{"meta":{"title":"Dependabot セキュリティ更新プログラムリファレンス","intro":"Dependabot security updatesの使用状況情報を検索します。","product":"セキュリティとコードの品質","breadcrumbs":[{"href":"/ja/code-security","title":"セキュリティとコードの品質"},{"href":"/ja/code-security/reference","title":"リファレンス"},{"href":"/ja/code-security/reference/supply-chain-security","title":"サプライ チェーンのセキュリティ"},{"href":"/ja/code-security/reference/supply-chain-security/dependabot-security-updates","title":"Dependabot セキュリティ アップデート"}],"documentType":"article"},"body":"# Dependabot セキュリティ更新プログラムリファレンス\n\nDependabot security updatesの使用状況情報を検索します。\n\n## グループ化されたセキュリティ更新プログラムの設定の優先順位\n\nグループ化された Dependabot security updates の設定は、優先度が最も高いものから最も低いものまで、次の順序で適用されます。\n\n1. `dependabot.yml` ファイルで定義されている設定。\n   [「`dependabot.yml` ファイルについて」を](/ja/code-security/concepts/supply-chain-security/about-the-dependabot-yml-file)参照してください。\n2. UI で定義されているリポジトリ レベルの設定\n3. UI で定義されている組織レベルの設定\n\n## フォークされたリポジトリの有効化\n\nセキュリティ更新プログラムが有効になっているリポジトリのフォークを作成すると、 GitHub はフォークの Dependabot security updates を自動的に無効にします。 その後、特定のフォークで Dependabot security updates を有効にするかどうかを決定できます。"}