build(deps): bump the test-and-lint-dependencies group across 1 directory with 4 updates#234
Closed
dependabot[bot] wants to merge 1 commit intodevelopfrom
Closed
Conversation
…tory with 4 updates Bumps the test-and-lint-dependencies group with 4 updates in the / directory: [black](https://github.com/psf/black), [isort](https://github.com/pycqa/isort), [pylint](https://github.com/pylint-dev/pylint) and [bandit](https://github.com/PyCQA/bandit). Updates `black` from 23.11.0 to 24.4.2 - [Release notes](https://github.com/psf/black/releases) - [Changelog](https://github.com/psf/black/blob/main/CHANGES.md) - [Commits](psf/black@23.11.0...24.4.2) Updates `isort` from 5.13.0 to 5.13.2 - [Release notes](https://github.com/pycqa/isort/releases) - [Changelog](https://github.com/PyCQA/isort/blob/main/CHANGELOG.md) - [Commits](PyCQA/isort@5.13.0...5.13.2) Updates `pylint` from 3.0.2 to 3.1.0 - [Release notes](https://github.com/pylint-dev/pylint/releases) - [Commits](pylint-dev/pylint@v3.0.2...v3.1.0) Updates `bandit` from 1.7.6 to 1.7.8 - [Release notes](https://github.com/PyCQA/bandit/releases) - [Commits](PyCQA/bandit@1.7.6...1.7.8) --- updated-dependencies: - dependency-name: black dependency-type: direct:production update-type: version-update:semver-major dependency-group: test-and-lint-dependencies - dependency-name: isort dependency-type: direct:production update-type: version-update:semver-patch dependency-group: test-and-lint-dependencies - dependency-name: pylint dependency-type: direct:production update-type: version-update:semver-minor dependency-group: test-and-lint-dependencies - dependency-name: bandit dependency-type: direct:production update-type: version-update:semver-patch dependency-group: test-and-lint-dependencies ... Signed-off-by: dependabot[bot] <support@github.com>
Author
|
Looks like these dependencies are updatable in another way, so this is no longer needed. |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the test-and-lint-dependencies group with 4 updates in the / directory: black, isort, pylint and bandit.
Updates
blackfrom 23.11.0 to 24.4.2Release notes
Sourced from black's releases.
... (truncated)
Changelog
Sourced from black's changelog.
... (truncated)
Commits
3702ba2Prepare release 24.4.2 (#4335)e4aaa8aFix incorrect f-string tokenization (#4332)ba88fc3Simplify string tokenization regexes (#4331)5683242New release templatee7fb048Prepare release 24.4.1 (#4328)3f0f8f1Support PEP 696 (#4327)2f88085Github Action: Directly install from repo ifexport-substis skipped (#4313)12ce3dbMove changelog entry to right section (#4326)1354be2Add support to style function definitions with newlines before function stubs...f4b644bPrevent wrapping of multiline fstrings in parens (#4325)Updates
isortfrom 5.13.0 to 5.13.2Release notes
Sourced from isort's releases.
Changelog
Sourced from isort's changelog.
Commits
c655831Merge pull request #2214 from PyCQA/version/5.13.2b4335b4Prepare version 5.13.2c36e43cMerge pull request #2184 from bp72/issue/2154e38702fMerge pull request #2213 from davidculley/confine-precommit-to-stagesee8d87fAdd fix for the error found by hypothesis5849ec2Apply the bracket fix from issue 471 only for use_parentheses=Truedf0e119confine pre-commit to stages9255bcaMerge pull request #2212 from PyCQA/bugfix/Metadata API: set default version for MetaFile() theupdateframework/python-tuf#2211-colors-extra5336d7dFix colors extras643d9c4Merge pull request #2210 from PyCQA/version/5.13.1Updates
pylintfrom 3.0.2 to 3.1.0Commits
053c2c3Bump pylint to 3.1.0, update changelogc954636Upgrade release documentation, and contributors.txt7300ed2Discover.pyifiles (#9241)9dbf3dfMerge maintenance 3.0.x into main following 3.0.4 release (#9459)28e89b0Remove changelog fragments pertaining to 3.0.44332ea1Merge branch 'maintenance/3.0.x' into main following 3.0.4 release8115381Bump pylint to 3.0.4, update changelog (#9458)4bf3524[false-negative] Fix for consider-using-min/max-builtin (#9127)8c24b1e[pre-commit.ci] pre-commit autoupdate (#9448)f499686Update astroid version to 3.1.0 (#9457)Updates
banditfrom 1.7.6 to 1.7.8Release notes
Sourced from bandit's releases.
Commits
22b4226Add a SARIF output formatter (#1113)b603dce[B605] Add functions that are vulnerable to shell injection. (#1116)a682a18Bump docker/setup-buildx-action from 3.0.0 to 3.1.0 (#1115)c8d5f77filter data is safe for tarfile extractall (#1111)e041e12Use datetime to avoid updating copyright year (#1112)5b16b6aAdd 1.7.7 to versions of bug template (#1110)858bfd8Bump sigstore/cosign-installer from 3.3.0 to 3.4.0 (#1109)be5d6acUtilize PyPI's trusted publishing (#1107)c3a07e5Incorrect tag naming in readme (#1105)4c5b3c8Downsize the org:repo name (#1104)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions