Skip to content

Add Dependabot config to ignore fixture manifests#5

Merged
stacknil merged 1 commit intomainfrom
codex/add-dependabot-config-for-fixtures
Apr 15, 2026
Merged

Add Dependabot config to ignore fixture manifests#5
stacknil merged 1 commit intomainfrom
codex/add-dependabot-config-for-fixtures

Conversation

@stacknil
Copy link
Copy Markdown
Owner

Summary

  • add a repository Dependabot config
  • keep pip updates focused on the real sbom-diff-and-risk package directory
  • exclude deterministic examples and test fixtures from Dependabot scanning to avoid fixture-only PR noise

Verification

  • parse .github/dependabot.yml with PyYAML

@stacknil stacknil merged commit c4f6e24 into main Apr 15, 2026
3 checks passed
@stacknil stacknil deleted the codex/add-dependabot-config-for-fixtures branch April 15, 2026 15:06
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant