--- # yaml-language-server: $schema=https://raw.githubusercontent.com/bjw-s/helm-charts/main/charts/other/app-template/schemas/helmrelease-helm-v2.schema.json apiVersion: helm.toolkit.fluxcd.io/v2 kind: HelmRelease metadata: name: &app prowlarr spec: interval: 1h chartRef: kind: OCIRepository name: app-template install: remediation: retries: 3 upgrade: cleanupOnFail: true remediation: strategy: rollback retries: 3 values: controllers: prowlarr: annotations: reloader.stakater.com/auto: "true" secret.reloader.stakater.com/reload: prowlarr-db-secret containers: app: image: repository: ghcr.io/home-operations/prowlarr tag: 2.1.0.5180@sha256:5915438f7226ab8390503cc9f7288412b4584fc80e444faa224ccf2055d5f812 env: TZ: "${TIMEZONE}" PROWLARR__APP__INSTANCENAME: Prowlarr PROWLARR__APP__THEME: dark PROWLARR__LOG__DBENABLED: "False" PROWLARR__LOG__LEVEL: info PROWLARR__AUTH__METHOD: External PROWLARR__AUTH__REQUIRED: DisabledForLocalAddresses PROWLARR__SERVER__PORT: &port 8080 PROWLARR__UPDATE__BRANCH: develop envFrom: - secretRef: name: prowlarr-secret - secretRef: name: prowlarr-db-secret probes: liveness: &probes enabled: true custom: true spec: httpGet: path: /ping port: *port initialDelaySeconds: 0 periodSeconds: 10 timeoutSeconds: 1 failureThreshold: 3 readiness: *probes securityContext: allowPrivilegeEscalation: false readOnlyRootFilesystem: true capabilities: { drop: ["ALL"] } resources: requests: cpu: 100m limits: memory: 1Gi service: app: controller: *app ports: http: port: *port route: app: hostnames: ["{{ .Release.Name }}.${SECRET_EXTERNAL_DOMAIN}"] parentRefs: - name: internal namespace: network sectionName: https rules: - backendRefs: - name: *app port: *port persistence: tmpfs: type: emptyDir advancedMounts: prowlarr: app: - path: /config subPath: config - path: /tmp subPath: tmp