Skip to content

Add Dependabot configuration#9

Merged
Aaronontheweb merged 1 commit intodevfrom
feature/dependabot
May 5, 2026
Merged

Add Dependabot configuration#9
Aaronontheweb merged 1 commit intodevfrom
feature/dependabot

Conversation

@Aaronontheweb
Copy link
Copy Markdown
Contributor

Summary

  • Adds weekly Dependabot checks for npm dependencies and GitHub Actions
  • Groups minor/patch updates into single PRs to reduce noise
  • Monitors GitHub Actions versions for security patches

What this enables

  • Automated security vulnerability alerts (already active for public repos, this adds version update PRs)
  • Keeps Astro/Starlight and build tooling current without manual intervention
  • GitHub Actions pinned versions stay up to date

Weekly checks on Mondays, minor/patch grouped into single PRs to reduce noise.
@Aaronontheweb Aaronontheweb merged commit 5700370 into dev May 5, 2026
2 checks passed
@Aaronontheweb Aaronontheweb deleted the feature/dependabot branch May 5, 2026 22:04
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant