From 16359faea1e0d6b6e7912f88f9668b9703eb2292 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Wed, 16 Aug 2023 08:35:32 +0000 Subject: [PATCH 1/4] Bump git from 1.11.0 to 1.18.0 Bumps [git](https://github.com/ruby-git/ruby-git) from 1.11.0 to 1.18.0. - [Release notes](https://github.com/ruby-git/ruby-git/releases) - [Changelog](https://github.com/ruby-git/ruby-git/blob/master/CHANGELOG.md) - [Commits](https://github.com/ruby-git/ruby-git/compare/v1.11.0...v1.18.0) --- updated-dependencies: - dependency-name: git dependency-type: indirect ... Signed-off-by: dependabot[bot] --- Gemfile.lock | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/Gemfile.lock b/Gemfile.lock index 84556ae..89993d2 100644 --- a/Gemfile.lock +++ b/Gemfile.lock @@ -50,7 +50,8 @@ GEM faraday-patron (1.0.0) faraday-rack (1.0.0) faraday-retry (1.0.3) - git (1.11.0) + git (1.18.0) + addressable (~> 2.8) rchardet (~> 1.8) json (2.6.2) kramdown (2.4.0) From 01ded88ca3dae898281e0bd4fc906e7a6e9223db Mon Sep 17 00:00:00 2001 From: Stayko Chalakov Date: Sun, 28 Apr 2024 19:31:17 +0100 Subject: [PATCH 2/4] ci: add renovate bot config --- renovate.json | 7 +++++++ 1 file changed, 7 insertions(+) create mode 100644 renovate.json diff --git a/renovate.json b/renovate.json new file mode 100644 index 0000000..8bf7f4b --- /dev/null +++ b/renovate.json @@ -0,0 +1,7 @@ +{ + "extends": ["config:best-practices"], + "vulnerabilityAlerts": { + "groupName": "Vulnerable Dependencies", + "enabled": true + } +} From 3b984a90703d0024fddaaf6aa7485ac942fe3c75 Mon Sep 17 00:00:00 2001 From: Stayko Chalakov Date: Mon, 29 Apr 2024 09:02:32 +0100 Subject: [PATCH 3/4] ci: update renovate config with schedule --- renovate.json | 1 + 1 file changed, 1 insertion(+) diff --git a/renovate.json b/renovate.json index 8bf7f4b..edc5600 100644 --- a/renovate.json +++ b/renovate.json @@ -1,5 +1,6 @@ { "extends": ["config:best-practices"], + "schedule": "on monday before 8am", "vulnerabilityAlerts": { "groupName": "Vulnerable Dependencies", "enabled": true From e8450a5a9b61e4f84197fe0c270905055f14d938 Mon Sep 17 00:00:00 2001 From: Stayko Chalakov Date: Fri, 10 May 2024 14:50:39 +0100 Subject: [PATCH 4/4] refactor: no-ticket remove dependabot.yml --- .github/dependabot.yml | 10 ---------- 1 file changed, 10 deletions(-) delete mode 100644 .github/dependabot.yml diff --git a/.github/dependabot.yml b/.github/dependabot.yml deleted file mode 100644 index f6552d8..0000000 --- a/.github/dependabot.yml +++ /dev/null @@ -1,10 +0,0 @@ -version: 2 -updates: - # Maintain dependencies for GitHub Actions - - package-ecosystem: "github-actions" - directory: "/" - schedule: - interval: "daily" - target-branch: "develop" - commit-message: - prefix: "#trivial Dependabot "