# Repos where Dependabot alerts are INTENTIONALLY disabled, so their Dependabot
# findings are WAIVED.
#
# This is NOT an ignore list. A repo named here is still audited; only the two
# Dependabot-STATE findings below are suppressed. Skipping a repo outright would
# make genuine breakage disappear along with the noise.
#
# Format: one repo NAME per line (no owner prefix). "#" begins a comment.
#
# Effect: the alerts API call is skipped and reported as DISABLED_OK, and
# leftover Dependabot updater check-run failures stop counting as findings --
# with the updater off they cannot re-run, so they are noise.
#
# Still reported here: the repo's own build failures, stuck third-party statuses,
# and any open Dependabot PR (mergeable, and it would contradict this waiver).
#
# Trade-off: because the call is skipped, alerts being re-enabled on one of
# these repos will NOT be noticed, and any advisory it then reports goes unseen.
# Delete the line to resume checking that repo.

claudekit-engineer
claudekit-marketing
