t.behrendt
229212cb6e
fix: handling of private package in action automerge and disabling of minAge ( #69 )
...
CD / Release (push) Successful in 5s
Reviewed-on: #69
Co-authored-by: Timo Behrendt <t.behrendt@t00n.de >
Co-committed-by: Timo Behrendt <t.behrendt@t00n.de >
2026-06-21 16:59:14 +02:00
t.behrendt
b4939f348d
feat(actions): allow automerge of certain actions ( #63 )
...
CD / Release (push) Successful in 6s
Reviewed-on: #63
Reviewed-by: branch-buddy <branch-buddy@t00n.de >
Co-authored-by: Timo Behrendt <t.behrendt@t00n.de >
Co-committed-by: Timo Behrendt <t.behrendt@t00n.de >
2026-06-20 19:26:31 +02:00
t.behrendt
7a4f5cb141
feat: ignore cooldown for internal deps ( #32 )
...
CD / Release (push) Successful in 15s
Ignoring min release age for any internal deps and have every rule extend the common package.
Reviewed-on: #32
Co-authored-by: Timo Behrendt <t.behrendt@t00n.de >
Co-committed-by: Timo Behrendt <t.behrendt@t00n.de >
2026-02-08 20:01:34 +01:00
t.behrendt
4bc8c6e40f
feat: pin digest of GitHub action updates ( #2 )
...
CD / Release (push) Successful in 5s
We always want to pin GitHub actions to a digest, to avoid attack vectors where existing tags are being re-used and their implementation replaced with malicious code.
As described in [renovate's documentation](https://docs.renovatebot.com/modules/manager/github-actions/#digest-pinning-and-updating ), adding the "helpers:pinGitHubActionDigests" to the extends automatically forces renovate to always pin digests.
Reviewed-on: #2
Reviewed-by: branch-buddy <branch-buddy@t00n.de >
Co-authored-by: Timo Behrendt <t.behrendt@t00n.de >
Co-committed-by: Timo Behrendt <t.behrendt@t00n.de >
2025-10-08 18:54:50 +02:00
t.behrendt
82e5e832f8
feat: migrate existing configs ( #1 )
...
CD / Release (push) Successful in 6s
Reviewed-on: #1
Reviewed-by: branch-buddy <branch-buddy@t00n.de >
Co-authored-by: Timo Behrendt <t.behrendt@t00n.de >
Co-committed-by: Timo Behrendt <t.behrendt@t00n.de >
2025-10-08 18:46:12 +02:00