Skip to content

VLN-1349: remediate missing-dependency-cooldown#10285

Open
picatz wants to merge 1 commit into
mainfrom
camper/missing-dependency-cooldown-finding-cooldown-temporal
Open

VLN-1349: remediate missing-dependency-cooldown#10285
picatz wants to merge 1 commit into
mainfrom
camper/missing-dependency-cooldown-finding-cooldown-temporal

Conversation

@picatz
Copy link
Copy Markdown
Contributor

@picatz picatz commented May 15, 2026

🏕️ This pull request was created by camper, an automated security campaign tool.

Finding

Rulemissing-dependency-cooldown
SeverityHIGH
Repositorytemporalio/temporal
TicketVLN-1349

Summary

  • .github/dependabot.yml: Added Dependabot configuration with gomod and github-actions ecosystems, each scheduled weekly and configured with cooldown.default-days: 14.

Instructions

  • Approve to merge this fix
  • Request changes to trigger a new remediation attempt
  • /camper rebase — rebase onto the base branch
  • /camper close — close this PR without merging
  • /camper retry — close and retry with a new fix

@picatz picatz requested review from a team as code owners May 15, 2026 16:30
@picatz
Copy link
Copy Markdown
Contributor Author

picatz commented May 22, 2026

This PR has had no activity for 7 days and may need attention.

Actions you can take:

  • Review and approve if the changes look good
  • Close if this fix is no longer needed
  • Comment /camper rebase to rebase onto the latest base branch
  • Comment /camper retry to regenerate the fix

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant