Skip to content

feat: Set up Dependabot & SECURITY.md#12

Closed
zp6 wants to merge 3 commits into
mainfrom
config/dependabot
Closed

feat: Set up Dependabot & SECURITY.md#12
zp6 wants to merge 3 commits into
mainfrom
config/dependabot

Conversation

@zp6

@zp6 zp6 commented May 14, 2026

Copy link
Copy Markdown
Owner

Summary

  • Add .github/dependabot.yml configuring automated dependency updates for npm, pip, and github-actions
  • Weekly schedule (Monday), auto-create PRs with proper labels
  • Add SECURITY.md with vulnerability reporting policy

Closes Scottcjn#1613

Changes

  • .github/dependabot.yml - Dependabot configuration for 3 ecosystems
  • SECURITY.md - Security policy and reporting guidelines

zp6 added 2 commits May 15, 2026 02:23
- Configure Dependabot for npm, pip, and github-actions ecosystems
- Weekly update schedule (Monday)
- Auto-create PRs with proper labels
- Add SECURITY.md with vulnerability reporting policy

Closes Scottcjn#1613
- dependabot.yml: weekly npm, pip, github-actions updates
- SECURITY.md: vulnerability reporting policy
@zp6 zp6 closed this Jun 6, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[BOUNTY: 3 RTC] Set up Dependabot or Renovate for any Elyan Labs repo

1 participant