diff --git a/.dependabot/config.yml b/.dependabot/config.yml deleted file mode 100644 index 03e2577b106..00000000000 --- a/.dependabot/config.yml +++ /dev/null @@ -1,12 +0,0 @@ -version: 1 -update_configs: - - package_manager: 'javascript' - directory: '/' - update_schedule: 'live' - allowed_updates: - - match: - update_type: 'security' - - match: - dependency_name: '@spinnaker/kayenta' - - match: - dependency_name: '@spinnaker/styleguide' diff --git a/.github/dependabot.yml b/.github/dependabot.yml new file mode 100644 index 00000000000..1da57b85a3f --- /dev/null +++ b/.github/dependabot.yml @@ -0,0 +1,34 @@ +version: 2 +updates: +- package-ecosystem: npm + directory: "/" + schedule: + interval: daily + time: "20:00" + timezone: America/Los_Angeles + open-pull-requests-limit: 10 + allow: + - dependency-name: "@spinnaker/kayenta" + - dependency-name: "@spinnaker/styleguide" + ignore: + - dependency-name: "@spinnaker/kayenta" + versions: + - 0.0.108 + - 0.0.109 + - 1.0.0 + - 1.0.1 + - 1.0.2 + - 1.0.3 + - 1.0.4 + - dependency-name: urijs + versions: + - 1.19.5 + - dependency-name: lodash + versions: + - 4.17.20 + - dependency-name: elliptic + versions: + - 6.5.3 + - dependency-name: handlebars + versions: + - 4.7.6