Skip to content

chore: Add cooldown of dependabot PR#1317

Merged
Czaki merged 2 commits intodevelopfrom
delay_dependabot
Oct 13, 2025
Merged

chore: Add cooldown of dependabot PR#1317
Czaki merged 2 commits intodevelopfrom
delay_dependabot

Conversation

@Czaki
Copy link
Collaborator

@Czaki Czaki commented Oct 13, 2025

Summary by Sourcery

Enhancements:

  • Configure Dependabot to enforce a 7-day cooldown between PRs.

Summary by CodeRabbit

  • Chores
    • Introduced a 7-day cooldown to the automated dependency update schedule, smoothing weekly checks and reducing pull request churn.
    • Added related project entries to track the cooldown and update flow for maintainers.
    • No changes to product functionality or user experience; maintenance activity will be more predictable and less noisy.

@Czaki Czaki added this to the 0.16.4 milestone Oct 13, 2025
@sourcery-ai
Copy link
Contributor

sourcery-ai bot commented Oct 13, 2025

Reviewer's guide (collapsed on small PRs)

Reviewer's Guide

Introduces a cooldown period for Dependabot-generated PRs by extending the weekly update configuration with a default 7-day delay.

File-Level Changes

Change Details Files
Enable cooldown period for Dependabot updates
  • Added a cooldown section under schedule
  • Set default-days value to 7
.github/dependabot.yml

Tips and commands

Interacting with Sourcery

  • Trigger a new review: Comment @sourcery-ai review on the pull request.
  • Continue discussions: Reply directly to Sourcery's review comments.
  • Generate a GitHub issue from a review comment: Ask Sourcery to create an
    issue from a review comment by replying to it. You can also reply to a
    review comment with @sourcery-ai issue to create an issue from it.
  • Generate a pull request title: Write @sourcery-ai anywhere in the pull
    request title to generate a title at any time. You can also comment
    @sourcery-ai title on the pull request to (re-)generate the title at any time.
  • Generate a pull request summary: Write @sourcery-ai summary anywhere in
    the pull request body to generate a PR summary at any time exactly where you
    want it. You can also comment @sourcery-ai summary on the pull request to
    (re-)generate the summary at any time.
  • Generate reviewer's guide: Comment @sourcery-ai guide on the pull
    request to (re-)generate the reviewer's guide at any time.
  • Resolve all Sourcery comments: Comment @sourcery-ai resolve on the
    pull request to resolve all Sourcery comments. Useful if you've already
    addressed all the comments and don't want to see them anymore.
  • Dismiss all Sourcery reviews: Comment @sourcery-ai dismiss on the pull
    request to dismiss all existing Sourcery reviews. Especially useful if you
    want to start fresh with a new review - don't forget to comment
    @sourcery-ai review to trigger a new review!

Customizing Your Experience

Access your dashboard to:

  • Enable or disable review features such as the Sourcery-generated pull request
    summary, the reviewer's guide, and others.
  • Change the review language.
  • Add, remove or edit custom review instructions.
  • Adjust other review settings.

Getting Help

Copy link
Contributor

@sourcery-ai sourcery-ai bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Hey there - I've reviewed your changes and they look great!


Sourcery is free for open source - if you like our reviews please consider sharing them ✨
Help me be more useful! Please click 👍 or 👎 on each comment and I'll use the feedback to improve your reviews.

@coderabbitai
Copy link
Contributor

coderabbitai bot commented Oct 13, 2025

Walkthrough

Adds a 7‑day cooldown to Dependabot updates for the github-actions ecosystem in .github/dependabot.yml and inserts three new tokens (PR, dependabot, cooldown) into .github/project_dict.pws.

Changes

Cohort / File(s) Summary
Dependabot config
.github/dependabot.yml
Added default-days: 7 cooldown entry for the github-actions ecosystem to adjust update scheduling.
Project dictionary
.github/project_dict.pws
Added three new tokens/entries: PR, dependabot, and cooldown (data-only additions).

Estimated code review effort

🎯 2 (Simple) | ⏱️ ~10 minutes

Suggested labels

skip check PR title

Poem

I twitch my whiskers, tap the tree,
Seven days' hush for bot and me.
Paws on keys, a gentle nod—
Updates rest beneath the sod.
Hop, then nibble, cadence set. 🥕

Pre-merge checks and finishing touches

✅ Passed checks (3 passed)
Check name Status Explanation
Description Check ✅ Passed Check skipped - CodeRabbit’s high-level summary is enabled.
Title Check ✅ Passed The title succinctly conveys the main change by indicating that a cooldown is being added for Dependabot PRs and aligns directly with the modifications to the Dependabot configuration.
Docstring Coverage ✅ Passed No functions found in the changes. Docstring coverage check skipped.
✨ Finishing touches
🧪 Generate unit tests (beta)
  • Create PR with unit tests
  • Post copyable unit tests in a comment
  • Commit unit tests in branch delay_dependabot

📜 Recent review details

Configuration used: Path: .coderabbit.yaml

Review profile: CHILL

Plan: Pro

📥 Commits

Reviewing files that changed from the base of the PR and between 4e54d1c and 326671a.

📒 Files selected for processing (1)
  • .github/project_dict.pws (1 hunks)
⏰ Context from checks skipped due to timeout of 900000ms. You can increase the timeout in your CodeRabbit configuration to a maximum of 15 minutes (900000ms). (16)
  • GitHub Check: 4DNucleome.PartSeg (Tests_other test windows)
  • GitHub Check: 4DNucleome.PartSeg (Tests_other test macos)
  • GitHub Check: 4DNucleome.PartSeg (Tests_linux test_linux)
  • GitHub Check: 4DNucleome.PartSeg (Builds sdist)
  • GitHub Check: 4DNucleome.PartSeg (Builds pyinstaller windows)
  • GitHub Check: 4DNucleome.PartSeg (Builds pyinstaller macos_arm)
  • GitHub Check: 4DNucleome.PartSeg (Builds pyinstaller_linux)
  • GitHub Check: 4DNucleome.PartSeg (Builds pyinstaller macos)
  • GitHub Check: Test PartSeg minimal / ubuntu-24.04 py 3.9 latest PyQt5
  • GitHub Check: 4DNucleome.PartSeg (GetTestData linux)
  • GitHub Check: 4DNucleome.PartSeg (manifest_check manifest_check)
  • GitHub Check: 4DNucleome.PartSeg (Documentation_check help)
  • GitHub Check: 4DNucleome.PartSeg (Documentation_check Notebook_check)
  • GitHub Check: 4DNucleome.PartSeg (formatting_check check_formating)
  • GitHub Check: Codacy Static Code Analysis
  • GitHub Check: Sourcery review
🔇 Additional comments (1)
.github/project_dict.pws (1)

24-26: LGTM! Appropriate additions to the spell-check dictionary.

The three new entries (PR, dependabot, cooldown) are directly related to the Dependabot cooldown configuration and are appropriate additions to the project's spell-check dictionary.

Minor note: The header indicates 22 words, but with these three additions, the count should be 25. Many spell-check tools auto-update this count, so it may not require manual adjustment.


Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands and usage tips.

@sonarqubecloud
Copy link

@Czaki Czaki changed the title chore: Add cooldown of dependabot PRs chore: Add cooldown of dependabot PR Oct 13, 2025
@codecov
Copy link

codecov bot commented Oct 13, 2025

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 93.17%. Comparing base (8b751c6) to head (326671a).
⚠️ Report is 26 commits behind head on develop.

Additional details and impacted files
@@             Coverage Diff             @@
##           develop    #1317      +/-   ##
===========================================
+ Coverage    93.16%   93.17%   +0.01%     
===========================================
  Files          210      210              
  Lines        33285    33285              
===========================================
+ Hits         31009    31014       +5     
+ Misses        2276     2271       -5     

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

@Czaki Czaki merged commit e434c45 into develop Oct 13, 2025
59 of 60 checks passed
@Czaki Czaki deleted the delay_dependabot branch October 13, 2025 15:41
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant

Comments