Skip to content

Commit 1386a48

Browse files
committed
fix: github permissions
- [x] add permissions to tests workflow - [x] update actions versions to latest - [x] add github actions to dependabot updates - [x] group minor and patch versions into single PR - [x] prefix dependabot PRs with chore(deps) Signed-off-by: jmeridth <[email protected]>
1 parent 02bdc66 commit 1386a48

File tree

3 files changed

+30
-8
lines changed

3 files changed

+30
-8
lines changed

.github/dependabot.yml

Lines changed: 22 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -3,10 +3,27 @@ updates:
33
- package-ecosystem: npm
44
directory: "/"
55
schedule:
6-
interval: daily
7-
time: "10:00"
8-
timezone: Europe/Vienna
9-
pull-request-branch-name:
10-
separator: "-"
6+
interval: weekly
7+
commit-message:
8+
prefix: "chore(deps)"
119
open-pull-requests-limit: 99
1210
rebase-strategy: disabled
11+
groups:
12+
dependencies:
13+
applies-to: version-updates
14+
update-types:
15+
- "minor"
16+
- "patch"
17+
- package-ecosystem: "github-actions"
18+
directory: "/"
19+
schedule:
20+
interval: weekly
21+
commit-message:
22+
prefix: "chore(deps)"
23+
open-pull-requests-limit: 99
24+
groups:
25+
dependencies:
26+
applies-to: version-updates
27+
update-types:
28+
- "minor"
29+
- "patch"

.github/workflows/tests.yml

Lines changed: 7 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -5,22 +5,26 @@ on:
55
branches:
66
- main
77
pull_request:
8+
9+
permissions:
10+
contents: read
11+
812
jobs:
913
tests:
1014
runs-on: ubuntu-latest
1115
steps:
1216
- name: Set up Git repository
13-
uses: actions/checkout@v1
17+
uses: actions/checkout@v4.2.2
1418

1519
- name: Set up Ruby
16-
uses: ruby/setup-ruby@v1
20+
uses: ruby/setup-ruby@a2bbe5b1b236842c1cb7dd11e8e3b51e0a616acc
1721

1822
- name: Get NodeJS version
1923
run: echo "NODE_VERSION=$(cat .node-version)" >> $GITHUB_OUTPUT
2024
id: node_version
2125

2226
- name: Set up NodeJS
23-
uses: actions/setup-node@v1
27+
uses: actions/setup-node@v4.1.0
2428
with:
2529
node-version: "${{ steps.node_version.outputs.NODE_VERSION }}"
2630

.gitignore

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -7,3 +7,4 @@ Brewfile.lock.json
77
Gemfile.lock
88
.jekyll-metadata
99
.vscode
10+
.tool-versions

0 commit comments

Comments
 (0)