Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Security update on stabilisation branches #1962

Closed
sbrunner opened this issue Jun 15, 2020 · 4 comments
Closed

Security update on stabilisation branches #1962

sbrunner opened this issue Jun 15, 2020 · 4 comments
Labels
F: pull-requests Issues about Dependabot pull requests service 💁 Relates to Dependabot features GitHub provides T: feature-request Requests for new features

Comments

@sbrunner
Copy link

With the new GitHub Dependabot I didn't find any way to configure the branches on which one the security updates was applied.

For us, is a real need to be sure that our stabilization versions (not on the main (master) branch) doesn't contain security issue.

Thanks in advance.

@sbrunner
Copy link
Author

Is something planed about this or should I write my own tool to be sure that I didn't ave a security issue on my project dependencies?

@infin8x
Copy link
Contributor

infin8x commented Jun 22, 2020

This is something we may get to in the future but not for a while yet - if it's an urgent need writing your own tool may be the way to go.

@sbrunner
Copy link
Author

OK, thanks for your response.

@infin8x infin8x transferred this issue from dependabot/feedback Jun 29, 2020
@lseppala lseppala added F: pull-requests Issues about Dependabot pull requests T: feature-request Requests for new features service 💁 Relates to Dependabot features GitHub provides labels Dec 8, 2021
@jeffwidman
Copy link
Member

Closing as a duplicate of #2767

@jeffwidman jeffwidman closed this as not planned Won't fix, can't repro, duplicate, stale Nov 24, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
F: pull-requests Issues about Dependabot pull requests service 💁 Relates to Dependabot features GitHub provides T: feature-request Requests for new features
Projects
None yet
Development

No branches or pull requests

4 participants