diff --git a/.github/dependabot.yml b/.github/dependabot.yml index 2ee7041..6910ac7 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -1,40 +1,11 @@ --- version: 2 updates: - # Docker base image updates - - package-ecosystem: "docker" - directory: "/" + - package-ecosystem: github-actions + directory: / schedule: - interval: "weekly" - day: "monday" - time: "06:00" - timezone: "Europe/Amsterdam" - open-pull-requests-limit: 10 - labels: - - "dependencies" - commit-message: - prefix: "⬆️ [ Docker ] " - include: "scope" - # Rebase strategy: auto-rebase for cleaner history - rebase-strategy: "auto" - # Group minor and patch updates together - groups: - docker-minor-patch: - patterns: - - "*" - update-types: - - "minor" - - "patch" - - - package-ecosystem: "github-actions" - directory: "/" - schedule: - interval: "weekly" - day: "monday" - time: "06:00" - timezone: "Europe/Amsterdam" - open-pull-requests-limit: 10 + interval: weekly commit-message: - prefix: "⬆️ [ GitHub Actions ] " + prefix: '⬆️ [ GitHub Actions ] ' labels: - - "dependencies" + - dependencies diff --git a/.github/workflows/dependabot.yml b/.github/workflows/dependabot.yml index e672f07..761660d 100644 --- a/.github/workflows/dependabot.yml +++ b/.github/workflows/dependabot.yml @@ -1,8 +1,7 @@ --- -name: Dependabot Automate +name: Dependabot on: - workflow_call: pull_request: permissions: @@ -10,22 +9,7 @@ permissions: pull-requests: write jobs: - dependabot: - runs-on: brixion-runners - if: github.event.pull_request.user.login == 'dependabot[bot]' - steps: - - name: Dependabot metadata - id: metadata - uses: dependabot/fetch-metadata@25dd0e34f4fe68f24cc83900b1fe3fe149efef98 - with: - github-token: "${{ secrets.GITHUB_TOKEN }}" - - name: Approve a PR - run: gh pr review --approve "$PR_URL" - env: - PR_URL: ${{github.event.pull_request.html_url}} - GH_TOKEN: ${{secrets.GITHUB_TOKEN}} - - name: Enable auto-merge for Dependabot PRs - run: gh pr merge --auto --squash "$PR_URL" - env: - PR_URL: ${{github.event.pull_request.html_url}} - GH_TOKEN: ${{secrets.GITHUB_TOKEN}} + automate: + name: Automate + uses: brixion/workflows/.github/workflows/dependabot-automate.yml@main + secrets: inherit diff --git a/.github/workflows/pr-validation.yml b/.github/workflows/pr-validation.yml new file mode 100644 index 0000000..0523bfe --- /dev/null +++ b/.github/workflows/pr-validation.yml @@ -0,0 +1,15 @@ +--- + +name: PR Validation + +on: + pull_request: + types: [opened, synchronize, reopened, edited, labeled, unlabeled] + +permissions: + pull-requests: read + +jobs: + validate: + name: Validate PR + uses: brixion/workflows/.github/workflows/pr-validation.yml@main