dependabot-pr-handler

Installation
SKILL.md

Dependabot PR Handler Skill

Automated skill for reviewing, validating, and safely merging Dependabot pull requests in the Fusion Framework monorepo.

Dependencies: This skill uses:

  • pnpm-dependency-analysis skill for impact assessment and blast radius calculation
  • npm-research skill for changelog, security, and breaking changes analysis

Operating Modes

Default to Full mode unless the user explicitly chooses Audit-only or Validate.

  • Audit-only: Research + build/test/lint locally. Comments optional. No post/push/merge.
  • Validate: Install + build + test + lint. Prepare comments. All actions gated by consent.
  • Full: End-to-end with required comments, consent-gated push/merge.

Templates

Related skills

More from equinor/fusion-framework

Installs
35
GitHub Stars
9
First Seen
Jan 25, 2026