- All Argo CD container images and CLI binaries are now Cosign‑signed and include SLSA Level 3 provenance for verification.
- Fixed server‑side validation for project updates and added a limit on the number of resources shown in ApplicationSet status.
- CI pipeline adjusted to set the "latest" GitHub release tag only when the release truly is the latest.
