File tree Expand file tree Collapse file tree
Expand file tree Collapse file tree Original file line number Diff line number Diff line change 1- version : 2
1+ # GitHub Dependabot 依赖项自动更新配置文件
2+ # Dependabot 是 GitHub 的自动化工具,用于保持项目依赖项的最新状态
3+ # 它会自动检测过时的依赖项并创建 Pull Request 来更新它们
4+
5+ version : 2 # Dependabot 配置文件版本(目前只支持版本 2)
6+
27updates :
3- - package-ecosystem : " github-actions"
4- directory : " /" # Location of package manifests
8+ # 1. GitHub Actions 依赖项更新配置
9+ - package-ecosystem : " github-actions" # 监控 GitHub Actions 版本
10+ directory : " /" # 扫描 .github/workflows/ 目录
511 schedule :
6- interval : " weekly"
12+ interval : " weekly" # 每周检查一次
13+ # 示例:自动更新 actions/checkout@v3 → actions/checkout@v4
14+
15+ # 2. Go 模块依赖项更新配置
16+ - package-ecosystem : " gomod" # 监控 Go 模块依赖
17+ directory : " /" # go.mod 文件所在目录
18+ schedule :
19+ interval : " weekly" # 每周检查一次
20+ # 示例:自动更新 go.mod 中的依赖包版本
21+ # 如:github.com/redis/go-redis/v9 v9.12.1 → v9.13.0
22+
23+ # 3. Docker 镜像依赖项更新配置(可选)
24+ - package-ecosystem : " docker" # 监控 Dockerfile 中的基础镜像
25+ directory : " /docker" # Dockerfile 所在目录
26+ schedule :
27+ interval : " monthly" # 每月检查一次(镜像更新相对较少)
28+ # 示例:自动更新 FROM golang:1.24 → golang:1.25
29+
30+ # Dependabot 的主要功能:
31+ # 1. 自动检测过时的依赖项版本
32+ # 2. 创建 Pull Request 来更新这些依赖项
33+ # 3. 在 PR 中提供更新日志、安全修复信息和兼容性说明
34+ # 4. 帮助保持项目安全性和功能的最新状态
35+ # 5. 支持安全漏洞的快速修复
Original file line number Diff line number Diff line change @@ -22,7 +22,7 @@ require (
2222 github.com/segmentio/kafka-go v0.4.48
2323 github.com/spf13/viper v1.20.1
2424 github.com/upyun/go-sdk/v3 v3.0.4
25- github.com/west2-online/jwch v0.2.28
25+ github.com/west2-online/jwch v0.2.29
2626 gorm.io/driver/mysql v1.6.0
2727 gorm.io/gorm v1.30.1
2828 k8s.io/client-go v0.33.4
Original file line number Diff line number Diff line change @@ -642,8 +642,8 @@ github.com/upyun/go-sdk/v3 v3.0.4 h1:2DCJa/Yi7/3ZybT9UCPATSzvU3wpPPxhXinNlb1Hi8Q
642642mygithub.libinneed.workers.dev/upyun/go-sdk/v3 v3.0.4 /go.mod h1:P/SnuuwhrIgAVRd/ZpzDWqCsBAf/oHg7UggbAxyZa0E =
643643mygithub.libinneed.workers.dev/urfave/cli v1.20.0 /go.mod h1:70zkFmudgCuE/ngEzBv17Jvp/497gISqfk5gWijbERA =
644644mygithub.libinneed.workers.dev/urfave/cli v1.22.1 /go.mod h1:Gos4lmkARVdJ6EkW0WaNv/tZAAMe9V7XWyB60NtXRu0 =
645- github.com/west2-online/jwch v0.2.28 h1:tnnL41OUId7OBofj+avoceVvfov2c6Nd+CmTU3wZSNk =
646- github.com/west2-online/jwch v0.2.28 /go.mod h1:DlIfTRlv5BY+4mt6PI/xzleEbEqAoUYi3xMffe4FC3A =
645+ github.com/west2-online/jwch v0.2.29 h1:G5MWy1gj7eXDR43yMbsQtxE/+tdmIUrBVUpjOr3t2q0 =
646+ github.com/west2-online/jwch v0.2.29 /go.mod h1:DlIfTRlv5BY+4mt6PI/xzleEbEqAoUYi3xMffe4FC3A =
647647mygithub.libinneed.workers.dev/west2-online/yjsy v0.0.8 h1:CJZizPBfvsTCtePR+OhDEw1FU48dD3+3msIdfCUctMg =
648648mygithub.libinneed.workers.dev/west2-online/yjsy v0.0.8 /go.mod h1:ESCVjtSEtOH/4eAFosO7S/FnGSxFmCzjAitSudDTZlk =
649649mygithub.libinneed.workers.dev/xdg-go/pbkdf2 v1.0.0 h1:Su7DPu48wXMwC3bs7MCNG+z4FhcyEuz5dlvchbq0B0c =
You can’t perform that action at this time.
0 commit comments