kira-dependencies
kira-dependencies copied to clipboard
🐿 Kira's micro-bot to update project dependencies
We use kira-dependencies in self-hosted GitLab. It works well, but for one repository it yields a strange error: ``` [0KRunning with gitlab-runner 13.10.0 (54944146) [0;m[0K on infra-gitlab-runner-68856b776d-lx5qw 4SqrWnSc [0;m[0K feature...
I used this repo to deploy private gitlab,gitlab-ci often reported connection timeout,the Dependent packages report timeouts are random。Sometimes dependent on the following image will be updated successfully. data:image/s3,"s3://crabby-images/53bff/53bfff1686c7640e3e7f04b5146bf556d3a540e4" alt="image" data:image/s3,"s3://crabby-images/381db/381dbee8bc0f87c255128d061b12a6ba737dcecb" alt="image" What...
# Steps to reproduce 1. Project with package.json that specifies dependency update type with minor release max for example: `"jest": "^25.5.4"` 2. Run kira-dependencies with `PACKAGE_MANAGER_SET = npm` # Expected...
This creates an issue for each language that contains all the dependencies that need updates. It looks like this: # Dependency Dashboard ruby 20 of 86 bundler dependencies are out...
Hello is there any way to update only main dependencies but not dev dependencies? often dev packages are being updated continously and i am afraid of bumping their versions as...
https://docs.gitlab.com/ee/ci/merge_request_pipelines/pipelines_for_merged_results/merge_trains/index.html I am not sure how it works, because I have not tried it yet.
Hello. dependabot can read from private mvn repo (we use artifactory). We try configure by DEPENDABOT_EXTRA_CREDENTIALS parameter like [{"type":"mvn","username":"xxxx","password":"xxxxxx","registry":"xxxxxxx"}] and [{"type":"mvn","token":"xxxxx","registry":"xxxx"}] But without results Error in console dependencies-bot/vendor/ruby/2.6.0/gems/dependabot-maven-0.108.25/lib/dependabot/maven/update_checker/version_finder.rb:62:in `versions': The...
Hello, dependabot says it can check for insecure deps. is there anyway, we can do same here with kira? we have a php/laravel application where we use old versions intentionally,...