chore(deps): bump the ci-toolchain group in /requirements with 9 updates - #292
Open
dependabot[bot] wants to merge 1 commit into
Open
chore(deps): bump the ci-toolchain group in /requirements with 9 updates#292dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
Bumps the ci-toolchain group in /requirements with 9 updates: | Package | From | To | | --- | --- | --- | | [packaging](https://github.com/pypa/packaging) | `26.2` | `26.3` | | [cffi](https://github.com/python-cffi/cffi) | `2.1.0` | `2.1.1` | | [cyclonedx-bom](https://github.com/CycloneDX/cyclonedx-python) | `7.3.0` | `7.3.1` | | [sse-starlette](https://github.com/sysid/sse-starlette) | `3.4.6` | `3.4.8` | | [starlette](https://github.com/Kludex/starlette) | `1.3.1` | `1.4.1` | | [typer](https://github.com/fastapi/typer) | `0.27.0` | `0.27.1` | | [uvicorn](https://github.com/Kludex/uvicorn) | `0.52.0` | `0.52.1` | | [websockets](https://github.com/python-websockets/websockets) | `17.0` | `17.0.1` | | [coverage](https://github.com/coveragepy/coveragepy) | `7.15.2` | `7.15.3` | Updates `packaging` from 26.2 to 26.3 - [Release notes](https://github.com/pypa/packaging/releases) - [Changelog](https://github.com/pypa/packaging/blob/main/CHANGELOG.rst) - [Commits](pypa/packaging@26.2...26.3) Updates `cffi` from 2.1.0 to 2.1.1 - [Release notes](https://github.com/python-cffi/cffi/releases) - [Commits](python-cffi/cffi@v2.1.0...v2.1.1) Updates `cyclonedx-bom` from 7.3.0 to 7.3.1 - [Release notes](https://github.com/CycloneDX/cyclonedx-python/releases) - [Changelog](https://github.com/CycloneDX/cyclonedx-python/blob/main/CHANGELOG.md) - [Commits](CycloneDX/cyclonedx-python@v7.3.0...v7.3.1) Updates `sse-starlette` from 3.4.6 to 3.4.8 - [Release notes](https://github.com/sysid/sse-starlette/releases) - [Commits](sysid/sse-starlette@v3.4.6...v3.4.8) Updates `starlette` from 1.3.1 to 1.4.1 - [Release notes](https://github.com/Kludex/starlette/releases) - [Changelog](https://github.com/Kludex/starlette/blob/main/docs/release-notes.md) - [Commits](Kludex/starlette@1.3.1...1.4.1) Updates `typer` from 0.27.0 to 0.27.1 - [Release notes](https://github.com/fastapi/typer/releases) - [Changelog](https://github.com/fastapi/typer/blob/master/docs/release-notes.md) - [Commits](fastapi/typer@0.27.0...0.27.1) Updates `uvicorn` from 0.52.0 to 0.52.1 - [Release notes](https://github.com/Kludex/uvicorn/releases) - [Changelog](https://github.com/Kludex/uvicorn/blob/main/docs/release-notes.md) - [Commits](Kludex/uvicorn@0.52.0...0.52.1) Updates `websockets` from 17.0 to 17.0.1 - [Release notes](https://github.com/python-websockets/websockets/releases) - [Commits](python-websockets/websockets@17.0...17.0.1) Updates `coverage` from 7.15.2 to 7.15.3 - [Release notes](https://github.com/coveragepy/coveragepy/releases) - [Changelog](https://github.com/coveragepy/coveragepy/blob/main/CHANGES.rst) - [Commits](coveragepy/coveragepy@7.15.2...7.15.3) --- updated-dependencies: - dependency-name: packaging dependency-version: '26.3' dependency-type: direct:production update-type: version-update:semver-minor dependency-group: ci-toolchain - dependency-name: cffi dependency-version: 2.1.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: ci-toolchain - dependency-name: cyclonedx-bom dependency-version: 7.3.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: ci-toolchain - dependency-name: sse-starlette dependency-version: 3.4.8 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: ci-toolchain - dependency-name: starlette dependency-version: 1.4.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: ci-toolchain - dependency-name: typer dependency-version: 0.27.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: ci-toolchain - dependency-name: uvicorn dependency-version: 0.52.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: ci-toolchain - dependency-name: websockets dependency-version: 17.0.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: ci-toolchain - dependency-name: coverage dependency-version: 7.15.3 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: ci-toolchain ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the ci-toolchain group in /requirements with 9 updates:
26.226.32.1.02.1.17.3.07.3.13.4.63.4.81.3.11.4.10.27.00.27.10.52.00.52.117.017.0.17.15.27.15.3Updates
packagingfrom 26.2 to 26.3Release notes
Sourced from packaging's releases.
... (truncated)
Changelog
Sourced from packaging's changelog.
... (truncated)
Commits
929fd4bBump for releasef300ebfchore(deps): bump the pre-commit group with 5 updates (#1357)f91d975ci(downstream): bump hatchling to 1.31.0 and fix its pytest rootdir (#1361)b1a7124chore(deps): bump the github-actions group with 7 updates (#1358)2d873ebfix(metadata): fold every line boundary when writing headers (#1356)413d006docs: changelog for 26.3 (#1343)4eb0753docs(metadata): explain selective field validation (#1342)77e9ed4feat(tags): add pure Python tag generator (#1346)7cea5e8ci: drop 3.13t on Windows (3.13.14t may fail to build, run takes 9 minutes) (...45a8b34docs: add missing versionadded/versionchanged directives (#1344)Updates
cffifrom 2.1.0 to 2.1.1Release notes
Sourced from cffi's releases.
Commits
fd33e77New release 2.1.156a7876Use PyGILState_Ensure to avoid accessing CPython internals (#269) (#270)Updates
cyclonedx-bomfrom 7.3.0 to 7.3.1Release notes
Sourced from cyclonedx-bom's releases.
Changelog
Sourced from cyclonedx-bom's changelog.
Commits
5172a90chore(release): 7.3.16715bd9fix: improve error message for non-PEP 621 pyproject.toml (#1080)b830c67chore(deps): Bump actions/setup-python from 6.2.0 to 6.3.0 (#1069)0b65166chore(deps-dev): Update uv requirement from 0.11.8 to 0.11.17 (#1062)ac491abchore(deps): Bump actions/checkout from 6.0.2 to 7.0.0 (#1067)d5ece1bchore(deps): Bump snok/install-poetry from 1.4.1 to 1.4.2 (#1063)95d4630chore(deps): Bump zizmorcore/zizmor-action from 0.5.6 to 0.5.7 (#1068)b7abcd5chore(ci): comments for pinned actions (#1061)78abbc5Update CONTRIBUTING.md3c92172Update PULL_REQUEST_TEMPLATE.mdUpdates
sse-starlettefrom 3.4.6 to 3.4.8Release notes
Sourced from sse-starlette's releases.
Commits
a815cd3Bump version to 3.4.879d7745Bump version to 3.4.75ee7ba5Merge pull request #205 from sysid/dependabot/uv/cryptography-50.0.0ae7c799Merge pull request #203 from sysid/dependabot/uv/pyasn1-0.6.42cded15chore(deps): bump cryptography from 48.0.1 to 50.0.01c41d17chore(deps): bump pyasn1 from 0.6.3 to 0.6.4Updates
starlettefrom 1.3.1 to 1.4.1Release notes
Sourced from starlette's releases.
Changelog
Sourced from starlette's changelog.
Commits
9c55062Version 1.4.1 (#3416)152cef4Defaultthread_minimum_sizeinGZipResponder(#3415)3d6d6c2Version 1.4.0 (#3413)cb824a1Offload large GZip compression (#3410)5567e27Run ASGI benchmarks on a real event loop (#3412)be5bf5eAdd GZip event-loop responsiveness benchmark (#3409)7ed6b26Usezlib.compressobjinstead ofGzipFileinGZipMiddleware(#3411)a375798Lazily allocate GZipMiddleware compression resources (#3407)0eb9ca8Exercise GZipMiddleware benchmarks through ASGI (#3408)08f29c9Add GZipMiddleware bypass benchmarks (#3406)Updates
typerfrom 0.27.0 to 0.27.1Release notes
Sourced from typer's releases.
Changelog
Sourced from typer's changelog.
Commits
fe2aa0e🔖 Release version 0.27.1 (#1919)680dc99📝 Update release notesac3efd5✨ Makeepilogformatting consistent with other parts of the help string (#1...32d80ef📝 Update release notes10cb3c9⬆️ Upgrade latest-changes to 0.7.1 (#1909)ac329a0📝 Update release notesc37ae2f📝 Add Library Skills documentation (#1906)0974a7e📝 Update release notes951178c🐛 Prevent scroll-to-top on restart/fast buttons in the documentation (#1904)9051baa📝 Update release notesUpdates
uvicornfrom 0.52.0 to 0.52.1Release notes
Sourced from uvicorn's releases.
Changelog
Sourced from uvicorn's changelog.
Commits
ee8e45cVersion 0.52.1 (#3056)b57926dRemove duplicate content headers from WebSocket denial responses on websocket...49de1b9chore(deps): bump pymdown-extensions from 10.21.3 to 11.0 (#3042)2f3fa3aComplete server-initiated closes in SansIO WebSocket protocols (#3053)8c59d55chore(deps): bump the github-actions group with 5 updates (#3054)e148451Handle connection loss during WebSocket write backpressure (#3050)e16a69bAdd missing write flow control towebsockets-sansio(#3048)ef1dd44Fold the zttp-only tests back into the HTTP test suite (#3046)Updates
websocketsfrom 17.0 to 17.0.1Release notes
Sourced from websockets's releases.
Commits
fd3f16cRelease version 17.0.1.3e4634aRemove superfluous "no cover" pragmas.b93ef1eAdd tests for the asyncio server.fef04d8Fix backpressure in the Trio implementation.eb3600cRestore compatibility of serve_forever with uvloop.8b5e767Simplify asyncio server implementation.94f6384Refactor connection handling outside of Server class.3826993Unpin sphinx.31ec002Add Trio to requirements for building docs.ff7a7fbIncrease timeout for building wheels.Updates
coveragefrom 7.15.2 to 7.15.3Release notes
Sourced from coverage's releases.
Changelog
Sourced from coverage's changelog.
Commits
b7470d9docs: sample HTML for 7.15.327e6e80docs: prep for 7.15.3396dbbbbuild: include NOTICE in wheels (#2232)54dde05chore: bump the action-dependencies group with 7 updates (#2248)c83a0e0perf: skip AST parsing without soft keywords (#2240)a57f981refactor: fix some uncovered lines0252c34refactor: move numbits aggregate to numbits1c4184cdocs: maintainer workflowe8a1c87perf: speed up SQLite numbits aggregation (#2239)18c2a59test: conditional use of HypothesisDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions