-
Notifications
You must be signed in to change notification settings - Fork 1.4k
.dependabot/config.yml and forks #2198
Copy link
Copy link
Closed as not planned
Labels
F: version-updates ⬆️Issues specific to version updatesIssues specific to version updatesT: bug 🐞Something isn't workingSomething isn't working
Description
.dependabot/config.yml is a great feature, thanks!
That said, I faced an unwanted behavior.
Considering two accounts with Dependabot enabled, if an account forks a repo of the other one containing a .dependabot/config.yml file and with outdated dependencies, Dependabot will be auto-activated and will open pull requests on the forked repo.
As a real example, I forked dependabot-core and got four PR in the minute.
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
F: version-updates ⬆️Issues specific to version updatesIssues specific to version updatesT: bug 🐞Something isn't workingSomething isn't working