\\\",\\n    \\\"levelEncoder\\\": \\\"\\\",\\n    \\\"timeEncoder\\\": \\\"iso8601\\\",\\n    \\\"durationEncoder\\\": \\\"\\\",\\n    \\\"callerEncoder\\\": \\\"\\\"\\n  }\\n}\\n\"},\"kind\":\"ConfigMap\",\"metadata\":{\"annotations\":{\"operator.tekton.dev/last-applied-hash\":\"7749c66893ecf8155fec52f7043509bd24e81bcd6cb3a446a081579babd65c1f\"},\"labels\":{\"app.kubernetes.io/instance\":\"default\",\"app.kubernetes.io/part-of\":\"tekton-chains\",\"operator.tekton.dev/operand-name\":\"tektoncd-chains\"},\"name\":\"config-logging\",\"namespace\":\"tekton-pipelines\",\"ownerReferences\":[{\"apiVersion\":\"operator.tekton.dev/v1alpha1\",\"blockOwnerDeletion\":true,\"controller\":true,\"kind\":\"TektonInstallerSet\",\"name\":\"chain-rsbff\",\"uid\":\"373502e9-ceca-4ce0-aa6b-4853e40bb112\"}]}}\n",
                    "operator.tekton.dev/last-applied-hash": "7749c66893ecf8155fec52f7043509bd24e81bcd6cb3a446a081579babd65c1f"
                },
                "creationTimestamp": "2026-08-12T12:34:29Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-chains",
                    "operator.tekton.dev/operand-name": "tektoncd-chains"
                },
                "name": "config-logging",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "chain-rsbff",
                        "uid": "373502e9-ceca-4ce0-aa6b-4853e40bb112"
                    }
                ],
                "resourceVersion": "4056",
                "uid": "8761b8e7-0368-4d5d-8c56-031fffd4769f"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "loglevel.controller": "info",
                "loglevel.eventlistener": "info",
                "loglevel.webhook": "info",
                "zap-logger-config": "{\n  \"level\": \"info\",\n  \"development\": false,\n  \"disableStacktrace\": true,\n  \"sampling\": {\n    \"initial\": 100,\n    \"thereafter\": 100\n  },\n  \"outputPaths\": [\"stdout\"],\n  \"errorOutputPaths\": [\"stderr\"],\n  \"encoding\": \"json\",\n  \"encoderConfig\": {\n    \"timeKey\": \"timestamp\",\n    \"levelKey\": \"severity\",\n    \"nameKey\": \"logger\",\n    \"callerKey\": \"caller\",\n    \"messageKey\": \"message\",\n    \"stacktraceKey\": \"stacktrace\",\n    \"lineEnding\": \"\",\n    \"levelEncoder\": \"\",\n    \"timeEncoder\": \"iso8601\",\n    \"durationEncoder\": \"\",\n    \"callerEncoder\": \"\"\n  }\n}\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "eaed634e4116493bd49dfc9287c18de978fd5b5b15bd284da4e3c195bbca36fd"
                },
                "creationTimestamp": "2026-08-12T12:35:24Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-triggers",
                    "operator.tekton.dev/operand-name": "tektoncd-triggers"
                },
                "name": "config-logging-triggers",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "trigger-main-static-jwgtw",
                        "uid": "ab3ea735-3312-476a-a5f3-bbe9f9d0bd59"
                    }
                ],
                "resourceVersion": "2095",
                "uid": "88b48b80-9fed-4731-ba18-79d1c47b6dc5"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n\n# OpenTelemetry Metrics Configuration\n# Protocol for metrics export (prometheus, grpc, http/protobuf, none)\n# Default if not specified: \"none\"\nmetrics-protocol: prometheus\n\n# Metrics endpoint (for grpc/http protocols)\n# Default: empty (uses default OTLP endpoint)\nmetrics-endpoint: \"\"\n\n# Metrics export interval (e.g., \"30s\", \"1m\")\n# Default: empty (uses default interval)\nmetrics-export-interval: \"\"\n\n# OpenTelemetry Tracing Configuration\n# Protocol for tracing export (grpc, http/protobuf, none, stdout)\n# Default: none\ntracing-protocol: none\n\n# Tracing endpoint (for grpc/http protocols)\n# Default: empty\ntracing-endpoint: \"\"\n\n# Tracing sampling rate (0.0 to 1.0)\n# Default: 1.0 (100% sampling)\ntracing-sampling-rate: \"1.0\"\n\n# Runtime Configuration\n# Enable profiling (enabled, disabled)\n# Default: disabled\nruntime-profiling: disabled\n\n# Runtime export interval (e.g., \"15s\")\n# Default: 15s\nruntime-export-interval: \"15s\"\n\n# Note: Legacy OpenCensus configuration (metrics.backend-destination, etc.) has been\n# removed as OpenCensus support is no longer provided by the underlying infrastructure.\n# Please use the OpenTelemetry configuration options above.\n",
                "metrics-protocol": "prometheus",
                "metrics.count.enable-reason": "false",
                "metrics.pipelinerun.duration-type": "histogram",
                "metrics.pipelinerun.level": "pipeline",
                "metrics.taskrun.duration-type": "histogram",
                "metrics.taskrun.level": "task"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubectl.kubernetes.io/last-applied-configuration": "{\"apiVersion\":\"v1\",\"data\":{\"_example\":\"################################\\n#                              #\\n#    EXAMPLE CONFIGURATION     #\\n#                              #\\n################################\\n\\n# This block is not actually functional configuration,\\n# but serves to illustrate the available configuration\\n# options and document them in a way that is accessible\\n# to users that `kubectl edit` this config map.\\n#\\n# These sample configuration options may be copied out of\\n# this example block and unindented to be in the data block\\n# to actually change the configuration.\\n\\n# OpenTelemetry Metrics Configuration\\n# Protocol for metrics export (prometheus, grpc, http/protobuf, none)\\n# Default if not specified: \\\"none\\\"\\nmetrics-protocol: prometheus\\n\\n# Metrics endpoint (for grpc/http protocols)\\n# Default: empty (uses default OTLP endpoint)\\nmetrics-endpoint: \\\"\\\"\\n\\n# Metrics export interval (e.g., \\\"30s\\\", \\\"1m\\\")\\n# Default: empty (uses default interval)\\nmetrics-export-interval: \\\"\\\"\\n\\n# OpenTelemetry Tracing Configuration\\n# Protocol for tracing export (grpc, http/protobuf, none, stdout)\\n# Default: none\\ntracing-protocol: none\\n\\n# Tracing endpoint (for grpc/http protocols)\\n# Default: empty\\ntracing-endpoint: \\\"\\\"\\n\\n# Tracing sampling rate (0.0 to 1.0)\\n# Default: 1.0 (100% sampling)\\ntracing-sampling-rate: \\\"1.0\\\"\\n\\n# Runtime Configuration\\n# Enable profiling (enabled, disabled)\\n# Default: disabled\\nruntime-profiling: disabled\\n\\n# Runtime export interval (e.g., \\\"15s\\\")\\n# Default: 15s\\nruntime-export-interval: \\\"15s\\\"\\n\\n# Note: Legacy OpenCensus configuration (metrics.backend-destination, etc.) has been\\n# removed as OpenCensus support is no longer provided by the underlying infrastructure.\\n# Please use the OpenTelemetry configuration options above.\\n\",\"metrics-protocol\":\"prometheus\",\"metrics.count.enable-reason\":\"false\",\"metrics.pipelinerun.duration-type\":\"histogram\",\"metrics.pipelinerun.level\":\"pipeline\",\"metrics.taskrun.duration-type\":\"histogram\",\"metrics.taskrun.level\":\"task\"},\"kind\":\"ConfigMap\",\"metadata\":{\"annotations\":{\"operator.tekton.dev/last-applied-hash\":\"c8ed5e8a24fa45a4516627761359c34d361fd085411ce77a0409cde235807747\"},\"labels\":{\"app.kubernetes.io/component\":\"resolvers\",\"app.kubernetes.io/instance\":\"default\",\"app.kubernetes.io/part-of\":\"tekton-pipelines\",\"operator.tekton.dev/operand-name\":\"tektoncd-pipelines\"},\"name\":\"config-observability\",\"namespace\":\"tekton-pipelines\",\"ownerReferences\":[{\"apiVersion\":\"operator.tekton.dev/v1alpha1\",\"blockOwnerDeletion\":true,\"controller\":true,\"kind\":\"TektonInstallerSet\",\"name\":\"pipeline-main-static-2z2nx\",\"uid\":\"b7701397-2ea6-4e8d-b846-d854f7eb6ed3\"}]}}\n",
                    "operator.tekton.dev/last-applied-hash": "c8ed5e8a24fa45a4516627761359c34d361fd085411ce77a0409cde235807747"
                },
                "creationTimestamp": "2026-08-12T12:34:29Z",
                "labels": {
                    "app.kubernetes.io/component": "resolvers",
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "config-observability",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "4016",
                "uid": "e7045045-76f3-4d21-b252-8201b0d7fa9c"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n\n# OpenTelemetry Metrics Configuration\n# Protocol for metrics export (prometheus, grpc, http/protobuf, none)\n# Default if not specified: \"none\"\nmetrics-protocol: prometheus\n\n# Metrics endpoint (for grpc/http protocols)\n# Default: empty (uses default OTLP endpoint)\nmetrics-endpoint: \"\"\n\n# Metrics export interval (e.g., \"30s\", \"1m\")\n# Default: empty (uses default interval)\nmetrics-export-interval: \"\"\n\n# OpenTelemetry Tracing Configuration\n# Protocol for tracing export (grpc, http/protobuf, none, stdout)\n# Default: none\ntracing-protocol: none\n\n# Tracing endpoint (for grpc/http protocols)\n# Default: empty\ntracing-endpoint: \"\"\n\n# Tracing sampling rate (0.0 to 1.0)\n# Default: 0.0 (no sampling)\ntracing-sampling-rate: \"0.0\"\n\n# Runtime Configuration\n# Enable profiling (enabled, disabled)\n# Default: disabled\nruntime-profiling: disabled\n\n# Runtime export interval (e.g., \"15s\")\n# Default: 15s\nruntime-export-interval: \"15s\"\n\n# Note: Legacy OpenCensus configuration (metrics.backend-destination, etc.)\n# has been removed. OpenCensus is no longer supported. Please use the\n# OpenTelemetry configuration options above.\n",
                "metrics-protocol": "prometheus"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "b89673ca93ccb857918552698c213edf3e4e6106e7e1d0fbe73fb81564e4dc03"
                },
                "creationTimestamp": "2026-08-12T12:35:24Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-triggers",
                    "operator.tekton.dev/operand-name": "tektoncd-triggers"
                },
                "name": "config-observability-triggers",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "trigger-main-static-jwgtw",
                        "uid": "ab3ea735-3312-476a-a5f3-bbe9f9d0bd59"
                    }
                ],
                "resourceVersion": "2097",
                "uid": "75f140ff-44de-4d7d-9526-3105b6d1ca2e"
            }
        },
        {
            "apiVersion": "v1",
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "1bbe8df3e512405310193c1af0c98e94bd791e23fc4fb8ff72f7eae9aa8b56a1"
                },
                "creationTimestamp": "2026-08-12T12:34:29Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "config-registry-cert",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "1528",
                "uid": "e9fdf649-b6b2-4288-97f8-b1b0c8e538ae"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n#\n# spire-trust-domain specifies the SPIRE trust domain to use.\n# spire-trust-domain: \"example.org\"\n#\n# spire-socket-path specifies the SPIRE agent socket for SPIFFE workload API.\n# spire-socket-path: \"unix:///spiffe-workload-api/spire-agent.sock\"\n#\n# spire-server-addr specifies the SPIRE server address for workload/node registration.\n# spire-server-addr: \"spire-server.spire.svc.cluster.local:8081\"\n#\n# spire-node-alias-prefix specifies the SPIRE node alias prefix to use.\n# spire-node-alias-prefix: \"/tekton-node/\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "694290a0ba87eaddbad0447fc3cd02662d6f7843dd9ab257168705cec452109d"
                },
                "creationTimestamp": "2026-08-12T12:34:29Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "config-spire",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "1529",
                "uid": "d85ff69f-212d-4fba-93e3-810d34a4fadb"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n#\n# Enable sending traces to defined endpoint by setting this to true\nenabled: \"true\"\n#\n# API endpoint to send the traces to\n# (optional): The default value is given below\nendpoint: \"http://jaeger-collector.jaeger.svc.cluster.local:4318/v1/traces\"\n# (optional) Name of the k8s secret which contains basic auth credentials\ncredentialsSecret: \"jaeger-creds\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "dc51eb938f315c6ca16d64a7bbcd1f16b9bffe376cd9f182b3628514a33a8da1"
                },
                "creationTimestamp": "2026-08-12T12:34:29Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "config-tracing",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "1530",
                "uid": "7e61f9be-091a-4dc9-b8ca-dd8f28ff7751"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "cap": "60s",
                "duration": "10s",
                "factor": "2.0",
                "jitter": "0.0",
                "steps": "5"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "adde1e54d490cf67dbc2ec9edf68240b7ba08cb48dd853bddcc5e1a0d9421903"
                },
                "creationTimestamp": "2026-08-12T12:34:30Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "config-wait-exponential-backoff",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "1531",
                "uid": "3dcfdaa0-bb07-4110-9207-1beeb40dc266"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "await-sidecar-readiness": "true",
                "coschedule": "workspaces",
                "disable-creds-init": "false",
                "disable-inline-spec": "",
                "enable-api-fields": "beta",
                "enable-artifacts": "false",
                "enable-cel-in-whenexpression": "false",
                "enable-concise-resolver-syntax": "false",
                "enable-custom-tasks": "true",
                "enable-informer-cache-transforms": "true",
                "enable-kubernetes-sidecar": "false",
                "enable-param-enum": "false",
                "enable-provenance-in-status": "true",
                "enable-step-actions": "true",
                "enable-tekton-oci-bundles": "false",
                "enable-termination-message-compression": "false",
                "enable-wait-exponential-backoff": "false",
                "enforce-nonfalsifiability": "none",
                "keep-pod-on-cancel": "false",
                "max-result-size": "4096",
                "performance": "disable-ha: false\n",
                "require-git-ssh-secret-known-hosts": "false",
                "results-from": "termination-message",
                "running-in-environment-with-injected-sidecars": "true",
                "send-cloudevents-for-runs": "true",
                "set-security-context": "false",
                "set-security-context-read-only-root-filesystem": "false",
                "trusted-resources-verification-no-match-policy": "ignore"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "16f4e3c2fe266d2417f27b8c05470b372f7f0b8734c3200282052d0af95146c1"
                },
                "creationTimestamp": "2026-08-12T12:34:29Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "feature-flags",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "1520",
                "uid": "aadd8d79-a6fe-4e4f-80d5-4b4f43e8f760"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "enable-api-fields": "stable",
                "labels-exclusion-pattern": ""
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "ab5789186fd31ed5355b50c0f6d1e5e976fb2e2e002a405360149e6cb0a945c7"
                },
                "creationTimestamp": "2026-08-12T12:35:23Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-triggers"
                },
                "name": "feature-flags-triggers",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "trigger-main-static-jwgtw",
                        "uid": "ab3ea735-3312-476a-a5f3-bbe9f9d0bd59"
                    }
                ],
                "resourceVersion": "2090",
                "uid": "f50be267-473d-45e9-bbd2-2a207ccb9cb5"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "api-token-secret-key": "",
                "api-token-secret-name": "",
                "api-token-secret-namespace": "default",
                "default-org": "",
                "default-revision": "main",
                "default-url": "https://github.com/tektoncd/catalog.git",
                "fetch-timeout": "2m",
                "scm-type": "github",
                "server-url": ""
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubectl.kubernetes.io/last-applied-configuration": "{\"apiVersion\":\"v1\",\"data\":{\"api-token-secret-key\":\"\",\"api-token-secret-name\":\"\",\"api-token-secret-namespace\":\"default\",\"default-org\":\"\",\"default-revision\":\"main\",\"default-url\":\"https://github.com/tektoncd/catalog.git\",\"fetch-timeout\":\"2m\",\"scm-type\":\"github\",\"server-url\":\"\"},\"kind\":\"ConfigMap\",\"metadata\":{\"annotations\":{\"operator.tekton.dev/last-applied-hash\":\"1f8aa95253c9286f91ad0eb11f7be036ccf223fd635ec79c54db508ff3110245\"},\"labels\":{\"app.kubernetes.io/component\":\"resolvers\",\"app.kubernetes.io/instance\":\"default\",\"app.kubernetes.io/part-of\":\"tekton-pipelines\",\"operator.tekton.dev/operand-name\":\"tektoncd-pipelines\"},\"name\":\"git-resolver-config\",\"namespace\":\"tekton-pipelines\",\"ownerReferences\":[{\"apiVersion\":\"operator.tekton.dev/v1alpha1\",\"blockOwnerDeletion\":true,\"controller\":true,\"kind\":\"TektonInstallerSet\",\"name\":\"pipeline-main-static-2z2nx\",\"uid\":\"b7701397-2ea6-4e8d-b846-d854f7eb6ed3\"}]}}\n",
                    "operator.tekton.dev/last-applied-hash": "1f8aa95253c9286f91ad0eb11f7be036ccf223fd635ec79c54db508ff3110245"
                },
                "creationTimestamp": "2026-08-12T12:34:30Z",
                "labels": {
                    "app.kubernetes.io/component": "resolvers",
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "git-resolver-config",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "4018",
                "uid": "6e035988-cf1f-40a8-b772-c18573f039bc"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "fetch-timeout": "1m"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "9083a275f464c1ac5271b68c00103d56815d20bccb30e23ad66d89da40656054"
                },
                "creationTimestamp": "2026-08-12T12:34:31Z",
                "labels": {
                    "app.kubernetes.io/component": "resolvers",
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "http-resolver-config",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "1545",
                "uid": "ffe8be3a-1610-4db3-a855-3af2888e24fb"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "default-artifact-hub-pipeline-catalog": "tekton-catalog-pipelines",
                "default-artifact-hub-task-catalog": "tekton-catalog-tasks",
                "default-kind": "task",
                "default-tekton-hub-catalog": "Tekton",
                "default-type": "artifact"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "c85fe569c34b8f2cc578a478389199d4f774fd6ff28da58238563cb0401257e0"
                },
                "creationTimestamp": "2026-08-12T12:34:31Z",
                "labels": {
                    "app.kubernetes.io/component": "resolvers",
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "hubresolver-config",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "1546",
                "uid": "f130a605-a6a5-4cc9-8e37-da816aff6b4d"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "ca.crt": "-----BEGIN CERTIFICATE-----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\nyVQmMwYRsC4b\n-----END CERTIFICATE-----\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "kubernetes.io/description": "Contains a CA bundle that can be used to verify the kube-apiserver when using internal endpoints such as the internal service IP or kubernetes.default.svc. No other usage is guaranteed across distributions of Kubernetes clusters."
                },
                "creationTimestamp": "2026-08-12T12:34:23Z",
                "name": "kube-root-ca.crt",
                "namespace": "tekton-pipelines",
                "resourceVersion": "1435",
                "uid": "aa5872e7-38ae-464f-8dcf-4bb9d806ad6e"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "loglevel.pac-watcher": "info",
                "loglevel.pipelines-as-code-webhook": "info",
                "loglevel.pipelinesascode": "info",
                "zap-logger-config": "{\n  \"level\": \"info\",\n  \"development\": false,\n  \"sampling\": {\n    \"initial\": 100,\n    \"thereafter\": 100\n  },\n  \"outputPaths\": [\"stdout\"],\n  \"errorOutputPaths\": [\"stderr\"],\n  \"encoding\": \"json\",\n  \"encoderConfig\": {\n    \"timeKey\": \"ts\",\n    \"levelKey\": \"level\",\n    \"nameKey\": \"logger\",\n    \"callerKey\": \"caller\",\n    \"messageKey\": \"msg\",\n    \"stacktraceKey\": \"stacktrace\",\n    \"lineEnding\": \"\",\n    \"levelEncoder\": \"\",\n    \"timeEncoder\": \"iso8601\",\n    \"durationEncoder\": \"\",\n    \"callerEncoder\": \"\"\n  }\n}\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "81fbca94d5736405b3cd34af628f0f988b776b564bf0ef339b70f63735e445d0"
                },
                "creationTimestamp": "2026-08-12T12:37:18Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "pipelines-as-code",
                    "operator.tekton.dev/operand-name": "openshift-pipeline-as-code"
                },
                "name": "pac-config-logging",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "openshiftpipelinesascode-main-static-x9t6k",
                        "uid": "29ab6d36-9dd0-44f8-a7f1-c2e68093525c"
                    }
                ],
                "resourceVersion": "3329",
                "uid": "03226447-9138-4845-aec2-6c23f224ca79"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n# lease-duration is how long non-leaders will wait to try to acquire the\n# lock; 15 seconds is the value used by core kubernetes controllers.\nlease-duration: \"60s\"\n# renew-deadline is how long a leader will try to renew the lease before\n# giving up; 10 seconds is the value used by core kubernetes controllers.\nrenew-deadline: \"40s\"\n# retry-period is how long the leader election client waits between tries of\n# actions; 2 seconds is the value used by core kubernetes controllers.\nretry-period: \"10s\"\n# buckets is the number of buckets used to partition key space of each\n# Reconciler. If this number is M and the replica number of the controller\n# is N, the N replicas will compete for the M buckets. The owner of a\n# bucket will take care of the reconciling for the keys partitioned into\n# that bucket.\nbuckets: \"1\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "e9bc2411215e7277d86d815cee0eef771fc8b74ec7dc5f24d70cfc019ed83716"
                },
                "creationTimestamp": "2026-08-12T12:37:18Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "pipelines-as-code",
                    "operator.tekton.dev/operand-name": "openshift-pipeline-as-code"
                },
                "name": "pac-watcher-config-leader-election",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "openshiftpipelinesascode-main-static-x9t6k",
                        "uid": "29ab6d36-9dd0-44f8-a7f1-c2e68093525c"
                    }
                ],
                "resourceVersion": "3337",
                "uid": "836989ce-1fb9-4029-b168-d34b8a7d6eb3"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n# lease-duration is how long non-leaders will wait to try to acquire the\n# lock; 15 seconds is the value used by core kubernetes controllers.\nlease-duration: \"60s\"\n# renew-deadline is how long a leader will try to renew the lease before\n# giving up; 10 seconds is the value used by core kubernetes controllers.\nrenew-deadline: \"40s\"\n# retry-period is how long the leader election client waits between tries of\n# actions; 2 seconds is the value used by core kubernetes controllers.\nretry-period: \"10s\"\n# buckets is the number of buckets used to partition key space of each\n# Reconciler. If this number is M and the replica number of the controller\n# is N, the N replicas will compete for the M buckets. The owner of a\n# bucket will take care of the reconciling for the keys partitioned into\n# that bucket.\nbuckets: \"1\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "9f584298ebe746b4ce5259b058ca10c2645c7c7aa6cc83d65aebdb257ac0456f"
                },
                "creationTimestamp": "2026-08-12T12:37:18Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "pipelines-as-code",
                    "operator.tekton.dev/operand-name": "openshift-pipeline-as-code"
                },
                "name": "pac-webhook-config-leader-election",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "openshiftpipelinesascode-main-static-x9t6k",
                        "uid": "29ab6d36-9dd0-44f8-a7f1-c2e68093525c"
                    }
                ],
                "resourceVersion": "3338",
                "uid": "1eb11139-e6a9-4ebb-b2a0-fb609b675986"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "application-name": "Pipelines as Code CI",
                "auto-configure-new-github-repo": "false",
                "auto-configure-repo-namespace-template": "",
                "auto-configure-repo-repository-template": "",
                "bitbucket-cloud-additional-source-ip": "",
                "bitbucket-cloud-check-source-ip": "true",
                "custom-console-name": "",
                "custom-console-url": "",
                "custom-console-url-namespace": "",
                "custom-console-url-pr-details": "",
                "custom-console-url-pr-tasklog": "",
                "default-max-keep-runs": "0",
                "enable-cancel-in-progress-on-pull-requests": "false",
                "enable-cancel-in-progress-on-push": "false",
                "error-detection-from-container-logs": "true",
                "error-detection-max-number-of-lines": "50",
                "error-detection-simple-regexp": "^(?P\u003cfilename\u003e[^:]*):(?P\u003cline\u003e[0-9]+):(?P\u003ccolumn\u003e[0-9]+)?([ ]*)?(?P\u003cerror\u003e.*)",
                "error-log-snippet": "true",
                "error-log-snippet-number-of-lines": "3",
                "hub-catalog-type": "artifacthub",
                "hub-url": "https://artifacthub.io/api/v1",
                "max-keep-run-upper-limit": "0",
                "remember-ok-to-test": "false",
                "remote-tasks": "true",
                "require-ok-to-test-sha": "false",
                "secret-auto-create": "true",
                "secret-github-app-scope-extra-repos": "",
                "secret-github-app-token-scoped": "true",
                "skip-push-event-for-pr-commits": "true",
                "tekton-dashboard-url": "",
                "tracing-label-action": "",
                "tracing-label-application": "",
                "tracing-label-component": ""
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "3e31afca07ad7ecf719d2cc482db47a2ab6c73fce0c3532f4451eb6bba03a004"
                },
                "creationTimestamp": "2026-08-12T12:37:18Z",
                "labels": {
                    "app.kubernetes.io/part-of": "pipelines-as-code",
                    "app.kubernetes.io/version": "v0.50.0",
                    "operator.tekton.dev/operand-name": "openshift-pipeline-as-code"
                },
                "name": "pipelines-as-code",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "openshiftpipelinesascode-main-static-x9t6k",
                        "uid": "29ab6d36-9dd0-44f8-a7f1-c2e68093525c"
                    }
                ],
                "resourceVersion": "3332",
                "uid": "a385ef79-ba40-400e-ac9e-5622e2e081ae"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n\n# metrics-protocol specifies the metrics export protocol.\n# Supported values: \"prometheus\", \"grpc\", \"http/protobuf\", \"none\".\n# Default is \"none\" (metrics disabled).\nmetrics-protocol: prometheus\n\n# metrics-endpoint specifies the host:port for the metrics server.\n# For prometheus, this is the listen address (e.g. \":9090\").\n# For grpc/http, this is the collector endpoint.\n# metrics-endpoint: \"\"\n\n# metrics-export-interval specifies how often metrics are exported.\n# Only applicable for grpc and http/protobuf protocols.\n# metrics-export-interval: \"30s\"\n\n# runtime-profiling enables/disables the pprof profiling server on port 8008.\n# Supported values: \"enabled\", \"disabled\" (default).\n# runtime-profiling: \"disabled\"\n\n# runtime-export-interval controls how often runtime metrics are exported.\n# Default is \"15s\".\n# runtime-export-interval: \"15s\"\n",
                "metrics-endpoint": ":9090",
                "metrics-protocol": "prometheus"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "f7a0dee34e68dd63d65ecb4a29121da2a2792c72e89619c5bff1348ddbc2f65b"
                },
                "creationTimestamp": "2026-08-12T12:37:18Z",
                "labels": {
                    "app.kubernetes.io/part-of": "pipelines-as-code",
                    "app.kubernetes.io/version": "v0.50.0",
                    "operator.tekton.dev/operand-name": "openshift-pipeline-as-code"
                },
                "name": "pipelines-as-code-config-observability",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "openshiftpipelinesascode-main-static-x9t6k",
                        "uid": "29ab6d36-9dd0-44f8-a7f1-c2e68093525c"
                    }
                ],
                "resourceVersion": "3336",
                "uid": "5a475d27-3c3b-4347-817f-2e4ddc7e06b1"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "controller-url": "",
                "provider": "",
                "version": "v0.50.0"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "45d75ef0e57c5d85b0e0675f8b875325db090704d627c3a5d14ad485870b7e9e"
                },
                "creationTimestamp": "2026-08-12T12:37:18Z",
                "labels": {
                    "app.kubernetes.io/part-of": "pipelines-as-code",
                    "app.kubernetes.io/version": "v0.50.0",
                    "operator.tekton.dev/operand-name": "openshift-pipeline-as-code"
                },
                "name": "pipelines-as-code-info",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "openshiftpipelinesascode-main-static-x9t6k",
                        "uid": "29ab6d36-9dd0-44f8-a7f1-c2e68093525c"
                    }
                ],
                "resourceVersion": "3333",
                "uid": "75bb4419-8094-495d-807a-be999b16047a"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "template": "apiVersion: tekton.dev/v1\nkind: PipelineRun\nmetadata:\n  annotations:\n    pipelinesascode.tekton.dev/max-keep-runs: \"5\"\n    pipelinesascode.tekton.dev/on-event: pull_request\n    pipelinesascode.tekton.dev/on-target-branch: main\n    pipelinesascode.tekton.dev/task: git-clone\n  name: pipelinerun-generic\nspec:\n  params:\n  - name: repo_url\n    value: '{{ repo_url }}'\n  - name: revision\n    value: '{{ revision }}'\n  pipelineSpec:\n    params:\n    - name: repo_url\n    - name: revision\n    tasks:\n    - name: fetch-repository\n      params:\n      - name: url\n        value: $(params.repo_url)\n      - name: revision\n        value: $(params.revision)\n      taskRef:\n        name: git-clone\n      workspaces:\n      - name: output\n        workspace: source\n      - name: basic-auth\n        workspace: basic-auth\n    - displayName: Task with no effect\n      name: noop-task\n      runAfter:\n      - fetch-repository\n      taskSpec:\n        steps:\n        - image: registry.access.redhat.com/ubi10/ubi-micro\n          name: noop-task\n          script: |\n            exit 0\n          workingDir: $(workspaces.source.path)\n        workspaces:\n        - name: source\n      workspaces:\n      - name: source\n        workspace: source\n    workspaces:\n    - name: source\n    - name: basic-auth\n  workspaces:\n  - name: source\n    volumeClaimTemplate:\n      spec:\n        accessModes:\n        - ReadWriteOnce\n        resources:\n          requests:\n            storage: 1Gi\n  - name: basic-auth\n    secret:\n      secretName: '{{ git_auth_secret }}'\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "e2a7abcea9c7ad6e6cd08fcfab8e0ee90adaf806c2eb60fd3fd641dd1214ecad"
                },
                "creationTimestamp": "2026-08-12T12:37:47Z",
                "labels": {
                    "app.kubernetes.io/part-of": "pipelines-as-code",
                    "pipelinesascode.openshift.io/runtime": "generic"
                },
                "name": "pipelines-as-code-pipelinerun-generic",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "openshiftpipelinesascode-post-l8dld",
                        "uid": "b379346c-dc16-4292-920b-b86793c0ff13"
                    }
                ],
                "resourceVersion": "3652",
                "uid": "e9e3687c-fa00-4988-994b-28cf64286312"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "template": "apiVersion: tekton.dev/v1\nkind: PipelineRun\nmetadata:\n  annotations:\n    pipelinesascode.tekton.dev/max-keep-runs: \"5\"\n    pipelinesascode.tekton.dev/on-event: pull_request\n    pipelinesascode.tekton.dev/on-target-branch: main\n    pipelinesascode.tekton.dev/task: git-clone\n    pipelinesascode.tekton.dev/task-1: golangci-lint\n  name: pipelinerun-go\nspec:\n  params:\n  - name: repo_url\n    value: '{{ repo_url }}'\n  - name: revision\n    value: '{{ revision }}'\n  pipelineSpec:\n    params:\n    - name: repo_url\n    - name: revision\n    tasks:\n    - name: fetch-repository\n      params:\n      - name: url\n        value: $(params.repo_url)\n      - name: revision\n        value: $(params.revision)\n      taskRef:\n        name: git-clone\n      workspaces:\n      - name: output\n        workspace: source\n      - name: basic-auth\n        workspace: basic-auth\n    - name: golangci-lint\n      params:\n      - name: package\n        value: .\n      runAfter:\n      - fetch-repository\n      taskRef:\n        name: golangci-lint\n      workspaces:\n      - name: source\n        workspace: source\n    workspaces:\n    - name: source\n    - name: basic-auth\n  workspaces:\n  - name: source\n    volumeClaimTemplate:\n      spec:\n        accessModes:\n        - ReadWriteOnce\n        resources:\n          requests:\n            storage: 1Gi\n  - name: basic-auth\n    secret:\n      secretName: '{{ git_auth_secret }}'\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "6218f0d5f8588200a49f0f59b753c295336ad5c4593d9d75bb855339d4750674"
                },
                "creationTimestamp": "2026-08-12T12:37:47Z",
                "labels": {
                    "app.kubernetes.io/part-of": "pipelines-as-code",
                    "pipelinesascode.openshift.io/runtime": "go"
                },
                "name": "pipelines-as-code-pipelinerun-go",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "openshiftpipelinesascode-post-l8dld",
                        "uid": "b379346c-dc16-4292-920b-b86793c0ff13"
                    }
                ],
                "resourceVersion": "3653",
                "uid": "152450e5-aef4-4ada-a2c5-376e0e4a9166"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "template": "apiVersion: tekton.dev/v1\nkind: PipelineRun\nmetadata:\n  annotations:\n    pipelinesascode.tekton.dev/max-keep-runs: \"5\"\n    pipelinesascode.tekton.dev/on-event: pull_request\n    pipelinesascode.tekton.dev/on-target-branch: main\n    pipelinesascode.tekton.dev/task: git-clone\n    pipelinesascode.tekton.dev/task-1: maven\n  name: pipelinerun-java\nspec:\n  params:\n  - name: repo_url\n    value: '{{ repo_url }}'\n  - name: revision\n    value: '{{ revision }}'\n  pipelineSpec:\n    params:\n    - name: repo_url\n    - name: revision\n    tasks:\n    - name: fetch-repository\n      params:\n      - name: url\n        value: $(params.repo_url)\n      - name: revision\n        value: $(params.revision)\n      taskRef:\n        name: git-clone\n      workspaces:\n      - name: output\n        workspace: source\n      - name: basic-auth\n        workspace: basic-auth\n    - name: maven-test\n      params:\n      - name: GOALS\n        value:\n        - test\n      runAfter:\n      - fetch-repository\n      taskRef:\n        name: maven\n      workspaces:\n      - name: source\n        workspace: source\n      - name: maven-settings\n        workspace: maven-settings\n    workspaces:\n    - name: source\n    - name: basic-auth\n    - name: maven-settings\n  workspaces:\n  - emptyDir: {}\n    name: maven-settings\n  - name: source\n    volumeClaimTemplate:\n      spec:\n        accessModes:\n        - ReadWriteOnce\n        resources:\n          requests:\n            storage: 1Gi\n  - name: basic-auth\n    secret:\n      secretName: '{{ git_auth_secret }}'\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "928aff070f3b686ef1609fb23e55b66453c0fd666c6780597d0637c8efe791b1"
                },
                "creationTimestamp": "2026-08-12T12:37:47Z",
                "labels": {
                    "app.kubernetes.io/part-of": "pipelines-as-code",
                    "pipelinesascode.openshift.io/runtime": "java"
                },
                "name": "pipelines-as-code-pipelinerun-java",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "openshiftpipelinesascode-post-l8dld",
                        "uid": "b379346c-dc16-4292-920b-b86793c0ff13"
                    }
                ],
                "resourceVersion": "3654",
                "uid": "c8fee4b7-ebca-426f-85d7-81baeaa1e5e6"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "template": "apiVersion: tekton.dev/v1\nkind: PipelineRun\nmetadata:\n  annotations:\n    pipelinesascode.tekton.dev/max-keep-runs: \"5\"\n    pipelinesascode.tekton.dev/on-event: pull_request\n    pipelinesascode.tekton.dev/on-target-branch: main\n    pipelinesascode.tekton.dev/task: git-clone\n    pipelinesascode.tekton.dev/task-1: '[npm]'\n  name: pipelinerun-nodejs\nspec:\n  params:\n  - name: repo_url\n    value: '{{ repo_url }}'\n  - name: revision\n    value: '{{ revision }}'\n  pipelineSpec:\n    params:\n    - name: repo_url\n    - name: revision\n    tasks:\n    - name: fetch-repository\n      params:\n      - name: url\n        value: $(params.repo_url)\n      - name: revision\n        value: $(params.revision)\n      taskRef:\n        name: git-clone\n      workspaces:\n      - name: output\n        workspace: source\n      - name: basic-auth\n        workspace: basic-auth\n    - name: run-test\n      params:\n      - name: ARGS\n        value:\n        - test\n      runAfter:\n      - fetch-repository\n      taskRef:\n        name: npm\n      workspaces:\n      - name: source\n        workspace: source\n    workspaces:\n    - name: source\n    - name: basic-auth\n  workspaces:\n  - name: source\n    volumeClaimTemplate:\n      spec:\n        accessModes:\n        - ReadWriteOnce\n        resources:\n          requests:\n            storage: 1Gi\n  - name: basic-auth\n    secret:\n      secretName: '{{ git_auth_secret }}'\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "b27d4211395084ac5d7c12aa187baf9b0cd8453a7f34268ecadced20391a18a3"
                },
                "creationTimestamp": "2026-08-12T12:37:47Z",
                "labels": {
                    "app.kubernetes.io/part-of": "pipelines-as-code",
                    "pipelinesascode.openshift.io/runtime": "nodejs"
                },
                "name": "pipelines-as-code-pipelinerun-nodejs",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "openshiftpipelinesascode-post-l8dld",
                        "uid": "b379346c-dc16-4292-920b-b86793c0ff13"
                    }
                ],
                "resourceVersion": "3655",
                "uid": "da14efbd-2710-4c89-b2da-3e14a71781ea"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "template": "apiVersion: tekton.dev/v1\nkind: PipelineRun\nmetadata:\n  annotations:\n    pipelinesascode.tekton.dev/max-keep-runs: \"5\"\n    pipelinesascode.tekton.dev/on-event: pull_request\n    pipelinesascode.tekton.dev/on-target-branch: main\n    pipelinesascode.tekton.dev/task: git-clone\n    pipelinesascode.tekton.dev/task-1: pylint\n  name: pipelinerun-python\nspec:\n  params:\n  - name: repo_url\n    value: '{{ repo_url }}'\n  - name: revision\n    value: '{{ revision }}'\n  pipelineSpec:\n    params:\n    - name: repo_url\n    - name: revision\n    tasks:\n    - name: fetch-repository\n      params:\n      - name: url\n        value: $(params.repo_url)\n      - name: revision\n        value: $(params.revision)\n      taskRef:\n        name: git-clone\n      workspaces:\n      - name: output\n        workspace: source\n      - name: basic-auth\n        workspace: basic-auth\n    - name: pylint\n      runAfter:\n      - fetch-repository\n      taskRef:\n        name: pylint\n      workspaces:\n      - name: source\n        workspace: source\n    workspaces:\n    - name: source\n    - name: basic-auth\n  workspaces:\n  - name: source\n    volumeClaimTemplate:\n      spec:\n        accessModes:\n        - ReadWriteOnce\n        resources:\n          requests:\n            storage: 1Gi\n  - name: basic-auth\n    secret:\n      secretName: '{{ git_auth_secret }}'\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "b36ebf9d8f840b7bc0cc059d649938b140c2f7fd08c154f82cec8ba629b6b3b0"
                },
                "creationTimestamp": "2026-08-12T12:37:47Z",
                "labels": {
                    "app.kubernetes.io/part-of": "pipelines-as-code",
                    "pipelinesascode.openshift.io/runtime": "python"
                },
                "name": "pipelines-as-code-pipelinerun-python",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "openshiftpipelinesascode-post-l8dld",
                        "uid": "b379346c-dc16-4292-920b-b86793c0ff13"
                    }
                ],
                "resourceVersion": "3659",
                "uid": "dba40636-b6cf-46b1-bf3e-40e7743839a0"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "version": "v1.15.0"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "e6431a7726ccb28dded9fead8b3a999c0acbe657b7b265b83698767fb872340e"
                },
                "creationTimestamp": "2026-08-12T12:34:29Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "pipelines-info",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "1521",
                "uid": "39f6b5db-2b9b-4d43-bcc4-ae6696de3e4e"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "max-size": "1000",
                "ttl": "5m"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "ee34e6b8f566e06d3ac757c3383eff9fa7c41a7e2c02012b8fc84bd7a3fd3f59"
                },
                "creationTimestamp": "2026-08-12T12:34:31Z",
                "labels": {
                    "app.kubernetes.io/component": "resolvers",
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "resolver-cache-config",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "1547",
                "uid": "642341e4-3769-400c-ad9b-d3625ff65e1f"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "enable-bundles-resolver": "true",
                "enable-cluster-resolver": "true",
                "enable-git-resolver": "true",
                "enable-http-resolver": "true",
                "enable-hub-resolver": "true"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "7afaa3bf1e2e48258249bd3553c492bac7549399fe247113a68202d6a32b5b35"
                },
                "creationTimestamp": "2026-08-12T12:34:30Z",
                "labels": {
                    "app.kubernetes.io/component": "resolvers",
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-pipelines",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines"
                },
                "name": "resolvers-feature-flags",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "1540",
                "uid": "fe5de92c-3c0b-4db1-9911-ce5447ec6725"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n# lease-duration is how long non-leaders will wait to try to acquire the\n# lock; 15 seconds is the value used by core kubernetes controllers.\nlease-duration: \"60s\"\n# renew-deadline is how long a leader will try to renew the lease before\n# giving up; 10 seconds is the value used by core kubernetes controllers.\nrenew-deadline: \"40s\"\n# retry-period is how long the leader election client waits between tries of\n# actions; 2 seconds is the value used by core kubernetes controllers.\nretry-period: \"10s\"\n# buckets is the number of buckets used to partition key space of each\n# Reconciler. If this number is M and the replica number of the controller\n# is N, the N replicas will compete for the M buckets. The owner of a\n# bucket will take care of the reconciling for the keys partitioned into\n# that bucket.\nbuckets: \"1\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "de1f12d5949440f63fe1b8756df3ced1c470b8a719e3a883321b385f0aa54054"
                },
                "creationTimestamp": "2026-08-12T12:36:02Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-chains",
                    "operator.tekton.dev/operand-name": "tektoncd-chains"
                },
                "name": "tekton-chains-config-leader-election",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "chain-rsbff",
                        "uid": "373502e9-ceca-4ce0-aa6b-4853e40bb112"
                    }
                ],
                "resourceVersion": "2490",
