vy commented on PR #367: URL: https://github.com/apache/logging-parent/pull/367#issuecomment-2785429750
> transitive NPM dependencies will be upgraded only by Dependabot Does this mean Dependabot will try to upgrade hundreds of dependencies listed in `npm-shrinkwrap.json`? > This is also suggested in the deploy-site-reusable workflow Doesn't this warrant a correction on `deploy-site-reusable.yaml` in this PR? -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: notifications-unsubscr...@logging.apache.org For queries about this service, please contact Infrastructure at: us...@infra.apache.org