Skip to content

Conversation

@jeroenvervaeke
Copy link

Description

This PR adds a ⁠.github/dependabot.yml configuration file to automate dependency updates for the ⁠npm ecosystem.

Rationale

Automating dependency updates ensures the library remains secure and up to date with the latest patches and features, reducing technical debt and security risks over time.

Please let me know if you would like me to make any changes to the PR, happy to help!

Configured Dependabot for npm updates with specific settings.
@novemberborn
Copy link
Member

No thanks, I update dependencies before releases. We test changes with the latest allowed versions and our lockfile.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants