Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Dependabot version updates: support for private registries (Cloud Beta) #67

Closed
github-product-roadmap opened this issue Jul 24, 2020 · 2 comments
Labels
all Product SKU: All beta Feature phase: Beta cloud Available on Cloud dependabot Feature: GitHub Dependabot shipped Shipped

Comments

@github-product-roadmap
Copy link
Collaborator

github-product-roadmap commented Jul 24, 2020

Summary
Dependabot support for private registries allows users to keep private packages secure by opening pull requests to update the packages' dependencies to the latest version.

Intended Outcome
Keep private package dependencies up to date and vulnerability-free.

How will it work?
Today, Dependabot Version Updates updates the packages you rely on to newer versions, even if the version on which you currently rely doesn't have any (known) vulnerabilities. Support for private registries allows users to configure which private registries they are using, and supply credentials for those, to allow Dependabot to update those packages' dependencies.

@github github locked and limited conversation to collaborators Jul 24, 2020
@github-product-roadmap github-product-roadmap added all Product SKU: All beta Feature phase: Beta cloud Available on Cloud security & compliance Feature area: Code security and compliance labels Jul 24, 2020
@github-product-roadmap github-product-roadmap changed the title Dependabot support for private registries Dependabot version updates: support for private registries (Cloud Beta) Sep 9, 2020
@alexcnichols alexcnichols added the shipped Shipped label Dec 4, 2020
@alexcnichols alexcnichols reopened this Dec 8, 2020
@alexcnichols alexcnichols removed the shipped Shipped label Dec 8, 2020
@Sid-ah Sid-ah added the shipped Shipped label Mar 16, 2021
@Sid-ah
Copy link
Contributor

Sid-ah commented Mar 16, 2021

@Sid-ah Sid-ah closed this as completed Mar 16, 2021
@Sid-ah Sid-ah added the dependabot Feature: GitHub Dependabot label Sep 27, 2021
@github-product-roadmap github-product-roadmap removed the security & compliance Feature area: Code security and compliance label Jan 25, 2023
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
all Product SKU: All beta Feature phase: Beta cloud Available on Cloud dependabot Feature: GitHub Dependabot shipped Shipped
Projects
Archived in project
Development

No branches or pull requests

3 participants