VaultAuth/VaultAuthGlobal AppRole spec.appRole.secretIDPath has been removed. Use spec.appRole.secretRef instead, which references a Kubernetes Secret containing the AppRole
Secret ID.
Dependency Updates:
Bump the gomod-backward-compatible group across 1 directory with 2 updates: (#1302)
Bump the gomod-backward-compatible group across 1 directory with 5 updates (#1308)
Bump github.com/go-openapi/runtime from 0.32.5 to 0.32.6 in the gomod-backward-compatible group (#1310
Bump google.golang.org/grpc from 1.82.0 to 1.82.1 (#1311
Bump google.golang.org/api from 0.289.0 to 0.290.0 in the gomod-backward-compatible group across 1 directory (#1313
Build:
Build with Go 1.26.5
Test with Vault 2.0.3, 1.21.8, 1.20.13, 1.19.19
Test with Kind v0.32.0
Test with K8s 1.36.1, 1.35.5, 1.34.8, 1.33.12, 1.32.11
Configuration
📅Schedule: (UTC)
Branch creation
At any time (no schedule defined)
Automerge
At any time (no schedule defined)
🚦Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕Ignore: Close this PR and you won't be reminded about this update again.
If you want to rebase/retry this PR, check this box
This PR contains the following updates:
| Package | Update | Change |
|---|---|---|
| [vault-secrets-operator](https://github.com/hashicorp/vault-secrets-operator) | minor | `1.4.1` → `1.5.0` |
---
### Release Notes
<details>
<summary>hashicorp/vault-secrets-operator (vault-secrets-operator)</summary>
### [`v1.5.0`](https://github.com/hashicorp/vault-secrets-operator/blob/HEAD/CHANGELOG.md#150-July-23rd-2026)
[Compare Source](https://github.com/hashicorp/vault-secrets-operator/compare/v1.4.1...v1.5.0)
BREAKING CHANGES:
- `VaultAuth`/`VaultAuthGlobal` AppRole `spec.appRole.secretIDPath` has been removed. Use
`spec.appRole.secretRef` instead, which references a Kubernetes Secret containing the AppRole
Secret ID.
Dependency Updates:
- Bump the gomod-backward-compatible group across 1 directory with 2 updates: ([#​1302](https://github.com/hashicorp/vault-secrets-operator/pull/1302))
- Bump the gomod-backward-compatible group across 1 directory with 5 updates ([#​1308](https://github.com/hashicorp/vault-secrets-operator/issues/1308))
- Bump github.com/go-openapi/runtime from 0.32.5 to 0.32.6 in the gomod-backward-compatible group ([#​1310](https://github.com/hashicorp/vault-secrets-operator/pull/1310)
- Bump google.golang.org/grpc from 1.82.0 to 1.82.1 ([#​1311](https://github.com/hashicorp/vault-secrets-operator/pull/1311)
- Bump google.golang.org/api from 0.289.0 to 0.290.0 in the gomod-backward-compatible group across 1 directory ([#​1313](https://github.com/hashicorp/vault-secrets-operator/pull/1313)
Build:
- Build with Go 1.26.5
- Test with Vault 2.0.3, 1.21.8, 1.20.13, 1.19.19
- Test with Kind v0.32.0
- Test with K8s 1.36.1, 1.35.5, 1.34.8, 1.33.12, 1.32.11
</details>
---
### Configuration
📅 **Schedule**: (UTC)
- Branch creation
- At any time (no schedule defined)
- Automerge
- At any time (no schedule defined)
🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied.
♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 **Ignore**: Close this PR and you won't be reminded about this update again.
---
- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box
---
This PR has been generated by [Mend Renovate](https://github.com/renovatebot/renovate).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0My4yODAuNCIsInVwZGF0ZWRJblZlciI6IjQzLjI4MC40IiwidGFyZ2V0QnJhbmNoIjoiZnJlc2gtc3RhcnQiLCJsYWJlbHMiOltdfQ==-->
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
This PR contains the following updates:
1.4.1→1.5.0Release Notes
hashicorp/vault-secrets-operator (vault-secrets-operator)
v1.5.0Compare Source
BREAKING CHANGES:
VaultAuth/VaultAuthGlobalAppRolespec.appRole.secretIDPathhas been removed. Usespec.appRole.secretRefinstead, which references a Kubernetes Secret containing the AppRoleSecret ID.
Dependency Updates:
Build:
Configuration
📅 Schedule: (UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Mend Renovate.