Skip to content

deps(dependabot): bump the all-dependencies group across 1 directory with 6 updates - #13

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/pip/main/all-dependencies-b254e238ff
Open

deps(dependabot): bump the all-dependencies group across 1 directory with 6 updates#13
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/pip/main/all-dependencies-b254e238ff

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 21, 2026

Copy link
Copy Markdown
Contributor

Updates the requirements on utilo, iamraw, utilotest, hoverpower, setuptools and wheel to permit the latest version.
Updates utilo to 2.110.1

Release notes

Sourced from utilo's releases.

v2.110.1 (2026-08-13)

This release is published under the MIT License.

Bug Fixes

  • hash: Return int for freehash int (7a51be8)

Chores

  • requirements: Upgrade pyproject.toml (5853961)

Detailed Changes: v2.110.0...v2.110.1

Changelog

Sourced from utilo's changelog.

v2.110.1 (2026-08-13)

Bug Fixes

  • hash: Return int for freehash int (7a51be8)

Chores

  • requirements: Upgrade pyproject.toml (5853961)

v2.110.0 (2026-08-11)

Chores

  • requirements: Upgrade pyproject.toml (4fe9be9)

Features

  • hash: Add option to produce int only hash (bc44e0c)

v2.109.1 (2026-07-18)

Bug Fixes

  • secret: Make password hashing stable (0684fc1)

Chores

  • docker: Ugprade baw image (eb8caa1)

  • make: Do not release on release tag (8671c61)

  • release: Release on every commit (654b01e)

  • requirements: Enable iamraw (a555650)

  • requirements: Upgrade pyproject.toml (ef44f3b)

... (truncated)

Commits
  • c6ef4cf 2.110.1
  • 3c7a9f1 Merge pull request #18 from anaticulae/feat/add-int-hash-only
  • 7a51be8 fix(hash): return int for freehash int
  • 5853961 chore(requirements): upgrade pyproject.toml
  • 3c18722 2.110.0
  • 4d95896 Merge pull request #16 from anaticulae/feat/add-int-hash-only
  • bc44e0c feat(hash): add option to produce int only hash
  • 4fe9be9 chore(requirements): upgrade pyproject.toml
  • See full diff in compare view

Updates iamraw to 4.95.0

Release notes

Sourced from iamraw's releases.

v4.95.0 (2026-08-14)

This release is published under the MIT License.

Chores

  • make: Add missing requirement (8f673bc)

  • pyproject: Sort resources (29b1de8)

  • requirements: Upgrade pyproject.toml (ee0a263)

Features

Refactoring

  • freehash: Adjust to new interface (68b609d)

Detailed Changes: v4.94.1...v4.95.0

Changelog

Sourced from iamraw's changelog.

v4.95.0 (2026-08-14)

Chores

  • make: Add missing requirement (8f673bc)

  • pyproject: Sort resources (29b1de8)

  • requirements: Upgrade pyproject.toml (ee0a263)

Features

Refactoring

  • freehash: Adjust to new interface (68b609d)

v4.94.1 (2026-08-12)

Bug Fixes

  • group: Ensure that hash is computed correctly (3439b50)

v4.94.0 (2026-08-12)

Bug Fixes

  • list: Use constant hash (d774808)

Chores

... (truncated)

Commits
  • f74b0e5 4.95.0
  • 8835ab9 Merge pull request #25 from anaticulae/fix/adjust-ml-hash
  • 8f673bc chore(make): add missing requirement
  • 29b1de8 chore(pyproject): sort resources
  • d8fed1c feat(style): use freehash
  • 9c4c846 feat(index): use freehash
  • a71e0c4 feat(font): use free hash
  • 53040de feat(document): use free hash
  • 68b609d refactor(freehash): adjust to new interface
  • ee0a263 chore(requirements): upgrade pyproject.toml
  • Additional commits viewable in compare view

Updates utilotest to 1.0.5

Release notes

Sourced from utilotest's releases.

v1.0.5 (2026-07-23)

This release is published under the MIT License.

Chores

  • docker: Upgrade (caa0ca9)

  • pyproject: Release on every commit (e1ca58f)

  • pyproject: Sort requirements (e3fbe2d)

  • pyproject: Upgrade setuptools (a1ab198)

  • requirements: Upgrade pyproject.toml (68d8327)


Detailed Changes: v1.0.4...v1.0.5

Changelog

Sourced from utilotest's changelog.

v1.0.5 (2026-07-23)

Chores

  • docker: Upgrade (caa0ca9)

  • pyproject: Release on every commit (e1ca58f)

  • pyproject: Sort requirements (e3fbe2d)

  • pyproject: Upgrade setuptools (a1ab198)

  • requirements: Upgrade pyproject.toml (68d8327)

v1.0.4 (2026-05-05)

Bug Fixes

  • select: Do not fail on invalid resource (dfba774)

Chores

  • license: Add missing LICENSE (001ec02)

v1.0.3 (2026-05-04)

Bug Fixes

  • install: Make install command setup.py independent (eaa2e67)

v1.0.2 (2026-05-01)

Chores

  • test: Run tests on every branch (5711cc3)

Refactoring

... (truncated)

Commits

Updates hoverpower to 1.6.1

Release notes

Sourced from hoverpower's releases.

v1.6.1 (2026-08-14)

This release is published under the MIT License.

Bug Fixes

  • secret: Reduce verbosity in log level (8182b6b)

Detailed Changes: v1.6.0...v1.6.1

Changelog

Sourced from hoverpower's changelog.

v1.6.1 (2026-08-14)

Bug Fixes

  • secret: Reduce verbosity in log level (8182b6b)

v1.6.0 (2026-08-01)

Code Style

Features

  • secret: Make default logging less verbose (9b1471d)

Refactoring

  • make: Improve style (d5bfdac)

  • utilo: Replace with utilo code (943deb6)

v1.5.2 (2026-07-20)

Bug Fixes

  • secret: Add starred password message (f866da2)

Chores

  • make: Do not release on release tag (e4be8a6)

  • make: Format code (68bbb83)

  • make: Use more secret syntax (c7e7054)

  • pyproject: Create release on every commit (22e3fa9)

... (truncated)

Commits
  • 0ddc04d 1.6.1
  • 3f0dc36 Merge pull request #27 from anaticulae/feat/reduce-verbosity
  • 8182b6b fix(secret): reduce verbosity in log level
  • 701aaaf 1.6.0
  • b8b2c86 Merge pull request #26 from anaticulae/feat/reduce-verbosity
  • 46b945d style(docker): remove comment
  • d5bfdac refactor(make): improve style
  • 943deb6 refactor(utilo): replace with utilo code
  • 9b1471d feat(secret): make default logging less verbose
  • See full diff in compare view

Updates setuptools to 84.0.0

Changelog

Sourced from setuptools's changelog.

v84.0.0

Features

  • Newline-separated keywords and platformspypa/setuptools#4887old specification <https://peps.python.org/pep-0345/>_ separated items with spaces and the current one uses commas. (#4887)
  • Extensionpypa/distutils#373#5022)
  • The C compiler modules now emit log messages through their own compilers.C.* loggers instead of the distutils root logger, part of decoupling the compilers package from distutils. The logger names are normalized to a stable compilers.C.* prefix so they remain constant as the package migrates toward a standalone compilers.C distribution. (#5266)
  • The C compilers gained a Compiler.call method -- a thin wrapper over subprocess.check_call (with macOS deployment-target env injection) that is the modern replacement for Compiler.spawn. The compilers no longer depend on distutils.spawn, distutils.dir_util, distutils.file_util, distutils._modified, or distutils.util.execute/split_quoted: the generic newer/newer_group and split_quoted helpers are vendored into the compilers package, and Compiler.mkpath/move_file/execute are implemented directly on the standard library (os.makedirs/shutil.move). The methods are retained for backward compatibility. (#5267)
  • The compilers no longer depend on distutils.util, distutils.version, distutils.compat, or distutils._macos_compat. The platform-identification helpers (get_platform/get_host_platform/is_mingw) now live in distutils.compilers.platform.detect and the macOS deployment-target logic and compiler_fixup in distutils.compilers.platform.macos; CygwinCCompiler.gcc_version returns a packaging.version.Version. distutils.util re-exports the platform/macOS helpers from their new homes for backward compatibility rather than keeping duplicate copies. (sysconfig lookups still route through distutils pending its own decoupling.) (#5268)
  • The compilers now read their build configuration from the standard library's sysconfig instead of distutils.sysconfig. Per-compiler customization -- previously distutils.sysconfig.customize_compiler -- has moved into Compiler.configure_system(): a no-op on the base class, with UnixCCompiler applying the compiler/flag/archiver settings CPython recorded in sysconfig (and the usual CC/CFLAGS/LDSHARED/… environment overrides). distutils.sysconfig.customize_compiler is retained as a thin wrapper that calls compiler.configure_system(). (#5269)

