| FazBrowse GitHub Viewer | Trending | | Home |
| Tools: [Download Repo ZIP] [Original HTTPS Page] |
This enables Dependabot version updates for GitHub Actions only (not Python dependencies), using the exact same configuration as in GitPython.
|
Thank you, Depandabot sounds like it could be helpful. I may mention that gitdb and smmap are only useful for the pure-python ODB backend and I'd hope nobody is using it. Yet we have to maintain these packages. So if there would be a breaking change I'd love to do then it's to remove gitdb as dependency from GitPython. Doing so would mean faster installations and reduced complexity, a big win. |
Sorry, something went wrong.
This updates smmap's CI configuration in ways that are in line with recent updates to gitdb's. In most cases there is no difference in the changes, and the reason for the updates is more to avoid confusing differences than from the value of the changes themselves. In one case, there is a major difference (fetch-depth). - gitpython-developers/gitdb#89 (same) - gitpython-developers/gitdb#90 (same) It's just the project, not dependencies, but otherwise the same. - gitpython-developers/gitdb#92 (opposite) This is the major difference. We don't need more than the tip of the branch in these tests. Keeping the default fetch-depth of 1 by not setting it explicitly avoids giving the impression that the tests here are doing something they are not (and also serves as a speed optimization). - gitpython-developers/gitdb#93 (same)
| Back | FazBrowse Home | New Git URL |
This enables Dependabot version updates for GitHub Actions only (not Python dependencies), using the exact same configuration as in GitPython.
Since this repository is less active than the GitPython repository, I considered changing the dependabot.yml file to check for updates monthly rather than weekly. But I did not do so, because the GitHub Actions used in this repository's workflow are requested using major versions, and automatically use the latest minor (and, where applicable, patch) version in that major version automatically. As a result, Dependabot only needs to offer updates when a new major version comes out, which is a fairly infrequent event. So it is unlikely that this would ever generate an excessive number of automated pull requests.
Because actions versions were recently updated as part of #88 (in 32d12aa), if this pull request is merged then it should not be expected to cause Dependabot to generate any pull requests in the immediate future.