[wp-trac] [WordPress Trac] #54503: Configure Dependabot alerts for when GitHub Actions updates are available

WordPress Trac noreply at wordpress.org
Thu Sep 1 14:21:16 UTC 2022


#54503: Configure Dependabot alerts for when GitHub Actions updates are available
------------------------------+----------------------
 Reporter:  desrosj           |       Owner:  desrosj
     Type:  feature request   |      Status:  closed
 Priority:  normal            |   Milestone:  5.9
Component:  Build/Test Tools  |     Version:
 Severity:  normal            |  Resolution:  fixed
 Keywords:  has-patch         |     Focuses:
------------------------------+----------------------

Comment (by desrosj):

 Thanks for pointing this out!

 I was also surprised to see this happening on my fork. One of the reasons
 I made this change was that the documentation states that "if you want to
 enable version updates on forks, there's an extra step"
 ([https://docs.github.com/en/code-security/dependabot/dependabot-version-
 updates/configuring-dependabot-version-updates#enabling-version-updates-
 on-forks source]).

 It's definitely annoying, but I wonder how many forks of `wordpress-
 develop` out of the 1,400 currently are "old" and subject to this.
 Personally, I would prefer to stick with the native GH Dependabot if
 possible. If more people start raising this concern, we can open a new
 ticket to discuss switching. For now, I'll see about reaching out to
 GitHub DevRel folks and starting a discussion around this one.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/54503#comment:4>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list