[ 
https://issues.apache.org/jira/browse/CAMEL-24912?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=18118354#comment-18118354
 ] 

Aurélien Pupier commented on CAMEL-24912:
-----------------------------------------

> Adding more ignore rules to reduce the dependency count (trades coverage for 
> speed)

No, we want to cover all dependencies

> Switching to an alternative tool like Renovate Bot which does not have this 
> timeout constraint

it will come with other constraints and i tis not out of the box.

> Splitting the configuration (limited benefit for a single-root-POM reactor)

there is no split currently possible with Dependabot


In the past, we managed to have all the dependencies checked. We had to fix 
several performance issue on dependabot side. It sounds like a regression on 
dependabot side.
another alternative is to have a github hosted runner where we can provide the 
timeout we want. (but everybody prefers to spend their money on AI agents)

> Dependabot is again not able to check all dependencies
> ------------------------------------------------------
>
>                 Key: CAMEL-24912
>                 URL: https://issues.apache.org/jira/browse/CAMEL-24912
>             Project: Camel
>          Issue Type: Task
>          Components: build system
>    Affects Versions: 4.23.0
>            Reporter: Aurélien Pupier
>            Priority: Major
>
> even when it has created 0 Pull Requests, it was able to check only 600 
> dependencies (on the 900 existing)
> see https://github.com/apache/camel/actions/runs/35722236476/job/106727557689 
> and check of "checking if" string



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to