Skip to content

Better Dependabot#20

Closed
batch-changes-for-github[bot] wants to merge 3 commits into
masterfrom
batch/fedx/better_dependabot
Closed

Better Dependabot#20
batch-changes-for-github[bot] wants to merge 3 commits into
masterfrom
batch/fedx/better_dependabot

Conversation

@batch-changes-for-github
Copy link
Copy Markdown

Opportunity

Dependabot isn't protecting us from CVEs and FEA was nice enough to create a
workflow that will update dependencies on a periodic basis that will cut down
on the CVE thrashing that is occurring.

Created by Sourcegraph batch change Workiva/better_dependabot.

Co-authored-by: dustinlessard-wf <dustin.pauze@workiva.com>
@dustinlessard-wf dustinlessard-wf marked this pull request as ready for review April 11, 2026 10:33
@dustinlessard-wf dustinlessard-wf requested a review from a team as a code owner April 11, 2026 10:33
Comment thread .github/workflows/update-dependencies-node.yaml Outdated
Agent-Logs-Url: https://github.com/Workiva/semver_audit/sessions/87ce2975-248d-4e3b-8e2c-d6cd1a3ca705

Co-authored-by: dustinlessard-wf <2326518+dustinlessard-wf@users.noreply.github.com>
Agent-Logs-Url: https://github.com/Workiva/semver_audit/sessions/87ce2975-248d-4e3b-8e2c-d6cd1a3ca705

Co-authored-by: dustinlessard-wf <2326518+dustinlessard-wf@users.noreply.github.com>
@matthewnitschke-wk
Copy link
Copy Markdown
Contributor

This is a bun repository, we'll get conflicts with pnpm upgrade

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants