Skip to content

DEVX-299 - feat: adopt leanix renovate preset#137

Merged
henriq-amaral-leanix merged 1 commit intomainfrom
chore/DEVX-299-adopt-leanix-renovate-preset
Oct 2, 2025
Merged

DEVX-299 - feat: adopt leanix renovate preset#137
henriq-amaral-leanix merged 1 commit intomainfrom
chore/DEVX-299-adopt-leanix-renovate-preset

Conversation

@leanix-ci
Copy link
Contributor

❗ Please review and merge this quickly ❗

Context: Slack Announcement

WHY
This configures renovate to automatilly pin all dependencies as suggested to do by InfoSec in context of the latest npm supply chain attack.
The preset applies dependency management best practices to the repository. Additionally it enables us to adjust renovate's core config consistently and much faster in the future.

WHAT
Adopt the LeanIX renovate preset.

WHAT TO EXPECT?
Once this change has been merged renovate will monitor the repository's dependencies.
It will create a change request pinning dependencies to fixed versions.

The preset aims to control central configuration parameters. You might extend the configuration
to custimze the behavior. Customizations that would be generally beneficial may be proposed for
adoption in the preset itself.

**WHY**
This configures renovate to automatilly pin all dependencies as suggested to do by InfoSec in context of the latest npm supply chain attack.
The preset applies dependency management best practices to the repository.
Additionally it enables us to adjust renovate's core config consistently and much faster in the future.

**WHAT**
Adopt the [LeanIX renovate preset](https://github.com/leanix/.github/blob/main/default.json).

**WHAT TO EXPECT?**
Once this change has been merged renovate will monitor the repository's dependencies.
It will create a change request pinning dependencies to fixed versions.

The preset aims to control central configuration parameters. You might extend the configuration
to custimze the behavior. Customizations that would be generally beneficial may be proposed for
adoption in the [preset](https://github.com/leanix/.github/blob/main/default.json) itself.
@github-actions
Copy link

LeanIX GitHub Agent Code Coverage

There is no coverage information present for the Files changed

Total Project Coverage 65.11% 🍏

@henriq-amaral-leanix henriq-amaral-leanix merged commit fdd93a4 into main Oct 2, 2025
3 of 4 checks passed
@henriq-amaral-leanix henriq-amaral-leanix temporarily deployed to ghcr:leanix-github-agent October 2, 2025 14:48 — with GitHub Actions Inactive
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Development

Successfully merging this pull request may close these issues.

3 participants