AI / RenovateBot Interview Questions
How do you configure Renovate to work with private npm registries and other private package sources?
Credentials for private registries are stored in hostRules or environment variables — never directly in renovate.json (which is committed to source control).
// renovate.json â reference private registry (no credentials here!) { "npmrc": "@myorg:registry=https://npm.pkg.github.com", "hostRules": [ { "matchHost": "npm.pkg.github.com", "hostType": "npm", "token": "{{ secrets.GITHUB_TOKEN }}" }, { "matchHost": "myartifactory.example.com", "hostType": "npm", "username": "{{ secrets.ARTIFACTORY_USER }}", "password": "{{ secrets.ARTIFACTORY_PASS }}" } ] }
# Self-hosted: provide credentials via environment variables export RENOVATE_TOKEN=ghp_xxx export NPM_TOKEN=npm_xxx docker run \ -e RENOVATE_TOKEN="${RENOVATE_TOKEN}" \ -e NPM_TOKEN="${NPM_TOKEN}" \ renovate/renovate:latest \ --token="${RENOVATE_TOKEN}" myorg/myrepo
More Related questions...