I use What’s up Docker (https://github.com/getwud/wud) for this. It talks to the Docker daemon, is configured with labels. I get notifications when new versions and I can also look at a dashboard that aggregates all the updates and provides links to release notes.
Admittedly, I don’t use Kubernetes, so I can’t tell you whether What’s up Docker supports it. A bunch of docker compose files is enough for me.
It can also update docker compose files with new tags for you, but I’m allergic to auto updates
100% this. After a couple of decades working in universities, I can tell you it’s a research integrity issue just waiting to happen - especially if they’re working with human data. Who’s going to be doing the ongoing maintenance? Installing updates? Making sure that nobody pokes holes in the security? What’s going to happen to the data on the server when the funding runs out?