Skip to content

Add latest dependabot alert suggestions#1959

Open
nhoening wants to merge 2 commits intomainfrom
chore/security-alert-updates
Open

Add latest dependabot alert suggestions#1959
nhoening wants to merge 2 commits intomainfrom
chore/security-alert-updates

Conversation

@nhoening
Copy link
Contributor

@nhoening nhoening commented Feb 6, 2026

See alerts here: https://github.com/FlexMeasures/flexmeasures/security/dependabot

  • Organize the app.in file better
  • leave one alert out of 3.9, as it is not supported
  • small improvements in CI scripts

Description

  • update dependencies to resolve alerts
  • Added changelog item in documentation/changelog.rst

How to test

Our CI should cover this.

Further Improvements

Deprecate Python 3.9

… improvements in CI scripts

Signed-off-by: Nicolas Höning <nicolas@seita.nl>
@nhoening nhoening self-assigned this Feb 6, 2026
@nhoening nhoening requested a review from Flix6x February 6, 2026 11:20
@nhoening nhoening added this to the 0.31.0 milestone Feb 6, 2026
@read-the-docs-community
Copy link

read-the-docs-community bot commented Feb 6, 2026

Documentation build overview

📚 flexmeasures | 🛠️ Build #31301511 | 📁 Comparing fb5c357 against latest (e68e4a2)


🔍 Preview build

Show files changed (2 files in total): 📝 2 modified | ➕ 0 added | ➖ 0 deleted
File Status
changelog.html 📝 modified
api/v3_0.html 📝 modified

@nhoening
Copy link
Contributor Author

nhoening commented Feb 6, 2026

The failing tests for 3.9 are the ones with make install-for-test pinned=no, so they go to app.in and apply the one alert which we left out of 3.9's appp.txt.

I thus believe we are fine test-wise, as we will drop 3.9 anyway.

Signed-off-by: Nicolas Höning <nicolas@seita.nl>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant