Skip to content

[TASK] Let dependabot wait for 3 weeks for NPM updates#1953

Merged
oliverklee merged 2 commits intomainfrom
1918-dependabot
Feb 2, 2026
Merged

[TASK] Let dependabot wait for 3 weeks for NPM updates#1953
oliverklee merged 2 commits intomainfrom
1918-dependabot

Conversation

@d-s-codappix
Copy link
Contributor

@d-s-codappix d-s-codappix commented Feb 2, 2026

To allow the ecosystem to detect malicious or broken releases.

Resolves: #1918

To allow the ecosystem to detect malicious or broken releases.

Relates: #1918
@coveralls
Copy link

coveralls commented Feb 2, 2026

Pull Request Test Coverage Report for Build 21594393418

Details

  • 0 of 0 changed or added relevant lines in 0 files are covered.
  • No unchanged relevant lines lost coverage.
  • Overall coverage remained the same at 100.0%

Totals Coverage Status
Change from base Build 21594369197: 0.0%
Covered Lines: 111
Relevant Lines: 111

💛 - Coveralls

@d-s-codappix
Copy link
Contributor Author

I'm not 100% sure if I properly configured dependabot. I've never used dependabot.

@d-s-codappix d-s-codappix moved this from In Progress to In review in Best Practices Remote Day Feb 2, 2026
@oliverklee oliverklee enabled auto-merge (squash) February 2, 2026 14:41
@oliverklee oliverklee merged commit 52d7edc into main Feb 2, 2026
32 checks passed
@oliverklee oliverklee deleted the 1918-dependabot branch February 2, 2026 14:41
@github-project-automation github-project-automation bot moved this from In review to Done in Best Practices Remote Day Feb 2, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

Archived in project

Development

Successfully merging this pull request may close these issues.

Harden NPM install and updates

3 participants