Skip to content

Bump github.com/prometheus-operator/prometheus-operator/pkg/apis/monitoring from 0.55.1 to 0.94.1 - #646

Open
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/go_modules/github.com/prometheus-operator/prometheus-operator/pkg/apis/monitoring-0.94.1
Open

dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/go_modules/github.com/prometheus-operator/prometheus-operator/pkg/apis/monitoring-0.94.1

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 30, 2026 •

Copy link
Copy Markdown
Contributor

Bumps github.com/prometheus-operator/prometheus-operator/pkg/apis/monitoring from 0.55.1 to 0.94.1.

Release notes

Sourced from github.com/prometheus-operator/prometheus-operator/pkg/apis/monitoring's releases.

0.94.1 / 2026-09-23

  • [BUGFIX] Restore update permission on finalizer subresources in the operator's ClusterRole, required by OwnerReferencesPermissionEnforcement when blockOwnerDeletion is set. #8830

0.94.0 / 2026-09-09

  • [CHANGE] Update the default Alertmanager version to v0.34.0 and discard zero-value duration fields (retention, clusterGossipInterval, clusterPushpullInterval, clusterPeerTimeout) in Alertmanager resources instead of passing them as CLI flags, which Alertmanager rejects and can cause startup failures. Ignored fields are reported via the IgnoredFields status condition. #8800
  • [CHANGE] Add named enum types for Hetzner, Docker Swarm, and OpenStack service discovery fields in the ScrapeConfig CRD (HetznerRole, DockerSwarmRole, OpenStackAvailability). #8789
  • [CHANGE] Reject empty strings in namespaceDiscovery.names, consulSDConfig.services, and consulSDConfig.tags list fields in the ScrapeConfig CRD. #8786
  • [FEATURE] Add retentionPercentage field to Prometheus and PrometheusAgent CRDs for volume-based retention (requires Prometheus >= v3.11.0). Setting only the percentage no longer falls back to the default 24h time-based retention. #8728
  • [FEATURE] Add clusterPeerName field to Alertmanager CRD to override the --cluster.peer-name flag (requires Alertmanager >= v0.30.0). #8767
  • [FEATURE] Expose status conditions as Prometheus metrics for Prometheus, PrometheusAgent, Alertmanager, and ThanosRuler resources (prometheus_operator_<resource>_status_condition). #8719
  • [ENHANCEMENT] Tighten the operator's ClusterRole by replacing wildcard verbs with explicit permissions per resource. #8752
  • [ENHANCEMENT] Support webhook_url_file for Discord receiver in Alertmanager configuration Secret (requires Alertmanager >= v0.28.0). #8035
  • [BUGFIX] Require Thanos >= v0.42.0 for delayed compaction with object storage uploads, raised from v0.41.0. Thanos v0.41.0 mis-validates the delayed-compaction paths and the sidecar crash-loops; deployments pinned to v0.41.0 fall back to disabling local compaction. #8764
  • [BUGFIX] Add URL validation for Mattermost receiver fields in Alertmanager configuration Secret. #8225
  • [BUGFIX] Fix operator panic when AlertmanagerConfig Pushover receivers use userKeyFile or tokenFile instead of secret selectors. #8775
  • [BUGFIX] Fix operator panic when kubelet Service synchronization fails and the service is unavailable. #8743
  • [BUGFIX] Fix resources stuck during deletion when the informer misses the deletion timestamp update. #8727
  • [BUGFIX] Fix TracingConfig fields in Prometheus CRD not being serialized due to invalid JSON struct tags. #8730
  • [BUGFIX] Fix externalId version gating for Alertmanager SigV4 configuration to require version >= v0.34.0 (was incorrectly set to v0.33.0). #8759

0.93.1 / 2026-08-10

  • [BUGFIX] Fix duplicate kubelet targets for nodes reporting several addresses of the same IP family. #8739
  • [BUGFIX] Fix argument list for Thanos containers when custom TLS ciphers or curves are specified. #8749

0.93.0 / 2026-07-28

  • [CHANGE] Switch from uint to int types in the Go definition of the CRDs and add API validations to reject negative values. #8662 #8666
  • [CHANGE] Keep local Prometheus compaction enabled when the Thanos sidecar uploads to object storage, for Prometheus >= v3.9.0 and Thanos >= v0.41.0. The operator now coordinates uploads through the shipper meta file (--storage.tsdb.delay-compact-file.path, --shipper.meta-file-name, --shipper.ignore-unequal-block-size) instead of disabling compaction. Set spec.disableCompaction: true to keep the previous behavior. #8694
  • [CHANGE] Define a default value of 1 for .spec.shards for Prometheus and PrometheusAgent CRDs. #8691
  • [CHANGE/BUGFIX] Add validation markers to all unsigned int fields to reject negative values. #8662
  • [CHANGE/BUGFIX] Disable metadata sending when the remote-write configuration uses message version v2.0. #8700
  • [FEATURE] Add updateMessage field to the Slack receiver in the AlertmanagerConfig CRD. #8506
  • [FEATURE] Add chunkEncoding field to TSDBSpec for runtime float encoding selection in Prometheus and PrometheusAgent CRDs. #8675
  • [ENHANCEMENT] Use pod's name as the peer name for Alertmanager >= v0.30.0. #8705
  • [BUGFIX] Create IPv6 EndpointSlice for the kubelet Service on dual-stack clusters. #8682

0.92.1 / 2026-06-30

  • [BUGFIX] Fix "namespace not found" errors when the operator watches monitoring and workload resources in different resources. #8658

0.92.0 / 2026-06-18

[!NOTE] The PrometheusTopologySharding and PrometheusShardRetentionPolicy feature gates have been promoted to Beta in this release and are now enabled by default. See the sharding documentation for details.

  • [CHANGE] Add URL validation for the tokenUrl field in OAuth2 configuration across all CRDs. #8579
  • [CHANGE] Add URL validation for the url field in RemoteReadSpec in Prometheus CRD. #8596
  • [FEATURE] Migrate retention options from CLI flags to the config file for Prometheus CRD (Prometheus >= v3 uses the config file; older versions continue to use CLI flags). #8547
  • [FEATURE] Add staleSeriesCompactionThreshold field to TSDBSpec in Prometheus and PrometheusAgent CRDs. #8563
  • [FEATURE] Add labelNameUnderscoreSanitization and labelNamePreserveMultipleUnderscores fields to OTLPConfig in Prometheus and PrometheusAgent CRDs. #8562
  • [FEATURE] Add payload field to Webhook receiver in AlertmanagerConfig CRD. #8507
  • [ENHANCEMENT] Use pod topology labels for zone sharding on Kubernetes >= 1.35 when the PrometheusTopologySharding feature gate is enabled (removes the need for attachMetadata.node=true). #8564
  • [ENHANCEMENT] Add validation for the Slack update_message field in Alertmanager configuration Secret. #8556

... (truncated)

Changelog

Sourced from github.com/prometheus-operator/prometheus-operator/pkg/apis/monitoring's changelog.

0.94.1 / 2026-09-23

  • [BUGFIX] Restore update permission on finalizer subresources in the operator's ClusterRole, required by OwnerReferencesPermissionEnforcement when blockOwnerDeletion is set. #8830

0.94.0 / 2026-09-09

  • [CHANGE] Update the default Alertmanager version to v0.34.0 and discard zero-value duration fields (retention, clusterGossipInterval, clusterPushpullInterval, clusterPeerTimeout) in Alertmanager resources instead of passing them as CLI flags, which Alertmanager rejects and can cause startup failures. Ignored fields are reported via the IgnoredFields status condition. #8800
  • [CHANGE] Add named enum types for Hetzner, Docker Swarm, and OpenStack service discovery fields in the ScrapeConfig CRD (HetznerRole, DockerSwarmRole, OpenStackAvailability). #8789
  • [CHANGE] Reject empty strings in namespaceDiscovery.names, consulSDConfig.services, and consulSDConfig.tags list fields in the ScrapeConfig CRD. #8786
  • [FEATURE] Add retentionPercentage field to Prometheus and PrometheusAgent CRDs for volume-based retention (requires Prometheus >= v3.11.0). Setting only the percentage no longer falls back to the default 24h time-based retention. #8728
  • [FEATURE] Add clusterPeerName field to Alertmanager CRD to override the --cluster.peer-name flag (requires Alertmanager >= v0.30.0). #8767
  • [FEATURE] Expose status conditions as Prometheus metrics for Prometheus, PrometheusAgent, Alertmanager, and ThanosRuler resources (prometheus_operator_<resource>_status_condition). #8719
  • [ENHANCEMENT] Tighten the operator's ClusterRole by replacing wildcard verbs with explicit permissions per resource. #8752
  • [ENHANCEMENT] Support webhook_url_file for Discord receiver in Alertmanager configuration Secret (requires Alertmanager >= v0.28.0). #8035
  • [BUGFIX] Require Thanos >= v0.42.0 for delayed compaction with object storage uploads, raised from v0.41.0. Thanos v0.41.0 mis-validates the delayed-compaction paths and the sidecar crash-loops; deployments pinned to v0.41.0 fall back to disabling local compaction. #8764
  • [BUGFIX] Add URL validation for Mattermost receiver fields in Alertmanager configuration Secret. #8225
  • [BUGFIX] Fix operator panic when AlertmanagerConfig Pushover receivers use userKeyFile or tokenFile instead of secret selectors. #8775
  • [BUGFIX] Fix operator panic when kubelet Service synchronization fails and the service is unavailable. #8743
  • [BUGFIX] Fix resources stuck during deletion when the informer misses the deletion timestamp update. #8727
  • [BUGFIX] Fix TracingConfig fields in Prometheus CRD not being serialized due to invalid JSON struct tags. #8730
  • [BUGFIX] Fix externalId version gating for Alertmanager SigV4 configuration to require version >= v0.34.0 (was incorrectly set to v0.33.0). #8759

0.93.1 / 2026-08-10

  • [BUGFIX] Fix duplicate kubelet targets for nodes reporting several addresses of the same IP family. #8739
  • [BUGFIX] Fix argument list for Thanos containers when custom TLS ciphers or curves are specified. #8749

0.93.0 / 2026-07-28

  • [CHANGE] Switch from uint to int types in the Go definition of the CRDs and add API validations to reject negative values. #8662 #8666
  • [CHANGE] Keep local Prometheus compaction enabled when the Thanos sidecar uploads to object storage, for Prometheus >= v3.9.0 and Thanos >= v0.41.0. The operator now coordinates uploads through the shipper meta file (--storage.tsdb.delay-compact-file.path, --shipper.meta-file-name, --shipper.ignore-unequal-block-size) instead of disabling compaction. Set spec.disableCompaction: true to keep the previous behavior. #8694
  • [CHANGE] Define a default value of 1 for .spec.shards for Prometheus and PrometheusAgent CRDs. #8691
  • [CHANGE/BUGFIX] Add validation markers to all unsigned int fields to reject negative values. #8662
  • [CHANGE/BUGFIX] Disable metadata sending when the remote-write configuration uses message version v2.0. #8700
  • [FEATURE] Add updateMessage field to the Slack receiver in the AlertmanagerConfig CRD. #8506
  • [FEATURE] Add chunkEncoding field to TSDBSpec for runtime float encoding selection in Prometheus and PrometheusAgent CRDs. #8675
  • [ENHANCEMENT] Use pod's name as the peer name for Alertmanager >= v0.30.0. #8705
  • [BUGFIX] Create IPv6 EndpointSlice for the kubelet Service on dual-stack clusters. #8682

0.92.1 / 2026-06-30

  • [BUGFIX] Fix "namespace not found" errors when the operator watches monitoring and workload resources in different resources. #8658

0.92.0 / 2026-06-18

Note: The PrometheusTopologySharding and PrometheusShardRetentionPolicy feature gates have been promoted to Beta in this release and are now enabled by default. See the sharding documentation for details.

