phpro / grumphp

A PHP code-quality tool
MIT License
4.14k stars 429 forks source link

chore: Included githubactions in the dependabot config #1010

Closed naveensrinivasan closed 2 years ago

naveensrinivasan commented 2 years ago

This should help with keeping the GitHub actions updated on new releases. This will also help with keeping it secure.

Dependabot helps in keeping the supply chain secure https://docs.github.com/en/code-security/dependabot

GitHub actions up to date https://docs.github.com/en/code-security/dependabot/working-with-dependabot/keeping-your-actions-up-to-date-with-dependabot

https://github.com/ossf/scorecard/blob/main/docs/checks.md#dependency-update-tool Signed-off-by: naveen 172697+naveensrinivasan@users.noreply.github.com

veewee commented 2 years ago

Looks good, thanks for your contributions