Skip to content

MAINT: Bump the actions group across 1 directory with 2 updates - #37

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/dot-github/workflows/actions-1fff04b4f5
Closed

MAINT: Bump the actions group across 1 directory with 2 updates#37
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/dot-github/workflows/actions-1fff04b4f5

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jun 9, 2025

Copy link
Copy Markdown
Contributor

Bumps the actions group with 2 updates in the /.github/workflows directory: pypa/cibuildwheel and conda-incubator/setup-miniconda.

Updates pypa/cibuildwheel from 2.23.1 to 2.23.3

Release notes

Sourced from pypa/cibuildwheel's releases.

v2.23.3

  • 🛠 Dependency updates, including Python 3.13.3 (#2371)

v2.23.2

  • 🐛 Workaround an issue with pyodide builds when running cibuildwheel with a Python that was installed via UV (#2328 via #2331)
  • 🛠 Dependency updates, including a manylinux update that fixes an 'undefined symbol' error in gcc-toolset (#2334)
Changelog

Sourced from pypa/cibuildwheel's changelog.


title: Changelog

Changelog

v3.0.0

Not yet released, but available for testing.

Note - when using a beta version, be sure to check the latest docs, rather than the stable version, which is still on v2.X.

If you've used previous versions of the beta:

  • ⚠️ Previous betas of v3.0 changed the working directory for tests. This has been rolled back to the v2.x behaviour, so you might need to change configs if you adapted to the beta 1 or 2 behaviour. See [issue #2406](pypa/cibuildwheel#2406) for more information.
  • ⚠️ GraalPy shipped with the identifier gp242-* in previous betas, this has been changed to gp311_242-* to be consistent with other interpreters, and to fix a bug with GraalPy and project requires-python detection. If you were using GraalPy, you might need to update your config to use the new identifier.
  • ⚠️ test-sources now uses project directory instead of the package directory (matching the docs).

v3.0.0rc2

6 June 2025

  • 🛠 Updates to dependencies including Pyodide, python-build-standalone, and iOS support package. (#2449)

v3.0.0rc1

5 June 2025

  • 🛠 Updates to dependencies including CPython 3.13.4, pyodide-build and iOS support package. (#2443)

v3.0.0b5

3 June 2025

  • ✨ Support multiple commands on iOS, joined by &&, like the other platforms. (#2432)
  • ✨ Add pyodide-prerelease enable option, with an early build of 0.28 (Python 3.13). (#2431)
  • 🛠 test-sources now uses the project directory instead of the package directory (matching the docs). (#2437)
  • 🛠 Fixed a bug with GraalPy if vsdevcmd prints an error. Cirrus CI works again. (#2414)
  • 🛠 Use the standard Schema line for the integrated JSONSchema. (#2433)
  • 📚 Use Python 3.14 color output in docs CLI output. (#2407)

v3.0.0b4

29 May 2025

  • 🛠 Dependency updates, including Python 3.14.0b2. (#2371)
  • 🛠 Remove the addition of PYTHONSAFEPATH to test-environment. (#2429)

... (truncated)

Commits

Updates conda-incubator/setup-miniconda from 3.1.1 to 3.2.0

Release notes

Sourced from conda-incubator/setup-miniconda's releases.

Version 3.2.0

Fixes

Tasks and Maintenance

Changelog

Sourced from conda-incubator/setup-miniconda's changelog.

CHANGELOG

[v3.2.0] (2025-06-04)

Fixes

Tasks and Maintenance

v3.1.1 (2025-01-20)

Fixes

  • #378: Make nodefaults warning more explicit
  • #387: Detect and support Linux ARM runners for both Miniconda and Miniforge

Tasks and Maintenance

  • #374: Bump conda-incubator/setup-miniconda from 3.0.4 to 3.1.0
  • #375: Bump actions/cache from 3 to 4
  • #384: Bump @​actions/tool-cache from 2.0.1 to 2.0.2
  • #386: Fix link to example 14
  • #388: Fix mamba 1.x examples

#374: conda-incubator/setup-miniconda#374 #375: conda-incubator/setup-miniconda#375 #378: conda-incubator/setup-miniconda#378 #384: conda-incubator/setup-miniconda#384 #386: conda-incubator/setup-miniconda#386 #387: conda-incubator/setup-miniconda#387 #388: conda-incubator/setup-miniconda#388

[v3.1.0] (2024-10-31)

Features

... (truncated)

Commits
  • 8352349 Merge pull request #403 from conda-incubator/prepare-3.2.0
  • 07746af Format via npm run prettier:format
  • b0c4eb8 Update CHANGELOG.md
  • 5dc2927 Bump semver from 7.7.1 to 7.7.2 (#400)
  • 91c4acc Merge pull request #402 from conda-incubator/auto-activate-base
  • 0b3329e Workaround for auto_activate_base deprecation
  • 7470d07 Merge pull request #399 from conda-incubator/dependabot/npm_and_yarn/main/mul...
  • 598ddbc Commit result of npm run build
  • f0b2634 Bump semver and @​types/semver
  • e497204 Bump undici from 5.28.4 to 5.28.5 (#390)
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the actions group with 2 updates in the /.github/workflows directory: [pypa/cibuildwheel](https://github.com/pypa/cibuildwheel) and [conda-incubator/setup-miniconda](https://github.com/conda-incubator/setup-miniconda).


Updates `pypa/cibuildwheel` from 2.23.1 to 2.23.3
- [Release notes](https://github.com/pypa/cibuildwheel/releases)
- [Changelog](https://github.com/pypa/cibuildwheel/blob/main/docs/changelog.md)
- [Commits](pypa/cibuildwheel@42728e8...faf86a6)

Updates `conda-incubator/setup-miniconda` from 3.1.1 to 3.2.0
- [Release notes](https://github.com/conda-incubator/setup-miniconda/releases)
- [Changelog](https://github.com/conda-incubator/setup-miniconda/blob/main/CHANGELOG.md)
- [Commits](conda-incubator/setup-miniconda@505e639...8352349)

---
updated-dependencies:
- dependency-name: pypa/cibuildwheel
  dependency-version: 2.23.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: actions
- dependency-name: conda-incubator/setup-miniconda
  dependency-version: 3.2.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: actions
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot @github

dependabot Bot commented on behalf of github Jun 9, 2025

Copy link
Copy Markdown
Contributor Author

Reviewers

The following teams could not be added as reviewers: core-devs. Either the team does not exist or it does not have the correct permissions to be added as a reviewer.

Labels

The following labels could not be found: 03 - Maintenance, Build / CI, dependencies. Please create them before Dependabot can add them to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

@dependabot @github

dependabot Bot commented on behalf of github Jun 9, 2025

Copy link
Copy Markdown
Contributor Author

The reviewers field in the dependabot.yml file will be removed soon. Please use the code owners file to specify reviewers for Dependabot PRs. For more information, see this blog post.

@dependabot @github

dependabot Bot commented on behalf of github Jul 28, 2025

Copy link
Copy Markdown
Contributor Author

Looks like these dependencies are updatable in another way, so this is no longer needed.

@dependabot dependabot Bot closed this Jul 28, 2025
@dependabot
dependabot Bot deleted the dependabot/github_actions/dot-github/workflows/actions-1fff04b4f5 branch July 28, 2025 21:30
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants