Dependabot retweetledi
Dependabot
957 posts

Dependabot
@dependabot
A friendly @GitHub-native robot that helps you keep your dependencies up to date
Katılım Mayıs 2017
39 Takip Edilen1.9K Takipçiler
Dependabot retweetledi

🎼🎼🎼 Maestro Dependabot proudly presents…Docker Compose support in GA!
github.blog/changelog/2025…
English
Dependabot retweetledi

🚀 @github Dependabot can now use the power of @GitHubCopilot to fix breaking changes introduced by Dependabot updates! To learn more and join the waitlist, check out the blog:
github.blog/changelog/2024…
#dependabot #copilot #autofix #appsec #ghas #security #GitHubUniverse
English
Dependabot retweetledi

🚀@github can now leverage @MSFTCopilot to auto-magically fix your code if there are any breaking changes introduced by a @dependabot update.
only supports #typescript for now but this will be huge
github.blog/changelog/2024…
#appsec #cybersecurity #githubuniverse2024
English

@rxgx dependabot-core is open source with an MIT license! github.blog/changelog/2024…
English

Is Dependabot open source after their acquisition? I've only been able to get renovate to work on GitLab.
Jarred Sumner@jarredsumner
Bun support is the #2 upvoted open issue in Dependabot’s repo github.com/dependabot/dep…
English

@dependabot I believe the above is only for Version Updates, and not security vulnerability patches? Correct?
English

Hi @dependabot !
I would like to receive alerts and PRs for dependency related vulnerabilities on a branch different from the default one in a repo. Is there any configuration that can help? Thanks !
English

@bcomnes Dependabot on standard GitHub-hosted runners (the default) does not count towards GitHub Actions minutes – meaning that using Dependabot continues to be free for everyone 😀
English
Dependabot retweetledi

Dependabot migration to GitHub Actions for Enterprise Cloud and Free, Pro, and Teams accounts with Actions enabled github.blog/changelog/2024…
English
Dependabot retweetledi

@forstmeier don’t hate the player hate the weekly openssh CVE game
English

@amoerie Just wait until you try this command:
"@dependabot i love you!"
English

It's such a nice little gesture when @dependabot gives a thumbs up after you give it a command, wonderful design

English

Are you passionate about multidirectory configuration in the dependabot.yml? What do you think should happen when directories overlap? Let us know in the poll! github.com/dependabot/dep…
English
Dependabot retweetledi

Five years ago today, we were at GitHub Satellite Berlin announcing that GitHub acquired @dependabot . In the time since, Dependabot has helped secure the software supply chain for millions of developers across the world by creating automatic fixes for vulnerable dependencies.

English
Dependabot retweetledi

I just found out you can group @dependabot updates 🤯
No more "25 open pull requests".
Just put these lines into your dependabot.yml:

English
Dependabot retweetledi

Really excited to have had the support of the rest of the Dependabot PM team to get this change over the line! It was a long time coming.
github.blog/changelog/2024…
English
Dependabot retweetledi

You can now run Dependabot as a GitHub Actions workflow! 🌟 Read more about the benefits this unlocks, including self-hosted runner support. github.blog/2024-05-02-dep…
English



