Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Dependabot is not compatible with rules_python's pip-compile test #30286

Closed
phlax opened this issue Oct 18, 2023 · 3 comments
Closed

Dependabot is not compatible with rules_python's pip-compile test #30286

phlax opened this issue Oct 18, 2023 · 3 comments
Assignees
Labels
area/dependency bug stale stalebot believes this issue/PR has not been touched recently

Comments

@phlax
Copy link
Member

phlax commented Oct 18, 2023

We added a requirements testing but this expects the bazel tool to have been used or at least the requirements paths to be repo-relative

dependabot adds paths that are directory-relative and so this breaks the testing

@phlax
Copy link
Member Author

phlax commented Oct 19, 2023

i looked at a couple of possible solutions on the dependabot side

custom pip-compile command doesnt seem possible (dependabot/dependabot-core#1475)

running a post-dependabot-push to cleanup dependabots output seems possible

(archived but relevant https://github.com/dependabot/dependabot-actions-workflow)

Copy link

This issue has been automatically marked as stale because it has not had activity in the last 30 days. It will be closed in the next 7 days unless it is tagged "help wanted" or "no stalebot" or other activity occurs. Thank you for your contributions.

@github-actions github-actions bot added the stale stalebot believes this issue/PR has not been touched recently label Nov 18, 2023
Copy link

This issue has been automatically closed because it has not had activity in the last 37 days. If this issue is still valid, please ping a maintainer and ask them to label it as "help wanted" or "no stalebot". Thank you for your contributions.

@github-actions github-actions bot closed this as not planned Won't fix, can't repro, duplicate, stale Nov 25, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
area/dependency bug stale stalebot believes this issue/PR has not been touched recently
Projects
None yet
Development

No branches or pull requests

1 participant