1
0
mirror of synced 2025-12-31 15:04:15 -05:00
Commit Graph

102 Commits

Author SHA1 Message Date
Sophie
5b5929052b Dependabot Grouped Version Updates: Support for Grouping Based on SemVer - [Public Beta] (#40777)
Co-authored-by: mc <42146119+mchammer01@users.noreply.github.com>
Co-authored-by: Caro Galvin <carogalvin@github.com>
Co-authored-by: Siara <108543037+SiaraMist@users.noreply.github.com>
2023-08-17 18:13:09 +00:00
mc
0f5701edb3 Dependabot Grouped Version Updates: production vs development dependencies + new Dependabot comment commands (#40026)
Co-authored-by: Jake Coffman <jakecoffman@github.com>
Co-authored-by: SiaraMist <siaramist@github.com>
Co-authored-by: Sophie <29382425+sophietheking@users.noreply.github.com>
Co-authored-by: Siara <108543037+SiaraMist@users.noreply.github.com>
Co-authored-by: Felicity Chapman <felicitymay@github.com>
Co-authored-by: Caro Galvin <carogalvin@github.com>
Co-authored-by: Robert Sese <734194+rsese@users.noreply.github.com>
2023-08-10 23:55:54 +00:00
Ihor Tymofieiev
1298746572 Update configuration-options-for-the-dependabot.yml-file.md (#27239)
Co-authored-by: Courtney Wilson <77312589+cmwilson21@users.noreply.github.com>
2023-08-09 14:00:19 +00:00
mc
9d36270803 Fix formatting of dependabot.yml file (#40082) 2023-08-01 12:56:23 +00:00
mc
4039c0b707 Remove <nobr> HTML tag as deprecated (#39800) 2023-07-27 18:58:08 +00:00
mc
7b8fd5e374 Clarify whether the ignore option in dependabot configuration also ignores security updates (#39653)
Co-authored-by: Felicity Chapman <felicitymay@github.com>
2023-07-27 13:44:15 +00:00
mc
d16443611e Convert table to markdown (#39357) 2023-07-21 08:22:59 +00:00
Jeff Widman
8b57e59a63 Clarify documentation for versioning-strategy option (#20732)
Co-authored-by: Jonas Finnemann Jensen <jonasfj@google.com>
Co-authored-by: mc <42146119+mchammer01@users.noreply.github.com>
2023-07-20 08:12:37 +00:00
Rachael Sewell
19ded728c0 remove 3.5 markup (#39007)
Co-authored-by: Laura Coursen <lecoursen@github.com>
2023-07-14 16:48:26 +00:00
Patrick Brinich-Langlois
898f416aa5 Dependabot private Ruby registry config: Fix indentation of replaces-base (#26538)
Co-authored-by: Ben Ahmady <32935794+subatoi@users.noreply.github.com>
2023-07-14 07:39:35 +00:00
Anne-Marie
a65c151ed3 [2023-06-29]: Dependabot Grouped Updates - [Public Beta] #10346 (#38230)
Co-authored-by: Caro Galvin <carogalvin@github.com>
Co-authored-by: Sophie <29382425+sophietheking@users.noreply.github.com>
Co-authored-by: Sarita Iyer <66540150+saritai@users.noreply.github.com>
2023-06-29 20:52:55 +00:00
Rachael Sewell
bdf6102ad1 Remove 3.4 markup new 2023-06-27 12:49:16 -07:00
Grace Park
1dfa5c251e Fix ordered lists to only use 1. (#38283)
Co-authored-by: Rachael Sewell <rachmari@github.com>
2023-06-26 16:25:04 -07:00
Grace Park
32af69c277 Make sure there is a blank line above and below headings (#37922) 2023-06-26 13:24:44 -07:00
Grace Park
a8a6e4554a Fix for blank lines around code fences (#38255) 2023-06-26 10:21:48 -07:00
Jurre
dbd0db331b Clarify Dependabot registry config for npm.pkg.github.com (#38314)
Co-authored-by: hubwriter <hubwriter@github.com>
2023-06-23 10:08:08 +00:00
Grace Park
6ff9dc21a8 Fix multiple blank lines in content and data (#37909) 2023-06-22 09:54:36 -07:00
Grace Park
4545543862 Fix for md049 consistent emphasis (#38201)
Co-authored-by: Jess Hosman <1183847+jhosman@users.noreply.github.com>
2023-06-21 18:10:23 +00:00
Anne-Marie
78b7507239 [2023-06-21]: Skip Scheduled Dependabot Runs after 30 Failures - [GA] #10335 (#37100) 2023-06-21 15:30:00 +00:00
Jurre
1cf2ea35c3 [Dependabot] Clarify schedule.interval accuracy (#37612)
Co-authored-by: mchammer01 <42146119+mchammer01@users.noreply.github.com>
2023-06-08 20:02:52 +00:00
Rachael Sewell
e9a894c8d6 Fix unordered list indentation (#37391)
Co-authored-by: Matt Pollard <mattpollard@users.noreply.github.com>
Co-authored-by: Laura Coursen <lecoursen@github.com>
Co-authored-by: Felicity Chapman <felicitymay@github.com>
2023-06-06 22:07:29 +00:00
mc
2fc93ab3fe [Improvement]: Add beta-level ecosystems to Dependabot docs (#37283) 2023-05-25 19:01:31 +00:00
Laura Coursen
06e0a5a3df Update some octicon references (#37039)
Co-authored-by: hubwriter <hubwriter@github.com>
2023-05-15 14:25:51 +00:00
Annie Streater
48914bc50e Remove footnotes (#36166)
Co-authored-by: streats <streats@users.noreply.github.comgit config --global user.emailgit config --global user.email streats@users.noreply.github.comgit config --global user.name>
Co-authored-by: Laura Coursen <lecoursen@github.com>
Co-authored-by: Felicity Chapman <felicitymay@github.com>
Co-authored-by: mc <42146119+mchammer01@users.noreply.github.com>
2023-04-20 13:32:32 +00:00
Anne-Marie
51157ddd8c [2023-04-13]: Dependabot supports release notes and changelogs for Docker images - [GA] #9966 (#36108)
Co-authored-by: mc <42146119+mchammer01@users.noreply.github.com>
2023-04-13 17:23:11 +00:00
Sophie
2606cafce4 [2023-04-13]: 30 day cutoff for Dependabot Pull Request Rebases - [GA] (#36022) 2023-04-13 16:46:23 +00:00
Christopher Virtucio
07f7e92e8c Mention dependency name for docker image tags (#24736)
Co-authored-by: mc <42146119+mchammer01@users.noreply.github.com>
2023-04-04 13:17:33 +00:00
mc
db9b6f14b4 Clarify behavior of insecure-external-code-execution=allow when access to private registries is defined (#36069)
Co-authored-by: Kitty Chiu <42864823+KittyChiu@users.noreply.github.com>
Co-authored-by: Laura Coursen <lecoursen@github.com>
Co-authored-by: David McIntosh <804610+mctofu@users.noreply.github.com>
2023-04-03 07:57:46 +00:00
Dale Mckeown
f441f327e6 Updates docs to help NuGet users (#24557) 2023-03-28 14:48:54 +00:00
Anne-Marie
949c313513 [2023-03-31] Make images accessible in the images/help/dependabot directory #9521 (#35341) 2023-03-13 11:15:39 +00:00
Sophie
97600f0606 [Improvement]: Tell GHES admins that they can download the latest Dependabot action to get better ecosystem support (#33659)
Co-authored-by: mc <42146119+mchammer01@users.noreply.github.com>
2023-02-20 08:47:29 +00:00
Hector Alfaro
4cd28fd735 Remove support for miniTocMaxHeadingLevel (#34758) 2023-02-17 16:29:02 +00:00
Peter Bengtsson
b7c7dbf672 Update all internal links (#34787) 2023-02-15 15:16:18 +00:00
Anne-Marie
