Repository navigation
Update ip-allow-lists-which-resources-are-protected.md #8000
Workflow file for this run
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| name: Auto Close Open Source Dependency Updates | |
| # Closes Dependabot dependency updates in github/docs because the internal repo owns them. | |
| on: | |
| pull_request: | |
| paths: | |
| - 'package*.json' | |
| - 'Gemfile*' | |
| - 'Dockerfile' | |
| - '.github/workflows/**' | |
| pull_request_review: | |
| types: | |
| - edited | |
| - submitted | |
| permissions: | |
| contents: write | |
| pull-requests: write | |
| jobs: | |
| close-external: | |
| if: >- | |
| ${{ | |
| github.repository == 'github/docs' && | |
| github.event.pull_request.number && | |
| github.event.pull_request.base.ref == 'main' && | |
| github.event.pull_request.user.login == 'dependabot[bot]' && | |
| github.event.pull_request.state == 'open' | |
| }} | |
| runs-on: ubuntu-latest | |
| steps: | |
| - name: Close pull request and delete branch | |
| env: | |
| GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} | |
| PR_URL: ${{ github.event.pull_request.html_url }} | |
| run: | | |
| gh pr close "$PR_URL" --delete-branch | |
| - name: Comment on the pull request | |
| env: | |
| GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} | |
| PR_URL: ${{ github.event.pull_request.html_url }} | |
| run: | | |
| gh pr comment "$PR_URL" --body "This dependency update will be handled internally by our engineering team." | |
| # Lock conversations to stop repeated dependency-update comments. | |
| - name: Lock conversations | |
| uses: actions/github-script@3a2844b7e9c422d3c10d287c895573f7108da1b3 | |
| env: | |
| PR_NUMBER: ${{ github.event.pull_request.number }} | |
| with: | |
| script: | | |
| try { | |
| await github.rest.issues.lock({ | |
| ...context.repo, | |
| issue_number: parseInt(process.env.PR_NUMBER, 10), | |
| lock_reason: 'resolved' | |
| }) | |
| console.log('Locked the pull request to prevent spam!') | |
| } catch (error) { | |
| console.error(`Failed to lock the pull request. Error: ${error}`) | |
| throw error | |
| } |