We get dependabot updates for every release, including patch releases. We tend to soft pin to the minor for build dependencies and to the major for dev dependencies.
[x] I have run this code in development and it appears to resolve the stated issue
[x] This PR includes tests, or tests are not required/relevant for this PR
[x] This PR has no interface changes (e.g. macros, cli, logs, json artifacts, config files, adapter interface, etc) or this PR has already received feedback and approval from Product or DX
Problem
We get
dependabot
updates for every release, including patch releases. We tend to soft pin to the minor for build dependencies and to the major for dev dependencies.Solution
Make
dependabot
ignore patch releases.Checklist