|
1 | 1 | version: 2 |
2 | 2 |
|
3 | | -# Enable version updates for GitHub Actions |
4 | 3 | updates: |
5 | | - # Always check GitHub Actions (every repo has this) |
| 4 | + # ============================================ |
| 5 | + # GitHub Actions (always safe) |
| 6 | + # ============================================ |
6 | 7 | - package-ecosystem: "github-actions" |
7 | 8 | directory: "/" |
8 | 9 | schedule: |
9 | 10 | interval: "weekly" |
10 | 11 | labels: |
11 | 12 | - "dependencies" |
12 | 13 | - "github-actions" |
| 14 | + - "security" |
13 | 15 | open-pull-requests-limit: 5 |
14 | | - auto-merge: false |
15 | 16 |
|
16 | | -# ============================================ |
17 | | -# .NET/C# Projects |
18 | | -# ============================================ |
| 17 | + # ============================================ |
| 18 | + # .NET / NuGet (only runs if *.csproj exists) |
| 19 | + # ============================================ |
19 | 20 | - package-ecosystem: "nuget" |
20 | 21 | directory: "/" |
21 | 22 | schedule: |
22 | 23 | interval: "daily" |
23 | | - open-pull-requests-limit: 10 |
24 | 24 | labels: |
25 | 25 | - "dependencies" |
26 | 26 | - "dotnet" |
27 | 27 | - "security" |
| 28 | + open-pull-requests-limit: 10 |
28 | 29 | reviewers: |
29 | 30 | - "ankitha39" |
30 | | - allow: |
31 | | - - dependency-type: "production" |
32 | | - - dependency-type: "development" |
33 | | - rebase-strategy: "auto" |
34 | 31 |
|
35 | | -# ============================================ |
36 | | -# Java/Maven Projects |
37 | | -# ============================================ |
| 32 | + # ============================================ |
| 33 | + # Java / Maven (only if pom.xml exists) |
| 34 | + # ============================================ |
38 | 35 | - package-ecosystem: "maven" |
39 | 36 | directory: "/" |
40 | 37 | schedule: |
41 | 38 | interval: "daily" |
42 | | - open-pull-requests-limit: 10 |
43 | 39 | labels: |
44 | 40 | - "dependencies" |
45 | 41 | - "java" |
46 | 42 | - "security" |
| 43 | + open-pull-requests-limit: 10 |
47 | 44 | reviewers: |
48 | 45 | - "ankitha39" |
49 | | - allow: |
50 | | - - dependency-type: "production" |
51 | | - - dependency-type: "development" |
52 | | - rebase-strategy: "auto" |
53 | 46 |
|
54 | | -# ============================================ |
55 | | -# JavaScript/NPM Projects |
56 | | -# ============================================ |
| 47 | + # ============================================ |
| 48 | + # JavaScript / npm (requires package-lock.json) |
| 49 | + # ============================================ |
57 | 50 | - package-ecosystem: "npm" |
58 | 51 | directory: "/" |
59 | 52 | schedule: |
60 | 53 | interval: "daily" |
61 | | - open-pull-requests-limit: 10 |
62 | 54 | labels: |
63 | 55 | - "dependencies" |
64 | 56 | - "javascript" |
65 | 57 | - "security" |
| 58 | + open-pull-requests-limit: 10 |
66 | 59 | reviewers: |
67 | 60 | - "ankitha39" |
68 | | - allow: |
69 | | - - dependency-type: "production" |
70 | | - - dependency-type: "development" |
71 | | - rebase-strategy: "auto" |
72 | 61 |
|
73 | | -# ============================================ |
74 | | -# Python Projects |
75 | | -# ============================================ |
| 62 | + # ============================================ |
| 63 | + # Python / pip |
| 64 | + # Supports: |
| 65 | + # - requirements.txt |
| 66 | + # - requirements-dev.txt |
| 67 | + # - setup.py |
| 68 | + # ============================================ |
76 | 69 | - package-ecosystem: "pip" |
77 | 70 | directory: "/" |
78 | 71 | schedule: |
79 | 72 | interval: "daily" |
80 | | - open-pull-requests-limit: 10 |
81 | 73 | labels: |
82 | 74 | - "dependencies" |
83 | 75 | - "python" |
84 | 76 | - "security" |
| 77 | + open-pull-requests-limit: 10 |
85 | 78 | reviewers: |
86 | 79 | - "ankitha39" |
87 | | - allow: |
88 | | - - dependency-type: "production" |
89 | | - - dependency-type: "development" |
90 | | - rebase-strategy: "auto" |
91 | 80 |
|
92 | | -# ============================================ |
93 | | -# Docker (if applicable) |
94 | | -# ============================================ |
| 81 | + # ============================================ |
| 82 | + # Docker (only if Dockerfile exists) |
| 83 | + # ============================================ |
95 | 84 | - package-ecosystem: "docker" |
96 | 85 | directory: "/" |
97 | 86 | schedule: |
98 | 87 | interval: "weekly" |
99 | | - open-pull-requests-limit: 5 |
100 | 88 | labels: |
101 | 89 | - "dependencies" |
102 | 90 | - "docker" |
| 91 | + - "security" |
| 92 | + open-pull-requests-limit: 5 |
0 commit comments