Skip to content

Add Dependabot configuration for npm and Cargo #416

@ritik4ever

Description

@ritik4ever

Problem

Dependencies are never automatically updated. Known vulnerabilities may go undetected.

Scope

Add .github/dependabot.yml for weekly updates across all ecosystems.

Acceptance criteria

  • npm: weekly updates for backend/ and frontend/
  • Cargo: weekly updates for contracts/
  • Minor/patch updates grouped into one PR per ecosystem
  • PRs auto-assigned to maintainer

Complexity: Easy · 50 points

Metadata

Metadata

Assignees

No one assigned

    Labels

    Stellar WaveIssues in the Stellar wave programdevopsCI/CD, Docker, infrasecurityAuth, JWT, signing

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions