Repository navigation
chore(deps-dev): bump the python-dependencies group across 1 directory with 3 updates - #774
Open
dependabot[bot] wants to merge 1 commit into
Open
dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
…y with 3 updates Bumps the python-dependencies group with 3 updates in the / directory: [uv](https://github.com/astral-sh/uv), [boto3](https://github.com/boto/boto3) and [hypothesis](https://github.com/HypothesisWorks/hypothesis). Updates `uv` from 0.12.19 to 0.12.20 - [Release notes](https://github.com/astral-sh/uv/releases) - [Changelog](https://github.com/astral-sh/uv/blob/main/CHANGELOG.md) - [Commits](astral-sh/uv@0.12.19...0.12.20) Updates `boto3` from 1.43.103 to 1.43.104 - [Release notes](https://github.com/boto/boto3/releases) - [Commits](boto/boto3@1.43.103...1.43.104) Updates `hypothesis` from 6.168.1 to 6.168.3 - [Release notes](https://github.com/HypothesisWorks/hypothesis/releases) - [Commits](HypothesisWorks/hypothesis@v6.168.1...v6.168.3) --- updated-dependencies: - dependency-name: uv dependency-version: 0.12.20 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: python-dependencies - dependency-name: boto3 dependency-version: 1.43.104 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: python-dependencies - dependency-name: hypothesis dependency-version: 6.168.3 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: python-dependencies ... Signed-off-by: dependabot[bot] <support@github.com>
Contributor
Dependency Review✅ No vulnerabilities or license issues or OpenSSF Scorecard issues found.OpenSSF Scorecard
Scanned Files
|
Contributor
OPA/conftest tenant-isolation gateResult: passed
|
Contributor
Mutation test critical Lambda boundariesResult: passed
Coverage: 39.67% (1215/3063 lines) Lowest-covered Lambda files
|
Contributor
Offline IaC contract testsResult: passed
Coverage: 95.18% (1481/1556 lines) Lowest-covered Lambda files
|
Contributor
Automation gate testsResult: passed
Coverage: 88.30% (906/1026 lines) Lowest-covered Lambda files
|
Contributor
Lambda unit testsResult: passed
Coverage: 92.76% (4641/5003 lines) Lowest-covered Lambda files
|
Contributor
OpenTofu module tests (latest-stable)Result: passed OpenTofu version:
|
Contributor
OpenTofu module tests (minimum-supported)Result: passed OpenTofu version:
|
This branch has not been deployed
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the python-dependencies group with 3 updates in the / directory: uv, boto3 and hypothesis.
Updates
uvfrom 0.12.19 to 0.12.20Release notes
Sourced from uv's releases.
... (truncated)
Changelog
Sourced from uv's changelog.
Commits
2274b80Bump version to 0.12.20 (#22064)8ee7eebAdd atomic write and HTTP cache benchmarks (#22054)fc012a6Reuse conflicting group locks with distinct extra specifiers (#22055)c9dab42Revert "Batch HTTP cache writes in blocking tasks" (#22051)b92dafcNormalize root paths in metadata output (#22050)4d3ce16Normalize requirement declarations in lockfiles (#21951)13fd524Downgrade some of reqsign's transitive deps (#22047)7a3bc07Avoid panics for unknown managed Python implementations (#22033)a41dbfcFix local paths inpylock.tomlexports (#22042)38502bcUpdate Rust crate owo-colors to v4.4.0 (#22031)Updates
boto3from 1.43.103 to 1.43.104Commits
ca37987Merge branch 'release-1.43.104'c468e3dBumping version to 1.43.104f2d1bacAdd changelog entries from botocore378d670Merge branch 'release-1.43.103' into developUpdates
hypothesisfrom 6.168.1 to 6.168.3Commits
44b82b2Bump hypothesis version to 6.168.3 and update changelogaeaafb5Merge pull request #4888 from gpacix/fix-quadratic-statisticsf3f4a29wording, remove hardcoded test7fabb94Add RELEASE.rst and AUTHORS.rst changes0ab4e38Summarize statistics events in linear time32ebeb2Bump hypothesis version to 6.168.2 and update changelogff7e800Merge pull request #4886 from pschanely/atomic-constants-cachee57fd12Isolate the constants cache test from existing cache filesc8981a0Write the local constants cache atomically9c55f97Merge pull request #4877 from HypothesisWorks/create-pull-request/patchDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions