Skip to content

[ci] Add dependabot configuration#6449

Merged
jameslamb merged 2 commits intomasterfrom
dependabot
May 10, 2024
Merged

[ci] Add dependabot configuration#6449
jameslamb merged 2 commits intomasterfrom
dependabot

Conversation

@borchero
Copy link
Collaborator

@borchero borchero commented May 7, 2024

Motivation

Follow-up to #6438 (comment). This should automate updates in the future by opening <= 1 PR per month updating all relevant actions in bulk.

@borchero borchero self-assigned this May 7, 2024
@borchero borchero marked this pull request as ready for review May 7, 2024 21:34
Copy link
Collaborator

@jameslamb jameslamb left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Awesome 🎉

I read through https://docs.github.com/en/code-security/dependabot/dependabot-version-updates/configuration-options-for-the-dependabot.yml-file today (I've never actually configured this on a repo before) and agree with all the choices you made here.

And I was very happy to learn (from https://docs.github.com/en/code-security/dependabot/dependabot-version-updates/about-dependabot-version-updates) that you can enable this just by checking in a file, without having to grant any permission to a GitHub App in the repo settings.

Let's try it!

@github-actions
Copy link
Contributor

This pull request has been automatically locked since there has not been any recent activity since it was closed.
To start a new related discussion, open a new issue at https://github.com/microsoft/LightGBM/issues including a reference to this.

@github-actions github-actions bot locked as resolved and limited conversation to collaborators May 15, 2025
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants