- Introduces a Flux CLI plugin system with Mirror and Schema plugins and many new capabilities such as SSA ignore rules, Age‑based SOPS decryption, workload‑identity auth for Vault/OpenBao, Helm post‑render hooks, literal Helm values, empt...
- Adds several new CLI commands (e.g., flux create secret receiver, flux create source oci with layer selector) and updates component versions, CI/build tooling, and documentation.
- Removes deprecated v1beta2 APIs (image.toolkit.fluxcd.io/v1beta2 and notification.toolkit.fluxcd.io/v1beta2), requiring users to follow the upgrade procedure.