Skip to content

fix: route dependency review without personal requests - #65

Merged
Pigbibi merged 1 commit into
mainfrom
fix/dependency-review-notifications-20260929
Sep 28, 2026
Merged

Pigbibi merged 1 commit into
mainfrom
fix/dependency-review-notifications-20260929

Conversation

@Pigbibi

@Pigbibi Pigbibi commented Sep 28, 2026

Copy link
Copy Markdown
Collaborator

Dependabot updates currently request a personal review through CODEOWNERS even though personal review is not required by branch protection. Remove only the ownership entries matched by dependency manifests, Dockerfiles and Actions updates.

Retain ownership of credential-handling source and other sensitive paths. The comments preserve scoped engineering review, CI, compatibility/recovery evidence and existing disabled generic auto-merge. This does not enable a dependency upgrade, an AI consumer, deployment, authentication or investment operations.

Validation: independent review of the exact diff and live protection; only CODEOWNERS changes; git diff --check passes. Strict required test and administrator enforcement stay unchanged. No open Dependabot PR is available to observe the next natural request; previously sent notifications remain.

Co-Authored-By: Codex <noreply@openai.com>
@Pigbibi
Pigbibi merged commit 3126a70 into main Sep 28, 2026
1 check passed
@Pigbibi
Pigbibi deleted the fix/dependency-review-notifications-20260929 branch September 28, 2026 17:26
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant