Update dependabot's gh-actions section - #700
Merged
Merged
Conversation
Group updates in a single PR.
Codecov Report✅ All modified and coverable lines are covered by tests. Additional details and impacted files@@ Coverage Diff @@
## master #700 +/- ##
=======================================
Coverage 84.34% 84.34%
=======================================
Files 26 26
Lines 805 805
=======================================
Hits 679 679
Misses 126 126 ☔ View full report in Codecov by Sentry. 🚀 New features to boost your workflow:
|
There was a problem hiding this comment.
Pull request overview
This PR updates the repository’s Dependabot configuration to better group dependency updates, separating regular version bumps from security updates for both Python (pip) and GitHub Actions.
Changes:
- Renamed Python dependency groups to
pythonandpython-security. - Added GitHub Actions dependency groups
actionsandactions-securityto separate version vs. security updates.
💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.
CasperWA
enabled auto-merge (squash)
March 6, 2026 08:00
CasperWA
disabled auto-merge
March 6, 2026 08:00
CasperWA
enabled auto-merge (squash)
March 6, 2026 08:00
Treesarj
approved these changes
Mar 6, 2026
github-actions Bot
pushed a commit
that referenced
this pull request
Mar 6, 2026
Group updates in a single PR.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Description
Group updates in a single PR.
AI Summary
This pull request updates the Dependabot configuration in
.github/dependabot.ymlto improve the grouping and management of dependencies for both Python and GitHub Actions. The main changes involve renaming and restructuring the dependency groups for better clarity and separation between version and security updates.Dependabot group restructuring:
packagesgroup topythonand thesecuritygroup topython-securityfor Python dependencies, clarifying their purpose and scope.actionsandactions-securityfor GitHub Actions dependencies, allowing separate handling of version and security updates for Actions.Type of change
Checklist for the reviewer
This checklist should be used as a help for the reviewer.