Skip to content

Commit fbfe492

Browse files
alan-forbes-cpcarlewis
authored andcommitted
[CP-Sec] dependabot.yml for CI Docker and Github Actions
1 parent 561ee59 commit fbfe492

File tree

1 file changed

+23
-0
lines changed

1 file changed

+23
-0
lines changed

.github/dependabot.yml

Lines changed: 23 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,23 @@
1+
# To get started with Dependabot version updates, you'll need to specify which
2+
# package ecosystems to update and where the package manifests are located.
3+
# Please see the documentation for all configuration options:
4+
# https://docs.github.com/code-security/dependabot/dependabot-version-updates/configuration-options-for-the-dependabot.yml-file
5+
6+
version: 2
7+
updates:
8+
# Enable version updates for Docker
9+
- package-ecosystem: "docker"
10+
# Look for a `Dockerfile` in the `ci` directory
11+
directory: "/ci"
12+
# Check for updates once a week
13+
schedule:
14+
interval: "weekly"
15+
# Enable version updates for Github Actions
16+
- package-ecosystem: "github-actions"
17+
directory: "/"
18+
schedule:
19+
interval: "monthly"
20+
groups:
21+
github-actions:
22+
patterns:
23+
- "*"

0 commit comments

Comments
 (0)