Commit 9c739bc
committed
Exclude gh-aw managed actions from Dependabot
Dependabot's mechanical SHA find-and-replace in workflow files breaks
gh-aw lockfile metadata headers, causing runtime validation failures.
The affected actions (`actions/github-script`, `github/gh-aw-actions/*`)
are only used in gh-aw generated files and their SHAs are managed via
`.github/aw/actions-lock.json` + `gh aw compile`.
Added `ignore` rules to `.github/dependabot.yml` for these dependencies.
Add maven ecosystem.1 parent c02507e commit 9c739bc
1 file changed
Lines changed: 11 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
12 | 12 | | |
13 | 13 | | |
14 | 14 | | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
15 | 21 | | |
| 22 | + | |
| 23 | + | |
| 24 | + | |
| 25 | + | |
| 26 | + | |
0 commit comments