chore: ignore major workers-types updates in Dependabot - #15056
Conversation
|
|
The change is a small, well-scoped Dependabot config change. It adds an LGTM |
@cloudflare/autoconfig
@cloudflare/build-output-utils
@cloudflare/config
create-cloudflare
@cloudflare/deploy-helpers
@cloudflare/kv-asset-handler
miniflare
@cloudflare/pages-functions
@cloudflare/pages-shared
@cloudflare/unenv-preset
@cloudflare/vite-plugin
@cloudflare/vitest-pool-workers
@cloudflare/workers-auth
@cloudflare/workers-editor-shared
@cloudflare/workers-utils
wrangler
commit: |
|
Codeowners approval required for this PR:
Show detailed file reviewers
|
|
There are also
But is this the right solution? Are you saying that even if we landed that PR it would appear again the following week? |
Prevent Dependabot from opening no-op major updates for
@cloudflare/workers-types.@prisma/adapter-d1still depends on workers-types v4. Dependabot detects that transitive lockfile entry and repeatedly attempts a v4-to-v5 update, but only produces unrelated lockfile churn. Ignore semver-major workers-types updates while retaining minor and patch updates for the repository's v5 dependency.Example: #15030
pnpm check:workflowspasses.A picture of a cute animal (not mandatory, but encouraged)