aws-eks-helm-deploy¶
A Bitbucket Pipelines Pipe that deploys Helm charts to AWS EKS — small, opinionated, and supply-chain hardened. v2.x is the active line; v1.x is frozen.
Where to next¶
- Migration v1 → v2 — read this FIRST if you're upgrading from
yvogl/aws-eks-helm-deploy:1.x. CoversINJECT_BITBUCKET_METADATAflip,NAMESPACEcorrection, image-tag pinning policy, and the distribution change from Docker Hub to GHCR. - Quickstart — drop a single pipe step into your
bitbucket-pipelines.yml. The 60-second snippet also lives at the top of the GitHub README. - Variable reference — autogenerated from the v2 Pydantic Settings model on every commit.
- OIDC setup guide — IAM trust policy + Bitbucket OIDC step-by-step.
- ADRs — every architectural decision shipped in v2.0, MADR 4.0 template.
Versions¶
This site uses mike for versioning:
/v2/— current (this site)./v1/— frozen v1.3.0 reference (not maintained; users should migrate to v2).
Supply chain¶
Every release image is signed with Cosign keyless (Sigstore / Fulcio / Rekor) and ships SPDX + CycloneDX SBOMs and SLSA build provenance. See SECURITY.md for the disclosure flow.