Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump the all-dependencies group with 7 updates #3219

Closed
wants to merge 1 commit into from

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Nov 10, 2023

Bumps the all-dependencies group with 7 updates:

Package From To
uvicorn 0.23.2 0.24.0.post1
pyinstrument 4.6.0 4.6.1
ddtrace 2.1.4 2.1.5
sentry-sdk 1.33.1 1.34.0
botocore 1.31.75 1.31.83
mypy 1.6.1 1.7.0
pytest-django 4.6.0 4.7.0

Updates uvicorn from 0.23.2 to 0.24.0.post1

Release notes

Sourced from uvicorn's releases.

Version 0.24.0.post1

Fixed

  • Revert mkdocs-material from 9.1.21 to 9.2.6 (#2148) 05/11/23

Version 0.24.0

Added

  • Support Python 3.12 (#2145) 04/11/23
  • Allow setting app via environment variable UVICORN_APP (#2106)

Full Changelog: encode/uvicorn@0.23.2...0.24.0

Changelog

Sourced from uvicorn's changelog.

0.24.0.post1 - 2023-11-06

Fixed

  • Revert mkdocs-material from 9.1.21 to 9.2.6 (#2148) 05/11/23

0.24.0 - 2023-11-04

Added

  • Support Python 3.12 (#2145) 04/11/23
  • Allow setting app via environment variable UVICORN_APP (#2106) 21/09/23
Commits

Updates pyinstrument from 4.6.0 to 4.6.1

Commits
  • f53b97e Bump version: v4.6.1
  • 5342d50 Merge pull request #278 from krassowski/fix/disable-variable-expansion
  • efe96bf Add a test case to ensure the variable expansion is off
  • b99aa98 Disable variable expansion
  • See full diff in compare view

Updates ddtrace from 2.1.4 to 2.1.5

Release notes

Sourced from ddtrace's releases.

2.1.5

Upgrade Notes

  • The wrapt and psutil packages are vendored to help users avoid building these packages if wheels were not available for a given platform. This reverses a change released in v2.0.0.

Bug Fixes

  • CI: fixes an issue which prevented the library from filtering user credentials for SSH Git repository URLs
  • Use a unique default service name across all the products provided by the library when one is not given via the configuration interface.
  • CI Visibility: fixes unittest data not being initialized properly
  • Vulnerability Management for Code-level (IAST): This fix resolves an issue where SimpleJSON encoder would throw an exception while encoding a tainted dict or list.
Commits
  • 9469acb fix(iast): patch simplejson.encoder to handle LazyTaintDict properly (#7428) ...
  • 7e88daf chore: re-vendor psutil and wrapt (backport #7332 to 2.1) (#7437)
  • db1fe31 fix: use unique unnamed service name value [backport 2.1] (#7442)
  • c0cf6c2 test(profiling): collector log tests [backport 2.1] (#7447)
  • 3ccfcb0 fix(ci): filter user credentials from SSH git repo URLs [backport 2.1] (#7407)
  • 0d80f3a fix(ci_visibility): add safety checks and exception handling around _fetch_te...
  • 30372f3 fix(unittest): fix unittest data not initialized [backport 2.1] (#7412)
  • f0bf758 fix(ci_visibility): use custom configurations when querying ITR skippable tes...
  • See full diff in compare view

Updates sentry-sdk from 1.33.1 to 1.34.0

Release notes

Sourced from sentry-sdk's releases.

1.34.0

Various fixes & improvements

Changelog

Sourced from sentry-sdk's changelog.

1.34.0

Various fixes & improvements

Commits

Updates botocore from 1.31.75 to 1.31.83

Changelog

Sourced from botocore's changelog.

