Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add Dependabot config file #35

Merged
merged 5 commits into from
Jan 9, 2023
Merged

Add Dependabot config file #35

merged 5 commits into from
Jan 9, 2023

Conversation

sentinel
Copy link
Contributor

@sentinel sentinel commented Dec 2, 2022

👋 Hello from the Product Security Engineering team! As recently announced in our engineering discussion post, we're opening up this PR to enable Dependabot actions updates by adding (or updating) the [Dependabot Config File](https://docs.github.com/en/code-security/dependabot/working-with-dependabot/keeping-your-actions-up-to-date-with-dependabot.

This is an automatically generated PR and we need your help getting it merged! Service owners are responsible for reviewing and merging this PR.

Why is this happening?

Your repository has a CodeQL workflow configured. The PSE team would like to assist repository maintainers in keeping their CodeQL workflow up to date, as the CodeQL workflow will be deprecated in December of 2022. This PR will allow Dependabot to keep the action used in the workflow up to date. The current version of the CodeQL workflow will be deprecated in December of 2022. This will also have the additional benefit of using Dependabot to keep other actions up to date as well.

@sentinel sentinel requested a review from a team as a code owner December 2, 2022 20:35
@febuiles febuiles merged commit 3960bd0 into main Jan 9, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants