Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Setup GitHub native dependabot for security checks for package dependancies #1017

Closed
NoopDog opened this issue Jul 11, 2021 · 1 comment
Closed
Assignees
Labels
canary Done by the Clever Canary

Comments

@NoopDog
Copy link
Collaborator

NoopDog commented Jul 11, 2021

No description provided.

@NoopDog NoopDog self-assigned this Jul 11, 2021
@github-actions github-actions bot added canary Done by the Clever Canary labels Jul 11, 2021
NoopDog pushed a commit that referenced this issue Sep 2, 2021
NoopDog pushed a commit that referenced this issue Sep 2, 2021
@NoopDog NoopDog closed this as completed Sep 9, 2021
@NoopDog
Copy link
Collaborator Author

NoopDog commented Sep 9, 2021

This is now set up. Dependabot is not yet security scanning as the package-lock.json is over the .5Mb limit. We will track trying to shrink the package-lockjson in other tickets.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
canary Done by the Clever Canary
Projects
None yet
Development

No branches or pull requests

1 participant