Make tables accessible in the Code security focus areas (#35432)
Co-authored-by: mc <42146119+mchammer01@users.noreply.github.com> Co-authored-by: Felicity Chapman <felicitymay@github.com>
This commit is contained in:
@@ -6,26 +6,26 @@ The following table shows, for each package manager:
|
||||
|
||||
Package manager | YAML value | Supported versions | Private repositories | Private registries | Vendoring
|
||||
---------------|------------------|------------------|:---:|:---:|:---:
|
||||
Bundler | `bundler` | v1, v2 | | **✓** | **✓** |
|
||||
Cargo | `cargo` | v1 | **✓** | **✓** | |
|
||||
Composer | `composer` | v1, v2 | **✓** | **✓** | |
|
||||
Docker {% ifversion dependabot-version-updates-enhanced-docker-support %}[1]{% endif %} | `docker` | v1 | **✓** | **✓** | |
|
||||
Hex | `mix` | v1 | | **✓** | |
|
||||
elm-package | `elm` | v0.19 | **✓** | **✓** | |
|
||||
git submodule | `gitsubmodule` | N/A (no version) | **✓** | **✓** | |
|
||||
{% data variables.product.prodname_actions %} [2] | `github-actions` | N/A (no version) | **✓** | **✓** | |
|
||||
Go modules | `gomod` | v1 | **✓** | **✓** | **✓** |
|
||||
Gradle [3] | `gradle` | N/A (no version) | **✓** | **✓** | |
|
||||
Maven [4] | `maven` | N/A (no version) | **✓** | **✓** | |
|
||||
npm | `npm` | v6, v7, v8 | **✓** | **✓** | |
|
||||
NuGet | `nuget` | <= 4.8 [5] | **✓** | **✓** | |
|
||||
pip{% ifversion dependabot-PEP621-support %} [6]{% endif %} | `pip` | v21.1.2 | | **✓** | |
|
||||
pipenv | `pip` | <= 2021-05-29 | | **✓** | |
|
||||
pip-compile{% ifversion dependabot-PEP621-support %} [6]{% endif %} | `pip` | 6.1.0 | | **✓** | |
|
||||
poetry | `pip` | v1 | | **✓** | |{% ifversion fpt or ghec or ghes > 3.4 %}
|
||||
pub [7] | `pub` | v2 | | | |{% endif %}
|
||||
Terraform | `terraform` | >= 0.13, <= 1.3.x | **✓** | **✓** | |
|
||||
{% ifversion dependabot-yarn-v3-update %}yarn | `npm` | v1, v2, v3 | **✓** | **✓** | **✓**[8] |{% else %}yarn | `npm` | v1 | **✓** | **✓** | |
|
||||
Bundler | `bundler` | v1, v2 | {% octicon "x" aria-label="Not supported" %}| {% octicon "check" aria-label="Supported" %} | {% octicon "check" aria-label="Supported" %} |
|
||||
Cargo | `cargo` | v1 | {% octicon "check" aria-label="Supported" %} | {% octicon "check" aria-label="Supported" %} | {% octicon "x" aria-label="Not supported" %} |
|
||||
Composer | `composer` | v1, v2 | {% octicon "check" aria-label="Supported" %} | {% octicon "check" aria-label="Supported" %} | {% octicon "x" aria-label="Not supported" %} |
|
||||
Docker {% ifversion dependabot-version-updates-enhanced-docker-support %}[1]{% endif %} | `docker` | v1 | {% octicon "check" aria-label="Supported" %} | {% octicon "check" aria-label="Supported" %} | {% octicon "x" aria-label="Not supported" %} |
|
||||
Hex | `mix` | v1 | {% octicon "x" aria-label="Not supported" %} | {% octicon "check" aria-label="Supported" %} | {% octicon "x" aria-label="Not supported" %} |
|
||||
elm-package | `elm` | v0.19 | {% octicon "check" aria-label="Supported" %} | {% octicon "check" aria-label="Supported" %} | {% octicon "x" aria-label="Not supported" %} |
|
||||
git submodule | `gitsubmodule` | Not applicable | {% octicon "check" aria-label="Supported" %} | {% octicon "check" aria-label="Supported" %} | {% octicon "x" aria-label="Not supported" %} |
|
||||
{% data variables.product.prodname_actions %} [2] | `github-actions` | Not applicable | {% octicon "check" aria-label="Supported" %} | {% octicon "check" aria-label="Supported" %} | {% octicon "x" aria-label="Not supported" %} |
|
||||
Go modules | `gomod` | v1 | {% octicon "check" aria-label="Supported" %} | {% octicon "check" aria-label="Supported" %} | {% octicon "check" aria-label="Supported" %} |
|
||||
Gradle [3] | `gradle` | Not applicable | {% octicon "check" aria-label="Supported" %} | {% octicon "check" aria-label="Supported" %} | {% octicon "x" aria-label="Not supported" %} |
|
||||
Maven [4] | `maven` | Not applicable | {% octicon "check" aria-label="Supported" %} | {% octicon "check" aria-label="Supported" %} | {% octicon "x" aria-label="Not supported" %} |
|
||||
npm | `npm` | v6, v7, v8 | {% octicon "check" aria-label="Supported" %} | {% octicon "check" aria-label="Supported" %} | {% octicon "x" aria-label="Not supported" %} |
|
||||
NuGet | `nuget` | <= 4.8 [5] | {% octicon "check" aria-label="Supported" %} | {% octicon "check" aria-label="Supported" %} | {% octicon "x" aria-label="Not supported" %} |
|
||||
pip{% ifversion dependabot-PEP621-support %} [6]{% endif %} | `pip` | v21.1.2 | {% octicon "x" aria-label="Not supported" %} | {% octicon "check" aria-label="Supported" %} | {% octicon "x" aria-label="Not supported" %} |
|
||||
pipenv | `pip` | <= 2021-05-29 | {% octicon "x" aria-label="Not supported" %} | {% octicon "check" aria-label="Supported" %} | {% octicon "x" aria-label="Not supported" %} |
|
||||
pip-compile{% ifversion dependabot-PEP621-support %} [6]{% endif %} | `pip` | 6.1.0 | {% octicon "x" aria-label="Not supported" %} | {% octicon "check" aria-label="Supported" %} | {% octicon "x" aria-label="Not supported" %} |
|
||||
poetry | `pip` | v1 | {% octicon "x" aria-label="Not supported" %} | {% octicon "check" aria-label="Supported" %} | {% octicon "x" aria-label="Not supported" %} |{% ifversion fpt or ghec or ghes > 3.4 %}
|
||||
pub [7] | `pub` | v2 | {% octicon "x" aria-label="Not supported" %} | {% octicon "x" aria-label="Not supported" %} | {% octicon "x" aria-label="Not supported" %} |{% endif %}
|
||||
Terraform | `terraform` | >= 0.13, <= 1.3.x | {% octicon "check" aria-label="Supported" %} | {% octicon "check" aria-label="Supported" %} | {% octicon "x" aria-label="Not supported" %} |
|
||||
{% ifversion dependabot-yarn-v3-update %}yarn | `npm` | v1, v2, v3 | {% octicon "check" aria-label="Supported" %} | {% octicon "check" aria-label="Supported" %} | {% octicon "check" aria-label="Supported" %}[8] |{% else %}yarn | `npm` | v1 | {% octicon "check" aria-label="Supported" %} | {% octicon "check" aria-label="Supported" %} | |
|
||||
{% endif %}
|
||||
|
||||
{% tip %}
|
||||
@@ -53,13 +53,12 @@ Terraform | `terraform` | >= 0.13, <= 1.3.x | **✓** | **✓** | |
|
||||
|
||||
{% ifversion fpt or ghec or ghes > 3.4 %}
|
||||
[7] {% ifversion ghes = 3.5 %}`pub` support is currently in beta. Any known limitations are subject to change. Note that {% data variables.product.prodname_dependabot %}:
|
||||
- Doesn't support updating git dependencies for `pub`.
|
||||
- Doesn't support updating git dependencies for `pub`.
|
||||
- Won't perform an update when the version that it tries to update to is ignored, even if an earlier version is available.
|
||||
|
||||
For information about configuring your _dependabot.yml_ file for `pub`, see "[AUTOTITLE](/code-security/dependabot/dependabot-version-updates/configuration-options-for-the-dependabot.yml-file#enable-beta-ecosystems)."
|
||||
{%- else %}{% data variables.product.prodname_dependabot %} won't perform an update for `pub` when the version that it tries to update to is ignored, even if an earlier version is available.{% endif %}
|
||||
{% endif %}
|
||||
{% endif %}
|
||||
|
||||
{% ifversion dependabot-yarn-v3-update %}
|
||||
[8] Dependabot supports vendored dependencies for v2 onwards.{% endif %}
|
||||
|
||||
|
||||
Reference in New Issue
Block a user