From afc7269479ead5fc7bd47719068bb76bd554caa5 Mon Sep 17 00:00:00 2001 From: Daniel Banks_ONS Date: Tue, 2 Jul 2024 15:08:34 +0100 Subject: [PATCH] SDCSRM-542 Dependabot Security Only PRs (#345) --- .github/dependabot.yml | 31 ++++++++++++++++++++++--------- 1 file changed, 22 insertions(+), 9 deletions(-) diff --git a/.github/dependabot.yml b/.github/dependabot.yml index 2771944b..f17d70f6 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -2,21 +2,34 @@ version: 2 updates: - package-ecosystem: "maven" directory: "/" + target-branch: "main" + groups: + maven-security-updates: + applies-to: "security-updates" + patterns: + - "*" schedule: - interval: "weekly" - ignore: - - dependency-name: "*" - update-types: [ "version-update:semver-patch", "version-update:semver-minor" ] + interval: "daily" labels: - "patch" - "dependencies" + ignore: + - dependency-name: "*" + update-types: [ "version-update:semver-patch", "version-update:semver-minor", "version-update:semver-major" ] + - package-ecosystem: "npm" directory: "/ui" + target-branch: "main" + groups: + npm-security-updates: + applies-to: "security-updates" + patterns: + - "*" schedule: - interval: "weekly" - ignore: - - dependency-name: "*" - update-types: [ "version-update:semver-patch", "version-update:semver-minor" ] + interval: "daily" labels: - "patch" - - "dependencies" \ No newline at end of file + - "dependencies" + ignore: + - dependency-name: "*" + update-types: [ "version-update:semver-patch", "version-update:semver-minor", "version-update:semver-major" ] \ No newline at end of file