From 97104926194b010701c2fc9bc3d4457f23bf9565 Mon Sep 17 00:00:00 2001 From: Rob Winch <362503+rwinch@users.noreply.github.com> Date: Mon, 5 May 2025 13:34:16 -0500 Subject: [PATCH] remove update-dependabot action --- .github/dependabot.template.yml | 41 ------------------------- .github/workflows/update-dependabot.yml | 36 ---------------------- 2 files changed, 77 deletions(-) delete mode 100644 .github/dependabot.template.yml delete mode 100644 .github/workflows/update-dependabot.yml diff --git a/.github/dependabot.template.yml b/.github/dependabot.template.yml deleted file mode 100644 index 20976085e8..0000000000 --- a/.github/dependabot.template.yml +++ /dev/null @@ -1,41 +0,0 @@ -version: 2 - -registries: - spring-milestones: - type: maven-repository - url: https://repo.spring.io/milestone - -updates: - - - package-ecosystem: "gradle" - target-branch: "main" - directory: "/" - schedule: - interval: "daily" - time: "03:00" - timezone: "Etc/UTC" - labels: [ "type: dependency-upgrade" ] - registries: - - "spring-milestones" - ignore: - - dependency-name: "com.nimbusds:nimbus-jose-jwt" # nimbus-jose-jwt gets updated when oauth2-oidc-sdk is updated to ensure consistency - - dependency-name: "org.python:jython" # jython updates break integration tests - - dependency-name: "org.apache.directory.server:*" # ApacheDS version > 1.5.5 contains break changes - - dependency-name: "org.junit:junit-bom" - update-types: [ "version-update:semver-major" ] - - dependency-name: "org.mockito:mockito-bom" - update-types: [ "version-update:semver-major" ] - - dependency-name: "*" - update-types: [ "version-update:semver-major", "version-update:semver-minor" ] - - # GitHub Actions - - - package-ecosystem: github-actions - target-branch: "main" - directory: "/" - schedule: - interval: weekly - ignore: - - dependency-name: "sjohnr/*" - - dependency-name: "spring-io/*" - - dependency-name: "spring-security-release-tools/*" diff --git a/.github/workflows/update-dependabot.yml b/.github/workflows/update-dependabot.yml deleted file mode 100644 index 7b10563ec5..0000000000 --- a/.github/workflows/update-dependabot.yml +++ /dev/null @@ -1,36 +0,0 @@ -name: Update dependabot.yml - -on: - workflow_dispatch: - -permissions: - contents: read - -jobs: - - get-supported-branches: - uses: spring-io/spring-security-release-tools/.github/workflows/retrieve-spring-supported-versions.yml@actions-v1 - with: - project: spring-security - type: oss - repository_name: spring-projects/spring-security - - main: - runs-on: ubuntu-latest - needs: [get-supported-branches] - if: ${{ (github.repository == 'spring-projects/spring-security') && (github.ref == 'refs/heads/main') }} - permissions: - contents: write - steps: - - uses: actions/checkout@v4 - with: - fetch-depth: 1 - - uses: spring-io/spring-security-release-tools/.github/actions/generate-dependabot-yml@actions-v1 - name: Update dependabot.yml - with: - gradle-branches: ${{ needs.get-supported-branches.outputs.supported_versions }},main - github-actions-branches: ${{ needs.get-supported-branches.outputs.supported_versions }},main,docs-build - gh-token: ${{ secrets.GITHUB_TOKEN }} - - uses: stefanzweifel/git-auto-commit-action@v5 - with: - commit_message: Update dependabot.yml