Skip to content

g1t/services/security/fixtures/dependabot/getsentry_sentry.yml

90 lines2,733 bytesCodeBlame

Pick any line to see why it is the way it is: the commit, the pull request and issue it came from, and what the agent was thinking.

Teams and CODEOWNERS, labels and milestones, dependency updates, the security suite, and a clearer top bar1# getsentry/sentry's .github/dependabot.yml, as published.
2version: 2
3updates:
4 - package-ecosystem: npm
5 open-pull-requests-limit: 15
6 directory: '/'
7 schedule:
8 # Going to start with a high interval, and then tone it back
9 interval: daily
10 timezone: America/Los_Angeles
11 time: '15:30'
12 labels: []
13 # Group dependency updates together in one PR
14 # https://docs.github.com/en/code-security/dependabot/dependabot-version-updates/configuration-options-for-the-dependabot.yml-file#groups
15 groups:
16 # The name of the group, it will be used in PR titles and branch
17 swc-dependencies:
18 patterns:
19 - '@swc/*'
20 dnd-kit-dependencies:
21 patterns:
22 - '@dnd-kit/*'
23 sentry-dependencies:
24 patterns:
25 - '@sentry/browser'
26 - '@sentry/core'
27 - '@sentry/node'
28 - '@sentry/react'
29 spectrum-dependencies:
30 patterns:
31 - '@react-stately/*'
32 - '@react-aria/*'
33 - '@react-types/*'
34 emotion-dependencies:
35 patterns:
36 - '@emotion/*'
37 jest-dependencies:
38 patterns:
39 - '@jest/*'
40 - 'jest'
41 - 'jest-*'
42 - 'jsdom'
43 react-testing-library-dependencies:
44 patterns:
45 - '@testing-library/*'
46 # Keep React Router updates within the current major version.
47 react-router-dependencies:
48 patterns:
49 - 'react-router*'
50 update-types:
51 - 'minor'
52 - 'patch'
53 tanstack-query-dependencies:
54 patterns:
55 - '@tanstack/eslint-plugin-query'
56 - '@tanstack/query-*'
57 - '@tanstack/react-query*'
58 oxc-dependencies:
59 patterns:
60 - 'oxlint'
61 - 'oxlint-*'
62 - '@oxlint/*'
63 - 'oxfmt'
64 - '@oxfmt/*'
65 react-dependencies:
66 patterns:
67 - 'react'
68 - 'react-dom'
69 - '@types/react'
70 - '@types/react-dom'
71 ignore:
72 # For all packages, ignore all patch updates
73 - dependency-name: '*'
74 update-types: ['version-update:semver-patch']
75
76 # We ignore everything that hasn't yet been upgrade, this way we will
77 # only get the _freshest_ of new packages to consider upgrading
78 - dependency-name: '@types/react-select'
79 - dependency-name: '@types/reflux'
80 - dependency-name: 'gettext-parser'
81 - dependency-name: 'react-lazyload'
82 - dependency-name: 'react-select'
83 - dependency-name: 'reflux'
84 - dependency-name: 'sprintf-js'
85 - package-ecosystem: 'docker'
86 directory: 'self-hosted/'
87 schedule:
88 interval: 'daily'
89 # security only updates
90 open-pull-requests-limit: 0