Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Consider using Dependabot #26118

Closed
Darkspirit opened this issue Apr 6, 2020 · 4 comments
Closed

Consider using Dependabot #26118

Darkspirit opened this issue Apr 6, 2020 · 4 comments

Comments

@Darkspirit
Copy link
Sponsor Contributor

...at least for OpenSSL:
Example: hickory-dns/hickory-dns#1010

@atouchet
Copy link
Contributor

Looking at #26246 etc. is this being done?

@jdm
Copy link
Member

jdm commented Apr 21, 2020

Yep, I figure we can give it a try and see how well it works for our purposes.

@atouchet
Copy link
Contributor

I've noticed that Dependabot appears to skip some crates. For example openssl as discussed in the original post is outdated in Servo yet Dependabot isn't opening a PR to update it. Why is that?

@jdm
Copy link
Member

jdm commented May 15, 2020

I enabled the option that only updates top-level URLs for the time being. I'm thinking of turning it off.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

3 participants