Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github May 16, 2022

Bumps pip from 21.2.4 to 22.1.

Changelog

Sourced from pip's changelog.

22.1 (2022-05-11)

Process

  • Enable the importlib.metadata metadata implementation by default on Python 3.11 (or later). The environment variable _PIP_USE_IMPORTLIB_METADATA can still be used to enable the implementation on 3.10 and earlier, or disable it on 3.11 (by setting it to 0 or false).

Bug Fixes

  • Revert [#9243](https://github.com/pypa/pip/issues/9243) <https://github.com/pypa/pip/issues/9243>_ since it introduced a regression in certain edge cases. ([#10962](https://github.com/pypa/pip/issues/10962) <https://github.com/pypa/pip/issues/10962>_)
  • Fix missing REQUESTED metadata when using URL constraints. ([#11079](https://github.com/pypa/pip/issues/11079) <https://github.com/pypa/pip/issues/11079>_)
  • pip config now normalizes names by converting underscores into dashes. ([#9330](https://github.com/pypa/pip/issues/9330) <https://github.com/pypa/pip/issues/9330>_)

22.1b1 (2022-04-30)

Process

  • Start migration of distribution metadata implementation from pkg_resources to importlib.metadata. The new implementation is currently not exposed in any user-facing way, but included in the code base for easier development.

Deprecations and Removals

  • Drop --use-deprecated=out-of-tree-build, according to deprecation message. ([#11001](https://github.com/pypa/pip/issues/11001) <https://github.com/pypa/pip/issues/11001>_)

Features

  • Add option to install and uninstall commands to opt-out from running-as-root warning. ([#10556](https://github.com/pypa/pip/issues/10556) <https://github.com/pypa/pip/issues/10556>_)
  • Include Project-URLs in pip show output. ([#10799](https://github.com/pypa/pip/issues/10799) <https://github.com/pypa/pip/issues/10799>_)
  • Improve error message when pip config edit is provided an editor that doesn't exist. ([#10812](https://github.com/pypa/pip/issues/10812) <https://github.com/pypa/pip/issues/10812>_)
  • Add a user interface for supplying config settings to build backends. ([#11059](https://github.com/pypa/pip/issues/11059) <https://github.com/pypa/pip/issues/11059>_)
  • Add support for Powershell autocompletion. ([#9024](https://github.com/pypa/pip/issues/9024) <https://github.com/pypa/pip/issues/9024>_)
  • Explains why specified version cannot be retrieved when Requires-Python is not satisfied. ([#9615](https://github.com/pypa/pip/issues/9615) <https://github.com/pypa/pip/issues/9615>_)
  • Validate build dependencies when using --no-build-isolation. ([#9794](https://github.com/pypa/pip/issues/9794) <https://github.com/pypa/pip/issues/9794>_)

Bug Fixes

  • Fix conditional checks to prevent pip.exe from trying to modify itself, on Windows. ([#10560](https://github.com/pypa/pip/issues/10560) <https://github.com/pypa/pip/issues/10560>_)

... (truncated)

Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [pip](https://github.com/pypa/pip) from 21.2.4 to 22.1.
- [Release notes](https://github.com/pypa/pip/releases)
- [Changelog](https://github.com/pypa/pip/blob/main/NEWS.rst)
- [Commits](pypa/pip@21.2.4...22.1)

---
updated-dependencies:
- dependency-name: pip
  dependency-type: direct:development
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels May 16, 2022
@codecov
Copy link

codecov bot commented May 16, 2022

Codecov Report

Merging #128 (d22baf0) into main (4e28810) will decrease coverage by 0.12%.
The diff coverage is n/a.

@@            Coverage Diff             @@
##             main     #128      +/-   ##
==========================================
- Coverage   98.46%   98.33%   -0.13%     
==========================================
  Files          14       15       +1     
  Lines         780      781       +1     
==========================================
  Hits          768      768              
- Misses         12       13       +1     
Impacted Files Coverage Δ
tests/test_models.py 99.18% <0.00%> (-0.82%) ⬇️
py2k/__init__.py 100.00% <0.00%> (ø)

Continue to review full report at Codecov.

Legend - Click here to learn more
Δ = absolute <relative> (impact), ø = not affected, ? = missing data
Powered by Codecov. Last update 4e28810...d22baf0. Read the comment docs.

@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github May 23, 2022

Superseded by #131.

@dependabot dependabot bot closed this May 23, 2022
@dependabot dependabot bot deleted the dependabot/pip/pip-22.1 branch May 23, 2022 00:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python Pull requests that update Python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant