Skip to content
Change the repository type filter

All

    Repositories list

    • dependabot-core

      Public
      🤖 Dependabot's core logic for creating update PRs.
      Ruby
      MIT License
      1.3k5.4k1.2k176Updated Mar 4, 2026Mar 4, 2026
    • cli

      Public
      A tool for testing and debugging Dependabot update jobs.
      Go
      MIT License
      69397205Updated Mar 4, 2026Mar 4, 2026
    • smoke-tests

      Public
      A collection of manifest files for various package managers and is used to perform end-to-end tests for Dependabot.
      HCL
      4263419Updated Mar 4, 2026Mar 4, 2026
    • proxy

      Public
      Dependabot's HTTP proxy to authenticate requests to package registries, git servers, and the GitHub API
      Go
      MIT License
      13123510Updated Mar 1, 2026Mar 1, 2026
    • fetch-metadata

      Public
      Extract information about the dependencies being updated by a Dependabot-generated PR.
      TypeScript
      MIT License
      112298289Updated Feb 28, 2026Feb 28, 2026
    • demo

      Public template
      🤖 Fork me to try out Dependabot
      Ruby
      4.3k298115Updated Jan 24, 2026Jan 24, 2026
    • codeowner-migration-action

      Public
      Shell
      4800Updated Aug 1, 2025Aug 1, 2025
    • example-cli-usage

      Public
      Demonstrates how to self-host Dependabot :dependabot:
      Shell
      MIT License
      273704Updated May 8, 2025May 8, 2025
    • dependabot-script

      Public archive
      Deprecated: Use https://github.com/dependabot/example-cli-usage/ instead.
      Ruby
      MIT License
      26756307Updated May 8, 2025May 8, 2025
    • goproxy

      Public archive
      An HTTP proxy library for Go. Dependabot uses this in our internal credential proxy: https://github.com/dependabot/dependabot-core/?tab=readme-ov-file#private-r…
      Go
      BSD 3-Clause "New" or "Revised" License
      1.2k1701Updated Mar 13, 2025Mar 13, 2025
    • git-shim

      Public
      git https shim
      Go
      62211Updated Jun 16, 2024Jun 16, 2024
    • .github

      Public
      232100Updated Apr 29, 2024Apr 29, 2024
    • yarn-lib

      Public
      A build of yarn that provides access to its internals
      Shell
      171600Updated Apr 17, 2024Apr 17, 2024
    • dependabot-actions-workflow

      Public archive
      Old example workflow for updating Dependabot pull requests. No longer relevant, see Readme for details.
      Ruby
      183501Updated May 12, 2023May 12, 2023
    • dummy-packages

      Public
      Dummy packages for testing Dependabot
      Ruby
      141800Updated May 12, 2023May 12, 2023
    • updater-action

      Public archive
      Runs Dependabot Updates via GitHub Actions. This fork exists because the Action used to live in the Dependabot org prior to GA. So beta customers may still depe…
      TypeScript
      MIT License
      63800Updated Oct 7, 2022Oct 7, 2022
    • gem-vulnerability-analysis

      Public archive
      Jupyter notebook for a blog post on gem vulnerabilities and version updates.
      Jupyter Notebook
      42000Updated Sep 6, 2022Sep 6, 2022
    • prometheus-aggregator-ruby

      Public archive
      A Ruby client for https://github.com/peterbourgon/prometheus-aggregator
      Ruby
      MIT License
      2904Updated Aug 9, 2022Aug 9, 2022
    • elixir-security-advisories

      Public archive
      Old database of Elixir security advisories before the GitHub Security Advisory DB supported Hex / Elixir.
      Ruby
      Other
      815210Updated Jul 22, 2022Jul 22, 2022
    • gomodules-extracted

      Public archive
      This code was originally used in dependabot-core, but has since been removed. See Readme for details.
      Go
      81800Updated Nov 24, 2021Nov 24, 2021
    • api-docs

      Public archive
      [Deprecated] Documentation for Dependabot Preview's API
      194030Updated Jul 29, 2021Jul 29, 2021
    • feedback

      Public archive
      The old feedback repository for Dependabot. Click below for the new repository.
      299500Updated Jun 29, 2020Jun 29, 2020
    • vgotest

      Public
      A dummy Go Module for testing Dependabot.
      21110Updated May 20, 2020May 20, 2020
    • monolog

      Public
      A fork of "Seldaek/monolog" used for dependabot-core tests
      PHP
      MIT License
      1.9k900Updated Aug 27, 2019Aug 27, 2019
    • php-dummy-pkg-b

      Public
      A dummy PHP package for testing Dependabot.
      21000Updated Jun 8, 2017Jun 8, 2017
    • php-dummy-pkg-a

      Public
      A dummy PHP package for testing Dependabot.
      21200Updated Jun 8, 2017Jun 8, 2017