| { |
| "$schema": "https://docs.renovatebot.com/renovate-schema.json", |
| "extends": [ |
| "config:recommended", |
| // Open a PR to migrate the config when Renovate deprecates syntax |
| ":configMigration", |
| // Refresh lock files on the first day of each month |
| // (still gated by dashboard approval for now) |
| ":maintainLockFilesMonthly", |
| // Pin GitHub Actions to their commit SHA digests, resolving floating tags |
| // (e.g. `v4`) to the full SemVer version (e.g. `v4.1.2`) |
| "helpers:pinGitHubActionDigestsToSemver" |
| ], |
| // Require manual approval from the Dependency Dashboard before opening PRs |
| "dependencyDashboardApproval": true, |
| "packageRules": [ |
| { |
| // No dashboard approval necessary for GitHub Actions updates |
| "matchManagers": ["github-actions"], |
| "dependencyDashboardApproval": false |
| } |
| ], |
| // Don't manage dependencies inside subtrees. They are updated upstream and |
| // synced in. See `src/doc/rustc-dev-guide/src/external-repos.md` for the list. |
| "ignorePaths": [ |
| "compiler/rustc_codegen_cranelift/**", |
| "compiler/rustc_codegen_gcc/**", |
| "library/compiler-builtins/**", |
| "library/portable-simd/**", |
| "library/stdarch/**", |
| "src/doc/rustc-dev-guide/**", |
| "src/tools/clippy/**", |
| "src/tools/miri/**", |
| "src/tools/rust-analyzer/**", |
| "src/tools/rustfmt/**" |
| ] |
| } |