From f5fcc745d5c0c8f303ae2b306f3ec37adfc10c94 Mon Sep 17 00:00:00 2001 From: Gabe <41127686+Zidious@users.noreply.github.com> Date: Wed, 11 Oct 2023 16:45:37 +0100 Subject: [PATCH 1/2] ci: exclude selenium update in dependabot --- .dependabot/config.yml | 18 ------------------ .github/dependabot.yml | 3 +++ 2 files changed, 3 insertions(+), 18 deletions(-) delete mode 100644 .dependabot/config.yml diff --git a/.dependabot/config.yml b/.dependabot/config.yml deleted file mode 100644 index cd2a72fa..00000000 --- a/.dependabot/config.yml +++ /dev/null @@ -1,18 +0,0 @@ -version: 1 -update_configs: - - package_manager: "javascript" - directory: "/" - update_schedule: "weekly" - default_labels: - - "axe_api_deps_bot" - allowed_updates: - - match: - update_type: "security" - - package_manager: "java:maven" - directory: "/" - update_schedule: "weekly" - default_labels: - - "axe_api_deps_bot" - allowed_updates: - - match: - update_type: "security" \ No newline at end of file diff --git a/.github/dependabot.yml b/.github/dependabot.yml index b8c73408..212d98de 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -39,6 +39,9 @@ updates: open-pull-requests-limit: 10 commit-message: prefix: "chore" + ignore: + # TODO: https://github.com/dequelabs/axe-core-maven-html/issues/378 + - dependency-name: "org.seleniumhq.selenium:selenium-java" groups: # Any updates not caught by the group config will get individual PRs maven-low-risk: From 535ac426ce86c49b80514e94c1b2840bd526f434 Mon Sep 17 00:00:00 2001 From: Gabe <41127686+Zidious@users.noreply.github.com> Date: Wed, 11 Oct 2023 16:48:48 +0100 Subject: [PATCH 2/2] do not completely ignore, but ignore greater than 4.14.0 verisons --- .github/dependabot.yml | 1 + 1 file changed, 1 insertion(+) diff --git a/.github/dependabot.yml b/.github/dependabot.yml index 212d98de..c9b6a5a0 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -42,6 +42,7 @@ updates: ignore: # TODO: https://github.com/dequelabs/axe-core-maven-html/issues/378 - dependency-name: "org.seleniumhq.selenium:selenium-java" + versions: [">=4.14.0"] groups: # Any updates not caught by the group config will get individual PRs maven-low-risk: