Skip to content

[improve](sec): dependabot.yml(@RalphHightower/blog)#824

Merged
RalphHightower merged 1 commit intomainfrom
RalphHightower-patch-3
Jan 23, 2026
Merged

[improve](sec): dependabot.yml(@RalphHightower/blog)#824
RalphHightower merged 1 commit intomainfrom
RalphHightower-patch-3

Conversation

@RalphHightower
Copy link
Owner

Updated Dependabot configuration to version 3 and modified update schedules for GitHub Actions, Bundler, and npm.

Pull request type

🚨 Jekyll Precheck Verify blog(s), page(s) before merge 🚨

  • title
  • tags
  • categories
  • date

<!-
IS#9999 – Issue created independently of a Pull Request
PR#9999 – Issue created from a Pull Request
-->
Pull Request/Issue Number: N/A

Please check the type of change your PR introduces:

  • New blog post(s)
  • Bugfix(es)
  • Code change(s)
  • Jekyll change(s)
  • Liquid change(s)
  • Markdown change(s)
  • YAML change(s)
  • Build error(s)
  • Feature(s)
  • Code style update (formatting, renaming)
  • Refactoring (no functional changes, no api changes)
  • Build related change(s)
  • Documentation content change(s)
  • Other (please describe):

Language(s)

  • Assembler
  • awk
  • C/C++/C#
  • HTML
  • Javascript
  • Jekyll
  • Liquid
  • Markdown
  • Ruby
  • Python
  • YAML

Operating System(s)

  • Linux
  • Unix
  • Solaris
  • Windows

What is the current behavior?

What is the new behavior?

Files Added

  • .github/dependabot.yml

Files Modified

Files Deleted

Other information

Hardware

  • ARM
  • DEC PDP-8
  • DEC PDP-11
  • DEC VAX
  • DEC VAXStation
  • Intel 8080
  • Intel Core
  • Motorola 68000
  • Raspberry Pi
  • RISC/V
  • Sun SPARCStation

Updated Dependabot configuration to version 3 and modified update schedules for GitHub Actions, Bundler, and npm.

Signed-off-by: Ralph Hightower <32745442+RalphHightower@users.noreply.github.com>
@RalphHightower RalphHightower self-assigned this Jan 23, 2026
@RalphHightower RalphHightower added security Security/Vulnerability issue dependabot GitHub Dependabot labels Jan 23, 2026
@github-actions
Copy link
Contributor

Dependency Review

✅ No vulnerabilities or license issues or OpenSSF Scorecard issues found.

Scanned Files

None

@RalphHightower RalphHightower merged commit 8e05eab into main Jan 23, 2026
5 of 7 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependabot GitHub Dependabot security Security/Vulnerability issue

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant