Skip to content

Commit 3cd30e4

Browse files
authored
Create dependabot.yml for dependency updates
Add organization-wide Dependabot configuration for npm and GitHub Actions.
1 parent e5f2e19 commit 3cd30e4

1 file changed

Lines changed: 27 additions & 0 deletions

File tree

dependabot.yml

Lines changed: 27 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,27 @@
1+
# Organization-wide Dependabot configuration
2+
# Per ChittyOS CI/CD SOPs - SOP-005: Security Scanning and Dependency Updates
3+
4+
version: 2
5+
updates:
6+
- package-ecosystem: "npm"
7+
directory: "/"
8+
schedule:
9+
interval: "weekly"
10+
day: "monday"
11+
open-pull-requests-limit: 10
12+
labels:
13+
- "dependencies"
14+
- "automated"
15+
commit-message:
16+
prefix: "chore(deps)"
17+
18+
- package-ecosystem: "github-actions"
19+
directory: "/"
20+
schedule:
21+
interval: "weekly"
22+
day: "monday"
23+
labels:
24+
- "dependencies"
25+
- "ci"
26+
commit-message:
27+
prefix: "ci(deps)"

0 commit comments

Comments
 (0)