diff --git a/.github/workflows/label-dependabot-pr.yaml b/.github/workflows/label-dependabot-pr.yaml index 1aee19b5..3c5382fc 100644 --- a/.github/workflows/label-dependabot-pr.yaml +++ b/.github/workflows/label-dependabot-pr.yaml @@ -1,32 +1,10 @@ name: label-dependabot-pr on: - pull_request_target: - types: - - opened - - unlabeled + pull_request: + types: [ opened, unlabeled ] jobs: - label-pr: - runs-on: ubuntu-latest - permissions: write-all - if: ${{ github.event.pull_request.user.login == 'dependabot[bot]' }} - steps: - - name: Fetch Dependabot metadata - id: dependabot-metadata - uses: dependabot/fetch-metadata@v1 - - name: Label patch - if: ${{ steps.dependabot-metadata.outputs.update-type == 'version-update:semver-patch' }} - run: | - gh pr review $PR_URL --approve -b "I'm **approving** this pull request because **it includes a patch update**" - gh pr edit "$PR_URL" --add-label automerge --repo $GITHUB_REPOSITORY - env: - PR_URL: ${{github.event.pull_request.html_url}} - GITHUB_TOKEN: ${{secrets.GITHUB_TOKEN}} - - name: Label minor - if: ${{ steps.dependabot-metadata.outputs.update-type == 'version-update:semver-minor' }} - run: | - gh pr review $PR_URL --approve -b "I'm **approving** this pull request because **it includes a minor update**" - gh pr edit "$PR_URL" --add-label automerge --repo $GITHUB_REPOSITORY - env: - PR_URL: ${{github.event.pull_request.html_url}} - GITHUB_TOKEN: ${{secrets.GITHUB_TOKEN}} + label-dependabot-pr: + uses: navikt/teamesyfo-github-actions-workflows/.github/workflows/label-dependabot-pr.yaml@main + permissions: + pull-requests: write