diff --git a/.github/dependabot.yml b/.github/dependabot.yml new file mode 100644 index 0000000..4b37d96 --- /dev/null +++ b/.github/dependabot.yml @@ -0,0 +1,11 @@ +# To get started with Dependabot version updates, you'll need to specify which +# package ecosystems to update and where the package manifests are located. +# Please see the documentation for all configuration options: +# https://docs.github.com/code-security/dependabot/dependabot-version-updates/configuration-options-for-the-dependabot.yml-file + +version: 2 +updates: + - package-ecosystem: "maven" # See documentation for possible values + directory: "/" # Location of package manifests + schedule: + interval: "daily" diff --git a/.github/workflows/eol-report.yml b/.github/workflows/eol-report.yml new file mode 100644 index 0000000..79adfee --- /dev/null +++ b/.github/workflows/eol-report.yml @@ -0,0 +1,16 @@ +name: EOL Dependencies Check +on: + schedule: + - cron: '0 11 * * 1' # Weekly on Mondays at 11:00 UTC + pull_request: + types: [opened, synchronize, reopened] + workflow_dispatch: + +jobs: + eol_dependency_check: + uses: eclipse-ecsp/.github/.github/workflows/workflow-eol-analysis.yml@main + +permissions: + pull-requests: write + issues: write + contents: read