Ignore @types/node major bumps in Dependabot #5

Merged
amoussa1229 merged 1 commit from chore/types-node-runtime-pin into main 2026-06-24 19:01:23 +00:00
amoussa1229 commented 2026-06-24 18:51:34 +00:00 (Migrated from github.com)

Summary

This is a pure CDK app (no Lambdas), built and synthed on Node 24, so @types/node is pinned to ^24. A too-new @types/node major still compiles, so a major bump passes CI while describing Node APIs absent at the build Node. Add a scoped Dependabot ignore for @types/node semver-major bumps so the alignment can only be broken deliberately (alongside a Node upgrade). Minor/patch within the major still flow.

Validation

@types/node already correct at ^24.0.0; this PR only adds the Dependabot guard. dependabot.yml validated as well-formed YAML.

Tests

N/A — Dependabot config only.

Notes

  • Sanctioned exception to the no-blanket-ignore rule (engineering-handbook github-standards, Pinning Principle): Dependabot can't see the build Node, so the bump is wrong-yet-green and must be gated manually.
  • Closes the declined Dependabot PR #4 (24→26 overshoot).
## Summary This is a pure CDK app (no Lambdas), built and synthed on Node 24, so `@types/node` is pinned to `^24`. A too-new `@types/node` major still compiles, so a major bump passes CI while describing Node APIs absent at the build Node. Add a scoped Dependabot `ignore` for `@types/node` semver-major bumps so the alignment can only be broken deliberately (alongside a Node upgrade). Minor/patch within the major still flow. ## Validation `@types/node` already correct at `^24.0.0`; this PR only adds the Dependabot guard. `dependabot.yml` validated as well-formed YAML. ## Tests N/A — Dependabot config only. ## Notes - Sanctioned exception to the no-blanket-ignore rule (engineering-handbook github-standards, Pinning Principle): Dependabot can't see the build Node, so the bump is wrong-yet-green and must be gated manually. - Closes the declined Dependabot PR #4 (24→26 overshoot).
This repo is archived. You cannot comment on pull requests.
No description provided.