1.31.83

  • api-change:cloudformation: Added new ConcurrencyMode feature for AWS CloudFormation StackSets for faster deployments to target accounts.
  • api-change:cloudtrail: The Insights in Lake feature lets customers enable CloudTrail Insights on a source CloudTrail Lake event data store and create a destination event data store to collect Insights events based on unusual management event activity in the source event data store.
  • api-change:comprehend: This release adds support for toxicity detection and prompt safety classification.
  • api-change:connect: This release adds the ability to integrate customer lambda functions with Connect attachments for scanning and updates the ListIntegrationAssociations API to support filtering on IntegrationArn.
  • api-change:ec2: AWS EBS now supports Block Public Access for EBS Snapshots. This release introduces the EnableSnapshotBlockPublicAccess, DisableSnapshotBlockPublicAccess and GetSnapshotBlockPublicAccessState APIs to manage account-level public access settings for EBS Snapshots in an AWS Region.
  • api-change:eks: Adding EKS Anywhere subscription related operations.
  • api-change:lambda: Add Custom runtime on Amazon Linux 2023 (provided.al2023) support to AWS Lambda.
  • api-change:logs: Update to support new APIs for delivery of logs from AWS services.
  • api-change:omics: Support UBAM filetype for Omics Storage and make referenceArn optional
  • api-change:endpoint-rules: Update endpoint-rules client to latest version

1.31.82

  • api-change:sqs: This release enables customers to call SQS using AWS JSON-1.0 protocol and bug fix.

1.31.81

  • api-change:connect: This release clarifies in our public documentation that InstanceId is a requirement for SearchUsers API requests.
  • api-change:connectcases: This release adds the ability to add/view comment authors through CreateRelatedItem and SearchRelatedItems API. For more information see https://docs.aws.amazon.com/cases/latest/APIReference/Welcome.html
  • api-change:datasync: This change allows for 0 length access keys and secret keys for object storage locations. Users can now pass in empty string credentials.
  • api-change:guardduty: Added API support for new GuardDuty EKS Audit Log finding types.
  • api-change:lambda: Add Node 20 (nodejs20.x) support to AWS Lambda.
  • api-change:lexv2-models: Update lexv2-models client to latest version
  • api-change:omics: Adding Run UUID and Run Output URI: GetRun and StartRun API response has two new fields "uuid" and "runOutputUri".
  • api-change:rds: This Amazon RDS release adds support for patching the OS of an RDS Custom for Oracle DB instance. You can now upgrade the database or operating system using the modify-db-instance command.
  • api-change:redshift-serverless: Added a new parameter in the workgroup that helps you control your cost for compute resources. This feature provides a ceiling for RPUs that Amazon Redshift Serverless can scale up to. When automatic compute scaling is required, having a higher value for MaxRPU can enhance query throughput.
  • api-change:resiliencehub: AWS Resilience Hub enhances Resiliency Score, providing actionable recommendations to improve application resilience. Amazon Elastic Kubernetes Service (EKS) operational recommendations have been added to help improve the resilience posture of your applications.
  • api-change:sqs: This release enables customers to call SQS using AWS JSON-1.0 protocol.
  • api-change:endpoint-rules: Update endpoint-rules client to latest version

1.31.80

  • api-change:dataexchange: Updated SendDataSetNotificationRequest Comment to be maximum length 4096.
  • api-change:dlm: Added support for pre and post scripts in Amazon Data Lifecycle Manager EBS snapshot lifecycle policies.
  • api-change:rds: This Amazon RDS release adds support for the multi-tenant configuration. In this configuration, an RDS DB instance can contain multiple tenant databases. In RDS for Oracle, a tenant database is a pluggable database (PDB).
  • api-change:endpoint-rules: Update endpoint-rules client to latest version

1.31.79

... (truncated)

Commits

Updates mypy from 1.6.1 to 1.7.0

Changelog

Sourced from mypy's changelog.

Mypy Release Notes

Next release

Stubgen will now include __all__ in its output if it is in the input file (PR 16356).

