From 1a8f22b7f7b115efae2d0dbe944753d561a53801 Mon Sep 17 00:00:00 2001 From: Bruno Borges Date: Mon, 24 Aug 2026 12:32:37 -0400 Subject: [PATCH] chore: streamline Dependabot updates (#1255) Co-authored-by: Copilot App <223556219+Copilot@users.noreply.github.com> Copilot-Session: 916e0cf3-84f7-43fa-9822-3dac5cf8c5e6 --- .github/dependabot.yml | 29 ++++++++++++++++------------- 1 file changed, 16 insertions(+), 13 deletions(-) diff --git a/.github/dependabot.yml b/.github/dependabot.yml index 853bc0a1..f85e2387 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -1,22 +1,25 @@ -# To get started with Dependabot version updates, you'll need to specify which -# package ecosystems to update and where the package manifests are located. -# Please see the documentation for all configuration options: -# https://docs.github.com/code-security/dependabot/dependabot-version-updates/configuration-options-for-the-dependabot.yml-file - version: 2 updates: - # Enable version updates for npm - package-ecosystem: 'npm' - # Look for `package.json` and `lock` files in the `root` directory directory: '/' - # Check the npm registry for updates every day (weekdays) schedule: - interval: 'weekly' + interval: 'monthly' + cooldown: + default-days: 7 + groups: + monthly-npm-updates: + applies-to: 'version-updates' + patterns: + - '*' - # Enable version updates for GitHub Actions - package-ecosystem: 'github-actions' - # Workflow files stored in the default location of `.github/workflows` - # You don't need to specify `/.github/workflows` for `directory`. You can use `directory: "/"`. directory: '/' schedule: - interval: 'weekly' + interval: 'monthly' + cooldown: + default-days: 7 + groups: + monthly-actions-updates: + applies-to: 'version-updates' + patterns: + - '*'