Kyverno Chainsaw tests that validate a shared application chart through upgrades, canaries, and rollback, catching multiple regressions before publication.
- Problem
- Developers rely on an existing shared Helm chart to deploy images into EKS with configurable platform defaults for Argo Rollouts canaries, Datadog integration and monitoring, labels, KEDA autoscaling, and Istio configuration and HTTP routing. Faulty rollout and Kubernetes Service-selector configuration in patch releases had caused production outages. With developers advised to allow patch updates within major/minor version constraints, validating compatibility before publication was especially important.
- Outcome
- Caught multiple regressions before shipping, particularly selector-label changes that could break API endpoints. Established repeatable validation of chart upgrades, canary progression, traffic, workload health, and rollback before publication.