Skip to content

Build(deps): Bump the all-dependencies group across 1 directory with 12 updates - #759

Open
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/hex/all-dependencies-f31de55acd
Open

dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/hex/all-dependencies-f31de55acd

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 16, 2026 •

Copy link
Copy Markdown
Contributor

Bumps the all-dependencies group with 12 updates in the / directory:

Package From To
cowboy 2.17.0 2.19.0
lazy_html 0.1.11 0.1.12
mox 1.2.0 1.3.1
oban 2.23.0 2.24.1
openai_ex 0.9.21 0.9.22
phoenix_live_reload 1.6.2 1.7.0
phoenix_live_view 1.2.7 1.2.11
postgrex 0.22.3 0.22.4
sobelow 0.14.1 0.15.0
telemetry_metrics 1.1.0 1.2.0
tzdata 1.1.4 1.1.5
waffle 1.1.10 2.0.0

Updates cowboy from 2.17.0 to 2.19.0

Commits
  • 79e3fb0 Cowboy 2.19.0
  • cbe5c53 Resolve http_SUITE:graceful_shutdown_listener flake
  • 304b641 Update tests for most recent Gun
  • 23b183f Set process labels on Cowboy processes
  • 24f7991 Require Erlang/OTP 27.0 or greater
  • 9cfa436 Tweak some HTTP/2 tests
  • 5c8535f Tweaks before publishing package
  • 72d5f6c Cowboy 2.18.0
  • 09d0a24 Websocket: Fix max_inflate_size calculation
  • 17b0e59 Fix test failing following a previous commit
  • Additional commits viewable in compare view

Updates lazy_html from 0.1.11 to 0.1.12

Release notes

Sourced from lazy_html's releases.

v0.1.12

Changed

  • Relaxed elixir_make requirement (#35)
Changelog

Sourced from lazy_html's changelog.

Commits

Updates mox from 1.2.0 to 1.3.1

Changelog

Sourced from mox's changelog.

v1.3.1 (2026-08-31)

  • Do not crash verification after an unexpected call in shared mode

v1.3.0 (2026-08-25)

  • Bump Elixir requirement to v1.15
  • Use Process.info(pid, :parent) to discover allowances
  • Improve error messages
Commits

Updates oban from 2.23.0 to 2.24.1

Release notes

Sourced from oban's releases.

v2.24.0

This release unifies configuration for queues, repos, and services, swaps opaque timing integers for readable durations, and backports per-entry cron timezones and attempt-preserving snoozes from Oban Pro.

⚙️ Unified Service Configuration

Configuration for queues, repos, and all services (formerly "plugins") is now entirely unified. This is a massive syntactic change, but it isn't all sugar. There's purpose behind the unification and the configuration hoisting.

Functionality like pruning jobs and rescuing orphaned jobs is essential to running Oban, and it shouldn't be an optional afterthought that's demoted as a "plugin" and buried in a guide. Now services are top level configuration just like the engine, notifier, and peer:

config :my_app, Oban,
  cron: [crontab: [{"0 2 * * *", MyApp.Nightly}]],
  pruner: [max_age: {7, :days}],
  lifeline: [rescue_after: {30, :minutes}],
  reindexer: Oban.Reindexer,
  ...

This configuration style should look familiar to anybody using oban-py. Building it is where we realized that these services are core functionality (in fact, it doesn't even have plugins).

Service module names are flatter as well. Since they're not considered plugins anymore, the Plugin namespace was a confusing misnomer—so Oban.Plugins.Cron is simply Oban.Cron, Oban.Plugins.Pruner is now Oban.Pruner, and so on.

Along with keyword options, the unified syntax supports bare modules, {module, opts} tuples, and disabling functionality altogether by passing false. The tuple variant makes it especially easy to swap core services out for alternatives (particularly useful for Pro 😉):

config :my_app, Oban,
+ engine: Oban.Pro.Engine,
- cron: {Oban.Cron, crontab: [...]},
+ cron: {Oban.Pro.Cron, crontab: [...]},
- lifeline: Oban.Lifeline,
+ lifeline: Oban.Pro.Lifeline,
- pruner: {Oban.Pruner, ...},
+ pruner: {Oban.Pro.Pruner, ...},
- queues: [...]
+ queues: {Oban.Pro.Queues, queues: [...]}

You'll see more about that in the Pro v1.8 release as well.

Finally, the repo option got the same treatment. Both log and get_dynamic_repo were really repo options, and the stand-alone log option was genuinely confusing. Now you can use the tuple format to pass those options through :repo directly:

repo: {MyApp.Repo, log: false, dynamic_repo: fn -> MyApp.Repo end}

Don't worry, these changes are fully backward compatible. Oban transparently rewrites older configuration formats into the correct format, all of the old plugin modules have backward compatible shims, and you can still provide plugins beyond the standard services.

🎁 Backports from Oban Pro

... (truncated)

Changelog

Sourced from oban's changelog.

v2.24.1 - 2026-09-03

Bug Fixes

  • [Engine] Prevent newer execution from overwriting

    Acking now verifies that the database hasn't been updated by another execution. Writes from a new executor will no longer transition an acked job, e.g. erroring or snoozing a job back out of completed.

    This applies to ack operations in Basic, Dolphin, and Lite engines.

  • [Notifier] Track notify listeners in isolated registry

    Listeners were tracked within each notifier process, which was lost if the notifier crashed. Registration now lives in a dedicated registry, owne by the Oban application, which is immune to process crashes.

  • [Notifier] Normalize notifier exits into error tuples

    Notifier callbacks through the notifier process could exit if it crashed or timed out, leaving callers to guard themselves with a try/catch.

    Now, exits are caught in the Notifier itself, and returned as an error tuple. Postgres and PG notifiers also no longer raise when their registered state is gone.

  • [Queues] Allow dispatch_cooldown when starting queues

    The dispatch_cooldown option was silently ignored for static queues, and loudly failed validation for dynamic queues. The option was always threaded through to the producer, and now they pass validation.

v2.24.0 - 2026-08-25

Changes

  • [Oban] Top-level config for maintenance plugins

    Promote the common maintenance plugins to first-class configuration keys: cron, pruner, lifeline, and reindexer. Each desugars into a standard plugin entry and accepts the same forms used elsewhere in Oban:

    config :my_app, Oban,
      cron: [crontab: [{"0 2 * * *", MyApp.Nightly}]],
      pruner: [max_age: 60 * 60 * 24 * 7]
    

    A keyword list configures the default plugin, and a module or {module, opts} tuple can configure an alternative (making it an easy switch for Oban Pro, e.g. lifeline: Oban.Pro.Lifeline).

... (truncated)

Commits
  • 64b8481 Release v2.24.1
  • 2e44ccb Normalize notifier exits into error tuples
  • b95e362 Track notify listeners in isolated registry
  • 8591092 Add precommit alias for precommit hook usage
  • 2368be1 Move module aliases below aliases
  • b9c86b1 Prevent newer execution from overwriting
  • 8d65be6 Reformat and rephrase issue templates
  • ca19fab Unwrap validator type in validation module
  • 0b55a41 Allow dispatch_cooldown when starting queues
  • a315b6d Release v2.24
  • Additional commits viewable in compare view

Updates openai_ex from 0.9.21 to 0.9.22

Changelog

Sourced from openai_ex's changelog.

[0.9.22] - 2026-08-12

Feat

  • added 'context_management' to responses endpoint (90653d4)
  • added 'moderation' and 'prompt_cache_options' to responses endpoint (211cbf4)
  • added 'moderation', 'prompt_cache_options' and 'safety_identifier' to chat completion endpoint (15ca99c)
  • added missing request params across audio, images, batches, containers, vector stores and fine-tuning endpoints (a43875a)
  • added 'cancel', 'compact' and 'input_tokens' to responses endpoint (6fdfe0b)
  • added 'search' to vector stores endpoint (acc876f)

Changed

  • bumped dependencies, notably finch to 0.23 and mint to 1.9 (42bbabd)
  • rewrote the user guide image section for the gpt image models, which return base64 rather than urls (2c34c9f)
  • updated the image kino app for the gpt image models (47ee986)
  • bumped livebook dev container image to 0.19.9 and kino to 0.19 (6c93df6)
  • moved 'preferred_cli_env' to 'def cli', deprecated in elixir 1.19 (6c93df6)
Commits

Updates phoenix_live_reload from 1.6.2 to 1.7.0

Changelog

Sourced from phoenix_live_reload's changelog.

1.7.0 (2026-07-29)

  • Enhancements
    • Add JavaScript helper function to capture keyboard shortcuts to open HEEx components
    • Forward log events to window for custom behaviour
Commits

Updates phoenix_live_view from 1.2.7 to 1.2.11

Release notes

Sourced from phoenix_live_view's releases.

v1.2.11

Bug fixes

  • Ensure stale diffs are discarded when view rejoins before the initial join succeeds (#4405)
  • Ensure a LiveComponent's async tasks are cancelled when it is removed (#4401)
  • Ensure formatter does not migrate expressions that close early (#4409)

v1.2.10

Bug fixes

  • Preserve onReply exceptions in hook pushEvent / pushEventTo (#4381)
  • Handle writer errors like other upload entry errors (#4370)
  • Cancel scheduled submit when auto upload is invalid (#3391)
  • Fix max_entries not working properly with auto uploads (#2835)
  • Fix testing file uploads with multiple entries (#3480)
  • Remove native input required attribute when LiveView tracks uploads (#4377)
  • Accept new drops afrer too_many_files with max_entries 1 (#3368)
  • Fix runtime hook added node tracking (#4387)
  • Preserve zero-duration JS transitions (#4385)
  • Cancel submit in EntryUploader.error (#4382)
  • Cancel infinite scroll throttle timers on destroy (#4384)
  • Clear focus stack entries on view teardown (#4386)
  • Fix join completion for empty recovery markup (#4390)
  • Fix missing return after child join failure (#4391)
  • Stop page loading when pushes fail (#4392)
  • Ensure external metadata failures are reported consistently (#4397)

Enhancements

  • Mark morphdom as dev dependency, as it is already included in the bundle
  • Allow dynamically updating phx-hook attribute (#4153)
  • Allow external uploads to be notified on cancel (#4395)
  • Pass toEl to hook beforeUpdate (#3616)
  • Improve error message when attributes have been defined after an embedded template (#4396)
  • Add Phoenix.LiveView.navigation_type/2 (#4393)
  • Cancel external uploads when navigating away (#4398)
  • Allow to opt out of phx-remove cascade on navigation (#4394)
  • Make phx-drop-target-active more reliable (#4399)

v1.2.9

Security fixes

  • CVE-2026-64941: Fix open redirect in redirect/2 via ASCII tab, LF and CR

Bug fixes

  • Fix live components being wrongly destroyed in some rare cases (#4350)

... (truncated)

Changelog

Sourced from phoenix_live_view's changelog.

v1.2.11 (2026-08-27)

Bug fixes

  • Ensure stale diffs are discarded when view rejoins before the initial join succeeds (#4405)
  • Ensure a LiveComponent's async tasks are cancelled when it is removed (#4401)
  • Ensure formatter does not migrate expressions that close early (#4409)

v1.2.10 (2026-08-20)

Bug fixes

  • Preserve onReply exceptions in hook pushEvent / pushEventTo (#4381)
  • Handle writer errors like other upload entry errors (#4370)
  • Cancel scheduled submit when auto upload is invalid (#3391)
  • Fix max_entries not working properly with auto uploads (#2835)
  • Fix testing file uploads with multiple entries (#3480)
  • Remove native input required attribute when LiveView tracks uploads (#4377)
  • Accept new drops afrer too_many_files with max_entries 1 (#3368)
  • Fix runtime hook added node tracking (#4387)
  • Preserve zero-duration JS transitions (#4385)
  • Cancel submit in EntryUploader.error (#4382)
  • Cancel infinite scroll throttle timers on destroy (#4384)
  • Clear focus stack entries on view teardown (#4386)
  • Fix join completion for empty recovery markup (#4390)
  • Fix missing return after child join failure (#4391)
  • Stop page loading when pushes fail (#4392)
  • Ensure external metadata failures are reported consistently (#4397)

Enhancements

  • Mark morphdom as dev dependency, as it is already included in the bundle
  • Allow dynamically updating phx-hook attribute (#4153)
  • Allow external uploads to be notified on cancel (#4395)
  • Pass toEl to hook beforeUpdate (#3616)
  • Improve error message when attributes have been defined after an embedded template (#4396)
  • Add Phoenix.LiveView.navigation_type/2 (#4393)
  • Cancel external uploads when navigating away (#4398)
  • Allow to opt out of phx-remove cascade on navigation (#4394)
  • Make phx-drop-target-active more reliable (#4399)

v1.2.9 (2026-08-10)

Security fixes

  • CVE-2026-64941: Fix open redirect in redirect/2 via ASCII tab, LF and CR

Bug fixes

  • Fix live components being wrongly destroyed in some rare cases (#4350)

... (truncated)

Commits

Updates postgrex from 0.22.3 to 0.22.4

Changelog

Sourced from postgrex's changelog.

v0.22.4 (2026-08-07)

  • Security
    • Escape comments on Postgrex.stream/4 (CVE-2026-66838)
Commits

Updates sobelow from 0.14.1 to 0.15.0

Release notes

Sourced from sobelow's releases.

v0.15.0

What's Changed

New Contributors

Full Changelog: sobelow/sobelow@v0.14.1...v0.15.0

Changelog

Sourced from sobelow's changelog.

v0.15.0

  • Bug fixes
    • Config.Secrets no longer crashes the scan when a secret is written as anything other than a plain double-quoted string. Heredoc values and values containing escaped quotes previously raised a MatchError and aborted the entire run. These secrets are now reported, using the line of the enclosing config call.
    • A corrupt or unreadable version-check cache file no longer aborts the scan. Sobelow previously printed "This does not appear to be a Phoenix application" and exited 0 — a CI gate could pass having scanned nothing.
    • --strict now reports syntax errors instead of raising. It has been broken since Elixir 1.13 changed the error shape returned by Code.string_to_quoted/2. Errors are now reported as file:line:column:.
    • A template that cannot be parsed is now skipped (or reported under --strict) rather than aborting the scan with an EEx.SyntaxError. The error now names the offending template instead of nofile.
    • A malformed .sobelow-conf now produces an actionable message instead of a raw MatchError stacktrace. This mattered more since v0.14.1 began reading the file automatically.
    • An empty, whitespace-only, or comment-only .sobelow-conf is now read as no options rather than aborting the scan. Such a file parses to an empty block instead of a keyword list, so it originally crashed with a FunctionClauseError and then, once that was fixed, exited 1 with a configuration error. Since the file is read automatically, a stray touch .sobelow-conf or a truncated write was enough to break every scan in a project. Contents that cannot be interpreted are still an error.
    • --save-config now stores ignore_files relative to the project root. Absolute paths were previously baked into .sobelow-conf, breaking the committed file on every other machine and in CI.
    • Config.Secrets now reports the line of the secret itself when a config call spans multiple lines. The line search compared a tuple against an integer, so it never worked as intended.
    • An unwritable ~/.sobelow no longer fails a scan.
    • Fixed a string-interpolation typo that rendered dot-access variables as conn.${atom_to_string(field)}.
    • .sobelow-conf keys are now genuinely sorted alphabetically.
    • A .sobelow-conf can no longer stop Sobelow from scanning. --save-config wrote version into every file it generated, so mix sobelow --version --save-config produced a committed file that made every later run print the version and exit 0 — a CI gate reading that as a clean scan. version, details, all-details, save-config, and diff choose what Sobelow does rather than configure a scan, and are now accepted on the command line only. One in the file is ignored, with a warning when it would have changed anything. version is no longer written to the file in the first place.
    • # sobelow_skip comments are no longer thrown away over whitespace. The pattern demanded exactly one space after the # and exactly one before the list, so # sobelow_skip["XSS.Raw"], # sobelow_skip ["XSS.Raw"], and # sobelow_skip [ "XSS.Raw" ] were all ignored — silently, and indistinguishably from a skip that had simply not applied. Spacing around

... (truncated)

Commits
  • 4eb7d16 version bump - 0.15.0
  • 1a9e9ff fix: Stop .sobelow-conf from being able to disable the scan
  • c5e71f7 fix: Only match unqualified query/query! where Ecto is in scope
  • d112cc5 Potential fix for code scanning alert no. 1: Workflow does not contain permis...
  • cc5721a fix: Stop discarding # sobelow_skip comments over whitespace, and warn
  • 23a6ce5 test: Cover pipeline skip scoping across multiple pipelines
  • 7578758 fix: handle a disabled router on every resolution path
  • eb28ed4 Allow possibility to remove missing router warning (issue #25)
  • f7a2aed fix: sort the whole skips file, and by parsed location
  • 9a543aa Reduce churn: Sort lines in .sobelow-skips file...
  • Additional commits viewable in compare view

Updates telemetry_metrics from 1.1.0 to 1.2.0

Changelog

Sourced from telemetry_metrics's changelog.

1.2.0

Added

  • Add support for functions in tags (this supersedes tag_values)

Changed

  • Assorted optimizations

Changed

Commits

Updates tzdata from 1.1.4 to 1.1.5

Changelog

Sourced from tzdata's changelog.

[1.1.5] - 2026-09-06

Fixed

  • Fix Africa/Casablanca and Africa/El_Aaiun switching to permanent UTC six months early in tzdata 2026c, and similar errors in some historical transitions, caused by a zone line whose rules end before the line does.

Changed

  • tzdata release version shipped with this library is now 2026c instead of 2026b.
  • Now supports version 4.x of hackney as well as 1.x
Commits

Updates waffle from 1.1.10 to 2.0.0

Changelog

Sourced from waffle's changelog.

v2.0.0

  • Replace the required Hackney dependency with the optional Req adapter.
  • Add a pluggable HTTP-client behaviour for remote downloads.
  • Retain Waffle.StorageBehavior as a compatibility name for storage adapters. Waffle.Storage is a preferred name.
  • Limit remote downloads to 50 MiB by default.
  • Return structured %Waffle.HTTPClient.Error{} values for HTTP failures.
  • Compile cleanly without optional Req or ExAws dependencies.
  • Allow the temporary directory to be configured with :tmp_dir.
  • Support RFC 6266 filename* parameters and reject unsafe filenames from remote Content-Disposition headers.
  • Require Elixir 1.15 or later.

Upgrade guide

Applications that download remote URLs must add and configure Req:

{:req, "~> 0.7"}
config :waffle,
  http_client: Waffle.HTTPClient.Req

Configuration names changed as follows:

Waffle 1.x Waffle 2.0
recv_timeout receive_timeout_ms
connect_timeout connect_timeout_ms
max_body_length max_body_length_bytes
backoff_factor backoff_factor_ms
backoff_max backoff_max_ms

The first retry delay now equals backoff_factor_ms. In Waffle 1.x, it was half of backoff_factor because retry counting started at zero.

Remote downloads previously always followed redirects. Waffle 2.0 adds max_redirects, which defaults to 3; set it to nil to disable redirects.

Request options also moved under the :request key. max_retries keeps its name.

Before:

config :waffle,
</tr></table> 

... (truncated)

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

…12 updates

Bumps the all-dependencies group with 12 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [cowboy](https://github.com/ninenines/cowboy) | `2.17.0` | `2.19.0` |
| [lazy_html](https://github.com/dashbitco/lazy_html) | `0.1.11` | `0.1.12` |
| [mox](https://github.com/dashbitco/mox) | `1.2.0` | `1.3.1` |
| [oban](https://github.com/oban-bg/oban) | `2.23.0` | `2.24.1` |
| [openai_ex](https://github.com/cyberchitta/openai_ex) | `0.9.21` | `0.9.22` |
| [phoenix_live_reload](https://github.com/phoenixframework/phoenix_live_reload) | `1.6.2` | `1.7.0` |
| [phoenix_live_view](https://github.com/phoenixframework/phoenix_live_view) | `1.2.7` | `1.2.11` |
| [postgrex](https://github.com/elixir-ecto/postgrex) | `0.22.3` | `0.22.4` |
| [sobelow](https://github.com/sobelow/sobelow) | `0.14.1` | `0.15.0` |
| [telemetry_metrics](https://github.com/beam-telemetry/telemetry_metrics) | `1.1.0` | `1.2.0` |
| [tzdata](https://github.com/lau/tzdata) | `1.1.4` | `1.1.5` |
| [waffle](https://github.com/elixir-waffle/waffle) | `1.1.10` | `2.0.0` |



Updates `cowboy` from 2.17.0 to 2.19.0
- [Commits](ninenines/cowboy@2.17.0...2.19.0)

Updates `lazy_html` from 0.1.11 to 0.1.12
- [Release notes](https://github.com/dashbitco/lazy_html/releases)
- [Changelog](https://github.com/dashbitco/lazy_html/blob/main/CHANGELOG.md)
- [Commits](dashbitco/lazy_html@v0.1.11...v0.1.12)

Updates `mox` from 1.2.0 to 1.3.1
- [Changelog](https://github.com/dashbitco/mox/blob/main/CHANGELOG.md)
- [Commits](dashbitco/mox@v1.2.0...v1.3.1)

Updates `oban` from 2.23.0 to 2.24.1
- [Release notes](https://github.com/oban-bg/oban/releases)
- [Changelog](https://github.com/oban-bg/oban/blob/main/CHANGELOG.md)
- [Commits](oban-bg/oban@v2.23.0...v2.24.1)

Updates `openai_ex` from 0.9.21 to 0.9.22
- [Changelog](https://github.com/cyberchitta/openai_ex/blob/main/CHANGELOG.md)
- [Commits](https://github.com/cyberchitta/openai_ex/commits)

Updates `phoenix_live_reload` from 1.6.2 to 1.7.0
- [Changelog](https://github.com/phoenixframework/phoenix_live_reload/blob/main/CHANGELOG.md)
- [Commits](phoenixframework/phoenix_live_reload@v1.6.2...v1.7.0)

Updates `phoenix_live_view` from 1.2.7 to 1.2.11
- [Release notes](https://github.com/phoenixframework/phoenix_live_view/releases)
- [Changelog](https://github.com/phoenixframework/phoenix_live_view/blob/main/CHANGELOG.md)
- [Commits](phoenixframework/phoenix_live_view@v1.2.7...v1.2.11)

Updates `postgrex` from 0.22.3 to 0.22.4
- [Release notes](https://github.com/elixir-ecto/postgrex/releases)
- [Changelog](https://github.com/elixir-ecto/postgrex/blob/master/CHANGELOG.md)
- [Commits](elixir-ecto/postgrex@v0.22.3...v0.22.4)

Updates `sobelow` from 0.14.1 to 0.15.0
- [Release notes](https://github.com/sobelow/sobelow/releases)
- [Changelog](https://github.com/sobelow/sobelow/blob/main/CHANGELOG.md)
- [Commits](sobelow/sobelow@v0.14.1...v0.15.0)

Updates `telemetry_metrics` from 1.1.0 to 1.2.0
- [Changelog](https://github.com/beam-telemetry/telemetry_metrics/blob/main/CHANGELOG.md)
- [Commits](https://github.com/beam-telemetry/telemetry_metrics/commits)

Updates `tzdata` from 1.1.4 to 1.1.5
- [Changelog](https://github.com/lau/tzdata/blob/master/CHANGELOG.md)
- [Commits](lau/tzdata@v1.1.4...v1.1.5)

Updates `waffle` from 1.1.10 to 2.0.0
- [Changelog](https://github.com/elixir-waffle/waffle/blob/master/CHANGELOG.md)
- [Commits](elixir-waffle/waffle@v1.1.10...v2.0.0)

---
updated-dependencies:
- dependency-name: cowboy
  dependency-version: 2.19.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: all-dependencies
- dependency-name: lazy_html
  dependency-version: 0.1.12
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: all-dependencies
- dependency-name: mox
  dependency-version: 1.3.1
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: all-dependencies
- dependency-name: oban
  dependency-version: 2.24.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: all-dependencies
- dependency-name: openai_ex
  dependency-version: 0.9.22
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: all-dependencies
- dependency-name: phoenix_live_reload
  dependency-version: 1.7.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: all-dependencies
- dependency-name: phoenix_live_view
  dependency-version: 1.2.11
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: all-dependencies
- dependency-name: postgrex
  dependency-version: 0.22.4
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: all-dependencies
- dependency-name: sobelow
  dependency-version: 0.15.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: all-dependencies
- dependency-name: telemetry_metrics
  dependency-version: 1.2.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: all-dependencies
- dependency-name: tzdata
  dependency-version: 1.1.5
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: all-dependencies
- dependency-name: waffle
  dependency-version: 2.0.0
  dependency-type: direct:production
  update-type: version-update:semver-major
  dependency-group: all-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file elixir Pull requests that update Elixir code labels Sep 16, 2026

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file elixir Pull requests that update Elixir code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants