Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
Keeping Dependencies Up-to-Date (martijnhols.nl)
2 points by MartijnHols on May 8, 2024 | hide | past | favorite | 2 comments


> Libyear is a simple measure of dependency freshness

Ooo, that's new to me. I like the idea of quantifying this.


Dependabot can be configured to e.g. update dependencies with security vulnerabilities every day and all other version updates weekly, and group them in a single pull request. That should fix the main complaint in this blog post.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: