Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Dependabot PRs - time box 9PM -9AM EST #16626

Open
wants to merge 12 commits into
base: main
Choose a base branch
from

Conversation

bethbeza
Copy link
Collaborator

@bethbeza bethbeza commented Nov 22, 2024

Two workflows were added to manage Dependabot's schedule:

  • - Disable Dependabot at 9 AM EST to pause updates during work hours.
  • - Enable Dependabot at 9 PM EST to resume updates outside work hours.
  • - Ensure Dependabot can create, approve and merge its own PRs

@bethbeza bethbeza requested a review from a team as a code owner November 22, 2024 01:10
@bethbeza bethbeza changed the title Devsecops/bethbeza/manage dependabot schedule Dependable Schedule Nov 22, 2024
@bethbeza bethbeza changed the title Dependable Schedule Dependabot PRs - time box 9PM -9AM EST Nov 22, 2024
@bethbeza bethbeza requested a review from devopsmatt November 22, 2024 14:54
ting signed commit" Outdated Show resolved Hide resolved
test-signed.txt Outdated Show resolved Hide resolved
@bethbeza bethbeza force-pushed the devsecops/bethbeza/manage-dependabot-schedule branch from 9a0bb1d to 9c0263d Compare December 6, 2024 01:50
@bethbeza bethbeza self-assigned this Dec 12, 2024
@bethbeza bethbeza added reportstream DevSecOps Team Aq DevSecOps work label labels Dec 12, 2024
@bethbeza bethbeza added this to the in progress milestone Dec 12, 2024
@bethbeza bethbeza force-pushed the devsecops/bethbeza/manage-dependabot-schedule branch from 388e3b3 to e64c826 Compare December 14, 2024 17:32
@bethbeza
Copy link
Collaborator Author

fixing unsigned commits with team mate.

Copy link
Collaborator

@scott-aquia scott-aquia left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I have reviewed these changes from a security perspective

@devopsmatt devopsmatt added the Spillover-Scope Creep Unplanned changes of the task’s scope during the sprint, which require additional work label Dec 17, 2024
@devopsmatt devopsmatt added Spillover-Technical Constraints Unanticipated technical issues, bugs, or system problems that require additional time to resolve and removed Spillover-Scope Creep Unplanned changes of the task’s scope during the sprint, which require additional work labels Dec 17, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
DevSecOps Team Aq DevSecOps work label reportstream Spillover-Technical Constraints Unanticipated technical issues, bugs, or system problems that require additional time to resolve
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants