Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Dependabot is spamming pull requests on my repos #10638

Open
1 task done
ascopes opened this issue Sep 19, 2024 · 2 comments
Open
1 task done

Dependabot is spamming pull requests on my repos #10638

ascopes opened this issue Sep 19, 2024 · 2 comments
Labels
L: java:maven Maven packages via Maven T: bug 🐞 Something isn't working

Comments

@ascopes
Copy link

ascopes commented Sep 19, 2024

Is there an existing issue for this?

  • I have searched the existing issues

Package ecosystem

maven

Package manager version

3.9.10

Language version

11

Manifest location and content before the Dependabot update

No response

dependabot.yml content

No response

Updated dependency

No response

What you expected to see, versus what you actually saw

I have just received over a dozen PRs being raised and immediately closed on my repository. Seems the bot just reraises the same PR with each new project it affects, and then closes previous PRs, which is extremely spammy.

Native package manager behavior

No response

Images of the diff or a link to the PR, issue, or logs

ascopes/protobuf-maven-plugin#389

ascopes/protobuf-maven-plugin#388

ascopes/protobuf-maven-plugin#387

ascopes/protobuf-maven-plugin#374

ascopes/protobuf-maven-plugin#375

ascopes/protobuf-maven-plugin#376

ascopes/protobuf-maven-plugin#377

ascopes/protobuf-maven-plugin#378

ascopes/protobuf-maven-plugin#379

ascopes/protobuf-maven-plugin#380

ascopes/protobuf-maven-plugin#381

ascopes/protobuf-maven-plugin#382

ascopes/protobuf-maven-plugin#383

ascopes/protobuf-maven-plugin#384

ascopes/protobuf-maven-plugin#385

ascopes/protobuf-maven-plugin#386

ascopes/protobuf-maven-plugin#387

IMG_20240919_183402
Screenshot_2024-09-19-18-33-05-47_45e686c594768066ad9911d54d96f72b

Smallest manifest that reproduces the issue

No response

@ascopes ascopes added the T: bug 🐞 Something isn't working label Sep 19, 2024
@github-actions github-actions bot added the L: java:maven Maven packages via Maven label Sep 19, 2024
@ascopes
Copy link
Author

ascopes commented Sep 19, 2024

@jmax01 that issue does not appear to mention bulk opening and closing of MRs? Unless I am misunderstanding something here..? This appears to be part of their new bulk grouping mechanism for security updates.

@jmax01
Copy link

jmax01 commented Sep 19, 2024

@jmax01 that issue does not appear to mention bulk opening and closing of MRs? Unless I am misunderstanding something here..? This appears to be part of their new bulk grouping mechanism for security updates.

You are correct I was sloppy. It should have been a question.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
L: java:maven Maven packages via Maven T: bug 🐞 Something isn't working
Projects
Status: No status
Development

No branches or pull requests

2 participants