Improvement

July 29, 20251 Minute Read

Dependabot: Expanded cooldown and package manager support

We’re investing in keeping Dependabot relevant for modern development teams, whether you’re experimenting with a new language or relying on the latest version of your favorite package manager.

  • We’ve expanded Dependabot’s cooldown feature to now support Nuget and Helm, letting you configure a minimum age requirement before Dependabot creates a pull request for a newly released dependency. This is perfect for folks using version updates with mature projects, high-frequency packages, or teams looking to reduce patch-level noise.
  • Dependabot now supports newer versions of package managers across multiple ecosystems, so you can confidently use the latest tools in your workflow.

With these improvements, teams get more flexibility and reliability when managing dependencies. Check out our documentation for the full list of supported ecosystems and their versions, and join the discussion within GitHub Community.

Subscribe to our developer newsletter

Discover tips, technical guides, and best practices in our biweekly newsletter just for devs.

By submitting, I agree to let GitHub and its affiliates use my information for personalized communications, targeted advertising, and campaign effectiveness. See the GitHub Privacy Statement for more details.

Dependabot: Expanded cooldown and package manager support - GitHub Changelog