
A study of GitHub's Dependabot cooldown feature finds security concerns, not convenience, drove most early adoption, and that 97% of projects that kept it simply used a general delay, mostly the 7-day default, over fine-grained rules.
articleAgentLogs: A Dataset for Opening the Black Box of GitHub's Cloud AgentJonan Richards, Kosei Horikawa, Youmei Fan, Yutaro Kashiwa, Mairieli Wessel
articleA Few Pages of Markdown: Committed AI Configuration and Lower Quality Cost after Coding-Agent AdoptionYegor Denisov-Blanch, Shyam Agarwal, Pavel Azaletskiy, Hao He, Rylan Schaeffer, Brando Miranda, Bogdan Vasilescu, Sanmi Koyejo
articleDependabot now waits three days before non-security version update pull…GitHubChecking sign-in…
Loading comments…