-
Notifications
You must be signed in to change notification settings - Fork 55
Bump the pip group in /src with 11 updates #3708
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Closed
Closed
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps the pip group in /src with 11 updates: | Package | From | To | | --- | --- | --- | | [beautifulsoup4](https://www.crummy.com/software/BeautifulSoup/bs4/) | `4.13.4` | `4.13.5` | | [certifi](https://github.com/certifi/python-certifi) | `2025.7.14` | `2025.8.3` | | [cryptography](https://github.com/pyca/cryptography) | `45.0.5` | `45.0.7` | | [jsonschema](https://github.com/python-jsonschema/jsonschema) | `4.25.0` | `4.25.1` | | [plotly](https://github.com/plotly/plotly.py) | `6.2.0` | `6.3.0` | | [pandas](https://github.com/pandas-dev/pandas) | `2.3.1` | `2.3.2` | | [pymongo](https://github.com/mongodb/mongo-python-driver) | `4.13.2` | `4.14.1` | | [requests](https://github.com/psf/requests) | `2.32.4` | `2.32.5` | | [tornado](https://github.com/tornadoweb/tornado) | `6.5.1` | `6.5.2` | | [coverage](https://github.com/nedbat/coveragepy) | `7.10.1` | `7.10.6` | | [ruff](https://github.com/astral-sh/ruff) | `0.12.7` | `0.12.11` | Updates `beautifulsoup4` from 4.13.4 to 4.13.5 Updates `certifi` from 2025.7.14 to 2025.8.3 - [Commits](certifi/python-certifi@2025.07.14...2025.08.03) Updates `cryptography` from 45.0.5 to 45.0.7 - [Changelog](https://github.com/pyca/cryptography/blob/main/CHANGELOG.rst) - [Commits](pyca/cryptography@45.0.5...45.0.7) Updates `jsonschema` from 4.25.0 to 4.25.1 - [Release notes](https://github.com/python-jsonschema/jsonschema/releases) - [Changelog](https://github.com/python-jsonschema/jsonschema/blob/main/CHANGELOG.rst) - [Commits](python-jsonschema/jsonschema@v4.25.0...v4.25.1) Updates `plotly` from 6.2.0 to 6.3.0 - [Release notes](https://github.com/plotly/plotly.py/releases) - [Changelog](https://github.com/plotly/plotly.py/blob/main/CHANGELOG.md) - [Commits](plotly/plotly.py@v6.2.0...v6.3.0) Updates `pandas` from 2.3.1 to 2.3.2 - [Release notes](https://github.com/pandas-dev/pandas/releases) - [Commits](pandas-dev/pandas@v2.3.1...v2.3.2) Updates `pymongo` from 4.13.2 to 4.14.1 - [Release notes](https://github.com/mongodb/mongo-python-driver/releases) - [Changelog](https://github.com/mongodb/mongo-python-driver/blob/master/doc/changelog.rst) - [Commits](mongodb/mongo-python-driver@4.13.2...4.14.1) Updates `requests` from 2.32.4 to 2.32.5 - [Release notes](https://github.com/psf/requests/releases) - [Changelog](https://github.com/psf/requests/blob/main/HISTORY.md) - [Commits](psf/requests@v2.32.4...v2.32.5) Updates `tornado` from 6.5.1 to 6.5.2 - [Changelog](https://github.com/tornadoweb/tornado/blob/master/docs/releases.rst) - [Commits](tornadoweb/tornado@v6.5.1...v6.5.2) Updates `coverage` from 7.10.1 to 7.10.6 - [Release notes](https://github.com/nedbat/coveragepy/releases) - [Changelog](https://github.com/nedbat/coveragepy/blob/master/CHANGES.rst) - [Commits](nedbat/coveragepy@7.10.1...7.10.6) Updates `ruff` from 0.12.7 to 0.12.11 - [Release notes](https://github.com/astral-sh/ruff/releases) - [Changelog](https://github.com/astral-sh/ruff/blob/main/CHANGELOG.md) - [Commits](astral-sh/ruff@0.12.7...0.12.11) --- updated-dependencies: - dependency-name: beautifulsoup4 dependency-version: 4.13.5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: pip - dependency-name: certifi dependency-version: 2025.8.3 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: pip - dependency-name: cryptography dependency-version: 45.0.7 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: pip - dependency-name: jsonschema dependency-version: 4.25.1 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: pip - dependency-name: plotly dependency-version: 6.3.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: pip - dependency-name: pandas dependency-version: 2.3.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: pip - dependency-name: pymongo dependency-version: 4.14.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: pip - dependency-name: requests dependency-version: 2.32.5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: pip - dependency-name: tornado dependency-version: 6.5.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: pip - dependency-name: coverage dependency-version: 7.10.6 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: pip - dependency-name: ruff dependency-version: 0.12.11 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: pip ... Signed-off-by: dependabot[bot] <support@github.com>
|
Looks like these dependencies are updatable in another way, so this is no longer needed. |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Labels
dependencies
Pull requests that update a dependency file
minor
python
Pull requests that update Python code
0 participants
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the pip group in /src with 11 updates:
4.13.4
4.13.5
2025.7.14
2025.8.3
45.0.5
45.0.7
4.25.0
4.25.1
6.2.0
6.3.0
2.3.1
2.3.2
4.13.2
4.14.1
2.32.4
2.32.5
6.5.1
6.5.2
7.10.1
7.10.6
0.12.7
0.12.11
Updates
beautifulsoup4
from 4.13.4 to 4.13.5Updates
certifi
from 2025.7.14 to 2025.8.3Commits
a97d9ad
2025.08.03 (#362)Updates
cryptography
from 45.0.5 to 45.0.7Changelog
Sourced from cryptography's changelog.
Commits
f52a3e1
prep for a 45.0.7 release (#13378)66198c2
Bump for release (#13249)Updates
jsonschema
from 4.25.0 to 4.25.1Release notes
Sourced from jsonschema's releases.
Changelog
Sourced from jsonschema's changelog.
Commits
331c384
Add the fix to the changelog.c1ec0a6
Merge pull request #1398 from python-jsonschema/dependabot/github_actions/ast...8e7d594
Merge pull request #1399 from python-jsonschema/dependabot/github_actions/act...460f4fa
Merge pull request #1396 from sirosen/improve-protocol-init-signature1e58409
[pre-commit.ci] auto fixes from pre-commit.com hooks64bc217
Add a typing test for the Validator protocol6c25741
Bump actions/checkout from 4 to 5bf603d5
Bump astral-sh/setup-uv from 6.4.3 to 6.5.0a916d8f
FixValidator
protocol init to match runtimede60f18
Merge pull request #1397 from python-jsonschema/pre-commit-ci-update-configUpdates
plotly
from 6.2.0 to 6.3.0Release notes
Sourced from plotly's releases.
Changelog
Sourced from plotly's changelog.
Commits
53572f6
Update uv lock file3b5a65f
version changes for v6.3.06b7565b
Merge pull request #5318 from plotly/update-plotlyjs-3.1.0c2225b7
add DeprecationWarning for upcoming change in locationmode 'country names'deef7a3
update plotly/labextension0589b22
upgrade plotly.js to 3.1.0694b036
Merge pull request #5308 from plotly/update-doc-string480a1af
Merge pull request #5287 from jdbeel/update-external-renderer-defaultc07de25
Merge branch 'main' into update-external-renderer-default9f4b774
Update _json.pyUpdates
pandas
from 2.3.1 to 2.3.2Release notes
Sourced from pandas's releases.
Commits
4665c10
RLS: 2.3.2633c68b
DOC: fix syntax in whatsnew file456ad47
Backport PR #62152 on branch 2.3.x (DOC: prepare 2.3.2 whatsnew notes for rel...6cae644
[backport 2.3.x] DOC: move and reword whatsnew note for replace fix (GH-57865...a91c50a
Backport PR #62147 on branch 2.3.x (DOC: correct and rewrite string migration...f7a2cfd
[backport 2.3.x] BUG/DEPR: logical operation with bool and string (#61995) (#...7981a43
Backport PR #62124 on branch 2.3.x (CI/BLD: don't use strict xfail for '%m.%Y...fafbcbd
[backport 2.3.x] BUG(CoW): also raise for chained assignment for .at / .iat (...3ac64a7
[backport 2.3.x] BUG: Fix Series.str.contains with compiled regex on Arrow st...1f2dc4f
[backport 2.3.x] BUG: fix Series.str.fullmatch() and Series.str.match() with ...Updates
pymongo
from 4.13.2 to 4.14.1Release notes
Sourced from pymongo's releases.
Changelog
Sourced from pymongo's changelog.
... (truncated)
Commits
0d2a4b4
Prep for 4.14.1 release (#2495)550d234
PYTHON-5503 Use uv to install just in GitHub Actions (#2490) [v4.14] (#2493)d98049c
PYTHON-5502 [v4.14] Fix handling of c extensions in Azure and GCP VMs (#2487)f66ec0f
PYTHON-5492 Fix handling of MaxTimeMS message (#2484) [v4.14] (#2485)6611bec
PYTHON-5493 [v4.14] Add a patch for the log order difference (#2482)7692bd6
PYTHON-5488append_metadata
should not add duplicates (#2461) [v4.14] (#2483)aa0b920
PYTHON-5492 Fix handling of MaxTimeMSExpired responses (#2477) [v4.14] (#2479)1c48016
PYTHON-5349 Use drivers-evergreen-tools to start servers in GitHub Actions (#...7055ad1
PYTHON-5492 Mark test as flaky (#2472) [v4.14] (#2475)e80f4f4
PYTHON-5491 Skip non-idempotent dropIndex tests (#2467) [v4.14] (#2468)Updates
requests
from 2.32.4 to 2.32.5Release notes
Sourced from requests's releases.
Changelog
Sourced from requests's changelog.
Commits
b25c87d
v2.32.5131e506
Merge pull request #7010 from psf/dependabot/github_actions/actions/checkout-...b336cb2
Bump actions/checkout from 4.2.0 to 5.0.046e939b
Update publish workflow to useartifact-id
instead ofname
4b9c546
Merge pull request #6999 from psf/dependabot/github_actions/step-security/har...7618dbe
Bump step-security/harden-runner from 2.12.0 to 2.13.02edca11
Add support for Python 3.14 and drop support for Python 3.8 (#6993)fec96cd
Update Makefile rules (#6996)d58d8aa
docs: clarify timeout parameter uses seconds in Session.request (#6994)91a3eab
Bump github/codeql-action from 3.28.5 to 3.29.0Updates
tornado
from 6.5.1 to 6.5.2Changelog
Sourced from tornado's changelog.
... (truncated)
Commits
547e6d8
Merge pull request #3529 from bdarnell/relnotes-652be9c374
Release notes for 6.5.28cbc4bf
Merge pull request #3527 from bdarnell/backports-6.5.2c0d3e6d
http1connection: Improve error logging for invalid host headers4ff5594
httputil: Restore the host argument to HTTPServerRequestb16916c
Add overloads to gen.multi() (#3515)b5d2f3c
httputil: Remove a debug print left in by mistake38c6f59
Merge pull request #3513 from oliver-sanders/3258.fix3fc1d91
websocket: Expand testing of next-ping calculation56fc23f
websocket_ping: fix ping interval with non-zero timeout and improve docs.Updates
coverage
from 7.10.1 to 7.10.6Changelog
Sourced from coverage's changelog.
... (truncated)
Commits
88c55ff
docs: sample HTML for 7.10.601d8995
docs: prep for 7.10.69b0c24f
docs: thanks Alex #203866d6910
fix: makesource
paths absolute where they exist. #1499bb3382f
build: no need for the combine/html times now9ea349a
lab: warn_executed.py808c9b4
build: changing metacov.ini should trigger metacov384f5f2
build: oops, some 'if's are really line pragmasa7224af
perf: pre-compute the mapping between other_db.context and main.context (#2038)5c00c5b
chore: bump the action-dependencies group with 3 updates (#2039)Updates
ruff
from 0.12.7 to 0.12.11Release notes
Sourced from ruff's releases.
... (truncated)
Changelog
Sourced from ruff's changelog.
... (truncated)
Commits
c2bc15b
Bump 0.12.11 (#20136)e586f6d
[ty] Benchmarks for problematic implicit instance attributes cases (#20133)76a6b7e
[pyflakes
] Fixallowed-unused-imports
matching for top-level modules (`F4...1ce6571
Move GitLab output rendering toruff_db
(#20117)d9aaacd
[ty] Evaluate reachability of non-definitely-bound to Ambiguous (#19579)18eaa65
[ty] Introduce a representation for the top/bottom materialization of an inva...af259fa
[flake8-async
] Implementblocking-http-call-httpx
(ASYNC212
) (#20091)d75ef38
[ty] print diagnostics with fully qualified name to disambiguate some cases (...89ca493
[ruff
] Preserve relative whitespace in multi-line expressions (RUF033
) (#...4b80f5f
[ty] Optimize TDD atom ordering (#20098)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions