From 7c8f6e2ae23694502f16c95cf06d26c39bae34e0 Mon Sep 17 00:00:00 2001 From: Brendan Forster Date: Mon, 15 Feb 2021 15:11:16 -0400 Subject: [PATCH] feat(tooling): enable dependabot monitoring for specific dependencies in project (#440 #1036) --- .github/dependabot.yml | 15 +++++++++++++-- 1 file changed, 13 insertions(+), 2 deletions(-) diff --git a/.github/dependabot.yml b/.github/dependabot.yml index e22a9bd70ab..6437a93715c 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -4,5 +4,16 @@ updates: directory: / schedule: interval: weekly - # Disable version updates and keep only security updates - open-pull-requests-limit: 0 + - package-ecosystem: 'npm' + directory: '/' + open-pull-requests-limit: 5 + schedule: + interval: 'weekly' + allow: + - dependency-name: 'electron-builder' + - dependency-name: 'electron-packager' + - dependency-name: 'electron-installer-*' + - dependency-name: 'xvfb-maybe' + - dependency-name: 'yaml' + - dependency-name: 'patch-package' + - dependency-name: 'postinstall-postinstall'