chore(deps): bump reqwest from 0.12.28 to 0.13.4 in /src-tauri#32
chore(deps): bump reqwest from 0.12.28 to 0.13.4 in /src-tauri#32dependabot[bot] wants to merge 1 commit into
Conversation
There was a problem hiding this comment.
💡 Codex Review
Here are some automated review suggestions for this pull request.
Reviewed commit: 62b911d42a
ℹ️ About Codex in GitHub
Codex has been enabled to automatically review pull requests in this repo. Reviews are triggered when you
- Open a pull request for review
- Mark a draft as ready
- Comment "@codex review".
If Codex has suggestions, it will comment; otherwise it will react with 👍.
When you sign up for Codex through ChatGPT, Codex can also answer questions or update the PR, like "@codex address that feedback".
| pkcs11 = "0.5" | ||
| quick-xml = { version = "0.41", features = ["serialize"] } | ||
| reqwest = { version = "0.12", features = ["json", "stream"] } | ||
| reqwest = { version = "0.13", features = ["json", "stream"] } |
There was a problem hiding this comment.
Regenerate the Rust license inventory
This dependency bump changes the expected Rust component set, but THIRD_PARTY_LICENSES_RUST.txt still lists reqwest 0.12.28 and has no reqwest 0.13.4. The CI workflow runs node scripts/check-dependency-inventory.mjs --rust, and that script compares cargo tree --locked package versions against the notice file, so this PR will fail the Rust dependency inventory check until the Rust license report is regenerated.
Useful? React with 👍 / 👎.
| checksum = "43103168cc76fe62678a375e722fc9cb3a0146159ac5828bc4f0dfd755c2224c" | ||
| dependencies = [ | ||
| "cc", | ||
| "cmake", |
There was a problem hiding this comment.
Avoid adding an undocumented CMake build prerequisite
With reqwest 0.13 defaults this lockfile now pulls in aws-lc-sys, and its build graph depends on cmake. On supported Windows/macOS development hosts that follow the documented prerequisites but do not have CMake installed, cargo check --locked and Tauri builds can fail before Bridge compiles; either preserve the previous native-tls backend with explicit reqwest features or document/validate the new CMake requirement.
Useful? React with 👍 / 👎.
Bumps [reqwest](https://github.com/seanmonstar/reqwest) from 0.12.28 to 0.13.4. - [Release notes](https://github.com/seanmonstar/reqwest/releases) - [Changelog](https://github.com/seanmonstar/reqwest/blob/master/CHANGELOG.md) - [Commits](seanmonstar/reqwest@v0.12.28...v0.13.4) --- updated-dependencies: - dependency-name: reqwest dependency-version: 0.13.4 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
62b911d to
87a9ff7
Compare
Bumps reqwest from 0.12.28 to 0.13.4.
Release notes
Sourced from reqwest's releases.
... (truncated)
Changelog
Sourced from reqwest's changelog.
Commits
11489b3v0.13.4d31ffbbfeat: Expose HTTP2 keep alive configurations in blocking client (#3043)79ed0d7feat: support TLS 1.3 as min version under native-tls 🎉 (#2975)fb7bf6afix: remove unwrap in hickory initialization (#3041)3da616ffix: update hickory-resolver to 0.26 and adjust code accordingly (#3040)c77e7b2fix(http3): use happy eyeballs for h3 connect (#3030)9cbb65bchore: clean up minimal-versions CI job (#3039)17a7dc5chore: upgrade MSRV to 1.85 (#3038)03db63afix(redirect): strip sensitive headers on scheme change across redirects (#3034)4b813a8feat: add tls_sslkeylogfile builder method (#2923)