Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
9 changes: 6 additions & 3 deletions .github/workflows/dependabot-rebase.yml
Original file line number Diff line number Diff line change
Expand Up @@ -11,8 +11,9 @@
# • You MUST NOT change: the concurrency group name, the explicit secrets
# block, or the job-level `permissions:` block — reusable workflows can be
# granted no more permissions than the calling job has, so removing the
# stanza breaks the reusable's gh API calls. Do not remove either trigger
# (`push` keeps the self-sustaining chain; `workflow_dispatch` allows
# stanza breaks the reusable's gh API calls. Do not remove any trigger
# (`push` keeps the self-sustaining chain; `schedule` is the safety net
# when no PR merges have occurred recently; `workflow_dispatch` allows
# manual queue flushes).
# • If you need different behaviour, open a PR against the reusable in the
# central repo.
Expand All @@ -21,14 +22,16 @@
# Dependabot update-and-merge — thin caller for the org-level reusable.
# To adopt: copy this file to .github/workflows/dependabot-rebase.yml in your repo.
# Required org secrets (passed explicitly):
# APP_ID — GitHub App ID with pull-requests:write
# APP_ID — GitHub App ID with contents:write and pull-requests:write
# APP_PRIVATE_KEY — GitHub App private key
name: Dependabot update and merge

on:
push:
branches:
- main
schedule:
- cron: '0 */4 * * *' # every 4 hours — safety net when no pushes to main trigger the chain
workflow_dispatch: # allow manual trigger to flush Dependabot PR queue
Comment on lines +33 to 35

concurrency:
Expand Down
1 change: 1 addition & 0 deletions .gitignore
Original file line number Diff line number Diff line change
Expand Up @@ -4,3 +4,4 @@ test-results/
playwright-report/
.env
.dev-lead/
.dev-lead/
Loading