Automated dependency updates
Dependabot creates pull requests to keep your dependencies secure and up-to-date.
pull requests merged, and counting!
How it works
Dependabot checks for updates
Dependabot pulls down your dependency files and looks for any outdated or insecure requirements.
Dependabot opens pull requests
If any of your dependencies are out-of-date, Dependabot opens individual pull requests to update each one.
You review and merge
You check that your tests pass, scan the included changelog and release notes, then hit merge with confidence.