                "uid": "bde14c86-524f-417d-9283-b1005e3f3723"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n#\n# metrics-protocol specifies the OpenTelemetry export protocol.\n# Supported values: prometheus (default), grpc, http/protobuf, none.\n#\nmetrics-protocol: prometheus\n#\n# metrics-endpoint is the OTLP collector endpoint to send metrics to.\n# Required when metrics-protocol is grpc or http/protobuf.\n#\nmetrics-endpoint: \"otel-collector.observability.svc.cluster.local:4317\"\n#\n# metrics-export-interval is the interval at which metrics are exported.\n# Uses Go duration format (e.g. 30s, 1m). Defaults to 30s.\n#\nmetrics-export-interval: 30s\n",
                "metrics-protocol": "prometheus"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "4eb02eba4b70ca66cdc176e02f63ba897f6f478984a4501c4df7101db1f92639"
                },
                "creationTimestamp": "2026-08-12T12:36:02Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-chains",
                    "operator.tekton.dev/operand-name": "tektoncd-chains"
                },
                "name": "tekton-chains-config-observability",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "chain-rsbff",
                        "uid": "373502e9-ceca-4ce0-aa6b-4853e40bb112"
                    }
                ],
                "resourceVersion": "2503",
                "uid": "bbc0f99c-c670-4c0c-af4b-cde393f7d2dd"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n# lease-duration is how long non-leaders will wait to try to acquire the\n# lock; 15 seconds is the value used by core kubernetes controllers.\nlease-duration: \"60s\"\n# renew-deadline is how long a leader will try to renew the lease before\n# giving up; 10 seconds is the value used by core kubernetes controllers.\nrenew-deadline: \"40s\"\n# retry-period is how long the leader election client waits between tries of\n# actions; 2 seconds is the value used by core kubernetes controllers.\nretry-period: \"10s\"\n# buckets is the number of buckets used to partition key space of each\n# Reconciler. If this number is M and the replica number of the controller\n# is N, the N replicas will compete for the M buckets. The owner of a\n# bucket will take care of the reconciling for the keys partitioned into\n# that bucket.\nbuckets: \"1\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "2f817a191137c2c0cf43e50f3d59057d5da798154a903a08b197347f33419467"
                },
                "creationTimestamp": "2026-08-12T12:34:31Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "operator.tekton.dev/operand-name": "tektoncd-pipelines",
                    "operator.tekton.dev/release": "devel"
                },
                "name": "tekton-operator-proxy-webhook-config-leader-election",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "pipeline-main-static-2z2nx",
                        "uid": "b7701397-2ea6-4e8d-b846-d854f7eb6ed3"
                    }
                ],
                "resourceVersion": "1556",
                "uid": "79faea5e-affc-40b7-ba6a-fc2a39acd5cb"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "config": "DB_USER=\nDB_PASSWORD=\nDB_HOST=tekton-results-postgres-service.tekton-pipelines.svc.cluster.local\nDB_PORT=5432\nDB_NAME=tekton-results\nDB_SSLMODE=disable\nDB_SSLROOTCERT=\nDB_ENABLE_AUTO_MIGRATION=true\nDB_MAX_IDLE_CONNECTIONS=10\nDB_MAX_OPEN_CONNECTIONS=10\nGRPC_WORKER_POOL=2\nK8S_QPS=5\nK8S_BURST=10\nPROFILING=false\nPROFILING_PORT=6060\nFEATURE_GATES='PartialResponse=true'\nSERVER_PORT=8080\nPROMETHEUS_PORT=9090\nPROMETHEUS_HISTOGRAM=false\nTLS_PATH=/etc/tls\nTLS_MIN_VERSION=\nTLS_CIPHER_SUITES=\nTLS_CURVE_PREFERENCES=\nAUTH_DISABLE=false\nAUTH_IMPERSONATE=true\nLOG_LEVEL=info\nSQL_LOG_LEVEL=warn\nLOGS_API=false\nLOGS_TYPE=File\nLOGS_BUFFER_SIZE=32768\nLOGS_PATH=/logs\nLOGS_TIMESTAMPS=false\nS3_BUCKET_NAME=\nS3_ENDPOINT=\nS3_HOSTNAME_IMMUTABLE=false\nS3_REGION=\nS3_ACCESS_KEY_ID=\nS3_SECRET_ACCESS_KEY=\nS3_MULTI_PART_SIZE=5242880\nGCS_BUCKET_NAME=\nSTORAGE_EMULATOR_HOST=\nCONVERTER_ENABLE=false\nCONVERTER_DB_LIMIT=50\nMAX_RETENTION=\nLOGGING_PLUGIN_PROXY_PATH=/api/logs/v1/application\nLOGGING_PLUGIN_API_URL=\nLOGGING_PLUGIN_TOKEN_PATH=/var/run/secrets/kubernetes.io/serviceaccount/token\nLOGGING_PLUGIN_NAMESPACE_KEY=kubernetes_namespace_name\nLOGGING_PLUGIN_CONTAINER_KEY=kubernetes.container_name\nLOGGING_PLUGIN_STATIC_LABELS='log_type=application'\nLOGGING_PLUGIN_CA_CERT=\nLOGGING_PLUGIN_QUERY_LIMIT=1700\nLOGGING_PLUGIN_TLS_VERIFICATION_DISABLE=false\nLOGGING_PLUGIN_FORWARDER_DELAY_DURATION=10\nLOGGING_PLUGIN_QUERY_PARAMS='direction=forward'\nLOGGING_PLUGIN_MULTIPART_REGEX=\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "e4fdb2e788428138a866ee0498d4f63415a31a925abce59ae3ad5fcbc8f42e13"
                },
                "creationTimestamp": "2026-08-12T12:36:14Z",
                "labels": {
                    "app.kubernetes.io/part-of": "tekton-results",
                    "app.kubernetes.io/version": "v0.20.0",
                    "operator.tekton.dev/operand-name": "tektoncd-results"
                },
                "name": "tekton-results-api-config",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "result-6dzbr",
                        "uid": "4e4f9b72-2df6-455e-9253-c341708f98ab"
                    }
                ],
                "resourceVersion": "2654",
                "uid": "22165cd0-698a-48c9-944b-a4472c27f5f5"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n# lease-duration is how long non-leaders will wait to try to acquire the\n# lock; 15 seconds is the value used by core kubernetes controllers.\nlease-duration: \"60s\"\n# renew-deadline is how long a leader will try to renew the lease before\n# giving up; 10 seconds is the value used by core kubernetes controllers.\nrenew-deadline: \"40s\"\n# retry-period is how long the leader election client waits between tries of\n# actions; 2 seconds is the value used by core kubernetes controllers.\nretry-period: \"10s\"\n# buckets is the number of buckets used to partition key space of each\n# Reconciler. If this number is M and the replica number of the controller\n# is N, the N replicas will compete for the M buckets. The owner of a\n# bucket will take care of the reconciling for the keys partitioned into\n# that bucket.\nbuckets: \"1\"\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "88498d772fcb111756a68cceaa1be38bf25e63eb307fcc7c27ff2200a5856c72"
                },
                "creationTimestamp": "2026-08-12T12:36:14Z",
                "labels": {
                    "app.kubernetes.io/name": "tekton-results-leader-election",
                    "app.kubernetes.io/part-of": "tekton-results",
                    "app.kubernetes.io/version": "v0.20.0",
                    "operator.tekton.dev/operand-name": "tektoncd-results"
                },
                "name": "tekton-results-config-leader-election",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "result-6dzbr",
                        "uid": "4e4f9b72-2df6-455e-9253-c341708f98ab"
                    }
                ],
                "resourceVersion": "2657",
                "uid": "bae6be99-09f2-4ced-8395-ff4bcf47c56e"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "loglevel.watcher": "info",
                "zap-logger-config": "{\n  \"level\": \"info\",\n  \"development\": false,\n  \"outputPaths\": [\"stdout\"],\n  \"errorOutputPaths\": [\"stderr\"],\n  \"encoding\": \"json\",\n  \"encoderConfig\": {\n    \"timeKey\": \"time\",\n    \"levelKey\": \"level\",\n    \"nameKey\": \"logger\",\n    \"callerKey\": \"caller\",\n    \"messageKey\": \"msg\",\n    \"stacktraceKey\": \"stacktrace\",\n    \"lineEnding\": \"\",\n    \"levelEncoder\": \"\",\n    \"timeEncoder\": \"iso8601\",\n    \"durationEncoder\": \"string\",\n    \"callerEncoder\": \"\"\n  }\n}\n"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "8c5a02dcb9e8bfea92d31d7043460e8e75efa5e6f1e7b7e88be5e8624bc3272d"
                },
                "creationTimestamp": "2026-08-12T12:36:14Z",
                "labels": {
                    "app.kubernetes.io/name": "tekton-results-logging",
                    "app.kubernetes.io/part-of": "tekton-results",
                    "app.kubernetes.io/version": "v0.20.0",
                    "operator.tekton.dev/operand-name": "tektoncd-results"
                },
                "name": "tekton-results-config-logging",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "result-6dzbr",
                        "uid": "4e4f9b72-2df6-455e-9253-c341708f98ab"
                    }
                ],
                "resourceVersion": "2658",
                "uid": "7580a8a9-42cf-4e62-8f83-e8f1006b6f75"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "_example": "################################\n#                              #\n#    EXAMPLE CONFIGURATION     #\n#                              #\n################################\n# This block is not actually functional configuration,\n# but serves to illustrate the available configuration\n# options and document them in a way that is accessible\n# to users that `kubectl edit` this config map.\n#\n# These sample configuration options may be copied out of\n# this example block and unindented to be in the data block\n# to actually change the configuration.\n#\n# metrics-protocol specifies the OpenTelemetry export protocol.\n# Supported values: prometheus (default), grpc, http/protobuf, none.\n#\nmetrics-protocol: prometheus\n#\n# metrics-endpoint is the OTLP collector endpoint to send metrics to.\n# Required when metrics-protocol is grpc or http/protobuf.\n#\nmetrics-endpoint: \"otel-collector.observability.svc.cluster.local:4317\"\n#\n# metrics-export-interval is the interval at which metrics are exported.\n# Uses Go duration format (e.g. 30s, 1m). Defaults to 30s.\n#\nmetrics-export-interval: 30s",
                "metrics-protocol": "prometheus"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "edaa473f512d9a228dce747608468fcffb89e43b39828c2e35349ff9a39e024f"
                },
                "creationTimestamp": "2026-08-12T12:36:14Z",
                "labels": {
                    "app.kubernetes.io/name": "tekton-results-observability",
                    "app.kubernetes.io/part-of": "tekton-results",
                    "app.kubernetes.io/version": "v0.20.0",
                    "operator.tekton.dev/operand-name": "tektoncd-results"
                },
                "name": "tekton-results-config-observability",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "result-6dzbr",
                        "uid": "4e4f9b72-2df6-455e-9253-c341708f98ab"
                    }
                ],
                "resourceVersion": "2659",
                "uid": "9b07e08f-73ea-4394-a9a4-d2bacf4f8edb"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "defaultRetention": "30",
                "runAt": "5 5 * * 0"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "e41123cd7b789148ff308aa044db662fd5fb248fe06c0ca7a21f73364fc62dce"
                },
                "creationTimestamp": "2026-08-12T12:36:14Z",
                "labels": {
                    "app.kubernetes.io/name": "tekton-results-retention-policy",
                    "app.kubernetes.io/part-of": "tekton-results",
                    "app.kubernetes.io/version": "v0.20.0",
                    "operator.tekton.dev/operand-name": "tektoncd-results"
                },
                "name": "tekton-results-config-results-retention-policy",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "result-6dzbr",
                        "uid": "4e4f9b72-2df6-455e-9253-c341708f98ab"
                    }
                ],
                "resourceVersion": "2663",
                "uid": "76dcf9a9-7549-4497-a053-4b64a91c9503"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "version": "v0.20.0"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "1d8c4caeb109f9f90c958f61f5ec7733681eefa4512311bb556c86b712c6c3d6"
                },
                "creationTimestamp": "2026-08-12T12:36:15Z",
                "labels": {
                    "app.kubernetes.io/name": "tekton-results-info",
                    "app.kubernetes.io/part-of": "tekton-results",
                    "app.kubernetes.io/version": "v0.20.0",
                    "operator.tekton.dev/operand-name": "tektoncd-results"
                },
                "name": "tekton-results-info",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "result-6dzbr",
                        "uid": "4e4f9b72-2df6-455e-9253-c341708f98ab"
                    }
                ],
                "resourceVersion": "2667",
                "uid": "c618304b-a5f5-480f-b16c-a48829f20a9b"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "POSTGRES_DB": "tekton-results"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "369387a3eb4983607552dbde5b6f5b732f124b90d4ed24f8e9afe3092949c2ed"
                },
                "creationTimestamp": "2026-08-12T12:36:15Z",
                "labels": {
                    "app.kubernetes.io/name": "tekton-results-postgres",
                    "app.kubernetes.io/part-of": "tekton-results",
                    "app.kubernetes.io/version": "devel",
                    "operator.tekton.dev/operand-name": "tektoncd-results"
                },
                "name": "tekton-results-postgres",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "result-6dzbr",
                        "uid": "4e4f9b72-2df6-455e-9253-c341708f98ab"
                    }
                ],
                "resourceVersion": "2676",
                "uid": "3274eb9c-e126-4abd-91be-39726e67d269"
            }
        },
        {
            "apiVersion": "v1",
            "data": {
                "version": "v0.37.0"
            },
            "kind": "ConfigMap",
            "metadata": {
                "annotations": {
                    "operator.tekton.dev/last-applied-hash": "3ba916d605f795ab30abcd83a255cbe3213ed05eb70bbee398f3c2dd532c38b2"
                },
                "creationTimestamp": "2026-08-12T12:35:23Z",
                "labels": {
                    "app.kubernetes.io/instance": "default",
                    "app.kubernetes.io/part-of": "tekton-triggers",
                    "operator.tekton.dev/operand-name": "tektoncd-triggers"
                },
                "name": "triggers-info",
                "namespace": "tekton-pipelines",
                "ownerReferences": [
                    {
                        "apiVersion": "operator.tekton.dev/v1alpha1",
                        "blockOwnerDeletion": true,
                        "controller": true,
                        "kind": "TektonInstallerSet",
                        "name": "trigger-main-static-jwgtw",
                        "uid": "ab3ea735-3312-476a-a5f3-bbe9f9d0bd59"
                    }
                ],
                "resourceVersion": "2091",
                "uid": "fa4b6225-533d-4619-a615-92880ea8b5ff"
            }
        }
    ],
    "kind": "List",
    "metadata": {
        "resourceVersion": ""
    }
}
