docs icon indicating copy to clipboard operation
docs copied to clipboard

Updated `dependabot`'s docs to add `Gradle Wrapper`

Open gmazzo opened this issue 4 months ago • 9 comments

Why:

https://github.com/dependabot/dependabot-core/pull/12891 requires also to mention in the docs that now we'll support Gradle Wrapper in the gradle manager

Closes:

What's being changed (if available, include any code snippets, screenshots, or gifs):

Check off the following:

  • [ ] A subject matter expert (SME) has reviewed the technical accuracy of the content in this PR. In most cases, the author can be the SME. Open source contributions may require an SME review from GitHub staff.
  • [x] The changes in this PR meet the docs fundamentals that are required for all content.
  • [x] All CI checks are passing and the changes look good in the review environment.

gmazzo avatar Aug 20 '25 13:08 gmazzo

Thanks for opening this pull request! A GitHub docs team member should be by to give feedback soon. In the meantime, please check out the contributing guidelines.

welcome[bot] avatar Aug 20 '25 13:08 welcome[bot]

How to review these changes 👓

Thank you for your contribution. To review these changes, choose one of the following options:

A Hubber will need to deploy your changes internally to review.

Table of review links

Note: Please update the URL for your staging server or codespace.

The table shows the files in the content directory that were changed in this pull request. This helps you review your changes on a staging server. Changes to the data directory are not included in this table.

Source Review Production What Changed
code-security/dependabot/ecosystems-supported-by-dependabot/supported-ecosystems-and-repositories.md fpt
ghec
ghes@ 3.17 3.16 3.15 3.14
fpt
ghec
ghes@ 3.17 3.16 3.15 3.14
from reusable

Key: fpt: Free, Pro, Team; ghec: GitHub Enterprise Cloud; ghes: GitHub Enterprise Server

🤖 This comment is automatically generated.

github-actions[bot] avatar Aug 20 '25 13:08 github-actions[bot]

@gmazzo Thanks for opening a PR! 🎉

It looks like this is still a draft. Could you ping me when this is ready? Then, I'll get it up for review ⚡

Sharra-writes avatar Aug 21 '25 20:08 Sharra-writes

A stale label has been added to this pull request because it has been open 30 days with no activity. If you think this pull request should remain open, please add a new comment.

github-actions[bot] avatar Sep 23 '25 16:09 github-actions[bot]

This is still waiting for https://github.com/dependabot/dependabot-core/pull/12891

gmazzo avatar Sep 23 '25 21:09 gmazzo

I think that we may want to leave this as a draft as long as this is an experiment as it may cause confusion otherwise

yeikel avatar Nov 04 '25 21:11 yeikel

I think that we may want to leave this as a draft as long as this is an experiment as it may cause confusion otherwise

I was planning to move it to ready once the main PR is merged, and just let them decide when to merge this one. But I don't know how coordinated are dependabot and GH docs people 🤔

gmazzo avatar Nov 04 '25 21:11 gmazzo

I think that we may want to leave this as a draft as long as this is an experiment as it may cause confusion otherwise

I was planning to move it to ready once the main PR is merged, and just let them decide when to merge this one. But I don't know how coordinated are dependabot and GH docs people 🤔

It is a mutual effort, but I don't think that folks here will be tracking things like feature flags before deciding when to merge. As per the plan, the goal is to enable globally in ~1 week if things go as planned.

I'd suggest to not merge this yet to avoid confusions for non-beta-enabled users

You've done wonderful work so far. I can help track when to enable it here 🚀

yeikel avatar Nov 04 '25 23:11 yeikel

I also sent https://github.com/gmazzo/github-docs/pull/2 as another suggestion we can incorporate

yeikel avatar Nov 16 '25 01:11 yeikel