dependabot.yml 4.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123
  1. version: 2
  2. registries:
  3. spring-milestones:
  4. type: maven-repository
  5. url: https://repo.spring.io/milestone
  6. updates:
  7. - package-ecosystem: "gradle"
  8. target-branch: "main"
  9. milestone: 326 # 6.3.x
  10. directory: "/"
  11. schedule:
  12. interval: "daily"
  13. time: "03:00"
  14. timezone: "Etc/UTC"
  15. labels: [ "type: dependency-upgrade" ]
  16. registries:
  17. - "spring-milestones"
  18. ignore:
  19. - dependency-name: "com.nimbusds:nimbus-jose-jwt" # nimbus-jose-jwt gets updated when oauth2-oidc-sdk is updated to ensure consistency
  20. - dependency-name: "org.python:jython" # jython updates break integration tests
  21. - dependency-name: "org.apache.directory.server:*" # ApacheDS version > 1.5.5 contains break changes
  22. - dependency-name: "org.junit:junit-bom"
  23. update-types: [ "version-update:semver-major" ]
  24. - dependency-name: "org.mockito:mockito-bom"
  25. update-types: [ "version-update:semver-major" ]
  26. - dependency-name: "*"
  27. update-types: [ "version-update:semver-major", "version-update:semver-minor" ]
  28. - package-ecosystem: "gradle"
  29. target-branch: "6.2.x"
  30. milestone: 319 # 6.2.x
  31. directory: "/"
  32. schedule:
  33. interval: "daily"
  34. time: "03:00"
  35. timezone: "Etc/UTC"
  36. labels: [ "type: dependency-upgrade" ]
  37. registries:
  38. - "spring-milestones"
  39. ignore:
  40. - dependency-name: "com.nimbusds:nimbus-jose-jwt" # nimbus-jose-jwt gets updated when oauth2-oidc-sdk is updated to ensure consistency
  41. - dependency-name: "org.python:jython" # jython updates break integration tests
  42. - dependency-name: "org.apache.directory.server:*" # ApacheDS version > 1.5.5 contains break changes
  43. - dependency-name: "org.apache.directory.shared:*" # ApacheDS version > 0.9.15 contains breaking changes
  44. - dependency-name: "org.junit:junit-bom"
  45. update-types: [ "version-update:semver-major" ]
  46. - dependency-name: "org.mockito:mockito-bom"
  47. update-types: [ "version-update:semver-major" ]
  48. - dependency-name: "*"
  49. update-types: [ "version-update:semver-major", "version-update:semver-minor" ]
  50. - package-ecosystem: "gradle"
  51. target-branch: "6.1.x"
  52. milestone: 318 # 6.1.x
  53. directory: "/"
  54. schedule:
  55. interval: "daily"
  56. time: "03:00"
  57. timezone: "Etc/UTC"
  58. labels: [ "type: dependency-upgrade" ]
  59. ignore:
  60. - dependency-name: "com.nimbusds:nimbus-jose-jwt" # nimbus-jose-jwt gets updated when oauth2-oidc-sdk is updated to ensure consistency
  61. - dependency-name: "org.python:jython" # jython updates break integration tests
  62. - dependency-name: "org.apache.directory.server:*" # ApacheDS version > 1.5.5 contains break changes
  63. - dependency-name: "org.junit:junit-bom"
  64. update-types: [ "version-update:semver-major" ]
  65. - dependency-name: "org.mockito:mockito-bom"
  66. update-types: [ "version-update:semver-major" ]
  67. - dependency-name: "*"
  68. update-types: [ "version-update:semver-major", "version-update:semver-minor" ]
  69. - package-ecosystem: "gradle"
  70. target-branch: "5.8.x"
  71. milestone: 246 # 5.8.x
  72. directory: "/"
  73. schedule:
  74. interval: "daily"
  75. time: "03:00"
  76. timezone: "Etc/UTC"
  77. labels: [ "type: dependency-upgrade" ]
  78. ignore:
  79. - dependency-name: "com.nimbusds:nimbus-jose-jwt" # nimbus-jose-jwt gets updated when oauth2-oidc-sdk is updated to ensure consistency
  80. - dependency-name: "org.python:jython" # jython updates break integration tests
  81. - dependency-name: "org.apache.directory.server:*" # ApacheDS version > 1.5.5 contains break changes
  82. - dependency-name: "io.mockk:mockk" # mockk updates break tests
  83. - dependency-name: "org.opensaml:*" # org.opensaml maintains two different versions, so it must be updated manually
  84. - dependency-name: "org.junit:junit-bom"
  85. update-types: [ "version-update:semver-major" ]
  86. - dependency-name: "org.mockito:mockito-bom"
  87. update-types: [ "version-update:semver-major" ]
  88. - dependency-name: "*"
  89. update-types: [ "version-update:semver-major", "version-update:semver-minor" ]
  90. # GitHub Actions
  91. - package-ecosystem: github-actions
  92. target-branch: "main"
  93. directory: "/"
  94. schedule:
  95. interval: weekly
  96. - package-ecosystem: github-actions
  97. target-branch: "6.2.x"
  98. directory: "/"
  99. schedule:
  100. interval: weekly
  101. - package-ecosystem: github-actions
  102. target-branch: "6.1.x"
  103. directory: "/"
  104. schedule:
  105. interval: weekly
  106. - package-ecosystem: github-actions
  107. target-branch: "5.8.x"
  108. directory: "/"
  109. schedule:
  110. interval: weekly
  111. - package-ecosystem: github-actions
  112. target-branch: "docs-build"
  113. directory: "/"
  114. schedule:
  115. interval: weekly