Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Reduce frequency of Dependabot updates #117

Open
magnusbaeck opened this issue Feb 26, 2024 · 0 comments
Open

Reduce frequency of Dependabot updates #117

magnusbaeck opened this issue Feb 26, 2024 · 0 comments

Comments

@magnusbaeck
Copy link
Member

Description

We currently have Dependabot scheduled to run every Sunday. This results in numerous PRs that we frequently ignore, either because we don't have time to inspect them and don't trust the CI tests enough to merge them blindly, or that we don't want to litter the commit log with insignificant updates (we rarely make "real" changes so they would drown in all the Dependabot commits if we merge all of them).

We can reduce the frequency to e.g. every month or two. We'll still get patches for any security problems right away, and we always have the option of bumping dependencies by hand if there's anything in particular we want.

Additional Context

No response

Further links

No response

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant