That's not my problem. I've customized the pattern so that all updates are installed, as long as they don't introduce new configurations—even for “regular” software. That works without any issues. The same goes for third-party repositories like ntfy or docker.
What I don't understand is the log file entry indicating that packages are being held back, even though they end up being installed anyway. I'd at least like to understand why.