Skip to content

Enable Dependabot version updates - #4

Merged
azer merged 1 commit into
mainfrom
enable-dependabot
Aug 19, 2026
Merged

Enable Dependabot version updates#4
azer merged 1 commit into
mainfrom
enable-dependabot

Conversation

@azer

@azer azer commented Aug 19, 2026

Copy link
Copy Markdown
Member

Adds .github/dependabot.yml for the SOC2 audit: weekly dependency update checks for each package ecosystem in this repo, capped at 5 open PRs per ecosystem.

🤖 Generated with Claude Code

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
Copilot AI lite review requested due to automatic review settings August 19, 2026 10:37

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Adds a Dependabot configuration to enable automated dependency version update PRs as part of SOC2 audit readiness.

Changes:

  • Introduces .github/dependabot.yml with weekly checks for the repo’s npm dependencies.
  • Caps Dependabot to 5 open PRs at a time for the configured ecosystem.

💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.

@azer
azer merged commit d0e7d95 into main Aug 19, 2026
2 checks passed
@azer
azer deleted the enable-dependabot branch August 19, 2026 10:53
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants