-
Notifications
You must be signed in to change notification settings - Fork 4
Expand file tree
/
Copy pathdependabot.yml
More file actions
30 lines (28 loc) · 867 Bytes
/
Copy pathdependabot.yml
File metadata and controls
30 lines (28 loc) · 867 Bytes
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
# Dependabot keeps the three dependency surfaces current: the Rust crates
# (Cargo.lock), the Python lockfile (uv.lock) and the Actions the workflows pin.
# Minor and patch updates are grouped into one PR per ecosystem so a weekly
# refresh is one review rather than a dozen; majors stay separate because they
# tend to need a changelog entry (cel-rust majors change CEL behaviour).
version: 2
updates:
- package-ecosystem: cargo
directory: /
schedule:
interval: weekly
groups:
rust-minor-and-patch:
update-types: [minor, patch]
- package-ecosystem: uv
directory: /
schedule:
interval: weekly
groups:
python-minor-and-patch:
update-types: [minor, patch]
- package-ecosystem: github-actions
directory: /
schedule:
interval: weekly
groups:
actions:
patterns: ["*"]