Skip to content

chore: Add Dependabot version-update cooldown#642

Merged
pkaeding merged 3 commits into
mainfrom
ld-github-standards/add-dependabot-cooldown
Jun 15, 2026
Merged

chore: Add Dependabot version-update cooldown#642
pkaeding merged 3 commits into
mainfrom
ld-github-standards/add-dependabot-cooldown

Conversation

@ld-repository-standards

Copy link
Copy Markdown
Contributor

This pull request was auto generated by the LaunchDarkly Github Standards automation platform.

  • Ensure every entry under updates in .github/dependabot.yml declares a cooldown of at least 7 days (default-days).
  • Add entries for detected package ecosystems that were not yet tracked by Dependabot.

Cooldown applies only to version updates; security updates bypass it, so critical CVE fixes are never delayed.

Ref: SEC-8058.

@ld-repository-standards ld-repository-standards Bot requested a review from a team as a code owner June 12, 2026 06:10
@ld-repository-standards ld-repository-standards Bot requested review from a team June 12, 2026 06:10
@kparkinson-ld kparkinson-ld changed the title Add Dependabot version-update cooldown chore: Add Dependabot version-update cooldown Jun 12, 2026
@pheggeseth pheggeseth requested a review from a team June 15, 2026 13:36
@pkaeding pkaeding enabled auto-merge (squash) June 15, 2026 13:56
@pkaeding

Copy link
Copy Markdown

@devin run prettier on the dependabot file to pass ci

@devin-ai-integration

Copy link
Copy Markdown
Contributor

View Devin session

devin-ai-integration Bot and others added 2 commits June 15, 2026 14:01
Co-Authored-By: Patrick Kaeding <patrick@kaeding.name>
Co-Authored-By: Patrick Kaeding <patrick@kaeding.name>
@pkaeding pkaeding merged commit 658ae75 into main Jun 15, 2026
3 checks passed
@pkaeding pkaeding deleted the ld-github-standards/add-dependabot-cooldown branch June 15, 2026 14:10
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants