Tweets
- Tweets, current page.
- Tweets & replies
- Media
You blocked @dependabot
Are you sure you want to view these Tweets? Viewing Tweets won't unblock @dependabot
-
Dependabot Retweeted
Just merged our 500th dependency update PR from
@dependabot inside of the@Nextclouders repos.
Thanks for making it so easy to keep dependencies up to date.Thanks. Twitter will use this to make your timeline better. UndoUndo -
Dependabot Retweeted
OHAI Rubyists. Nokogiri 1.8.5 has been released, containing upstream libxml2 security patches ("medium") and a few bug fixes. For more details start at http://bit.ly/noko185 Also, here's a picture of my cat being a dummy.pic.twitter.com/4M2eaeBony
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Dependabot Retweeted
New blog content from
@Tobscher on the@freeagent engineering blog detailing how we approached our chunky upgrade to @rubyonrails 5.2#ruby#railshttps://medium.com/grinding-gears/freeagent-is-now-on-rails-5-2-757fcffb7d20 …Thanks. Twitter will use this to make your timeline better. UndoUndo -
Dependabot Retweeted
Set up
@dependabot on some repos today. Enables you to be lazier while ensuring dependencies are up-to-date. All new projects should have: - automated dependency checking (@dependabot or equiv) -@editorconfig file - auto code formatting - good error tracking (e.g.@getsentry)Thanks. Twitter will use this to make your timeline better. UndoUndo -
Dependabot Retweeted
Upgrading GitHub from Rails 3.2 to 5.2 by
@eileencodeshttps://githubengineering.com/upgrading-github-from-rails-3-2-to-5-2/ …Thanks. Twitter will use this to make your timeline better. UndoUndo -
If your using Dependabot with Maven you can expect a couple of extra PRs from us tomorrow morning -
@vorburger just schooled us on handling plugins that use the default Maven groupID. Open source works!
https://github.com/dependabot/dependabot-core/issues/671 …Thanks. Twitter will use this to make your timeline better. UndoUndo -
Ever changed your default branch in GitHub and had to manually update all your pull requests? Dependabot now automatically updates its pull requests when it detects the default branch has changed.
pic.twitter.com/WgzCASYC15
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Dependabot Retweeted
A new version is out! Read more about Bundler 1.16.5 in the changelog athttps://github.com/bundler/bundler/releases/v1.16.5 …
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Dependabot now supports Elm 0.19
https://dependabot.com/blog/elm-19/ Thanks. Twitter will use this to make your timeline better. UndoUndo -
Dependabot Retweeted
Are there any other London start-ups with as many alum starting their own thing as
@GoCardless?@michristofides - pgMustard
@stevedomin -@duffelhq
@lewisblackwood -@personablyco
@greybaker -@dependabot
@xiaojenna -@shipamax
@amaurydeclosset - innovate42
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
Dependabot Retweeted
Would you be interested in helping us maintain
@MacHomebrew? If so, get in touch and I’ll chat with you about first steps to get involved.Thanks. Twitter will use this to make your timeline better. UndoUndo -
Dependabot Retweeted
Bahaha
@dependabot is doing a great job here at@WeWork. An application I maintain was using an out-of-date version of a library that I also maintain. Everyone go and install this bot.Thanks. Twitter will use this to make your timeline better. UndoUndo -
Dependabot Retweeted
Stop failing at using open source software in your organisation by following a few, simple tips:https://mikemcquaid.com/2018/09/04/how-to-not-fail-at-using-open-source-software-in-your-organisation/ …
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Dependabot Retweeted
Have been using
@dependabot for two weeks now and it's really cool: it's not limited to one language and works with pipenv, you can configure how many PRs should be opened, when the service should check for updates, etc. Highly recommended!Thanks. Twitter will use this to make your timeline better. UndoUndo -
If you’re using Pipenv but running `pipenv lock -r` to generate a requirements.txt file Dependabot will now keen that requirements file up-to-date when it updates your Pipfile.lock

Thanks. Twitter will use this to make your timeline better. UndoUndo -
It looks like this is now resolved. Thanks for your patience.
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
We’re still seeing this issue, but now only for projects that use Yarn. We’ll continue to monitor, and can only apologise for any inconvenience.
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
If you’re seeing errors when Dependabot attempts to rebase your JS pull requests it’s due to the current npm DNS issues. We’re monitoring it and will rebase all out-of-date PRs when resolved. Sorry for any inconvenience in the meantime.
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
Vulnerability in rubyzip disclosed less than an hour ago. Dependabot has already created over 250 PRs to migrate users to the new, patched version. https://security-tracker.debian.org/tracker/CVE-2018-1000544 …pic.twitter.com/ePjbJoeBE6
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Dependabot now integrates with
@sonatype's OSS Index to create PRs for insecure Java and .NET dependencies.
https://dependabot.com/blog/sonatype-oss-index/ …Thanks. Twitter will use this to make your timeline better. UndoUndo
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.