Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

github/dependabot: create security fix PRs only #639

Merged
merged 1 commit into from Aug 8, 2023

Conversation

igungor
Copy link
Member

@igungor igungor commented Aug 8, 2023

Dependabot became annoying very fast. The only way to disable release
updates but allow security fixes is to set open pull request limit
to 0, according to
https://docs.github.com/en/code-security/dependabot/dependabot-version-updates/configuration-options-for-the-dependabot.yml-file#open-pull-requests-limit

Dependabot became annoying very fast. The only way to disable release
updates but allow security fixes is to set open pull request limit
to 0, according to
https://docs.github.com/en/code-security/dependabot/dependabot-version-updates/configuration-options-for-the-dependabot.yml-file#open-pull-requests-limit
@igungor igungor requested a review from a team as a code owner August 8, 2023 08:24
@igungor igungor requested review from ilkinulas and seruman and removed request for a team August 8, 2023 08:24
@igungor igungor merged commit ab52b9c into master Aug 8, 2023
13 checks passed
@igungor igungor deleted the dependabot-sec-only branch August 8, 2023 08:59
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

3 participants