Skip to content

ci: Add cooldown for Dependabot bumps#424

Open
danxuliu wants to merge 1 commit intomainfrom
add-cooldown-for-dependabot-bumps
Open

ci: Add cooldown for Dependabot bumps#424
danxuliu wants to merge 1 commit intomainfrom
add-cooldown-for-dependabot-bumps

Conversation

@danxuliu
Copy link
Copy Markdown
Member

@danxuliu danxuliu commented Apr 5, 2026

The cooldown period gives maintainers a chance to revoke compromised releases before they roll out.

The cooldown period gives maintainers a chance to revoke compromised
releases before they roll out.

Signed-off-by: Daniel Calviño Sánchez <danxuliu@gmail.com>
@danxuliu danxuliu requested a review from juliusknorr April 5, 2026 18:31
@danxuliu danxuliu added dependencies Pull requests that update a dependency file 3. to review labels Apr 5, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

3. to review dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant