From 9e9808aa035d0b595d811eea47f5569b227cec6d Mon Sep 17 00:00:00 2001 From: William So Date: Wed, 11 Feb 2026 10:40:35 +0800 Subject: [PATCH 1/3] build(deps): configure dependabot --- .github/.dependabot | 32 ++++++++++++++++++++++++++++++++ 1 file changed, 32 insertions(+) create mode 100644 .github/.dependabot diff --git a/.github/.dependabot b/.github/.dependabot new file mode 100644 index 0000000..69e11f0 --- /dev/null +++ b/.github/.dependabot @@ -0,0 +1,32 @@ +# Dependabot configuration +# See https://docs.github.com/en/code-security/supply-chain-security/keeping-your-dependencies-updated-automatically/configuration-options-for-dependency-updates + +version: 2 +updates: + # GitHub Actions (workflow dependencies) + - package-ecosystem: "github-actions" + directory: "/" + schedule: + interval: "weekly" + commit-message: + prefix: "build" + prefix-development: "chore" + include: "scope" + groups: + github-actions: + patterns: + - "*" + + # NPM & pnpm (package.json, pnpm-lock.yaml, etc.) + - package-ecosystem: "npm" + directory: "/" + schedule: + interval: "weekly" + commit-message: + prefix: "build" + prefix-development: "chore" + include: "scope" + groups: + npm: + patterns: + - "*" From 56494ace85aa649c08c9a52842ab947f6f353877 Mon Sep 17 00:00:00 2001 From: William So Date: Wed, 11 Feb 2026 10:54:34 +0800 Subject: [PATCH 2/3] fix(deps): dependabot should check yarn instead of npm --- .github/.dependabot | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/.github/.dependabot b/.github/.dependabot index 69e11f0..89f0685 100644 --- a/.github/.dependabot +++ b/.github/.dependabot @@ -17,16 +17,16 @@ updates: patterns: - "*" - # NPM & pnpm (package.json, pnpm-lock.yaml, etc.) - - package-ecosystem: "npm" + # Yarn (package.json, yarn.lock, etc.) + - package-ecosystem: "yarn" directory: "/" schedule: - interval: "weekly" + interval: "monthly" commit-message: prefix: "build" prefix-development: "chore" include: "scope" groups: - npm: + yarn: patterns: - "*" From 9040a8632a6b536f5d59a3bba6ddc18183d91888 Mon Sep 17 00:00:00 2001 From: Flandia Date: Wed, 11 Feb 2026 02:14:30 -0500 Subject: [PATCH 3/3] Change Dependabot schedule from monthly to weekly --- .github/.dependabot | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/.dependabot b/.github/.dependabot index 89f0685..286e2c4 100644 --- a/.github/.dependabot +++ b/.github/.dependabot @@ -21,7 +21,7 @@ updates: - package-ecosystem: "yarn" directory: "/" schedule: - interval: "monthly" + interval: "weekly" commit-message: prefix: "build" prefix-development: "chore"