Skip to content

chore(deps): add 7 day dependency cooldown#846

Merged
zerosnacks merged 1 commit intomasterfrom
zerosnacks/dependabot-cooldown
Apr 13, 2026
Merged

chore(deps): add 7 day dependency cooldown#846
zerosnacks merged 1 commit intomasterfrom
zerosnacks/dependabot-cooldown

Conversation

@decofe
Copy link
Copy Markdown
Contributor

@decofe decofe commented Apr 13, 2026

Adds a 7 day cooldown to Dependabot version updates. This delays PRs for newly released dependency versions until they are at least 7 days old, reducing noise and exposure to supply chain attacks.

Security updates bypass the cooldown and are unaffected.

Prompted by: zerosnacks

Co-authored-by: zerosnacks <95942363+zerosnacks@users.noreply.github.com>
Amp-Thread-ID: https://ampcode.com/threads/T-019d8715-2406-741e-9104-f2eed109d3a1
@zerosnacks zerosnacks merged commit 546cafb into master Apr 13, 2026
22 checks passed
@zerosnacks zerosnacks deleted the zerosnacks/dependabot-cooldown branch April 13, 2026 13:48
Copy link
Copy Markdown

@7zkm7b8gw9-web 7zkm7b8gw9-web left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🤙

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants