⬆ Bump the python-packages group with 5 updates - #503
Open
dependabot[bot] wants to merge 1 commit into
Open
dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
Bumps the python-packages group with 5 updates: | Package | From | To | | --- | --- | --- | | [ruff](https://github.com/astral-sh/ruff) | `0.16.4` | `0.16.8` | | [uvicorn](https://github.com/Kludex/uvicorn) | `0.52.4` | `0.53.0` | | [ty](https://github.com/astral-sh/ty) | `0.0.74` | `0.0.83` | | [prek](https://github.com/j178/prek) | `0.4.14` | `0.5.3` | | [zizmor](https://github.com/zizmorcore/zizmor) | `1.29.0` | `1.30.1` | Updates `ruff` from 0.16.4 to 0.16.8 - [Release notes](https://github.com/astral-sh/ruff/releases) - [Changelog](https://github.com/astral-sh/ruff/blob/main/CHANGELOG.md) - [Commits](astral-sh/ruff@0.16.4...0.16.8) Updates `uvicorn` from 0.52.4 to 0.53.0 - [Release notes](https://github.com/Kludex/uvicorn/releases) - [Changelog](https://github.com/Kludex/uvicorn/blob/main/docs/release-notes.md) - [Commits](Kludex/uvicorn@0.52.4...0.53.0) Updates `ty` from 0.0.74 to 0.0.83 - [Release notes](https://github.com/astral-sh/ty/releases) - [Changelog](https://github.com/astral-sh/ty/blob/main/CHANGELOG.md) - [Commits](astral-sh/ty@0.0.74...0.0.83) Updates `prek` from 0.4.14 to 0.5.3 - [Release notes](https://github.com/j178/prek/releases) - [Changelog](https://github.com/j178/prek/blob/master/CHANGELOG.md) - [Commits](j178/prek@v0.4.14...v0.5.3) Updates `zizmor` from 1.29.0 to 1.30.1 - [Release notes](https://github.com/zizmorcore/zizmor/releases) - [Changelog](https://github.com/zizmorcore/zizmor/blob/main/docs/release-notes.md) - [Commits](zizmorcore/zizmor@v1.29.0...v1.30.1) --- updated-dependencies: - dependency-name: ruff dependency-version: 0.16.8 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: python-packages - dependency-name: uvicorn dependency-version: 0.53.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: ty dependency-version: 0.0.83 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: python-packages - dependency-name: prek dependency-version: 0.5.3 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: python-packages - dependency-name: zizmor dependency-version: 1.30.1 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: python-packages ... Signed-off-by: dependabot[bot] <support@github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the python-packages group with 5 updates:
0.16.40.16.80.52.40.53.00.0.740.0.830.4.140.5.31.29.01.30.1Updates
rufffrom 0.16.4 to 0.16.8Release notes
Sourced from ruff's releases.
... (truncated)
Changelog
Sourced from ruff's changelog.
... (truncated)
Commits
62914c4Bump version to 0.16.8 (#28648)c47e0cd[ty] Bound aliased intersection expansion during inference (#28546)ff4747brenovate: update uv hashes correctly with setup-uv (#28621)94efeaa[ty] Compact reachable binding and declaration histories (#28349)50020fb[ty] Avoid storing constraint nodes twice (#28375)446bb68[ty] Compare bound-method receivers before signatures (#28384)304ab86[flake8-type-checking] Prefer lazy imports overTYPE_CHECKINGon 3.15+ (`...d940b24[ty] Watch script dependencies in CLI watch mode (#28125)fe9f065[flake8-tidy-imports] Addextend-banned-api(#28644)31131db[ty] Supporttype[A & B](#27124)Updates
uvicornfrom 0.52.4 to 0.53.0Release notes
Sourced from uvicorn's releases.
Changelog
Sourced from uvicorn's changelog.
Commits
421708fVersion 0.53.0 (#3136)f1a1bffUnset the keep-alive timer when upgrading to WebSocket (#3107)63971edDocument HTTP/2 support (#3130)7d1a005Remove race from multiprocess health check test (#3128)5ac6265Add ::1 to FORWARDED_ALLOW_IPS (#3119)098b206Remove timing race from SIGHUP supervisor test (#3127)968f15echore(deps): bump the github-actions group with 4 updates (#3113)7d4c08cchore(deps): bump the python-packages group across 1 directory with 11 update...fe528a4Require explicit opt-in for zttp HTTP/2 (#3101)fa324a4chore(deps-dev): bump httpx2 from 2.10.0 to 2.12.0 (#3121)Updates
tyfrom 0.0.74 to 0.0.83Release notes
Sourced from ty's releases.
... (truncated)
Changelog
Sourced from ty's changelog.
... (truncated)
Commits
9c21479Bump version to 0.0.83 (#4569)04c6911Sync the ty security mirror (#4549)3fa57a2Grant the versions workflow repository read access (#4550)a15b353use scoped token for release workflow (#4506)0ee1161Add a workflow for preparing releases (#4505)6999edbBump version to 0.0.82 (#4547)69ee79cUpdate prek dependencies (#4534)9bbacccRemove accidental uv version constraint (#4537)edb7fabUpdate astral-sh/setup-uv action to v10.1.0 (#4535)bc531b1Update dependency prek to v0.4.14 (#4533)Updates
prekfrom 0.4.14 to 0.5.3Release notes
Sourced from prek's releases.
... (truncated)
Changelog
Sourced from prek's changelog.
... (truncated)
Commits
b7eb602Bump version to 0.5.3 (#2708)4644f81Update granit-parser to fix YAML flow indentation (#2707)87f2ea4Use self-repository syntax in CI workflowsf39abaeAdd PEP 740 attestations for PyPI releases (#2705)f4924dcAllow disabling automatic uv installation (#2702)156c0ceFix Julia additional dependency specifiers (#2703)c3ede77Add acheck-jsoncbuiltin hook (#2682)c0b9749Verify checksums for PyPI/mirror wheel installs (#2688)fbe5c66Update prek hooks (#2690)4687a2cFixcheck-hooks-applyfor builtin Windows filename checksUpdates
zizmorfrom 1.29.0 to 1.30.1Release notes
Sourced from zizmor's releases.
... (truncated)
Changelog
Sourced from zizmor's changelog.
... (truncated)
Commits
99a054ezizmor 1.30.1 (#2375)f8be5a2docs: bump GHA pins (#2374)efdff0aMark self-repository fixes as unsafe (#2373)4cdfccachore(deps): bump the cargo group with 3 updates (#2355)df617deHandle .git URLs correctly (#2363)0500d71chore(deps): bump the github-actions group with 3 updates (#2356)aebd747chore(deps-dev): bump zensical from 0.0.53 to 0.0.57 in the uv group (#2357)f6d7aa6docs: Add instructions for Sublime Text (#2354)5526208Fix typo spelling error in audits docs (#2360)8d529fedocs: bump version (#2352)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions