Skip to content

build(deps): bump european-parliament-mcp-server from 1.4.2 to 1.4.3 in the production-dependencies group#2566

Closed
dependabot[bot] wants to merge 2 commits into
mainfrom
dependabot/npm_and_yarn/production-dependencies-98fe86c957
Closed

build(deps): bump european-parliament-mcp-server from 1.4.2 to 1.4.3 in the production-dependencies group#2566
dependabot[bot] wants to merge 2 commits into
mainfrom
dependabot/npm_and_yarn/production-dependencies-98fe86c957

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jul 21, 2026

Copy link
Copy Markdown
Contributor

Bumps the production-dependencies group with 1 update: european-parliament-mcp-server.

Updates european-parliament-mcp-server from 1.4.2 to 1.4.3

Release notes

Sourced from european-parliament-mcp-server's releases.

European Parliament MCP Server v1.4.3

Highlights

🏗️ Infrastructure & Performance

  • chore(deps-dev): bump the development-dependencies group with 3 updates @dependabot[bot] (#639)
  • chore(deps): bump actions/checkout from 7.0.0 to 7.0.1 in the github-actions group across 1 directory @dependabot[bot] (#638)
  • chore(deps): bump undici from 8.7.0 to 8.8.0 in the production-dependencies group @dependabot[bot] (#637)

🔒 Security & Compliance

  • chore(deps): bump actions/checkout from 7.0.0 to 7.0.1 in the github-actions group across 1 directory @dependabot[bot] (#638)

📦 Dependencies

  • chore(deps-dev): bump the development-dependencies group with 3 updates @dependabot[bot] (#639)
  • chore(deps): bump actions/checkout from 7.0.0 to 7.0.1 in the github-actions group across 1 directory @dependabot[bot] (#638)
  • chore(deps): bump undici from 8.7.0 to 8.8.0 in the production-dependencies group @dependabot[bot] (#637)

🏛️ European Parliament MCP Server Enhancements

Changes in this release continue to enhance the European Parliament MCP Server's capabilities for providing AI assistants with structured access to parliamentary datasets, including:

  • Model Context Protocol (MCP) tools, resources, and prompts
  • European Parliament API integration and data access
  • Security-first architecture with GDPR compliance
  • High-performance caching and rate limiting
  • Comprehensive TypeScript typing and runtime validation

📊 Quality Metrics & Documentation

Test Coverage Unit Tests E2E Tests API Docs Documentation Portal

🔐 Security & Compliance

OpenSSF Scorecard SLSA 3 SBOM SBOM Quality Attestations

🛡️ Hack23 ISMS Compliance

Information Security Policy Open Source Policy ISO 27001 NIST CSF 2.0 CIS Controls v8.1 GDPR

... (truncated)

Commits
  • 4a79b2b chore(release): bump version to v1.4.3
  • cebbf5d chore(deps-dev): bump the development-dependencies group with 3 updates (#639)
  • 71cb04d chore(deps): bump actions/checkout (#638)
  • 23e2194 chore(deps): bump undici in the production-dependencies group (#637)
  • 2fc2275 chore: refresh EP data cache [skip ci] (#636)
  • 98db7cf docs: update documentation for v1.4.2
  • See full diff in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the production-dependencies group with 1 update: [european-parliament-mcp-server](https://github.com/Hack23/European-Parliament-MCP-Server).


Updates `european-parliament-mcp-server` from 1.4.2 to 1.4.3
- [Release notes](https://github.com/Hack23/European-Parliament-MCP-Server/releases)
- [Changelog](https://github.com/Hack23/European-Parliament-MCP-Server/blob/main/CHANGELOG.md)
- [Commits](Hack23/European-Parliament-MCP-Server@v1.4.2...v1.4.3)

---
updated-dependencies:
- dependency-name: european-parliament-mcp-server
  dependency-version: 1.4.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: production-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot @github

dependabot Bot commented on behalf of github Jul 21, 2026

Copy link
Copy Markdown
Contributor Author

Labels

The following labels could not be found: npm. Please create it before Dependabot can add it to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

@dependabot dependabot Bot added the dependencies Dependency updates label Jul 21, 2026
@dependabot
dependabot Bot requested a review from pethers as a code owner July 21, 2026 08:40
@github-actions github-actions Bot added infrastructure CI/CD and build infrastructure javascript JavaScript dependencies labels Jul 21, 2026
@pethers pethers closed this Jul 21, 2026
@dependabot @github

dependabot Bot commented on behalf of github Jul 21, 2026

Copy link
Copy Markdown
Contributor Author

This pull request was built based on a group rule. Closing it will not ignore any of these versions in future pull requests.

To ignore these dependencies, configure ignore rules in dependabot.yml

@pethers
pethers deleted the dependabot/npm_and_yarn/production-dependencies-98fe86c957 branch July 21, 2026 09:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Dependency updates infrastructure CI/CD and build infrastructure javascript JavaScript dependencies

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant