From 4862c4ac0ec9ce06988f1b6d75ad5986acbd3b78 Mon Sep 17 00:00:00 2001 From: Jennifer Power Date: Thu, 8 Aug 2024 11:38:30 -0400 Subject: [PATCH] feat: adds dependabot configuration for continous updates (#1647) Signed-off-by: Jennifer Power --- .github/dependabot.yml | 22 ++++++++++++++++++++++ 1 file changed, 22 insertions(+) create mode 100644 .github/dependabot.yml diff --git a/.github/dependabot.yml b/.github/dependabot.yml new file mode 100644 index 000000000..355c662c3 --- /dev/null +++ b/.github/dependabot.yml @@ -0,0 +1,22 @@ +version: 2 +updates: + - package-ecosystem: "github-actions" + directories: "/" + schedule: + interval: "weekly" + commit-message: + prefix: build + include: scope + reviewers: + - "oscal-compass/compliance-trestle-maintainers" + + - package-ecosystem: "pip" + directory: "/" + schedule: + interval: "weekly" + commit-message: + prefix: build + include: scope + reviewers: + - "oscal-compass/compliance-trestle-maintainers" + open-pull-requests-limit: 10