Skip to content

Commit a286ff1

Browse files
committed
Add 14 days cooldown period to dependabot
This makes dependabot only consider new releases that are older than 14 days. Effectively, this gives the community a chance to catch security issues.
1 parent 2fddf4f commit a286ff1

File tree

1 file changed

+2
-0
lines changed

1 file changed

+2
-0
lines changed

.github/dependabot.yml

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -5,6 +5,8 @@ updates:
55
directory: "/"
66
schedule:
77
interval: "quarterly"
8+
cooldown:
9+
default-days: 14
810
labels:
911
- "devops"
1012
- "bot"

0 commit comments

Comments
 (0)