Skip to content

[pull] master from aio-libs:master#680

Merged
pull[bot] merged 2 commits into
tj-python:masterfrom
aio-libs:master
Jul 22, 2026
Merged

[pull] master from aio-libs:master#680
pull[bot] merged 2 commits into
tj-python:masterfrom
aio-libs:master

Conversation

@pull

@pull pull Bot commented Jul 22, 2026

Copy link
Copy Markdown

See Commits and Changes for more details.


Created by pull[bot] (v2.0.0-alpha.4)

Can you help keep this open source service alive? 💖 Please sponsor : )

dependabot Bot added 2 commits July 22, 2026 11:06
Bumps [actions/setup-python](https://github.com/actions/setup-python)
from 6.3.0 to 7.0.0.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/actions/setup-python/releases">actions/setup-python's
releases</a>.</em></p>
<blockquote>
<h2>v7.0.0</h2>
<h2>What's Changed</h2>
<h3>Enhancements</h3>
<ul>
<li>Migrate to ESM and upgrade dependencies by <a
href="https://github.com/priyagupta108"><code>@​priyagupta108</code></a>
in <a
href="https://redirect.github.com/actions/setup-python/pull/1330">actions/setup-python#1330</a></li>
<li>Pin SHA commits and update docs with latest versions by <a
href="https://github.com/HarithaVattikuti"><code>@​HarithaVattikuti</code></a>
in <a
href="https://redirect.github.com/actions/setup-python/pull/1338">actions/setup-python#1338</a></li>
<li>Remove the pip-install input by <a
href="https://github.com/gowridurgad"><code>@​gowridurgad</code></a> in
<a
href="https://redirect.github.com/actions/setup-python/pull/1336">actions/setup-python#1336</a></li>
</ul>
<h3>Bug Fix</h3>
<ul>
<li>Fix to Classify stderr warning messages as warnings instead of
errors in annotations by <a
href="https://github.com/lmvysakh"><code>@​lmvysakh</code></a> in <a
href="https://redirect.github.com/actions/setup-python/pull/1335">actions/setup-python#1335</a></li>
<li>Validate and retry manifest fetch to prevent silent failures by <a
href="https://github.com/priyagupta108"><code>@​priyagupta108</code></a>
in <a
href="https://redirect.github.com/actions/setup-python/pull/1332">actions/setup-python#1332</a></li>
</ul>
<h3>Dependency Upgrade</h3>
<ul>
<li>Bump certifi from 2020.6.20 to 2024.7.4 in
/<strong>tests</strong>/data by <a
href="https://github.com/dependabot"><code>@​dependabot</code></a> in <a
href="https://redirect.github.com/actions/setup-python/pull/1328">actions/setup-python#1328</a></li>
<li>Remove EOL Python versions and Bumps numpy text fixture by <a
href="https://github.com/priya-kinthali"><code>@​priya-kinthali</code></a>
in <a
href="https://redirect.github.com/actions/setup-python/pull/1333">actions/setup-python#1333</a></li>
<li>Upgrade <code>@​actions/cache</code> to 6.2.0 by <a
href="https://github.com/philip-gai"><code>@​philip-gai</code></a> in <a
href="https://redirect.github.com/actions/setup-python/pull/1337">actions/setup-python#1337</a></li>
</ul>
<h2>New Contributors</h2>
<ul>
<li><a href="https://github.com/lmvysakh"><code>@​lmvysakh</code></a>
made their first contribution in <a
href="https://redirect.github.com/actions/setup-python/pull/1335">actions/setup-python#1335</a></li>
<li><a
href="https://github.com/philip-gai"><code>@​philip-gai</code></a> made
their first contribution in <a
href="https://redirect.github.com/actions/setup-python/pull/1337">actions/setup-python#1337</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/actions/setup-python/compare/v6...v7.0.0">https://github.com/actions/setup-python/compare/v6...v7.0.0</a></p>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/actions/setup-python/commit/5fda3b95a4ea91299a34e894583c3862153e4b97"><code>5fda3b9</code></a>
Pin SHA commits and update docs with latest versions (<a
href="https://redirect.github.com/actions/setup-python/issues/1338">#1338</a>)</li>
<li><a
href="https://github.com/actions/setup-python/commit/4ab7e95f05e168b4356aebde89dd84f59c283d8e"><code>4ab7e95</code></a>
Merge pull request <a
href="https://redirect.github.com/actions/setup-python/issues/1337">#1337</a>
from actions/philip-gai/bump-actions-cache-6-2-0</li>
<li><a
href="https://github.com/actions/setup-python/commit/0f3a009f475dbea83c0371cd85d099690fee8c5c"><code>0f3a009</code></a>
Remove the pip-install input (<a
href="https://redirect.github.com/actions/setup-python/issues/1336">#1336</a>)</li>
<li><a
href="https://github.com/actions/setup-python/commit/f8cf4291c8b8e273ddd26e569454615c7315d932"><code>f8cf429</code></a>
Migrate to ESM and upgrade dependencies (<a
href="https://redirect.github.com/actions/setup-python/issues/1330">#1330</a>)</li>
<li><a
href="https://github.com/actions/setup-python/commit/54baeea5b34417d10a7479663a23cca53ea209b5"><code>54baeea</code></a>
Validate and retry manifest fetch to prevent silent failures (<a
href="https://redirect.github.com/actions/setup-python/issues/1332">#1332</a>)</li>
<li><a
href="https://github.com/actions/setup-python/commit/c7092773a316760f4ecfe498e4af668a4dafeac5"><code>c709277</code></a>
Annotation code fix (<a
href="https://redirect.github.com/actions/setup-python/issues/1335">#1335</a>)</li>
<li><a
href="https://github.com/actions/setup-python/commit/6849080452e69b330395e8a6d23cf90f56d76a1a"><code>6849080</code></a>
remove EOL Python versions and Bumps numpy text fixture (<a
href="https://redirect.github.com/actions/setup-python/issues/1333">#1333</a>)</li>
<li><a
href="https://github.com/actions/setup-python/commit/0903b469fbf4441aadfe4f4b249dc5b1fba3a73e"><code>0903b46</code></a>
Bump certifi from 2020.6.20 to 2024.7.4 in /<strong>tests</strong>/data
(<a
href="https://redirect.github.com/actions/setup-python/issues/1328">#1328</a>)</li>
<li>See full diff in <a
href="https://github.com/actions/setup-python/compare/v6.3.0...v7.0.0">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=actions/setup-python&package-manager=github_actions&previous-version=6.3.0&new-version=7.0.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps [pip-tools](https://github.com/jazzband/pip-tools) from 7.5.3 to
7.6.0.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/jazzband/pip-tools/releases">pip-tools's
releases</a>.</em></p>
<blockquote>
<h2>v7.6.0</h2>
<p><em>2026-07-13</em></p>
<h3>Features</h3>
<ul>
<li>
<p>The <code>--help</code> output for <code>pip-compile</code> and
<code>pip-sync</code> commands has been extended to include usage
examples -- by <a
href="https://github.com/Dzhud"><code>@​Dzhud</code></a>.</p>
<p><em>PRs and issues:</em> <a
href="https://redirect.github.com/jazzband/pip-tools/issues/1142">#1142</a></p>
</li>
<li>
<p>Added <code>--uploaded-prior-to</code> as a passthrough option for
<code>pip-compile</code>, allowing users to restrict package candidates
to versions uploaded before a given datetime. Requires pip &gt;= 26.0 --
by <a href="https://github.com/miettal"><code>@​miettal</code></a>.</p>
<p><em>PRs and issues:</em> <a
href="https://redirect.github.com/jazzband/pip-tools/issues/2288">#2288</a></p>
</li>
<li>
<p><code>pip-tools</code> is now compatible with <code>pip</code> 26.1
-- <a
href="https://github.com/gaborbernat"><code>@​gaborbernat</code></a>.</p>
<p><em>PRs and issues:</em> <a
href="https://redirect.github.com/jazzband/pip-tools/issues/2379">#2379</a></p>
</li>
</ul>
<h3>Improved documentation</h3>
<ul>
<li>
<p>Fixed the contents sidebar for the index doc -- by <a
href="https://github.com/sirosen"><code>@​sirosen</code></a>.</p>
<p><em>PRs and issues:</em> <a
href="https://redirect.github.com/jazzband/pip-tools/issues/2169">#2169</a></p>
</li>
<li>
<p><code>pip-tools</code> now has a policy regarding LLM-generated
contributions, noted in the contributing documentation -- by <a
href="https://github.com/sirosen"><code>@​sirosen</code></a>.</p>
<p>Thanks to <a href="https://github.com/0cjs"><code>@​0cjs</code></a>,
<a href="https://github.com/gpshead"><code>@​gpshead</code></a>, mr-<a
href="https://github.com/c"><code>@​c</code></a>, <a
href="https://github.com/samdoran"><code>@​samdoran</code></a>, <a
href="https://github.com/webknjaz"><code>@​webknjaz</code></a>, and
everyone else in the broader community who helped us to craft a policy
which is considerate of contributors and protective of the project and
its maintainers.</p>
<p><em>PRs and issues:</em> <a
href="https://redirect.github.com/jazzband/pip-tools/issues/2318">#2318</a></p>
</li>
<li>
<p><code>pip-tools</code>' documentation now features a section titled
&quot;Reference&quot; covering the CLI commands and configuration.
Configuration documentation has been removed from the readme.</p>
<p>-- by <a
href="https://github.com/sirosen"><code>@​sirosen</code></a></p>
</li>
</ul>
<h3>Contributor-facing changes</h3>
<ul>
<li>
<p>CI testing now runs on Intel and ARM macOS runners, and is pinned to
a specific macOS version -- by <a
href="https://github.com/sirosen"><code>@​sirosen</code></a>.</p>
<p><em>PRs and issues:</em> <a
href="https://redirect.github.com/jazzband/pip-tools/issues/2079">#2079</a>,
<a
href="https://redirect.github.com/jazzband/pip-tools/issues/2132">#2132</a>,
<a
href="https://redirect.github.com/jazzband/pip-tools/issues/2348">#2348</a></p>
</li>
<li>
<p><code>pip-tools</code> now has a policy regarding LLM-generated
contributions, noted in the contributing documentation -- by <a
href="https://github.com/sirosen"><code>@​sirosen</code></a>.</p>
<p>Thanks to <a href="https://github.com/0cjs"><code>@​0cjs</code></a>,
<a href="https://github.com/gpshead"><code>@​gpshead</code></a>, mr-<a
href="https://github.com/c"><code>@​c</code></a>, <a
href="https://github.com/samdoran"><code>@​samdoran</code></a>, <a
href="https://github.com/webknjaz"><code>@​webknjaz</code></a>, and
everyone else in the broader community who helped us to craft a policy
which is considerate of contributors and protective of the project and
its maintainers.</p>
<p><em>PRs and issues:</em> <a
href="https://redirect.github.com/jazzband/pip-tools/issues/2278">#2278</a>,
<a
href="https://redirect.github.com/jazzband/pip-tools/issues/2318">#2318</a></p>
</li>
<li>
<p>Started running {pypi}<code>zizmor</code> as a part of CI pipelines
to improve security of how we configure GitHub Actions CI/CD -- by <a
href="https://github.com/webknjaz"><code>@​webknjaz</code></a>.</p>
<p><em>PRs and issues:</em> <a
href="https://redirect.github.com/jazzband/pip-tools/issues/2327">#2327</a></p>
</li>
<li>
<p>pip-tools docs now support GitHub Flavored Markdown admonition blocks
-- by <a
href="https://github.com/webknjaz"><code>@​webknjaz</code></a>.</p>
</li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/jazzband/pip-tools/blob/main/CHANGELOG.md">pip-tools's
changelog</a>.</em></p>
<blockquote>
<h2>v7.6.0</h2>
<p><em>2026-07-13</em></p>
<h3>Features</h3>
<ul>
<li>
<p>The <code>--help</code> output for <code>pip-compile</code> and
<code>pip-sync</code>
commands has been extended to include usage examples
-- by {user}<code>Dzhud</code>.</p>
<p><em>PRs and issues:</em> {issue}<code>1142</code></p>
</li>
<li>
<p>Added <code>--uploaded-prior-to</code> as a passthrough option for
<code>pip-compile</code>, allowing
users to restrict package candidates to versions uploaded before a given
datetime. Requires pip &gt;= 26.0 -- by {user}<code>miettal</code>.</p>
<p><em>PRs and issues:</em> {issue}<code>2288</code></p>
</li>
<li>
<p><code>pip-tools</code> is now compatible with <code>pip</code> 26.1
-- {user}<code>gaborbernat</code>.</p>
<p><em>PRs and issues:</em> {issue}<code>2379</code></p>
</li>
</ul>
<h3>Improved documentation</h3>
<ul>
<li>
<p>Fixed the contents sidebar for the index doc -- by
{user}<code>sirosen</code>.</p>
<p><em>PRs and issues:</em> {issue}<code>2169</code></p>
</li>
<li>
<p><code>pip-tools</code> now has a policy regarding LLM-generated
contributions, noted in the
contributing documentation -- by {user}<code>sirosen</code>.</p>
<p>Thanks to {user}<code>0cjs</code>, {user}<code>gpshead</code>,
{user}<code>mr-c</code>, {user}<code>samdoran</code>,
{user}<code>webknjaz</code>, and everyone else in the broader community
who helped us
to craft a policy which is considerate of contributors and protective of
the
project and its maintainers.</p>
<p><em>PRs and issues:</em> {issue}<code>2318</code></p>
</li>
<li>
<p><code>pip-tools</code>' documentation now features a section titled
&quot;Reference&quot; covering
the CLI commands and configuration. Configuration documentation has been
removed
from the readme.</p>
<p>-- by {user}<code>sirosen</code></p>
</li>
</ul>
<h3>Contributor-facing changes</h3>
<ul>
<li>
<p>CI testing now runs on Intel and ARM macOS runners, and is pinned to
a specific
macOS version -- by {user}<code>sirosen</code>.</p>
<p><em>PRs and issues:</em> {issue}<code>2079</code>,
{issue}<code>2132</code>, {issue}<code>2348</code></p>
</li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/jazzband/pip-tools/commit/27f6a968be04fa60c0873d9025bd5e1824e09082"><code>27f6a96</code></a>
Merge pull request <a
href="https://redirect.github.com/jazzband/pip-tools/issues/2420">#2420</a>
from sirosen/release/v7.6.0</li>
<li><a
href="https://github.com/jazzband/pip-tools/commit/cbe77f06a778a6ccf5cf338f8e0a62fe7b9847c0"><code>cbe77f0</code></a>
Apply suggestions from code review</li>
<li><a
href="https://github.com/jazzband/pip-tools/commit/015146e1a114a5b6aee00f1c8d3a23db7f5898b0"><code>015146e</code></a>
Update changelog for version 7.6.0</li>
<li><a
href="https://github.com/jazzband/pip-tools/commit/9a2d2c12a798d1986807a718e2ab0c92f1f9f81c"><code>9a2d2c1</code></a>
Merge pull request <a
href="https://redirect.github.com/jazzband/pip-tools/issues/2414">#2414</a>
from jazzband/pre-commit-ci-update-config</li>
<li><a
href="https://github.com/jazzband/pip-tools/commit/fc3f877b89c27a89adce4e60d2ed224bae34caff"><code>fc3f877</code></a>
Merge pull request <a
href="https://redirect.github.com/jazzband/pip-tools/issues/2418">#2418</a>
from jazzband/dependabot/pip/docs/soupsieve-2.8.4</li>
<li><a
href="https://github.com/jazzband/pip-tools/commit/5247a6bd4ee11e6b88c026b887a52e18a30ae36e"><code>5247a6b</code></a>
[pre-commit.ci] pre-commit autoupdate</li>
<li><a
href="https://github.com/jazzband/pip-tools/commit/3d1faf6ad56d649d04930199e6b94110cf7341af"><code>3d1faf6</code></a>
Bump soupsieve from 2.8.3 to 2.8.4 in /docs</li>
<li><a
href="https://github.com/jazzband/pip-tools/commit/57637dbf08aeefe88fec7786bcd07cf111f9f662"><code>57637db</code></a>
Merge pull request <a
href="https://redirect.github.com/jazzband/pip-tools/issues/2419">#2419</a>
from sirosen/fix-test-failure</li>
<li><a
href="https://github.com/jazzband/pip-tools/commit/4695c37c231d27065688119a658e9c97ff04efc0"><code>4695c37</code></a>
Fix the <code>fake_with_deps</code> test package</li>
<li><a
href="https://github.com/jazzband/pip-tools/commit/24f4230b0fc9c964100b73f81599b0cc4eaff79a"><code>24f4230</code></a>
Merge pull request <a
href="https://redirect.github.com/jazzband/pip-tools/issues/2413">#2413</a>
from webknjaz/maintenance/nested-zizmor-gha-workflow...</li>
<li>Additional commits viewable in <a
href="https://github.com/jazzband/pip-tools/compare/v7.5.3...v7.6.0">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=pip-tools&package-manager=pip&previous-version=7.5.3&new-version=7.6.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
@pull pull Bot locked and limited conversation to collaborators Jul 22, 2026
@pull pull Bot added the ⤵️ pull label Jul 22, 2026
@pull
pull Bot merged commit 62f0f90 into tj-python:master Jul 22, 2026
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants