[pull] master from aio-libs:master#680
Merged
Merged
Conversation
Bumps [actions/setup-python](https://github.com/actions/setup-python) from 6.3.0 to 7.0.0. <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/actions/setup-python/releases">actions/setup-python's releases</a>.</em></p> <blockquote> <h2>v7.0.0</h2> <h2>What's Changed</h2> <h3>Enhancements</h3> <ul> <li>Migrate to ESM and upgrade dependencies by <a href="https://github.com/priyagupta108"><code>@priyagupta108</code></a> in <a href="https://redirect.github.com/actions/setup-python/pull/1330">actions/setup-python#1330</a></li> <li>Pin SHA commits and update docs with latest versions by <a href="https://github.com/HarithaVattikuti"><code>@HarithaVattikuti</code></a> in <a href="https://redirect.github.com/actions/setup-python/pull/1338">actions/setup-python#1338</a></li> <li>Remove the pip-install input by <a href="https://github.com/gowridurgad"><code>@gowridurgad</code></a> in <a href="https://redirect.github.com/actions/setup-python/pull/1336">actions/setup-python#1336</a></li> </ul> <h3>Bug Fix</h3> <ul> <li>Fix to Classify stderr warning messages as warnings instead of errors in annotations by <a href="https://github.com/lmvysakh"><code>@lmvysakh</code></a> in <a href="https://redirect.github.com/actions/setup-python/pull/1335">actions/setup-python#1335</a></li> <li>Validate and retry manifest fetch to prevent silent failures by <a href="https://github.com/priyagupta108"><code>@priyagupta108</code></a> in <a href="https://redirect.github.com/actions/setup-python/pull/1332">actions/setup-python#1332</a></li> </ul> <h3>Dependency Upgrade</h3> <ul> <li>Bump certifi from 2020.6.20 to 2024.7.4 in /<strong>tests</strong>/data by <a href="https://github.com/dependabot"><code>@dependabot</code></a> in <a href="https://redirect.github.com/actions/setup-python/pull/1328">actions/setup-python#1328</a></li> <li>Remove EOL Python versions and Bumps numpy text fixture by <a href="https://github.com/priya-kinthali"><code>@priya-kinthali</code></a> in <a href="https://redirect.github.com/actions/setup-python/pull/1333">actions/setup-python#1333</a></li> <li>Upgrade <code>@actions/cache</code> to 6.2.0 by <a href="https://github.com/philip-gai"><code>@philip-gai</code></a> in <a href="https://redirect.github.com/actions/setup-python/pull/1337">actions/setup-python#1337</a></li> </ul> <h2>New Contributors</h2> <ul> <li><a href="https://github.com/lmvysakh"><code>@lmvysakh</code></a> made their first contribution in <a href="https://redirect.github.com/actions/setup-python/pull/1335">actions/setup-python#1335</a></li> <li><a href="https://github.com/philip-gai"><code>@philip-gai</code></a> made their first contribution in <a href="https://redirect.github.com/actions/setup-python/pull/1337">actions/setup-python#1337</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/actions/setup-python/compare/v6...v7.0.0">https://github.com/actions/setup-python/compare/v6...v7.0.0</a></p> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/actions/setup-python/commit/5fda3b95a4ea91299a34e894583c3862153e4b97"><code>5fda3b9</code></a> Pin SHA commits and update docs with latest versions (<a href="https://redirect.github.com/actions/setup-python/issues/1338">#1338</a>)</li> <li><a href="https://github.com/actions/setup-python/commit/4ab7e95f05e168b4356aebde89dd84f59c283d8e"><code>4ab7e95</code></a> Merge pull request <a href="https://redirect.github.com/actions/setup-python/issues/1337">#1337</a> from actions/philip-gai/bump-actions-cache-6-2-0</li> <li><a href="https://github.com/actions/setup-python/commit/0f3a009f475dbea83c0371cd85d099690fee8c5c"><code>0f3a009</code></a> Remove the pip-install input (<a href="https://redirect.github.com/actions/setup-python/issues/1336">#1336</a>)</li> <li><a href="https://github.com/actions/setup-python/commit/f8cf4291c8b8e273ddd26e569454615c7315d932"><code>f8cf429</code></a> Migrate to ESM and upgrade dependencies (<a href="https://redirect.github.com/actions/setup-python/issues/1330">#1330</a>)</li> <li><a href="https://github.com/actions/setup-python/commit/54baeea5b34417d10a7479663a23cca53ea209b5"><code>54baeea</code></a> Validate and retry manifest fetch to prevent silent failures (<a href="https://redirect.github.com/actions/setup-python/issues/1332">#1332</a>)</li> <li><a href="https://github.com/actions/setup-python/commit/c7092773a316760f4ecfe498e4af668a4dafeac5"><code>c709277</code></a> Annotation code fix (<a href="https://redirect.github.com/actions/setup-python/issues/1335">#1335</a>)</li> <li><a href="https://github.com/actions/setup-python/commit/6849080452e69b330395e8a6d23cf90f56d76a1a"><code>6849080</code></a> remove EOL Python versions and Bumps numpy text fixture (<a href="https://redirect.github.com/actions/setup-python/issues/1333">#1333</a>)</li> <li><a href="https://github.com/actions/setup-python/commit/0903b469fbf4441aadfe4f4b249dc5b1fba3a73e"><code>0903b46</code></a> Bump certifi from 2020.6.20 to 2024.7.4 in /<strong>tests</strong>/data (<a href="https://redirect.github.com/actions/setup-python/issues/1328">#1328</a>)</li> <li>See full diff in <a href="https://github.com/actions/setup-python/compare/v6.3.0...v7.0.0">compare view</a></li> </ul> </details> <br /> [](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) </details> Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps [pip-tools](https://github.com/jazzband/pip-tools) from 7.5.3 to 7.6.0. <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/jazzband/pip-tools/releases">pip-tools's releases</a>.</em></p> <blockquote> <h2>v7.6.0</h2> <p><em>2026-07-13</em></p> <h3>Features</h3> <ul> <li> <p>The <code>--help</code> output for <code>pip-compile</code> and <code>pip-sync</code> commands has been extended to include usage examples -- by <a href="https://github.com/Dzhud"><code>@Dzhud</code></a>.</p> <p><em>PRs and issues:</em> <a href="https://redirect.github.com/jazzband/pip-tools/issues/1142">#1142</a></p> </li> <li> <p>Added <code>--uploaded-prior-to</code> as a passthrough option for <code>pip-compile</code>, allowing users to restrict package candidates to versions uploaded before a given datetime. Requires pip >= 26.0 -- by <a href="https://github.com/miettal"><code>@miettal</code></a>.</p> <p><em>PRs and issues:</em> <a href="https://redirect.github.com/jazzband/pip-tools/issues/2288">#2288</a></p> </li> <li> <p><code>pip-tools</code> is now compatible with <code>pip</code> 26.1 -- <a href="https://github.com/gaborbernat"><code>@gaborbernat</code></a>.</p> <p><em>PRs and issues:</em> <a href="https://redirect.github.com/jazzband/pip-tools/issues/2379">#2379</a></p> </li> </ul> <h3>Improved documentation</h3> <ul> <li> <p>Fixed the contents sidebar for the index doc -- by <a href="https://github.com/sirosen"><code>@sirosen</code></a>.</p> <p><em>PRs and issues:</em> <a href="https://redirect.github.com/jazzband/pip-tools/issues/2169">#2169</a></p> </li> <li> <p><code>pip-tools</code> now has a policy regarding LLM-generated contributions, noted in the contributing documentation -- by <a href="https://github.com/sirosen"><code>@sirosen</code></a>.</p> <p>Thanks to <a href="https://github.com/0cjs"><code>@0cjs</code></a>, <a href="https://github.com/gpshead"><code>@gpshead</code></a>, mr-<a href="https://github.com/c"><code>@c</code></a>, <a href="https://github.com/samdoran"><code>@samdoran</code></a>, <a href="https://github.com/webknjaz"><code>@webknjaz</code></a>, and everyone else in the broader community who helped us to craft a policy which is considerate of contributors and protective of the project and its maintainers.</p> <p><em>PRs and issues:</em> <a href="https://redirect.github.com/jazzband/pip-tools/issues/2318">#2318</a></p> </li> <li> <p><code>pip-tools</code>' documentation now features a section titled "Reference" covering the CLI commands and configuration. Configuration documentation has been removed from the readme.</p> <p>-- by <a href="https://github.com/sirosen"><code>@sirosen</code></a></p> </li> </ul> <h3>Contributor-facing changes</h3> <ul> <li> <p>CI testing now runs on Intel and ARM macOS runners, and is pinned to a specific macOS version -- by <a href="https://github.com/sirosen"><code>@sirosen</code></a>.</p> <p><em>PRs and issues:</em> <a href="https://redirect.github.com/jazzband/pip-tools/issues/2079">#2079</a>, <a href="https://redirect.github.com/jazzband/pip-tools/issues/2132">#2132</a>, <a href="https://redirect.github.com/jazzband/pip-tools/issues/2348">#2348</a></p> </li> <li> <p><code>pip-tools</code> now has a policy regarding LLM-generated contributions, noted in the contributing documentation -- by <a href="https://github.com/sirosen"><code>@sirosen</code></a>.</p> <p>Thanks to <a href="https://github.com/0cjs"><code>@0cjs</code></a>, <a href="https://github.com/gpshead"><code>@gpshead</code></a>, mr-<a href="https://github.com/c"><code>@c</code></a>, <a href="https://github.com/samdoran"><code>@samdoran</code></a>, <a href="https://github.com/webknjaz"><code>@webknjaz</code></a>, and everyone else in the broader community who helped us to craft a policy which is considerate of contributors and protective of the project and its maintainers.</p> <p><em>PRs and issues:</em> <a href="https://redirect.github.com/jazzband/pip-tools/issues/2278">#2278</a>, <a href="https://redirect.github.com/jazzband/pip-tools/issues/2318">#2318</a></p> </li> <li> <p>Started running {pypi}<code>zizmor</code> as a part of CI pipelines to improve security of how we configure GitHub Actions CI/CD -- by <a href="https://github.com/webknjaz"><code>@webknjaz</code></a>.</p> <p><em>PRs and issues:</em> <a href="https://redirect.github.com/jazzband/pip-tools/issues/2327">#2327</a></p> </li> <li> <p>pip-tools docs now support GitHub Flavored Markdown admonition blocks -- by <a href="https://github.com/webknjaz"><code>@webknjaz</code></a>.</p> </li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/jazzband/pip-tools/blob/main/CHANGELOG.md">pip-tools's changelog</a>.</em></p> <blockquote> <h2>v7.6.0</h2> <p><em>2026-07-13</em></p> <h3>Features</h3> <ul> <li> <p>The <code>--help</code> output for <code>pip-compile</code> and <code>pip-sync</code> commands has been extended to include usage examples -- by {user}<code>Dzhud</code>.</p> <p><em>PRs and issues:</em> {issue}<code>1142</code></p> </li> <li> <p>Added <code>--uploaded-prior-to</code> as a passthrough option for <code>pip-compile</code>, allowing users to restrict package candidates to versions uploaded before a given datetime. Requires pip >= 26.0 -- by {user}<code>miettal</code>.</p> <p><em>PRs and issues:</em> {issue}<code>2288</code></p> </li> <li> <p><code>pip-tools</code> is now compatible with <code>pip</code> 26.1 -- {user}<code>gaborbernat</code>.</p> <p><em>PRs and issues:</em> {issue}<code>2379</code></p> </li> </ul> <h3>Improved documentation</h3> <ul> <li> <p>Fixed the contents sidebar for the index doc -- by {user}<code>sirosen</code>.</p> <p><em>PRs and issues:</em> {issue}<code>2169</code></p> </li> <li> <p><code>pip-tools</code> now has a policy regarding LLM-generated contributions, noted in the contributing documentation -- by {user}<code>sirosen</code>.</p> <p>Thanks to {user}<code>0cjs</code>, {user}<code>gpshead</code>, {user}<code>mr-c</code>, {user}<code>samdoran</code>, {user}<code>webknjaz</code>, and everyone else in the broader community who helped us to craft a policy which is considerate of contributors and protective of the project and its maintainers.</p> <p><em>PRs and issues:</em> {issue}<code>2318</code></p> </li> <li> <p><code>pip-tools</code>' documentation now features a section titled "Reference" covering the CLI commands and configuration. Configuration documentation has been removed from the readme.</p> <p>-- by {user}<code>sirosen</code></p> </li> </ul> <h3>Contributor-facing changes</h3> <ul> <li> <p>CI testing now runs on Intel and ARM macOS runners, and is pinned to a specific macOS version -- by {user}<code>sirosen</code>.</p> <p><em>PRs and issues:</em> {issue}<code>2079</code>, {issue}<code>2132</code>, {issue}<code>2348</code></p> </li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/jazzband/pip-tools/commit/27f6a968be04fa60c0873d9025bd5e1824e09082"><code>27f6a96</code></a> Merge pull request <a href="https://redirect.github.com/jazzband/pip-tools/issues/2420">#2420</a> from sirosen/release/v7.6.0</li> <li><a href="https://github.com/jazzband/pip-tools/commit/cbe77f06a778a6ccf5cf338f8e0a62fe7b9847c0"><code>cbe77f0</code></a> Apply suggestions from code review</li> <li><a href="https://github.com/jazzband/pip-tools/commit/015146e1a114a5b6aee00f1c8d3a23db7f5898b0"><code>015146e</code></a> Update changelog for version 7.6.0</li> <li><a href="https://github.com/jazzband/pip-tools/commit/9a2d2c12a798d1986807a718e2ab0c92f1f9f81c"><code>9a2d2c1</code></a> Merge pull request <a href="https://redirect.github.com/jazzband/pip-tools/issues/2414">#2414</a> from jazzband/pre-commit-ci-update-config</li> <li><a href="https://github.com/jazzband/pip-tools/commit/fc3f877b89c27a89adce4e60d2ed224bae34caff"><code>fc3f877</code></a> Merge pull request <a href="https://redirect.github.com/jazzband/pip-tools/issues/2418">#2418</a> from jazzband/dependabot/pip/docs/soupsieve-2.8.4</li> <li><a href="https://github.com/jazzband/pip-tools/commit/5247a6bd4ee11e6b88c026b887a52e18a30ae36e"><code>5247a6b</code></a> [pre-commit.ci] pre-commit autoupdate</li> <li><a href="https://github.com/jazzband/pip-tools/commit/3d1faf6ad56d649d04930199e6b94110cf7341af"><code>3d1faf6</code></a> Bump soupsieve from 2.8.3 to 2.8.4 in /docs</li> <li><a href="https://github.com/jazzband/pip-tools/commit/57637dbf08aeefe88fec7786bcd07cf111f9f662"><code>57637db</code></a> Merge pull request <a href="https://redirect.github.com/jazzband/pip-tools/issues/2419">#2419</a> from sirosen/fix-test-failure</li> <li><a href="https://github.com/jazzband/pip-tools/commit/4695c37c231d27065688119a658e9c97ff04efc0"><code>4695c37</code></a> Fix the <code>fake_with_deps</code> test package</li> <li><a href="https://github.com/jazzband/pip-tools/commit/24f4230b0fc9c964100b73f81599b0cc4eaff79a"><code>24f4230</code></a> Merge pull request <a href="https://redirect.github.com/jazzband/pip-tools/issues/2413">#2413</a> from webknjaz/maintenance/nested-zizmor-gha-workflow...</li> <li>Additional commits viewable in <a href="https://github.com/jazzband/pip-tools/compare/v7.5.3...v7.6.0">compare view</a></li> </ul> </details> <br /> [](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) </details> Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to subscribe to this conversation on GitHub.
Already have an account?
Sign in.
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
See Commits and Changes for more details.
Created by
pull[bot] (v2.0.0-alpha.4)
Can you help keep this open source service alive? 💖 Please sponsor : )