g1t/services/security/fixtures/dependabot/cli_cli.yml
Pick any line to see why it is the way it is: the commit, the pull request and issue it came from, and what the agent was thinking.
| Teams and CODEOWNERS, labels and milestones, dependency updates, the security suite, and a clearer top bar | 1 | # cli/cli's .github/dependabot.yml, as published. |
| 2 | version: 2 | |
| 3 | updates: | |
| 4 | - package-ecosystem: gomod | |
| 5 | directory: "/" | |
| 6 | schedule: | |
| 7 | interval: "daily" | |
| 8 | cooldown: | |
| 9 | default-days: 3 | |
| 10 | ignore: | |
| 11 | - dependency-name: "*" | |
| 12 | update-types: | |
| 13 | - version-update:semver-major | |
| 14 | - package-ecosystem: "github-actions" | |
| 15 | directory: "/" | |
| 16 | schedule: | |
| 17 | interval: "daily" | |
| 18 | cooldown: | |
| 19 | default-days: 3 | |
| 20 | groups: | |
| 21 | codeql-actions: | |
| 22 | patterns: | |
| 23 | - "github/codeql-action/*" | |
| 24 | ignore: | |
| 25 | - dependency-name: "github/gh-aw-actions/*" # Managed by gh aw compile. Version-locked to the gh-aw compiler; do not bump. |