? Pending

User tests: Successful: Unsuccessful:

avatar naveensrinivasan
naveensrinivasan
28 Jun 2022

This should help with keeping the GitHub actions updated on new releases. This will also help with keeping it secure.

Dependabot helps in keeping the supply chain secure https://docs.github.com/en/code-security/dependabot

GitHub actions up to date https://docs.github.com/en/code-security/dependabot/working-with-dependabot/keeping-your-actions-up-to-date-with-dependabot

https://github.com/ossf/scorecard/blob/main/docs/checks.md#dependency-update-tool
Signed-off-by: naveen 172697+naveensrinivasan@users.noreply.github.com

avatar naveensrinivasan naveensrinivasan - open - 28 Jun 2022
avatar naveensrinivasan naveensrinivasan - change - 28 Jun 2022
Status New Pending
avatar joomla-cms-bot joomla-cms-bot - change - 28 Jun 2022
Category Repository
avatar richard67 richard67 - change - 28 Jun 2022
Status Pending Closed
Closed_Date 0000-00-00 00:00:00 2022-06-28 07:00:12
Closed_By richard67
Labels Added: ?
avatar richard67
richard67 - comment - 28 Jun 2022

Closing as we do not use dependabot in the repository and don't plan to do so. We are currently discussing to use a similar tool in future, but not dependabot.

avatar richard67 richard67 - close - 28 Jun 2022

Add a Comment

Login with GitHub to post a comment