Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

feat(dependabot): automate dependency management and security updates #749

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

50-Course
Copy link
Member

This PR is to address the re-occuring issue of managing dependencies or
transitive dependency for the project - including but not limited to,
security updates.

With dependabot, we are one step closer with keeping underlying
dependencies up-to-date, minimizing the overhead of manual intervention.

This would require constant review of the bot PRs, to ensure updates or security updates
are in-line with future release and backward compatible with this
package/libarary.

This PR is to address the re-occuring issue of managing dependencies or
transitive dependency for the project - including but not limited to,
security updates.

With dependabot, we are one step closer with keeping underlying
dependencies up-to-date, minimizing the overhead of manual intervention.

This would require constant review of the bot PRs, to ensure updates or security updates
are in-line with future release and backward compatible with this
package/libarary.
@50-Course 50-Course requested review from pomali and a team January 7, 2025 21:43
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant