Skip to content

[DEV-74] chore: add 30-day dependabot cooldown#161

Open
austinpray-mixpanel wants to merge 1 commit intomasterfrom
dependabot-cooldown
Open

[DEV-74] chore: add 30-day dependabot cooldown#161
austinpray-mixpanel wants to merge 1 commit intomasterfrom
dependabot-cooldown

Conversation

@austinpray-mixpanel
Copy link
Member

@austinpray-mixpanel austinpray-mixpanel commented Mar 24, 2026

Bootstraps dependabot with cooldown.default-days: 30 on all ecosystems. This delays PRs until a new dependency version has been stable for 30 days, reducing supply-chain risk from fast-moving malicious releases.

Linear: https://linear.app/mixpanel/issue/DEV-74/ensure-all-repos-have-dependabotyml-with-30-day-cooldown

@austinpray-mixpanel austinpray-mixpanel requested review from a team, JianingL, andyleap and gmasnica and removed request for a team March 24, 2026 15:16
@codecov
Copy link

codecov bot commented Mar 24, 2026

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 94.20%. Comparing base (ab2ab57) to head (9fd0a91).

Additional details and impacted files
@@           Coverage Diff           @@
##           master     #161   +/-   ##
=======================================
  Coverage   94.20%   94.20%           
=======================================
  Files           9        9           
  Lines        1554     1554           
  Branches      100      100           
=======================================
  Hits         1464     1464           
  Misses         56       56           
  Partials       34       34           

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

@austinpray-mixpanel austinpray-mixpanel changed the title chore: add 30-day dependabot cooldown [DEV-74] chore: add 30-day dependabot cooldown Mar 24, 2026
@linear
Copy link

linear bot commented Mar 24, 2026

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants