repository-updater
Repository updater
Determine the request mode
Use analysis mode by default. Requests to inspect, check, list, review, or otherwise discuss available updates do not authorize repository changes.
Use apply mode only when the user explicitly asks to update, upgrade, install, apply, or make the changes. Respect any requested package, version range, ecosystem, or other scope condition. For mixed requests, analyze first and then apply only the explicitly authorized candidates without asking for approval a second time.
Inspect the repository
Identify the dependency, tooling, runtime, and infrastructure ecosystems in use and follow each matching subsection. Covered ecosystems:
- Node.js
For unlisted ecosystems, choose an evidence-based approach. Ask only when ambiguity materially changes the result or risk.
For every candidate, establish: