Skip to content

Commit 816f1a6

Browse files
committed
dependabot: security updates only, grouped in a single PR
1 parent 9a1158a commit 816f1a6

File tree

1 file changed

+15
-3
lines changed

1 file changed

+15
-3
lines changed

.github/dependabot.yml

Lines changed: 15 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1,19 +1,31 @@
1+
# Open a single PR each for go modules and GitHub actions
2+
# for security related updates only on a weekly basis.
13
version: 2
24
updates:
35
- package-ecosystem: gomod
46
directory: "/"
57
schedule:
6-
interval: monthly
7-
open-pull-requests-limit: 10
8+
interval: weekly
9+
open-pull-requests-limit: 0
810
commit-message:
911
prefix: "go.mod:"
1012
assignees:
1113
- willnorris
14+
groups:
15+
all:
16+
patterns:
17+
- "*"
18+
1219
- package-ecosystem: "github-actions"
1320
directory: "/"
1421
schedule:
15-
interval: "weekly"
22+
interval: weekly
23+
open-pull-requests-limit: 0
1624
commit-message:
1725
prefix: ".github:"
1826
assignees:
1927
- willnorris
28+
groups:
29+
all:
30+
patterns:
31+
- "*"

0 commit comments

Comments
 (0)