Skip to content

[Dependabot] Stop version updates on test apps - #1540

Merged
Kocal merged 1 commit into
symfony:mainfrom
Kocal:dependabot/drop-test-apps-updates
Sep 7, 2026
Merged

Kocal merged 1 commit into
symfony:mainfrom
Kocal:dependabot/drop-test-apps-updates

Conversation

@Kocal

@Kocal Kocal commented Sep 7, 2026

Copy link
Copy Markdown
Member
Q A
Bug fix? no
New feature? no
Deprecations? no
Issues -
License MIT

This removes the /test_apps/lowest-peers-* block from .github/dependabot.yml, so Dependabot no longer opens version-update PRs against these test apps. Their whole purpose is to pin peer dependencies at their lowest supported versions, so letting Dependabot bump anything there works directly against that. The ignore list was also incomplete, missing react and react-dom, which is exactly how #1526 ended up proposing a react 18 -> 19 bump. Dependabot still watches the root package.json as before, only the test apps are excluded now.

The `lowest-peers-*` apps pin peer dependencies at their lowest supported versions, so bumping anything there works against their purpose. The `ignore` list was also incomplete (`react` and `react-dom` were missing), which is how symfony#1526 ended up proposing react 18 -> 19. Root `package.json` updates are unchanged.
@carsonbot carsonbot added the Status: Needs Review Needs to be reviewed label Sep 7, 2026
@Kocal
Kocal merged commit b588305 into symfony:main Sep 7, 2026
38 checks passed
@Kocal
Kocal deleted the dependabot/drop-test-apps-updates branch September 7, 2026 11:50
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Status: Needs Review Needs to be reviewed

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants