-
Notifications
You must be signed in to change notification settings - Fork 13
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Expand dependabot alert count checks to all repos #366
Comments
5 tasks
Note: This will be marked with Backlog once edx/edx-arch-experiments#251 is complete and we have the new Backlog field. |
(May get picked up by SWG rather than Arch-BOM.) |
openedx/axim-engineering#738 seems to have made at least some progress here. What else is left to make this happen? If all edx repos switched to read-only access, would it enable the final part of this automatically? |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
For https://2u-internal.atlassian.net/browse/SEG-78 (private ticket) we've added Dependabot alert checks to edx-repo-health. However, they only run on 55 of the ~300 repos due to permissions issues. We need to adjust the GitHub token that is used for that job. This might mean changing the teams that that service user is a member of, or switched to a fine-grained token that includes Dependabot access. (This is probably preferable anyhow, as it would allow read-only in a way that the classic tokens do not.)
The text was updated successfully, but these errors were encountered: