DX | 10-08-2026 | Release - #185
Closed
cs-raj wants to merge 85 commits into
Closed
Conversation
DX | 30-03-2026 | Release
back merge
fix: request version bump
Enh: Added cursor rules and skills
Added release version bump and changelog file
Added Security fixes, cursor rules and skill files
The following vulnerabilities are fixed by pinning transitive dependencies: - https://snyk.io/vuln/SNYK-PYTHON-PYTHONDOTENV-16115271
…9afab2ca31e93c [Snyk] Security upgrade python-dotenv from 1.0.0 to 1.2.2
…se-process enh(DX-6155): adopt development→main release flow, back-merge, and version checks
Added urllib version bump
… 3.14 (the standalone 0.5.x package fails to build on newer Python versions)
Removed unused dependency so the package installs on Python 3.12+ an…
Fix/resolve main conflicts
DX | 01-06-2026 | Release
chore: back-merge main into development
feat: Added Endpoint Integration for CMA Python SDK
updated skill files and agents
fix: version bump 08-07-2026
chore: back-merge main into development
Added branches support in entry variants
DX | 20-07-2026 | Release
chore: back-merge main into development
Bump setuptools requirement from >=80.0.0,<82.0.0 to >=83.0.0 to address a Snyk-flagged vulnerability, and bump package version to 1.11.1. Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
fix: bump setuptools to resolve Snyk vulnerability
chore: back-merge main into development
fix false positive hardcoded secrets
pylint is a static analysis tool not shipped in the production package. Moving it to requirements-dev.txt removes the GPL-2.0 copyleft concern from Snyk production dependency scans (DX-8256). Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
back merge
Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com>
Addresses Copilot review comment — AGENTS.md and skills/dev-workflow/SKILL.md still referenced requirements.txt for pylint after it was moved to requirements-dev.txt. Also added pylint to the setup.py dev extra so `pip install -e ".[dev]"` installs it. Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
fix: move pylint to dev deps to resolve Snyk GPL-2.0 flag (DX-8256)
chore: back-merge main into development
✅ Snyk checks have passed. No issues have been found so far.
💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse. |
Contributor
Author
|
Closing — release PRs are going directly development → main for this cycle. |
🔒 Security Scan Results
⏱️ SLA Breach Summary
ℹ️ Vulnerabilities Without Available Fixes (Informational Only)The following vulnerabilities were detected but do not have fixes available (no upgrade or patch). These are excluded from failure thresholds:
✅ BUILD PASSED - All security checks passed |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bug fixes