10000app
免费 · 浏览器本地工具Free · browser-local tool

Three days is now the default.
Security updates are still immediate.

Map sanitized update policies after Dependabot's new default. Separate version from security updates, defaults from explicit rules, and include/exclude intent from observed PR and CI evidence—without pasting repository configuration or dependency identities.

Free · browser-only

Dependabot cooldown policy map

Policy gateADD SANITIZED RECORDS
Valid / invalid / duplicate0 / 0 / 0
Recorded / review / cannot tell0 / 0 / 0
Version / security paths0 / 0
Default / explicit / opt-out0 / 0 / 0
Match/group / test gaps0 / 0
Policy fixtures0 / 10
PolicyEcosystem / classSource / days / SemVerMatch / schedule / groupCritical exception / testEvidence / ownerDecision / result

Cooldown, security-exception and observed-result queue

    “Evidence recorded” proves only coherent abstract metadata. This page did not inspect a repository, Dependabot YAML, registry release, dependency, advisory, generated PR, CI or logs; change configuration; delay/open a PR; assess a release; or prove supply-chain safety.