From 0e6145c1cbabcf0853b7b55ab162986bf7848088 Mon Sep 17 00:00:00 2001 From: SebastienDegodez Date: Mon, 21 Jul 2025 01:27:18 +0200 Subject: [PATCH 1/2] chore(dependabot): reorganize package updates and add dotnet-sdk support Signed-off-by: SebastienDegodez --- .github/dependabot.yml | 43 ++++++++++++++++++++++++++++++++++++++---- 1 file changed, 39 insertions(+), 4 deletions(-) diff --git a/.github/dependabot.yml b/.github/dependabot.yml index 6ada163..414026e 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -1,16 +1,51 @@ version: 2 updates: - - package-ecosystem: "nuget" - directory: "/" + # https://devblogs.microsoft.com/dotnet/using-dependabot-to-manage-dotnet-sdk-updates/ + - package-ecosystem: "dotnet-sdk" + directory: / + schedule: + interval: "weekly" + day: "tuesday" + open-pull-requests-limit: 1 + + # NuGet package updates + - package-ecosystem: nuget + directory: / schedule: interval: "weekly" day: "sunday" open-pull-requests-limit: 3 rebase-strategy: disabled - - package-ecosystem: "github-actions" - directory: "/" + groups: + microsoft-sbom: + patterns: ['Microsoft.Sbom.Targets'] + Microsoft.NET.Test.Sdk: + patterns: ['Microsoft.NET.Test.Sdk'] + coverlet.collector: + patterns: ['coverlet.collector'] + testcontainers: + patterns: ['Testcontainers*'] + microsoft: + patterns: [Microsoft.*, System.*] + xunit: + patterns: [xunit.*] + # Grouping for Testcontainers + kafka: + patterns: ['Confluent.Kafka'] + RabbitMQ.Client: + patterns: ['RabbitMQ.Client'] + RestAssured.Net: + patterns: ['RestAssured.Net'] + all-dependencies: + patterns: ['*'] + +# Github Actions updates + - package-ecosystem: github-actions + directory: / schedule: interval: "weekly" day: "sunday" open-pull-requests-limit: 3 rebase-strategy: disabled + + \ No newline at end of file From 8995642e02b3f9d5abfbeec637220b85cf137d9c Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Sun, 10 Aug 2025 19:34:04 +0000 Subject: [PATCH 2/2] chore(deps): bump actions/download-artifact from 4 to 5 Bumps [actions/download-artifact](https://github.com/actions/download-artifact) from 4 to 5. - [Release notes](https://github.com/actions/download-artifact/releases) - [Commits](https://github.com/actions/download-artifact/compare/v4...v5) --- updated-dependencies: - dependency-name: actions/download-artifact dependency-version: '5' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] --- .github/workflows/steps.dotnet-nuget-publish.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/steps.dotnet-nuget-publish.yml b/.github/workflows/steps.dotnet-nuget-publish.yml index f3231d5..03cc500 100644 --- a/.github/workflows/steps.dotnet-nuget-publish.yml +++ b/.github/workflows/steps.dotnet-nuget-publish.yml @@ -16,7 +16,7 @@ jobs: runs-on: ${{ inputs.runs-on }} steps: - name: 📥 Download artifact - uses: actions/download-artifact@v4 + uses: actions/download-artifact@v5 with: name: nugets_${{ inputs.runs-on }} path: nuget_packages