Skip to content

Commit b3844dd

Browse files
authored
Enable dependabot updates (#273)
1 parent e7bcdef commit b3844dd

File tree

1 file changed

+23
-0
lines changed

1 file changed

+23
-0
lines changed

.github/dependabot.yml

Lines changed: 23 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,23 @@
1+
# To get started with Dependabot version updates, you'll need to specify which
2+
# package ecosystems to update and where the package manifests are located.
3+
# Please see the documentation for all configuration options:
4+
# https://docs.github.com/code-security/dependabot/dependabot-version-updates/configuration-options-for-the-dependabot.yml-file
5+
6+
version: 2
7+
updates:
8+
# Enable version updates for npm
9+
- package-ecosystem: "npm"
10+
# Look for `package.json` and `lock` files in the `root` directory
11+
directory: "/"
12+
# Check the npm registry for updates once every week on a weekday
13+
schedule:
14+
interval: "weekly"
15+
ignore:
16+
# Internal dependencies that we update manually
17+
- dependency-name: "pprof-format"
18+
versioning-strategy: "increase"
19+
labels:
20+
- dependabot
21+
- dependencies
22+
- javascript
23+
- semver-patch

0 commit comments

Comments
 (0)