google / google/site-kit-wp

Add dependabot config file

Open
#3,712 3 comments 0 reactions 1 assignee View on GitHub

@nfmohit is already working on this.

Since Oct 17, 2025.

P2 Type: Infrastructure
Dominant language
JavaScript
Stars
1.4k
Forks
384
Avg merge
4d 14h
Merged PRs (30d)
77

Description

Feature Description

We use Dependabot for monitoring our dependencies for vulnerabilities and providing updates automatically.

As it is, the configuration is limited to those who have administrative access to the Site Kit repo. We can however add a dependabot.yml configuration file to make this configuration more discoverable and visible for everyone.


Do not alter or remove anything below. The following sections will be managed by moderators only.

Acceptance criteria

Implementation Brief

Test Coverage
Visual Regression Changes

QA Brief

Changelog entry

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.