Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Move and update TRG dependabot #727

Open
wants to merge 6 commits into
base: main
Choose a base branch
from

Conversation

scherersebastian
Copy link
Member

Description

I've updated the Dependabot TRG and moved it to the Security TRGs. Since Dependabot is primarily a security tool, it fits better there for clarity (as discussed).

Pre-review checks

Please ensure to do as many of the following checks as possible, before asking for committer review:

@stephanbcbauer
Copy link
Member

@eclipse-tractusx/automotive-tractusx-committers i am not sure about this PR. Is this still valid?

@ClosedSourcerer
Copy link
Contributor

ClosedSourcerer commented Dec 12, 2024

@eclipse-tractusx/automotive-tractusx-committers i am not sure about this PR. Is this still valid?
It certainly cannot be merged as is, because TRG 8.02 currently already exists and deals with KICS and not dependabot..
Dependabot is currently handled in TRG 8.05.

When comparing the current TRG 8.05 to the changes proposed in this PR i personally come to the conclusion that the PR is not required anymore. Contentwise everything the PR seems to propose is already present in TRG 8.05.

I suggest deleting / canceling this PR and maybe the associated feature-branch.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants