diff --git a/.github/dependabot-auto-merge.yml b/.github/dependabot-auto-merge.yml new file mode 100644 index 0000000..7f78348 --- /dev/null +++ b/.github/dependabot-auto-merge.yml @@ -0,0 +1,17 @@ +name: Dependabot Auto-Merge +on: pull_request + +permissions: + contents: write + pull-requests: write + +jobs: + auto-merge: + runs-on: ubuntu-latest + if: github.actor == 'dependabot[bot]' + steps: + - name: Enable auto-merge for Dependabot PR + run: gh pr merge --auto --merge "$PR_URL" + env: + PR_URL: ${{ github.event.pull_request.html_url }} + GH_TOKEN: ${{ secrets.GITHUB_TOKEN }} diff --git a/.github/dependabot.yml b/.github/dependabot.yml index 41a7550..20ae36a 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -1,21 +1,18 @@ -# To get started with Dependabot version updates, you'll need to specify which -# package ecosystems to update and where the package manifests are located. -# Please see the documentation for more information: -# https://docs.github.com/github/administering-a-repository/configuration-options-for-dependency-updates -# https://containers.dev/guide/dependabot - version: 2 updates: - - package-ecosystem: 'devcontainers' - directory: '/' + - package-ecosystem: "npm" + directory: "/" schedule: - interval: weekly - - - package-ecosystem: 'github-actions' - directory: '/' - schedule: - interval: weekly + interval: "daily" + open-pull-requests-limit: 10 groups: - github-actions: - patterns: - - '*' + production: + dependency-type: "production" + update-types: + - "minor" + - "patch" + development: + dependency-type: "development" + update-types: + - "minor" + - "patch"