Commit graph

5 commits

Author SHA1 Message Date
amoussa1229
c5cae564f7 fix: stop dependabot from proposing wrong-direction @types/node major bumps
Add an ignore rule for version-update:semver-major on @types/node to
prevent Dependabot from proposing bumps that exceed the CI/synth Node
major (24). This is a sanctioned exception — minor and patch updates
within the current major still flow normally.

Refs #16
2026-07-04 05:31:54 +00:00
Adam Moussa
49bc8747b9
Repo hygiene: PR labeler + README badges + dependabot (INFRA-56/57/66) (#8) 2026-06-11 14:14:13 -04:00
Adam Moussa
56be4eea0b
Add dependency-review caller workflow (#3)
* Add dependency-review caller workflow

Add a pull_request-triggered caller that invokes the org-level
callable-dependency-review workflow to scan dependency changes and
fail on high-severity advisories.

* chore: retrigger checks

* chore: retrigger dep review (post-fix)
2026-06-05 12:27:07 -04:00
Adam Moussa
939ff7122c Set node-version to 24 in CI/CD workflows
Lock file generated with npm 11 (Node 24) is incompatible with npm 10
(Node 22) in CI — npm ci fails on missing transitive dependencies.
2026-05-14 15:41:54 -04:00
Adam Moussa
427242499d Initial file-share stack
CDK stack deploying a t4g.small EC2 instance with Samba and FileBrowser
for personal file storage over the site-to-site VPN. Includes 500 GiB
gp3 data volume with daily DLM snapshots.
2026-05-14 15:23:38 -04:00