This is an automated email from the ASF dual-hosted git repository.
paulk pushed a commit to branch master
in repository https://gitbox.apache.org/repos/asf/groovy.git
The following commit(s) were added to refs/heads/master by this push:
new a990e95d04 chore: Included githubactions in the dependabot config
a990e95d04 is described below
commit a990e95d043899444cc5630a80678c9711d6e63e
Author: naveen <[email protected]>
AuthorDate: Fri Jul 1 01:34:13 2022 +0000
chore: Included githubactions in the dependabot config
This should help with keeping the GitHub actions updated on new releases.
This will also help with keeping it secure.
Dependabot helps in keeping the supply chain secure
https://docs.github.com/en/code-security/dependabot
GitHub actions up to date
https://docs.github.com/en/code-security/dependabot/working-with-dependabot/keeping-your-actions-up-to-date-with-dependabot
https://github.com/ossf/scorecard/blob/main/docs/checks.md#dependency-update-tool
Signed-off-by: naveen <[email protected]>
---
.github/dependabot.yml | 6 ++++++
1 file changed, 6 insertions(+)
diff --git a/.github/dependabot.yml b/.github/dependabot.yml
new file mode 100644
index 0000000000..5ace4600a1
--- /dev/null
+++ b/.github/dependabot.yml
@@ -0,0 +1,6 @@
+version: 2
+updates:
+ - package-ecosystem: "github-actions"
+ directory: "/"
+ schedule:
+ interval: "weekly"