  • [CHANGE] Add URL validation for the tokenUrl field in OAuth2 configuration across all CRDs. #8579
  • [CHANGE] Add URL validation for the url field in RemoteReadSpec in Prometheus CRD. #8596
  • [FEATURE] Migrate retention options from CLI flags to the config file for Prometheus CRD (Prometheus >= v3 uses the config file; older versions continue to use CLI flags). #8547

... (truncated)

Commits
  • 24929ab Merge pull request #8838 from slashpai/cut-v0.94.1
  • 24456c2 chore: cut v0.94.1
  • ff298fd Merge pull request #8830 from jkroepke/fix-finalizer-update-rbac
  • f6beccc rbac: allow updating finalizer subresources
  • 2e4af1d Merge pull request #8805 from slashpai/cut-v0.94
  • ac6c5f5 chore: cut v0.94.0
  • 14007db Merge pull request #8804 from prometheus-operator/dependabot/go_modules/scrip...
  • a739ad7 build(deps): bump google.golang.org/grpc in /scripts
  • 326e6c5 Merge pull request #8800 from slashpai/am-v0.34
  • 6497455 Merge pull request #8803 from prometheus-operator/dependabot/go_modules/golan...
  • Additional commits viewable in compare view

Summary by CodeRabbit

  • Chores
    • Updated underlying package versions. No user-visible changes are described.

@dependabot dependabot Bot added area/dependency Issues or PRs related to dependency changes ok-to-test Indicates a non-member PR verified by an org member that is safe to test. labels Sep 30, 2026
@github-actions
github-actions Bot enabled auto-merge (squash) September 30, 2026 20:13
@openshift-ci

openshift-ci Bot commented Sep 30, 2026

Copy link
Copy Markdown
Contributor

[APPROVALNOTIFIER] This PR is NOT APPROVED

This pull-request has been approved by: dependabot[bot]
Once this PR has been reviewed and has the lgtm label, please assign samanthajayasinghe for approval. For more information see the Code Review Process.

The full list of commands accepted by this bot can be found here.

Details Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@openshift-ci

openshift-ci Bot commented Sep 30, 2026

Copy link
Copy Markdown
Contributor

Hi @dependabot[bot]. Thanks for your PR.

I'm waiting for a openshift member to verify that this patch is reasonable to test. If it is, they should reply with /ok-to-test on its own line. Until that is done, I will not automatically test new commits in this PR, but the usual testing commands by org members will still work.

Regular contributors should join the org to skip this step.

Once the patch is verified, the new status will be reflected by the ok-to-test label.

I understand the commands that are listed here.

Details

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository.

@coderabbitai

coderabbitai Bot commented Sep 30, 2026 •

Copy link
Copy Markdown

No actionable comments were generated in the recent review. 🎉

ℹ️ Recent review info
⚙️ Run configuration

Configuration used: Repository YAML (base), Central YAML (inherited)

Review profile: CHILL

Plan: Enterprise

Run ID: e6cf3b80-a656-4d4d-b0d0-6ca578f22e3a

📥 Commits

Reviewing files that changed from the base of the PR and between 765d6ff and 0ea7ad2.

⛔ Files ignored due to path filters (1)
  • go.sum is excluded by !**/*.sum
📒 Files selected for processing (1)
  • go.mod

Included review availability: This review used your included allowance. Your plan provides up to 12 included reviews per hour; 10 remain after this review.


Walkthrough

go.mod upgrades the monitoring API module and four indirect module requirements. No exported or public entity declarations changed.

Changes

Go module updates

Layer / File(s) Summary
Update module versions
go.mod
The monitoring API module, cbor, x/net, x/text, and kube-openapi requirements are upgraded.

Priority: ⬇️ Low

Estimated code review effort: 1 (Trivial) | ~3 minutes

Change: Other

Merge Risk: ⚪ Minimal · up to 0ea7a

This dependency update has no concrete merge-blocking risk. Checksums verify, and the CBOR panic path is not reachable from the service's serializers.

🚥 Pre-merge checks | ✅ 15
✅ Passed checks (15 passed)
Check name Status Explanation
Description Check ✅ Passed Check skipped - CodeRabbit’s high-level summary is enabled.
Title check ✅ Passed The title clearly and concisely identifies the main change: upgrading the Prometheus Operator monitoring API dependency from 0.55.1 to 0.94.1.
Docstring Coverage ✅ Passed No functions found in the changed files to evaluate docstring coverage. Skipping docstring coverage check. Docstring coverage is scoped to functions touched by this diff. Analyzed 0 functions across 0…
Linked Issues check ✅ Passed Check skipped because no linked issues were found for this pull request.
Out of Scope Changes check ✅ Passed Check skipped because no linked issues were found for this pull request.
Stable And Deterministic Test Names ✅ Passed The pull request changes only go.mod and go.sum. It adds no test files, Ginkgo declarations, or test-title text. The repository contains the same count of test-related files at the base and head revis…
Test Structure And Quality ✅ Passed PASS: The pull request changes only go.mod and go.sum. It adds no Ginkgo tests or test code, so the single-responsibility, setup/cleanup, timeout, assertion-message, and test-pattern requirements do n…
Microshift Test Compatibility ✅ Passed The pull request changes only go.mod and go.sum. It adds no Ginkgo tests or other test files, so it introduces no MicroShift-incompatible test usage under this check.
Single Node Openshift (Sno) Test Compatibility ✅ Passed The authoritative pull-request diff changes only go.mod and go.sum. It adds no Ginkgo e2e tests or other test code, so the SNO multi-node compatibility check is not applicable.
Topology-Aware Scheduling Compatibility ✅ Passed The pull request changes only go.mod and go.sum. It adds no deployment manifests, operator code, controllers, or scheduling constraints. The topology-aware scheduling check is therefore not applicable…
Ote Binary Stdout Contract ✅ Passed The pull request changes only go.mod and go.sum. It does not change main(), init(), or Ginkgo suite setup. The relevant source files are byte-identical between the base and head revisions. Existing st…
Ipv6 And Disconnected Network Test Compatibility ✅ Passed The pull request changes only go.mod and go.sum. The authoritative diff adds no Ginkgo tests or other test files, so this compatibility check is not applicable.
No-Weak-Crypto ✅ Passed PASS. The PR changes only go.mod and go.sum. The upgraded monitoring API module has no crypto imports or weak-crypto implementation. The only SHA-1 references found in an upgraded module are in golang…
Container-Privileges ✅ Passed The pull request changes only go.mod and go.sum. The diff contains dependency version and checksum updates only. It adds no container or Kubernetes manifest and introduces none of the prohibited privi…
No-Sensitive-Data-In-Logs ✅ Passed PASS: The PR changes only go.mod and go.sum. The diff contains dependency versions and checksums, with no added logging calls, formatted data, or source changes. The upgraded monitoring API module was…
✨ Finishing Touches 💡 1
🛠️ Fix failing CI checks 💡
  • Commit to this branch
  • Create a new PR
🧪 Generate unit tests (beta)
  • Commit to this branch
  • Create a new PR

Comment @coderabbitai help to get the list of available commands.

…toring

Bumps [github.com/prometheus-operator/prometheus-operator/pkg/apis/monitoring](https://github.com/prometheus-operator/prometheus-operator) from 0.55.1 to 0.94.1.
- [Release notes](https://github.com/prometheus-operator/prometheus-operator/releases)
- [Changelog](https://github.com/prometheus-operator/prometheus-operator/blob/main/CHANGELOG.md)
- [Commits](prometheus-operator/prometheus-operator@v0.55.1...v0.94.1)

---
updated-dependencies:
- dependency-name: github.com/prometheus-operator/prometheus-operator/pkg/apis/monitoring
  dependency-version: 0.94.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/go_modules/github.com/prometheus-operator/prometheus-operator/pkg/apis/monitoring-0.94.1 branch from b09175e to 0ea7ad2 Compare September 30, 2026 20:23
@openshift-ci

openshift-ci Bot commented Sep 30, 2026

Copy link
Copy Markdown
Contributor

@dependabot[bot]: The following test failed, say /retest to rerun all failed tests or /retest-required to rerun all mandatory failed tests:

Test name Commit Details Required Rerun command
ci/prow/pr-check 0ea7ad2 link true /test pr-check

Full PR test history. Your PR dashboard.

Details

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. I understand the commands that are listed here.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

area/dependency Issues or PRs related to dependency changes ok-to-test Indicates a non-member PR verified by an org member that is safe to test.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants