-- [Configure and Use Dependency Management]
You have enabled security updates for a repository. When does GitHub mark a Dependabot alert as resolved for that repository?
A Dependabot alert is marked as resolved only after the related pull request is merged into the repository. This indicates that the vulnerable dependency has been officially replaced with a secure version in the active codebase.
Simply generating a PR or passing checks does not change the alert status; merging is the key step.
Joni
4 days agoMarguerita
9 days agoRory
14 days agoMyrtie
19 days agoLonna
25 days agoElmira
30 days agoLeota
1 month agoViki
1 month agoJulie
2 months agoLashandra
2 months agoKristian
2 months agoDenise
2 months agoBrittni
2 months agoStefan
2 months agoSharika
3 months agoCorrina
3 months agoElmer
3 months agoEura
4 months ago