I’m really bad at keeping my dependencies up-to-date manually, so dependabot was great for me. I don’t use github anymore though, and I haven’t really been able to find a good alternative.

I found Snyk, which seems to do that, but they only allow logging in with 3rd party providers which I’m not a big fan of.

Edit: seems like Snyk also only supports a few git hosts, and Codeberg isn’t one of them.

Afaik you can self-host the Renovate bot, though don’t remember if it’s fully open source.

Ghoelian
creator
link
fedilink
41M

Nice, that looks promising! I’ll have to look into it a bit more.

Gamma
link
fedilink
2
edit-2
1M

Been using Renovate a few months now. On large repos it can take a while to run (the git api is slow for certain pages when comparing commits), but it does seem to work well! It’s even got CVE notifications

General Programming Discussion
!programming@lemmy.ml

    A general programming discussion community.

    Rules:

    1. Be civil.
    2. Please start discussions that spark conversation

    Other communities

    Systems

    Functional Programming

    Also related

    • 0 users online
    • 6 users / day
    • 7 users / week
    • 21 users / month
    • 111 users / 6 months
    • 1 subscriber
    • 326 Posts
    • 596 Comments
    • Modlog