Skip to content

[DEV-74] chore: add 30-day dependabot cooldown#257

Merged
austinpray-mixpanel merged 1 commit intomasterfrom
dependabot-cooldown
May 7, 2026
Merged

[DEV-74] chore: add 30-day dependabot cooldown#257
austinpray-mixpanel merged 1 commit intomasterfrom
dependabot-cooldown

Conversation

@austinpray-mixpanel
Copy link
Copy Markdown
Member

@austinpray-mixpanel austinpray-mixpanel commented Mar 24, 2026

Bootstraps dependabot with cooldown.default-days: 30 on all ecosystems. This delays PRs until a new dependency version has been stable for 30 days, reducing supply-chain risk from fast-moving malicious releases.

Linear: https://linear.app/mixpanel/issue/DEV-74/ensure-all-repos-have-dependabotyml-with-30-day-cooldown

@austinpray-mixpanel austinpray-mixpanel requested review from a team, jaredmixpanel, nescohen and scotmatson and removed request for a team March 24, 2026 15:16
@austinpray-mixpanel austinpray-mixpanel changed the title chore: add 30-day dependabot cooldown [DEV-74] chore: add 30-day dependabot cooldown Mar 24, 2026
@linear
Copy link
Copy Markdown

linear Bot commented Mar 24, 2026

@gmasnica gmasnica removed the request for review from scotmatson March 24, 2026 23:20
@jaredmixpanel jaredmixpanel removed their request for review May 4, 2026 22:53
@jinhyoo-mp jinhyoo-mp requested a review from jaredmixpanel May 6, 2026 17:52
@jaredmixpanel jaredmixpanel requested review from tdumitrescu and removed request for jaredmixpanel May 6, 2026 17:52
@austinpray-mixpanel austinpray-mixpanel merged commit 284b665 into master May 7, 2026
6 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants