Uh oh!
There was an error while loading. Please reload this page.
DEVOPS-1112: Update dependabot configuration - #132
Conversation
There was a problem hiding this comment.
🟡 Not ready to approve
Removing/omitting target-branch can redirect Dependabot PRs to an unintended branch and should be confirmed and aligned across entries.
Once you've addressed the issues Copilot identified, you can request another Copilot review.
This review doesn't count toward merge requirements. Sign up for the private preview to control whether Copilot approvals count.
Pull request overview
Updates Dependabot configuration to better manage automated dependency updates, including grouping of GitHub Actions updates and enabling Dependabot-managed updates for pre-commit hooks.
Changes:
- Add grouping rules for
github-actionsupdates (including internal CI-tools reusable workflows/actions). - Add a new
pre-commitDependabot update entry with weekly scheduling and grouped updates. - Remove the explicit
target-branch: "develop"from the GitHub Actions update entry.
File summaries
| File | Description |
|---|---|
| .github/dependabot.yml | Adds grouping and a new pre-commit ecosystem entry; changes Dependabot branch targeting behavior by removing target-branch. |
Review details
Suppressed comments (1)
.github/dependabot.yml:25
- The new
pre-commitDependabot entry does not specifytarget-branch. If updates are expected to flow throughdevelop(as the previous config implied), settarget-branchhere too so pre-commit autoupdates follow the same branching workflow.
- package-ecosystem: "pre-commit"
directory: "/"
schedule:
interval: "weekly"
- Files reviewed: 1/1 changed files
- Comments generated: 1
- Review effort level: Lite
We're testing this review assessment. Please use 👍 or 👎 to tell us if it's correct.
Uh oh!
There was an error while loading. Please reload this page.
Uh oh!
There was an error while loading. Please reload this page.
DEVOPS-1112 - use dependabot for pre-commit autoupdate
Automated update of .github/dependabot.yml