Skip to content

chore: remove Dependabot version updates (maintenance mode)#868

Merged
AntonioVentilii merged 2 commits into
mainfrom
av/remove-dependabot
Jun 22, 2026
Merged

chore: remove Dependabot version updates (maintenance mode)#868
AntonioVentilii merged 2 commits into
mainfrom
av/remove-dependabot

Conversation

@AntonioVentilii

Copy link
Copy Markdown
Collaborator

Motivation

GIX Components is moving to maintenance mode, so we no longer want the routine weekly dependency-bump churn. Dependabot version updates are the source of most recent PRs; removing the config stops them.

Note: this only disables version updates. Dependabot security updates are a separate repo-settings toggle, not this file — they remain active, which is the desired maintenance posture (no routine noise, still get security patches).

Changes

  • Delete .github/dependabot.yml (removes the github-actions and npm weekly version-update configs).

Screenshots

N/A — CI config only.

@AntonioVentilii AntonioVentilii requested review from a team as code owners June 22, 2026 12:36
@zeropath-ai

zeropath-ai Bot commented Jun 22, 2026

Copy link
Copy Markdown

No security or compliance issues detected. Reviewed everything up to 1ece17f.

Security Overview
Detected Code Changes
Change Type Relevant files
Other ► .github/dependabot.yml
    Remove dependabot configuration

@AntonioVentilii AntonioVentilii enabled auto-merge (squash) June 22, 2026 12:36
@AntonioVentilii AntonioVentilii merged commit e48effb into main Jun 22, 2026
12 checks passed
@AntonioVentilii AntonioVentilii deleted the av/remove-dependabot branch June 22, 2026 13:19
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants