2023-01-11 23:30:34 +01:00
|
|
|
# To get started with Dependabot version updates, you'll need to specify which
|
|
|
|
# package ecosystems to update and where the package manifests are located.
|
|
|
|
# Please see the documentation for all configuration options:
|
|
|
|
# https://docs.github.com/github/administering-a-repository/configuration-options-for-dependency-updates
|
|
|
|
|
|
|
|
# docs
|
|
|
|
# https://docs.github.com/en/code-security/dependabot/dependabot-version-updates/configuration-options-for-the-dependabot.yml-file
|
|
|
|
version: 2
|
|
|
|
updates:
|
|
|
|
- package-ecosystem: "cargo"
|
|
|
|
directory: "/"
|
|
|
|
schedule:
|
|
|
|
interval: "weekly"
|
2024-03-06 23:08:35 +01:00
|
|
|
# We release on Tuesdays and open dependabot PRs will rebase after the
|
|
|
|
# version bump and thus consume unnecessary workers during release, thus
|
|
|
|
# let's open new ones on Wednesday
|
|
|
|
day: "wednesday"
|
2023-01-11 23:30:34 +01:00
|
|
|
ignore:
|
|
|
|
- dependency-name: "*"
|
|
|
|
update-types: ["version-update:semver-patch"]
|
2024-06-07 01:33:21 +02:00
|
|
|
groups:
|
|
|
|
# Only update polars as a whole as there are many subcrates that need to
|
|
|
|
# be updated at once. We explicitly depend on some of them, so batch their
|
|
|
|
# updates to not take up dependabot PR slots with dysfunctional PRs
|
|
|
|
polars:
|
|
|
|
patterns:
|
|
|
|
- "polars"
|
|
|
|
- "polars-*"
|
2024-07-11 15:18:58 +02:00
|
|
|
# uutils/coreutils also versions all their workspace crates the same at the moment
|
|
|
|
# Most of them have bleeding edge version requirements (some not)
|
|
|
|
# see: https://github.com/uutils/coreutils/blob/main/Cargo.toml
|
|
|
|
uutils:
|
|
|
|
patterns:
|
|
|
|
- "uucore"
|
|
|
|
- "uu_*"
|
2023-01-11 23:30:34 +01:00
|
|
|
- package-ecosystem: "github-actions"
|
|
|
|
directory: "/"
|
|
|
|
schedule:
|
|
|
|
interval: "weekly"
|
2024-03-06 23:08:35 +01:00
|
|
|
day: "wednesday"
|