From 553d6da18b5cdeb8bb57169d4ac8df39311f5701 Mon Sep 17 00:00:00 2001 From: Isabel Atkinson Date: Wed, 7 May 2025 09:36:31 -0600 Subject: [PATCH] RUST-577 Bump dependencies with dependabot --- .github/dependabot.yml | 19 +++++++++++++++++++ 1 file changed, 19 insertions(+) create mode 100644 .github/dependabot.yml diff --git a/.github/dependabot.yml b/.github/dependabot.yml new file mode 100644 index 000000000..724e3ff6b --- /dev/null +++ b/.github/dependabot.yml @@ -0,0 +1,19 @@ +version: 2 +updates: + - package-ecosystem: cargo + directory: / + schedule: + interval: weekly + # Only bump to the latest version compatible with the dependency's version + # in Cargo.toml. This is the equivalent of running `cargo update`. + versioning-strategy: lockfile-only + # Update all dependencies in a single PR. + groups: + rust-dependencies: + patterns: + - "*" + # Include transitive dependencies. + allow: + - dependency-type: all + ignore: + - dependency-name: "mongocrypt-sys"