Skip to content

Commit dd0e259

Browse files
Update dependabot.yml
Update dependabot to match security requirements. This sets up dependabot to use the 7 day cool down for dependency updates.
1 parent 0616f0c commit dd0e259

1 file changed

Lines changed: 14 additions & 2 deletions

File tree

.github/dependabot.yml

Lines changed: 14 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,15 +1,27 @@
11
version: 2
2+
23
updates:
34
- package-ecosystem: "nuget"
45
directory: "/"
56
schedule:
6-
interval: "weekly"
7-
day: "sunday"
7+
interval: "daily"
88
time: "04:00"
9+
cooldown:
10+
default-days: 7
11+
912
target-branch: "develop"
13+
1014
commit-message:
1115
prefix: "deps"
16+
1217
open-pull-requests-limit: 1
18+
19+
ignore:
20+
- dependency-name: "AutoMapper"
21+
- dependency-name: "AutoMapper.*"
22+
- dependency-name: "MediatR"
23+
- dependency-name: "MediatR.*"
24+
1325
groups:
1426
all-dependencies:
1527
patterns:

0 commit comments

Comments
 (0)