renovate bot repo for dependency check
- JavaScript 100%
| Filename | Latest commit message | Latest commit date |
|---|---|---|
|
|
||
| .forgejo/workflows | ||
| ci.json5 | ||
| config.js | ||
| default.json5 | ||
| docker.json5 | ||
| kotlin.json5 | ||
| python.json5 | ||
| README.md | ||
renovate-config
renovate bot repo for dependency check
Presets
| Preset file | Reference | Purpose |
|---|---|---|
default.json5 |
local>maximilianbarg/renovate-config:default.json5 |
Base config: config:best-practices, automerge for minor/patch/pin/digest, OSV vulnerability alerts, no Docker digest pinning |
python.json5 |
local>maximilianbarg/renovate-config:python.json5 |
Python/uv rules (pyproject.toml via pep621) |
kotlin.json5 |
local>maximilianbarg/renovate-config:kotlin.json5 |
Kotlin Multiplatform rules (version catalog, Kotlin+Compose grouping, Gradle wrapper) |
docker.json5 |
local>maximilianbarg/renovate-config:docker.json5 |
Dockerfile/compose rules (base image, system packages) |
ci.json5 |
local>maximilianbarg/renovate-config:ci.json5 |
GitHub/Forgejo Actions rules |
Usage in other repos
Add a renovate.json5 to the target repository and extend the presets you need.
The repo-specific keys (next to extends) always win over the preset values.
Python project
// renovate.json5
{
$schema: 'https://docs.renovatebot.com/renovate-schema.json',
extends: [
'local>maximilianbarg/renovate-config:default.json5',
'local>maximilianbarg/renovate-config:python.json5',
],
// optional repo-specific overrides, e.g.:
// labels: ['renovate', 'python-service'],
}
Kotlin Multiplatform project
// renovate.json5
{
$schema: 'https://docs.renovatebot.com/renovate-schema.json',
extends: [
'local>maximilianbarg/renovate-config:default.json5',
'local>maximilianbarg/renovate-config:kotlin.json5',
'local>maximilianbarg/renovate-config:docker.json5',
'local>maximilianbarg/renovate-config:ci.json5',
],
}
Pinning to a tag or commit
Pin all presets to the same ref for deterministic updates (tag, branch or commit SHA):
{
$schema: 'https://docs.renovatebot.com/renovate-schema.json',
extends: [
'local>maximilianbarg/renovate-config:default.json5#v1.0.0',
'local>maximilianbarg/renovate-config:python.json5#v1.0.0',
],
}
Notes
local>resolves against the platform Renovate runs on, so the same config works on any Forgejo/GitLab/GitHub instance.- The
.json5file name must be part of the reference; without it Renovate looks fordefault.json/<name>.json. - Only the first config file found in a repo is used (
renovate.json,renovate.json5,renovate.jsonc, …). - The Renovate token needs read access to this repository.
- Setting your own
ignorePresetsin the repo config replaces the ones from the presets (e.g. thedocker:pinDigestsignore indefault.json5) — list them again if needed.