Automated Dependency Management (IE greenskeeper.io)
Description
I know this would be a big feature, but I was thinking it would be very cool if something like greenkeeper.io could be built into Gitlab. gemnasium.com also seems to provide a similar service
Basically what it does is read the projects dependancies and then checks to see if there has been a new release for any of them. If so it creates a Merge Request with that dependency bumped reporting on the CI result.
~"feature proposal"
Proposal
Long term it would be cool to support a large number of languages/managers for example. npm, gems, maven, pip
It could either be part of GitLab that simply goes and reads from the various sources or it could be a CI setup that does the same.
Possible integration of security checkers like (https://snyk.io)[https://snyk.io]
If there is not an interest let me know I may just write up a node app anybody can install on their CI to do this.
Links
greenkeeper.io gemnasium.com https://github.com/SeanShubin/up-to-date