dependabot.yml 4.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127
  1. version: 2
  2. registries:
  3. spring-milestones:
  4. type: maven-repository
  5. url: https://repo.spring.io/milestone
  6. updates:
  7. - package-ecosystem: "gradle"
  8. target-branch: "main"
  9. milestone: 326 # 6.3.x
  10. directory: "/"
  11. schedule:
  12. interval: "daily"
  13. time: "03:00"
  14. timezone: "Etc/UTC"
  15. labels: [ "type: dependency-upgrade" ]
  16. registries:
  17. - "spring-milestones"
  18. ignore:
  19. - dependency-name: "com.nimbusds:nimbus-jose-jwt" # nimbus-jose-jwt gets updated when oauth2-oidc-sdk is updated to ensure consistency
  20. - dependency-name: "org.python:jython" # jython updates break integration tests
  21. - dependency-name: "org.apache.directory.server:*" # ApacheDS version > 1.5.5 contains break changes
  22. - dependency-name: "org.junit:junit-bom"
  23. update-types: [ "version-update:semver-major" ]
  24. - dependency-name: "org.mockito:mockito-bom"
  25. update-types: [ "version-update:semver-major" ]
  26. - dependency-name: "*"
  27. update-types: [ "version-update:semver-major", "version-update:semver-minor" ]
  28. - package-ecosystem: "gradle"
  29. target-branch: "6.2.x"
  30. milestone: 319 # 6.2.x
  31. directory: "/"
  32. schedule:
  33. interval: "daily"
  34. time: "03:00"
  35. timezone: "Etc/UTC"
  36. labels: [ "type: dependency-upgrade" ]
  37. registries:
  38. - "spring-milestones"
  39. ignore:
  40. - dependency-name: "com.nimbusds:nimbus-jose-jwt" # nimbus-jose-jwt gets updated when oauth2-oidc-sdk is updated to ensure consistency
  41. - dependency-name: "org.python:jython" # jython updates break integration tests
  42. - dependency-name: "org.apache.directory.server:*" # ApacheDS version > 1.5.5 contains break changes
  43. - dependency-name: "org.apache.directory.shared:*" # ApacheDS version > 0.9.15 contains breaking changes
  44. - dependency-name: "org.junit:junit-bom"
  45. update-types: [ "version-update:semver-major" ]
  46. - dependency-name: "org.mockito:mockito-bom"
  47. update-types: [ "version-update:semver-major" ]
  48. - dependency-name: "*"
  49. update-types: [ "version-update:semver-major", "version-update:semver-minor" ]
  50. - package-ecosystem: "gradle"
  51. target-branch: "6.1.x"
  52. milestone: 318 # 6.1.x
  53. directory: "/"
  54. schedule:
  55. interval: "daily"
  56. time: "03:00"
  57. timezone: "Etc/UTC"
  58. labels: [ "type: dependency-upgrade" ]
  59. ignore:
  60. - dependency-name: "com.nimbusds:nimbus-jose-jwt" # nimbus-jose-jwt gets updated when oauth2-oidc-sdk is updated to ensure consistency
  61. - dependency-name: "org.python:jython" # jython updates break integration tests
  62. - dependency-name: "org.apache.directory.server:*" # ApacheDS version > 1.5.5 contains break changes
  63. - dependency-name: "org.junit:junit-bom"
  64. update-types: [ "version-update:semver-major" ]
  65. - dependency-name: "org.mockito:mockito-bom"
  66. update-types: [ "version-update:semver-major" ]
  67. - dependency-name: "*"
  68. update-types: [ "version-update:semver-major", "version-update:semver-minor" ]
  69. - package-ecosystem: "gradle"
  70. target-branch: "5.8.x"
  71. milestone: 246 # 5.8.x
  72. directory: "/"
  73. schedule:
  74. interval: "daily"
  75. time: "03:00"
  76. timezone: "Etc/UTC"
  77. labels: [ "type: dependency-upgrade" ]
  78. ignore:
  79. - dependency-name: "com.nimbusds:nimbus-jose-jwt" # nimbus-jose-jwt gets updated when oauth2-oidc-sdk is updated to ensure consistency
  80. - dependency-name: "org.python:jython" # jython updates break integration tests
  81. - dependency-name: "org.apache.directory.server:*" # ApacheDS version > 1.5.5 contains break changes
  82. - dependency-name: "io.mockk:mockk" # mockk updates break tests
  83. - dependency-name: "org.opensaml:*" # org.opensaml maintains two different versions, so it must be updated manually
  84. - dependency-name: "org.junit:junit-bom"
  85. update-types: [ "version-update:semver-major" ]
  86. - dependency-name: "org.mockito:mockito-bom"
  87. update-types: [ "version-update:semver-major" ]
  88. - dependency-name: "*"
  89. update-types: [ "version-update:semver-major", "version-update:semver-minor" ]
  90. # GitHub Actions
  91. - package-ecosystem: github-actions
  92. target-branch: "main"
  93. milestone: 326 # 6.3.x
  94. directory: "/"
  95. schedule:
  96. interval: weekly
  97. - package-ecosystem: github-actions
  98. target-branch: "6.2.x"
  99. milestone: 319 # 6.2.x
  100. directory: "/"
  101. schedule:
  102. interval: weekly
  103. - package-ecosystem: github-actions
  104. target-branch: "6.1.x"
  105. milestone: 318 # 6.1.x
  106. directory: "/"
  107. schedule:
  108. interval: weekly
  109. - package-ecosystem: github-actions
  110. target-branch: "5.8.x"
  111. milestone: 246 # 5.8.x
  112. directory: "/"
  113. schedule:
  114. interval: weekly
  115. - package-ecosystem: github-actions
  116. target-branch: "docs-build"
  117. directory: "/"
  118. schedule:
  119. interval: weekly