Mypy 1.7

We’ve just uploaded mypy 1.7 to the Python Package Index (PyPI). Mypy is a static type checker for Python. This release includes new features, performance improvements and bug fixes. You can install it as follows:

python3 -m pip install -U mypy

You can read the full documentation for this release on Read the Docs.

Using TypedDict for **kwargs Typing

Mypy now has support for using Unpack[...] with a TypedDict type to annotate **kwargs arguments enabled by default. Example:

# Or 'from typing_extensions import ...'
from typing import TypedDict, Unpack

class Person(TypedDict): name: str age: int

def foo(**kwargs: Unpack[Person]) -> None: ...

foo(name="x", age=1) # Ok foo(name=1) # Error

The definition of foo above is equivalent to the one below, with keyword-only arguments name and age:

def foo(*, name: str, age: int) -> None:
    ...

Refer to PEP 692 for more information. Note that unlike in the current version of the PEP, mypy always treats signatures with Unpack[SomeTypedDict] as equivalent to their expanded forms with explicit keyword arguments, and there aren't special type checking rules for TypedDict arguments.

This was contributed by Ivan Levkivskyi back in 2022 (PR 13471).

TypeVarTuple Support Enabled (Experimental)

Mypy now has support for variadic generics (TypeVarTuple) enabled by default, as an experimental feature. Refer to PEP 646 for the details.

TypeVarTuple was implemented by Jared Hance and Ivan Levkivskyi over several mypy releases, with help from Jukka Lehtosalo.

... (truncated)

Commits

Updates pytest-django from 4.6.0 to 4.7.0

Release notes

Sourced from pytest-django's releases.

4.7.0

https://pytest-django.readthedocs.io/en/latest/changelog.html#v4-7-0-2023-11-08

Changelog

Sourced from pytest-django's changelog.

v4.7.0 (2023-11-08)

Compatibility ^^^^^^^^^^^^^

  • Official Django 5.0 support.

  • Official Python 3.12 support.

Improvements ^^^^^^^^^^^^

  • The Django test tags from the previous release now works on any :class:~django.test.SimpleTestCase (i.e. any Django test framework test class), not just :class:~django.test.TransactionTestCase classes.

  • Some improvements for those of us who like to type their tests:

    • Add pytest_django.DjangoAssertNumQueries for typing :fixture:django_assert_num_queries and :fixture:django_assert_max_num_queries.

    • Add pytest_django.DjangoCaptureOnCommitCallbacks for typing :fixture:django_capture_on_commit_callbacks.

    • Add pytest_django.DjangoDbBlocker for typing :fixture:django_db_blocker.

Commits
  • baaafd8 Update changelog
  • 16ee779 Add pytest_django.DjangoAssertNumQueries for typing purposes
  • 28484f4 Add pytest_django.DjangoCaptureOnCommitCallbacks for typing purposes
  • 017bd77 tests: type django_db_blocker fixtures
  • d599fdb Move docs to use Sphinx's minimal Makefile
  • fa6bb34 Run non-test workflows with Python 3.12
  • 2414995 Avoid _blocking_manager mutable global
  • d93631f Export pytest_django.DjangoDbBlocker for typing purposes
  • 53eead4 Maybe fix readthedocs build failures
  • c5eeb37 Checks for tags on any SimpleTestCase not just TransactionTestCase
  • Additional commits viewable in compare view

Most Recent Ignore Conditions Applied to This Pull Request
Dependency Name Ignore Conditions
ddtrace [< 1.5, > 1.4.1]

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the all-dependencies group with 7 updates:

| Package | From | To |
| --- | --- | --- |
| [uvicorn](https://github.com/encode/uvicorn) | `0.23.2` | `0.24.0.post1` |
| [pyinstrument](https://github.com/joerick/pyinstrument) | `4.6.0` | `4.6.1` |
| [ddtrace](https://github.com/DataDog/dd-trace-py) | `2.1.4` | `2.1.5` |
| [sentry-sdk](https://github.com/getsentry/sentry-python) | `1.33.1` | `1.34.0` |
| [botocore](https://github.com/boto/botocore) | `1.31.75` | `1.31.83` |
| [mypy](https://github.com/python/mypy) | `1.6.1` | `1.7.0` |
| [pytest-django](https://github.com/pytest-dev/pytest-django) | `4.6.0` | `4.7.0` |


Updates `uvicorn` from 0.23.2 to 0.24.0.post1
- [Release notes](https://github.com/encode/uvicorn/releases)
- [Changelog](https://github.com/encode/uvicorn/blob/master/CHANGELOG.md)
- [Commits](encode/uvicorn@0.23.2...0.24.0.post1)

Updates `pyinstrument` from 4.6.0 to 4.6.1
- [Release notes](https://github.com/joerick/pyinstrument/releases)
- [Commits](joerick/pyinstrument@v4.6.0...v4.6.1)

Updates `ddtrace` from 2.1.4 to 2.1.5
- [Release notes](https://github.com/DataDog/dd-trace-py/releases)
- [Changelog](https://github.com/DataDog/dd-trace-py/blob/2.x/CHANGELOG.md)
- [Commits](DataDog/dd-trace-py@v2.1.4...v2.1.5)

Updates `sentry-sdk` from 1.33.1 to 1.34.0
- [Release notes](https://github.com/getsentry/sentry-python/releases)
- [Changelog](https://github.com/getsentry/sentry-python/blob/master/CHANGELOG.md)
- [Commits](getsentry/sentry-python@1.33.1...1.34.0)

Updates `botocore` from 1.31.75 to 1.31.83
- [Changelog](https://github.com/boto/botocore/blob/develop/CHANGELOG.rst)
- [Commits](boto/botocore@1.31.75...1.31.83)

Updates `mypy` from 1.6.1 to 1.7.0
- [Changelog](https://github.com/python/mypy/blob/master/CHANGELOG.md)
- [Commits](python/mypy@v1.6.1...v1.7.0)

Updates `pytest-django` from 4.6.0 to 4.7.0
- [Release notes](https://github.com/pytest-dev/pytest-django/releases)
- [Changelog](https://github.com/pytest-dev/pytest-django/blob/master/docs/changelog.rst)
- [Commits](pytest-dev/pytest-django@v4.6.0...v4.7.0)

---
updated-dependencies:
- dependency-name: uvicorn
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: all-dependencies
- dependency-name: pyinstrument
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: all-dependencies
- dependency-name: ddtrace
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: all-dependencies
- dependency-name: sentry-sdk
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: all-dependencies
- dependency-name: botocore
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: all-dependencies
- dependency-name: mypy
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: all-dependencies
- dependency-name: pytest-django
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: all-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Nov 10, 2023
Copy link

codecov bot commented Nov 10, 2023

Codecov Report

Merging #3219 (ef4cb37) into main (4130a75) will decrease coverage by 0.01%.
The diff coverage is n/a.

Additional details and impacted files
@@            Coverage Diff             @@
##             main    #3219      +/-   ##
==========================================
- Coverage   96.60%   96.59%   -0.01%     
==========================================
  Files         481      481              
  Lines       29928    29928              
  Branches     3691     3691              
==========================================
- Hits        28911    28910       -1     
- Misses        833      834       +1     
  Partials      184      184              

Copy link

codspeed-hq bot commented Nov 10, 2023

CodSpeed Performance Report

Merging #3219 will not alter performance

Comparing dependabot/pip/all-dependencies-d551b927f8 (ef4cb37) with main (4130a75)

Summary

✅ 12 untouched benchmarks

Copy link
Contributor Author

dependabot bot commented on behalf of github Nov 13, 2023

Looks like these dependencies are updatable in another way, so this is no longer needed.

@dependabot dependabot bot closed this Nov 13, 2023
@dependabot dependabot bot deleted the dependabot/pip/all-dependencies-d551b927f8 branch November 13, 2023 19:01
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants