Skip to content

Build(deps-dev): bump tox from 4.60.0 to 4.60.1 - #412

Merged
github-actions[bot] merged 1 commit into
mainfrom
dependabot/pip/tox-4.60.1
Aug 28, 2026
Merged

Build(deps-dev): bump tox from 4.60.0 to 4.60.1#412
github-actions[bot] merged 1 commit into
mainfrom
dependabot/pip/tox-4.60.1

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 28, 2026

Copy link
Copy Markdown
Contributor

Bumps tox from 4.60.0 to 4.60.1.

Release notes

Sourced from tox's releases.

v4.60.1

What's Changed

New Contributors

Full Changelog: tox-dev/tox@4.60.0...4.60.1

Changelog

Sourced from tox's changelog.

Bug fixes - 4.60.1

  • Report a malformed tox.ini or setup.cfg as a handled error during config discovery instead of raising an unhandled :class:configparser.Error traceback - by :user:VXNCXNX (:issue:4027)
  • Report an invalid value in the ini [tox] core section (such as min_version, requires or env_list) as a handled error instead of an unhandled traceback, matching the existing TOML loader behavior - by :user:VXNCXNX (:issue:4028)
  • Report an invalid --skip-env/TOX_SKIP_ENV regular expression as a handled error instead of raising an unhandled re.error traceback - by :user:VXNCXNX (:issue:4029)
  • Keep ; inside values read from a set_env environment file (file|.env). Environment file lines are plain KEY=VALUE pairs and were incorrectly parsed with the PEP-508 marker splitter, which truncated values such as DATABASE_URL=postgresql://host/db?opt=1;sslmode=require at the first semicolon - by :user:VXNCXNX (:issue:4030)
  • Report a handled configuration error instead of leaking a traceback when the selected configuration file exists but cannot be read - by :user:SirHegel. (:issue:4031)
  • Report an empty install_command or list_dependencies_command in a TOML configuration as a handled error instead of an unhandled traceback - by :user:dylanpulver (:issue:4041)

Contributor-facing changes - 4.60.1

  • Pre-seed the setuptools wheel image alongside pip before the test session and give integration tests a 240s budget on Windows, so pytest-timeout no longer kills Windows CI workers - by :user:gaborbernat. (:issue:4026)

v4.60.0 (2026-08-13)


Commits
  • e91ca3b release 4.60.1
  • 59e984f Report an empty TOML command value as a handled error (#4041)
  • fcb513e [pre-commit.ci] pre-commit autoupdate (#4040)
  • e753137 Report a bad ini core value as a handled error (#4028)
  • 79a45b4 🔧 chore: batch dependency updates weekly on Tuesday (#4038)
  • e388aeb 🔧 chore: drop the now-unused ty ignore directive (#4039)
  • 76baa0a docs: drop the claim that tox -e py skips tests with missing dependencies (#4...
  • 0250664 build(deps): bump astral-sh/setup-uv from 10.0.0 to 10.0.1 (#4037)
  • 8527c61 fix: report an invalid --skip-env regex as a handled error (#4029)
  • fb859dc fix: a semicolon truncates a value read from a set_env file (#4030)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [tox](https://github.com/tox-dev/tox) from 4.60.0 to 4.60.1.
- [Release notes](https://github.com/tox-dev/tox/releases)
- [Changelog](https://github.com/tox-dev/tox/blob/main/docs/changelog.rst)
- [Commits](tox-dev/tox@4.60.0...4.60.1)

---
updated-dependencies:
- dependency-name: tox
  dependency-version: 4.60.1
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels Aug 28, 2026
@dependabot
dependabot Bot requested a review from Diapolo10 as a code owner August 28, 2026 06:13
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels Aug 28, 2026
@github-actions
github-actions Bot enabled auto-merge August 28, 2026 06:13

@github-actions github-actions Bot left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'm approving this pull request because it includes a patch or minor update

@github-actions
github-actions Bot merged commit 7d1c109 into main Aug 28, 2026
15 of 18 checks passed
@dependabot
dependabot Bot deleted the dependabot/pip/tox-4.60.1 branch August 28, 2026 06:14
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python Pull requests that update Python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants