NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
Go modules · #387 by repository stars
Last release today
01 Oct 2026
Ships on a steady schedule
a new release about every 9 days
Some releases are documented
notes for 18 of the last 60 stable releases
Nothing withdrawn
no release was ever pulled
8 years old
1921 releases · first in 2018
Nothing published for this version
Nothing published for this version
Nothing published for this version
One column per quarter.
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
- Docs @ v1.9.8 - Examples @ v1.9.8
-Docs @ v1.9.8
-Examples @ v1.9.8
kubectl apply -f https://infra.tekton.dev/tekton-releases/pipeline/previous/v1.9.8/release.yamlThe Rekor UUID for this release is 108e9186e8c5677aa1b510273f5f547a674ab5fa3ced759c882b7fa7597e07f457a28d0f6fa6088c
Obtain the attestation:
REKOR_UUID=108e9186e8c5677aa1b510273f5f547a674ab5fa3ced759c882b7fa7597e07f457a28d0f6fa6088c
rekor-cli get --uuid $REKOR_UUID --format json | jq -r .Attestation | jq .Verify that all container images in the attestation are in the release file:
RELEASE_FILE=https://infra.tekton.dev/tekton-releases/pipeline/previous/v1.9.8/release.yaml
REKOR_UUID=108e9186e8c5677aa1b510273f5f547a674ab5fa3ced759c882b7fa7597e07f457a28d0f6fa6088c
# Obtains the list of images with sha from the attestation
REKOR_ATTESTATION_IMAGES=$(rekor-cli get --uuid "$REKOR_UUID" --format json | jq -r .Attestation | jq -r '.subject[]|.name + ":v1.9.8@sha256:" + .digest.sha256')
# Download the release file
curl -L "$RELEASE_FILE" > release.yaml
# For each image in the attestation, match it to the release file
for image in $REKOR_ATTESTATION_IMAGES; do
printf $image; grep -q $image release.yaml && echo " ===> ok" || echo " ===> no match";
doneThanks to these contributors who contributed to v1.9.8!
Extra shout-out for awesome release notes:
- Docs @ v1.9.7 - Examples @ v1.9.7
-Docs @ v1.9.7
-Examples @ v1.9.7
kubectl apply -f https://infra.tekton.dev/tekton-releases/pipeline/previous/v1.9.7/release.yamlThe Rekor UUID for this release is 108e9186e8c5677a4454652bbad6671ba390d5109a6546be8ae7c3c5842910cbff8d1ab88b1b0c74
Obtain the attestation:
REKOR_UUID=108e9186e8c5677a4454652bbad6671ba390d5109a6546be8ae7c3c5842910cbff8d1ab88b1b0c74
rekor-cli get --uuid $REKOR_UUID --format json | jq -r .Attestation | jq .Verify that all container images in the attestation are in the release file:
RELEASE_FILE=https://infra.tekton.dev/tekton-releases/pipeline/previous/v1.9.7/release.yaml
REKOR_UUID=108e9186e8c5677a4454652bbad6671ba390d5109a6546be8ae7c3c5842910cbff8d1ab88b1b0c74
# Obtains the list of images with sha from the attestation
REKOR_ATTESTATION_IMAGES=$(rekor-cli get --uuid "$REKOR_UUID" --format json | jq -r .Attestation | jq -r '.subject[]|.name + ":v1.9.7@sha256:" + .digest.sha256')
# Download the release file
curl -L "$RELEASE_FILE" > release.yaml
# For each image in the attestation, match it to the release file
for image in $REKOR_ATTESTATION_IMAGES; do
printf $image; grep -q $image release.yaml && echo " ===> ok" || echo " ===> no match";
doneix PipelineRun remaining stuck in ResolvingTaskRef when a ResolutionRequest completion event is missed by periodically requeueing while remote resolution is in progress
ix resolver replicas processing ResolutionRequests outside their leader-election bucket.
Skip re-resolution of ResolutionRequests when Status.Data is already present, preventing hundreds of redundant reconciliations under load.
Thanks to these contributors who contributed to v1.9.7!
Extra shout-out for awesome release notes:
- Docs @ v1.9.6 - Examples @ v1.9.6
-Docs @ v1.9.6
-Examples @ v1.9.6
kubectl apply -f https://infra.tekton.dev/tekton-releases/pipeline/previous/v1.9.6/release.yamlThe Rekor UUID for this release is 108e9186e8c5677acf3e338c239faf5a2afc67e49eec5d5d5166654363563c81b57d51d4bd910d27
Obtain the attestation:
REKOR_UUID=108e9186e8c5677acf3e338c239faf5a2afc67e49eec5d5d5166654363563c81b57d51d4bd910d27
rekor-cli get --uuid $REKOR_UUID --format json | jq -r .Attestation | jq .Verify that all container images in the attestation are in the release file:
RELEASE_FILE=https://infra.tekton.dev/tekton-releases/pipeline/previous/v1.9.6/release.yaml
REKOR_UUID=108e9186e8c5677acf3e338c239faf5a2afc67e49eec5d5d5166654363563c81b57d51d4bd910d27
# Obtains the list of images with sha from the attestation
REKOR_ATTESTATION_IMAGES=$(rekor-cli get --uuid "$REKOR_UUID" --format json | jq -r .Attestation | jq -r '.subject[]|.name + ":v1.9.6@sha256:" + .digest.sha256')
# Download the release file
curl -L "$RELEASE_FILE" > release.yaml
# For each image in the attestation, match it to the release file
for image in $REKOR_ATTESTATION_IMAGES; do
printf $image; grep -q $image release.yaml && echo " ===> ok" || echo " ===> no match";
doneBump Go to 1.25.10, golang.org/x/crypto to v0.52.0, and golang.org/x/net to v0.55.0 for CVE remediation.
Thanks to these contributors who contributed to v1.9.6!
Extra shout-out for awesome release notes:
- Docs @ v1.9.5 - Examples @ v1.9.5
-Docs @ v1.9.5
-Examples @ v1.9.5
kubectl apply -f https://infra.tekton.dev/tekton-releases/pipeline/previous/v1.9.5/release.yamlThe Rekor UUID for this release is 108e9186e8c5677acffd10e5aa5179f659536d865d7f96b46686bfc27ec61400bc068a4cddeab85b
Obtain the attestation:
REKOR_UUID=108e9186e8c5677acffd10e5aa5179f659536d865d7f96b46686bfc27ec61400bc068a4cddeab85b
rekor-cli get --uuid $REKOR_UUID --format json | jq -r .Attestation | jq .Verify that all container images in the attestation are in the release file:
RELEASE_FILE=https://infra.tekton.dev/tekton-releases/pipeline/previous/v1.9.5/release.yaml
REKOR_UUID=108e9186e8c5677acffd10e5aa5179f659536d865d7f96b46686bfc27ec61400bc068a4cddeab85b
# Obtains the list of images with sha from the attestation
REKOR_ATTESTATION_IMAGES=$(rekor-cli get --uuid "$REKOR_UUID" --format json | jq -r .Attestation | jq -r '.subject[]|.name + ":v1.9.5@sha256:" + .digest.sha256')
# Download the release file
curl -L "$RELEASE_FILE" > release.yaml
# For each image in the attestation, match it to the release file
for image in $REKOR_ATTESTATION_IMAGES; do
printf $image; grep -q $image release.yaml && echo " ===> ok" || echo " ===> no match";
doneThanks to these contributors who contributed to v1.9.5!
Extra shout-out for awesome release notes:
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
- Docs @ v1.6.7 - Examples @ v1.6.7
-Docs @ v1.6.7
-Examples @ v1.6.7
kubectl apply -f https://infra.tekton.dev/tekton-releases/pipeline/previous/v1.6.7/release.yamlThe Rekor UUID for this release is 108e9186e8c5677a133b926c543a724c547fb69c640f2b7ce2c5bceae64ded886cfc5afb71f33880
Obtain the attestation:
REKOR_UUID=108e9186e8c5677a133b926c543a724c547fb69c640f2b7ce2c5bceae64ded886cfc5afb71f33880
rekor-cli get --uuid $REKOR_UUID --format json | jq -r .Attestation | jq .Verify that all container images in the attestation are in the release file:
RELEASE_FILE=https://infra.tekton.dev/tekton-releases/pipeline/previous/v1.6.7/release.yaml
REKOR_UUID=108e9186e8c5677a133b926c543a724c547fb69c640f2b7ce2c5bceae64ded886cfc5afb71f33880
# Obtains the list of images with sha from the attestation
REKOR_ATTESTATION_IMAGES=$(rekor-cli get --uuid "$REKOR_UUID" --format json | jq -r .Attestation | jq -r '.subject[]|.name + ":v1.6.7@sha256:" + .digest.sha256')
# Download the release file
curl -L "$RELEASE_FILE" > release.yaml
# For each image in the attestation, match it to the release file
for image in $REKOR_ATTESTATION_IMAGES; do
printf $image; grep -q $image release.yaml && echo " ===> ok" || echo " ===> no match";
doneix PipelineRun remaining stuck in ResolvingTaskRef when a ResolutionRequest completion event is missed by periodically requeueing while remote resolution is in progress
ix resolver replicas processing ResolutionRequests outside their leader-election bucket.
Skip re-resolution of ResolutionRequests when Status.Data is already present, preventing hundreds of redundant reconciliations under load.
Thanks to these contributors who contributed to v1.6.7!
Extra shout-out for awesome release notes:
- Docs @ v1.6.6 - Examples @ v1.6.6
-Docs @ v1.6.6
-Examples @ v1.6.6
kubectl apply -f https://infra.tekton.dev/tekton-releases/pipeline/previous/v1.6.6/release.yamlThe Rekor UUID for this release is 108e9186e8c5677a38f2172d857e440c09bb59ae2cc0ee33ece4381b8a1e7e7f55453fb531d91647
Obtain the attestation:
REKOR_UUID=108e9186e8c5677a38f2172d857e440c09bb59ae2cc0ee33ece4381b8a1e7e7f55453fb531d91647
rekor-cli get --uuid $REKOR_UUID --format json | jq -r .Attestation | jq .Verify that all container images in the attestation are in the release file:
RELEASE_FILE=https://infra.tekton.dev/tekton-releases/pipeline/previous/v1.6.6/release.yaml
REKOR_UUID=108e9186e8c5677a38f2172d857e440c09bb59ae2cc0ee33ece4381b8a1e7e7f55453fb531d91647
# Obtains the list of images with sha from the attestation
REKOR_ATTESTATION_IMAGES=$(rekor-cli get --uuid "$REKOR_UUID" --format json | jq -r .Attestation | jq -r '.subject[]|.name + ":v1.6.6@sha256:" + .digest.sha256')
# Download the release file
curl -L "$RELEASE_FILE" > release.yaml
# For each image in the attestation, match it to the release file
for image in $REKOR_ATTESTATION_IMAGES; do
printf $image; grep -q $image release.yaml && echo " ===> ok" || echo " ===> no match";
donePipelineRun status now shows which specific results were missing when tasks are skipped due to uninitialized result references from completed tasks. A Warning event with reason ResultValidationFailed is also emitted for consistency with other failure modes.
Thanks to these contributors who contributed to v1.6.6!
Extra shout-out for awesome release notes:
- Docs @ v1.6.5 - Examples @ v1.6.5
-Docs @ v1.6.5
-Examples @ v1.6.5
kubectl apply -f https://infra.tekton.dev/tekton-releases/pipeline/previous/v1.6.5/release.yamlThe Rekor UUID for this release is 108e9186e8c5677a67f9a65d3069898ad0bc83ff913b9b81fcf3941abad7c0e0830db0f68f4724a2
Obtain the attestation:
REKOR_UUID=108e9186e8c5677a67f9a65d3069898ad0bc83ff913b9b81fcf3941abad7c0e0830db0f68f4724a2
rekor-cli get --uuid $REKOR_UUID --format json | jq -r .Attestation | jq .Verify that all container images in the attestation are in the release file:
RELEASE_FILE=https://infra.tekton.dev/tekton-releases/pipeline/previous/v1.6.5/release.yaml
REKOR_UUID=108e9186e8c5677a67f9a65d3069898ad0bc83ff913b9b81fcf3941abad7c0e0830db0f68f4724a2
# Obtains the list of images with sha from the attestation
REKOR_ATTESTATION_IMAGES=$(rekor-cli get --uuid "$REKOR_UUID" --format json | jq -r .Attestation | jq -r '.subject[]|.name + ":v1.6.5@sha256:" + .digest.sha256')
# Download the release file
curl -L "$RELEASE_FILE" > release.yaml
# For each image in the attestation, match it to the release file
for image in $REKOR_ATTESTATION_IMAGES; do
printf $image; grep -q $image release.yaml && echo " ===> ok" || echo " ===> no match";
doneBump Go to 1.25.10 for CVE remediation.
Thanks to these contributors who contributed to v1.6.5!
Extra shout-out for awesome release notes:
- Docs @ v1.6.4 - Examples @ v1.6.4
-Docs @ v1.6.4
-Examples @ v1.6.4
kubectl apply -f https://infra.tekton.dev/tekton-releases/pipeline/previous/v1.6.4/release.yamlThe Rekor UUID for this release is 108e9186e8c5677acb83d45b8aa456f143d85612fab55c350630e7c858ecf3a3ec4b61343464a5b3
Obtain the attestation:
REKOR_UUID=108e9186e8c5677acb83d45b8aa456f143d85612fab55c350630e7c858ecf3a3ec4b61343464a5b3
rekor-cli get --uuid $REKOR_UUID --format json | jq -r .Attestation | jq .Verify that all container images in the attestation are in the release file:
RELEASE_FILE=https://infra.tekton.dev/tekton-releases/pipeline/previous/v1.6.4/release.yaml
REKOR_UUID=108e9186e8c5677acb83d45b8aa456f143d85612fab55c350630e7c858ecf3a3ec4b61343464a5b3
# Obtains the list of images with sha from the attestation
REKOR_ATTESTATION_IMAGES=$(rekor-cli get --uuid "$REKOR_UUID" --format json | jq -r .Attestation | jq -r '.subject[]|.name + ":v1.6.4@sha256:" + .digest.sha256')
# Download the release file
curl -L "$RELEASE_FILE" > release.yaml
# For each image in the attestation, match it to the release file
for image in $REKOR_ATTESTATION_IMAGES; do
printf $image; grep -q $image release.yaml && echo " ===> ok" || echo " ===> no match";
doneThanks to these contributors who contributed to v1.6.4!
Extra shout-out for awesome release notes:
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →