From 7cf2bd7d3c62bf7e4b9f2bbf171462e1cb4d818f Mon Sep 17 00:00:00 2001 From: Kyle Sexton <153232337+kyle-sexton@users.noreply.github.com> Date: Tue, 29 Sep 2026 23:55:13 -0400 Subject: [PATCH] docs(managed-files-guard): name the dependabot[bot] arm in the acceptance bullet Co-Authored-By: Claude Opus 5.5 --- components/managed-files-guard/README.md | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/components/managed-files-guard/README.md b/components/managed-files-guard/README.md index 9fe4995..53afb26 100644 --- a/components/managed-files-guard/README.md +++ b/components/managed-files-guard/README.md @@ -185,8 +185,10 @@ Two properties of that ride are deliberate: is either a real downstream hand-edit of a managed destination (the check is doing its job) or a classified defect in the action or manifest; the `standards-sync` label / `melodic-standards-sync[bot]` actor exemption - keeps sync pull requests green. A false red on a sync pull request, or a - green on a hand-edit, is a defect to fix upstream before any promotion. + keeps sync pull requests green, and the action's `dependabot[bot]` actor + skip passes a Dependabot pull request that edits a managed destination + (see above). A false red on a sync pull request, or a green on any other + hand-edit, is a defect to fix upstream before any promotion. - **Rollback:** move the component to `locally-owned` for a target (the next sync stops writing it; the target deletes its copy in its own pull request), or remove the component from the manifest to withdraw it