58e55dd2cc [Improvement]: Clarify syntax for defining a version range to ignore in dependabot.yml #9285 (#34553) 2023-02-10 10:38:31 +00:00
mc
6d491ef9f7 Rework the improve manage encrypted secrets dependabot article (#34096)
Co-authored-by: Felicity Chapman <felicitymay@github.com>
2023-02-07 20:47:22 +00:00
André Schröder
47617bea3b Update content/code-security/dependabot/dependabot-version-updates/configuration-options-for-the-dependabot.yml-file.md
Co-authored-by: mc <42146119+mchammer01@users.noreply.github.com>
2023-01-17 23:31:00 +01:00
André Schröder
4b1ab1e649 such as -> that is 2023-01-17 23:27:03 +01:00
André Schröder
a94bd3f84d Merge branch 'main' into feat/document-dependabot-prefix 2023-01-17 23:24:33 +01:00
Sean Killeen
498107c24e Fix "low hanging fruit" spelling errors (#23216) 2023-01-17 19:30:29 +00:00
mc
c664161729 Update content/code-security/dependabot/dependabot-version-updates/configuration-options-for-the-dependabot.yml-file.md 2023-01-16 14:23:54 +00:00
mc
61446f056e [Ready for merging - 2023-01-12] - Pausing / unpausing Dependabot updates and related notifications (#33379)
Co-authored-by: Felicity Chapman <felicitymay@github.com>
Co-authored-by: Erin Havens <erinhav@github.com>
Co-authored-by: Anne-Marie <102995847+am-stead@users.noreply.github.com>
2023-01-12 17:40:37 +00:00
David McIntosh
c87259c404 Dependabot supports gomod indirect dependency filtering (#33884)
Co-authored-by: mc <42146119+mchammer01@users.noreply.github.com>
2023-01-12 10:27:15 +00:00
André Schröder
f8cd135f20 make it more clear that a scope follows after "Composer" 2023-01-10 23:35:26 +01:00
André Schröder
64cbb8711d fix concern: add suggested sentence 2023-01-10 23:35:22 +01:00
mc
2b9b5cf174 Merge branch 'main' into feat/document-dependabot-prefix 2023-01-09 14:33:14 +00:00
mc
dc541ae874 Update content/code-security/dependabot/dependabot-version-updates/configuration-options-for-the-dependabot.yml-file.md 2023-01-09 14:17:48 +00:00
Anne-Marie
ce4065413a [Improvement]: make pricing model clearer for Dependabot #6770 (#33305)
Co-authored-by: Felicity Chapman <felicitymay@github.com>
2023-01-03 06:30:02 +00:00
André Schröder
e1cef5e7d5 Document behavior of prefix in dependabot.yml
It would have been helpful to me if the documentation was more
straight-forward about that a `:` is appended to the commit title by
default and how to disable that the `:` is appended.

For reference, here is the implementation:
06702c83e5/common/lib/dependabot/pull_request_creator/pr_name_prefixer.rb (L75-L83)
2022-12-28 13:53:41 +01:00
Sophie
48524a0a7d [2022-12-13]: Dependabot does not access public registries when the user has configured private registries - [GA] (#33310)
Co-authored-by: Jake Coffman <jakecoffman@github.com>
Co-authored-by: Anne-Marie  <102995847+am-stead@users.noreply.github.com>
Co-authored-by: Nish Sinha <nishnha@github.com>
Co-authored-by: mc <42146119+mchammer01@users.noreply.github.com>
Co-authored-by: Ankit Honey <honeyankit@github.com>
2022-12-13 19:22:06 +00:00
mc
06667bb26e Describe how Dependabot chooses to rebase pull requests (#32993) 2022-11-29 17:19:08 +00:00