rmuir opened a new pull request, #15364:
URL: https://github.com/apache/lucene/pull/15364

   Addresses the new zizmor alerts around this issue.
   
   Waits a configurable number of days for a dependency to be released, before 
creating a pull request for it. This is helpful when there are supply chain 
security issues such as the recent NPM incidents.
   
   https://docs.zizmor.sh/audits/#dependabot-cooldown
   
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]


---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to