From a964ccf007b84939877c46f253eefee829e9c9df Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Thu, 2 Feb 2023 06:24:07 +0000 Subject: [PATCH 1/2] Bump werkzeug from 0.15.3 to 0.15.5 in /boilerplates-dash Bumps [werkzeug](https://github.com/pallets/werkzeug) from 0.15.3 to 0.15.5. - [Release notes](https://github.com/pallets/werkzeug/releases) - [Changelog](https://github.com/pallets/werkzeug/blob/main/CHANGES.rst) - [Commits](https://github.com/pallets/werkzeug/compare/0.15.3...0.15.5) --- updated-dependencies: - dependency-name: werkzeug dependency-type: direct:production ... Signed-off-by: dependabot[bot] --- boilerplates-dash/requirements.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/boilerplates-dash/requirements.txt b/boilerplates-dash/requirements.txt index 1bc3983..994cc09 100644 --- a/boilerplates-dash/requirements.txt +++ b/boilerplates-dash/requirements.txt @@ -24,7 +24,7 @@ retrying==1.3.3 six==1.11.0 traitlets==4.3.2 urllib3==1.26.5 -Werkzeug==0.15.3 +Werkzeug==0.15.5 numpy==1.22.0 pandas==0.25.3 dash-table-experiments==0.6.0 From f26cfeb450e234800d9fec5707abb19944982397 Mon Sep 17 00:00:00 2001 From: "dr. mia von steinkirch, phd" <1130416+mvonsteinkirch@users.noreply.github.com> Date: Sat, 4 Feb 2023 12:09:52 -0800 Subject: [PATCH 2/2] Create dependabot.yml --- .github/dependabot.yml | 6 ++++++ 1 file changed, 6 insertions(+) create mode 100644 .github/dependabot.yml diff --git a/.github/dependabot.yml b/.github/dependabot.yml new file mode 100644 index 0000000..951c66c --- /dev/null +++ b/.github/dependabot.yml @@ -0,0 +1,6 @@ +version: 2 +updates: + - package-ecosystem: "" # See documentation for possible values + directory: "/" # Location of package manifests + schedule: + interval: "weekly"