Skip to content

Commit 05a969f

Browse files
authored
Core: break out dependabot security and version update rules (#14037)
Added configuration for daily security updates with no open pull requests limit.
1 parent cdd437f commit 05a969f

File tree

1 file changed

+10
-0
lines changed

1 file changed

+10
-0
lines changed

.github/dependabot.yml

Lines changed: 10 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -8,6 +8,7 @@ updates:
88
directory: "/"
99
schedule:
1010
interval: "quarterly"
11+
open-pull-requests-limit: 2
1112
versioning-strategy: increase
1213
allow:
1314
- dependency-name: 'iab-adcom'
@@ -21,3 +22,12 @@ updates:
2122
ignore:
2223
- dependency-name: "*"
2324
update-types: ["version-update:semver-major"]
25+
- package-ecosystem: "npm"
26+
directory: "/"
27+
schedule:
28+
interval: "daily"
29+
open-pull-requests-limit: 0
30+
groups:
31+
all-security:
32+
applies-to: security-updates
33+
patterns: ["*"]

0 commit comments

Comments
 (0)