This repository has been archived by the owner on Nov 23, 2023. It is now read-only.
Review how frequent Dependabot updates packages #2291
Labels
enabler story
Enable to team to improve
Enabler
So that we optimise GitHub Action workflow minutes and costs, we want to review how often Dependabot bump packages for an update.
Dependabot currently scans for new package update daily. Some of the packages in Geostore are updated frequently. This isn't necessarily a bad thing, but it does incur an overhead cost where each Dependabot Pull Request triggers a 40minute workflow run (only to be superseded by another update the following day).
Perhaps a weekly update would be a good balance? This way we would skip a handful of minor package updates during the week (especially for packages that do a release daily). We should discuss as a team to establish what is best for Geostore.
Other considerations:
The text was updated successfully, but these errors were encountered: