Add Dependabot Alert Tools by LuluBeatson · Pull Request #631 · github/github-mcp-server · GitHub | Latest TMZ Celebrity News & Gossip | Watch TMZ Live
Skip to content

Add Dependabot Alert Tools #631

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Merged
merged 4 commits into from
Jul 3, 2025
Merged

Add Dependabot Alert Tools #631

merged 4 commits into from
Jul 3, 2025

Conversation

LuluBeatson
Copy link
Contributor

@LuluBeatson LuluBeatson commented Jul 3, 2025

Add new dependabot toolset containing:

  • get_dependabot_alert
  • list_dependabot_alerts

Example prompts:

Are there any open, high/critical severity dependabot alerts in github/github-mcp-server?

What's the best course of action to fix dependabot alert {num} in {owner/repo}?

Note:
For filtering alerts when listing them, I've included state (default open) and severity enums. But they could have instead been comma-separated strings.

Closes:

@LuluBeatson LuluBeatson marked this pull request as ready for review July 3, 2025 10:40
@Copilot Copilot AI review requested due to automatic review settings July 3, 2025 10:40
@LuluBeatson LuluBeatson requested a review from a team as a code owner July 3, 2025 10:40
Copy link
Contributor

@Copilot Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull Request Overview

This PR introduces a new Dependabot toolset that allows fetching and listing Dependabot alerts in GitHub repositories.

  • Registers a dependabot toolset in the main tool group with two read-only tools.
  • Implements get_dependabot_alert and list_dependabot_alerts handlers with full request/response logic.
  • Adds tests and updates documentation to expose the new tools.

Reviewed Changes

Copilot reviewed 5 out of 7 changed files in this pull request and generated no comments.

Show a summary per file
File Description
pkg/github/tools.go Registered the dependabot toolset and added ToStringPtr
pkg/github/dependabot.go Added implementations for the two Dependabot alert tools
pkg/github/dependabot_test.go Created unit tests covering success and error scenarios
docs/remote-server.md Updated toolsets table to include Dependabot
README.md Listed Dependabot tools and detailed their parameters
Files not reviewed (2)
  • pkg/github/toolsnaps/get_dependabot_alert.snap: Language not supported
  • pkg/github/toolsnaps/list_dependabot_alerts.snap: Language not supported

@JoannaaKL JoannaaKL merged commit 23f6f3a into main Jul 3, 2025
16 checks passed
@JoannaaKL JoannaaKL deleted the lulu/dependabot-alert-tool branch July 3, 2025 11:26
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants

TMZ Celebrity News – Breaking Stories, Videos & Gossip

Looking for the latest TMZ celebrity news? You've come to the right place. From shocking Hollywood scandals to exclusive videos, TMZ delivers it all in real time.

Whether it’s a red carpet slip-up, a viral paparazzi moment, or a legal drama involving your favorite stars, TMZ news is always first to break the story. Stay in the loop with daily updates, insider tips, and jaw-dropping photos.

🎥 Watch TMZ Live

TMZ Live brings you daily celebrity news and interviews straight from the TMZ newsroom. Don’t miss a beat—watch now and see what’s trending in Hollywood.