<rss xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title>Dependencies - Tag - vo.rs</title><link>https://vo.rs/tags/dependencies/</link><description>Dependencies - Tag - vo.rs</description><generator>Hugo -- gohugo.io</generator><language>en</language><copyright>This work is licensed under a Creative Commons Attribution-NonCommercial 4.0 International License.</copyright><lastBuildDate>Sat, 07 Feb 2026 10:00:00 +0000</lastBuildDate><atom:link href="https://vo.rs/tags/dependencies/" rel="self" type="application/rss+xml"/><item><title>Renovate Bot: Automated Dependency Updates That Don't Break Everything</title><link>https://vo.rs/story/renovate-bot-automated-dependency-updates-that-dont-break-everything/</link><description>&lt;p&gt;I have a confession that every honest engineer shares: I do not update my dependencies often enough. Things work, the backlog is long, and the moment you bump one library you discover three transitive ones that hate you now. So packages rot, CVEs accumulate, and then one terrible Tuesday you attempt a major upgrade across two years of drift and lose an afternoon to it. Renovate exists to stop that slow-motion disaster by turning one enormous painful upgrade into a steady stream of tiny, reviewable ones.&lt;/p&gt;</description><pubDate>Sat, 07 Feb 2026 10:00:00 +0000</pubDate></item><item><title>SBOM: Software Bill of Materials and Why You Should Care About Your Dependencies</title><link>https://vo.rs/story/sbom-software-bill-of-materials-and-why-you-should-care-about-your-dependencies/</link><description>&lt;p&gt;Every time a serious supply-chain vulnerability lands, the same scramble begins. Someone in a chat channel asks &amp;ldquo;are we affected?&amp;rdquo; and the honest answer, for most teams, is &amp;ldquo;give us a few days and we&amp;rsquo;ll tell you.&amp;rdquo; That few days is the gap an SBOM is meant to close. A Software Bill of Materials is just an inventory — a machine-readable list of every component that went into a build — but having one ready before the panic is the difference between an afternoon and a fortnight.&lt;/p&gt;</description><pubDate>Fri, 21 Nov 2025 07:00:00 +0000</pubDate></item></channel></rss>