shynet icon indicating copy to clipboard operation
shynet copied to clipboard

Dependency Updates

Open StarkZarn opened this issue 2 years ago • 3 comments

Hi, love the project! I'm curious as to if you have a roadmap for dependency updates. I personally like dependabot and renovate, whichever is easier for a given person. Even without big feature updates, I find that dependency updates are pretty easy and important to keep things secure.

StarkZarn avatar Mar 10 '24 01:03 StarkZarn

Hey! No current roadmap for dependency updates, but I am planning on doing a bigger Shynet revamp in the coming months.

milesmcc avatar Mar 17 '24 18:03 milesmcc

There are currently no open dependabot alerts; I do try to be fairly quick about merging those when they do come up. Is there a different approach that you'd suggest?

milesmcc avatar Mar 17 '24 18:03 milesmcc

What do you have configured for dependabot? I didn't see a dependabot config file in the .github directory. I forked it just to check things and currently have 10 pull requests open from dependabot. https://github.com/StarkZarn/shynet/pulls

StarkZarn avatar Mar 21 '24 02:03 StarkZarn