diff --git a/.github/dependabot.yml b/.github/dependabot.yml index 7239c0b1..e7a53e80 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -3,11 +3,33 @@ updates: - package-ecosystem: maven directory: "/" schedule: - interval: daily + interval: weekly target-branch: main + ignore: + # Ignore minor version updates for dependencies with group ID "com.google.errorprone" + - dependency-name: "com.google.errorprone:*" + update-types: [ "version-update:semver-minor" ] + groups: + security: + # Group security updates into a single pull request + applies-to: security-updates + patterns: + - "*" + production-dependencies: + # Group version updates for "production" dependencies into a single pull request + applies-to: version-updates + dependency-type: production + patterns: + - "*" + development-dependencies: + # Group version updates for "development" dependencies into a single pull request + applies-to: version-updates + dependency-type: development + patterns: + - "*" - package-ecosystem: "github-actions" directory: "/" schedule: - interval: "daily" + interval: "weekly" target-branch: main \ No newline at end of file diff --git a/pom.xml b/pom.xml index 66a08231..bfe8ac81 100644 --- a/pom.xml +++ b/pom.xml @@ -81,7 +81,7 @@ 1.7.0 - 2.36.0 + 2.31.0 0.8.12 3.5.2