Skip to content

change strategy to lockfile-only - #269

Merged
wgreenberg merged 1 commit into
mainfrom
change-dependabot-version-strategy-part2
May 9, 2026
Merged

change strategy to lockfile-only#269
wgreenberg merged 1 commit into
mainfrom
change-dependabot-version-strategy-part2

Conversation

@bmw

@bmw bmw commented May 9, 2026

Copy link
Copy Markdown
Member

this is a follow up to #268

one would think that based on the description of "widen", it'd have fixed the problems seen in #267 of bumping our dependency requirements to the latest version. unfortunately it seems that despite widen being documented, it isn't supported for python. additionally, many other people are also annoyed with dependabot's new behavior here

this PR actually fixes the issue which you can see on my fork here. i'm sorry i didn't test it on my fork the first time, but i figured it'd just work and doing so wouldn't be needed. how silly of me 😩

i don't think this PR requires two reviews

@bmw
bmw requested a review from a team as a code owner May 9, 2026 00:46
@bmw
bmw requested a review from wgreenberg May 9, 2026 00:46

@wgreenberg wgreenberg left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

what a deeply annoying documentation failure! thanks for digging into this tho 😭

@wgreenberg
wgreenberg merged commit 986befd into main May 9, 2026
19 checks passed
@wgreenberg
wgreenberg deleted the change-dependabot-version-strategy-part2 branch May 9, 2026 01:08
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants