Skip to content

DEVOPS-1112: Update dependabot configuration - #132

Open
RomFloreani wants to merge 2 commits into
developfrom
DEVOPS-1112
Open

DEVOPS-1112: Update dependabot configuration#132
RomFloreani wants to merge 2 commits into
developfrom
DEVOPS-1112

Conversation

@RomFloreani

@RomFloreani RomFloreani commented Aug 4, 2026

Copy link
Copy Markdown

DEVOPS-1112 - use dependabot for pre-commit autoupdate
Automated update of .github/dependabot.yml

Copilot AI lite review requested due to automatic review settings August 4, 2026 15:54
@github-actions github-actions Bot changed the title DEVOPS-1112 - Update dependabot configuration DEVOPS-1112: Update dependabot configuration Aug 4, 2026

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🟡 Not ready to approve

Removing/omitting target-branch can redirect Dependabot PRs to an unintended branch and should be confirmed and aligned across entries.

Once you've addressed the issues Copilot identified, you can request another Copilot review.

This review doesn't count toward merge requirements. Sign up for the private preview to control whether Copilot approvals count.

Pull request overview

Updates Dependabot configuration to better manage automated dependency updates, including grouping of GitHub Actions updates and enabling Dependabot-managed updates for pre-commit hooks.

Changes:

  • Add grouping rules for github-actions updates (including internal CI-tools reusable workflows/actions).
  • Add a new pre-commit Dependabot update entry with weekly scheduling and grouped updates.
  • Remove the explicit target-branch: "develop" from the GitHub Actions update entry.
File summaries
File Description
.github/dependabot.yml Adds grouping and a new pre-commit ecosystem entry; changes Dependabot branch targeting behavior by removing target-branch.
Review details

Suppressed comments (1)

.github/dependabot.yml:25

  • The new pre-commit Dependabot entry does not specify target-branch. If updates are expected to flow through develop (as the previous config implied), set target-branch here too so pre-commit autoupdates follow the same branching workflow.
  - package-ecosystem: "pre-commit"
    directory: "/"
    schedule:
      interval: "weekly"
  • Files reviewed: 1/1 changed files
  • Comments generated: 1
  • Review effort level: Lite

We're testing this review assessment. Please use 👍 or 👎 to tell us if it's correct.

Comment thread .github/dependabot.yml
Comment on lines 8 to 11
- package-ecosystem: "github-actions"
directory: "/"
target-branch: "develop"
schedule:
interval: "weekly"
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants