Rancher has made K3s to run automated upgrades. The upgrades can watch for latest Stable release. Here are the docs. It is pretty simple and works in my private cluster very well.
Stable is recommended for production environments. These releases have been through a period of community hardening.
WDYT about hardening this into AMI image?