Bugfixes

  • The MSVC linker now passes its arguments through a response file when the command line would exceed the Windows maximum length, fixing failures when linking a large number of objects. (#4177)
  • The Cygwin and MinGW compilers now pass -O1 instead of a bare -O. The two are equivalent to GCC, but cc1 rejected the bare form when building 32-bit extensions with -m32. -- by :user:dchaudhari7177 (#4873)
  • copy_filepypa/distutils#379#5079)
  • Setuptools wheels no longer bundled the project's own test modules. -- by :user:itscloud0 (#5212)
  • build_ext no longer fails when cross-compiling with a compiler other than MSVC (such as MinGW). Compiler now provides a no-op initialize()pypa/distutils#399

Improved Documentation

  • Clarified what "correspond exactly to the directory structure" means in the packages section of the Package Discovery user guide. (#4109)
  • Documented how bdist_wheel's py_limited_api option controls abi3 wheel tagging for extension modules -- by :user:Himanshuagrawal4 (#4741)

Deprecations and Removals

  • Compiler.spawn is deprecated in favor of the new Compiler.call. call raises native subprocess exceptions; spawn remains as a shim that emits a DeprecationWarning and translates them to DistutilsExecError. The MSVC spawn compatibility shim for third-party monkeypatches predating the env argument (numpy.distutils before 1.19, per pypa/distutils#15) has been removed. distutils.spawn.spawn is likewise reduced to a thin wrapper around subprocess.check_call: it no longer resolves cmd[0] via shutil.which (subprocess searches PATH itself) nor injects MACOSX_DEPLOYMENT_TARGET (that now lives with the compilers, the only callers to which it applied). (#5267)
  • Building an extension with a MACOSX_DEPLOYMENT_TARGET lower than the interpreter's configured value now raises compilers.errors.PlatformError instead of distutils.errors.DistutilsPlatformError (the macOS deployment-target check moved into the compilers package). CygwinCCompiler.gcc_version returns a packaging.version.Version rather than the removed distutils.version.LooseVersion. Completing the transition begun in pypa/distutils#246, UnixCCompiler.runtime_library_dir_option now returns the ["-Wl,--enable-new-dtags", "-Wl,-rpath,<dir>"] list directly for GNU ld rather than collapsing it into a single string, and the temporary distutils.compat.consolidate_linker_args shim has been removed. (#5268)
  • The compilers now define their own exception vocabulary instead of borrowing distutils' framework errors. Language-agnostic exceptions (Error, UnknownFileType, and a new PlatformError) live at distutils.compilers.errors, leaving room for future compilers.<language> siblings; the C/C++-specific CompileError/LinkError/LibError/PreprocessError remain in distutils.compilers.C.errors. The compilers now raise compilers.errors.PlatformError where they previously raised distutils.errors.DistutilsPlatformError/DistutilsModuleError, and compilers._modified.newer raises the stdlib FileNotFoundError. distutils.errors keeps its own framework exceptions and re-exports the compiler ones (CCompilerError, CompileError, etc.) for backward compatibility; because CCompilerError is compilers.errors.Error, code catching it (as distutils' top-level handlers do) still catches the new PlatformError. (#5270)
  • customize_compiler now asserts that the compiler-related config variables (CC, CXX, CFLAGS, etc.) resolve to strings, raising AssertionError if any are unexpectedly Nonepypa/distutils#363

v83.0.0

Features

  • Require Python 3.10 or later.

... (truncated)

Commits
  • 72e919a Merge pull request #5293 from pypa/bugfix/integration-pip-flit-backend
  • 1b29701 Select the top-level pyproject.toml when reading build requirements
  • bb1b381 Bump version: 83.0.0 → 84.0.0
  • ee6fdd7 Sync with distutils @ e8eb87855 (#5292)
  • 2a4a9e4 Merge remote-tracking branch 'origin/main' into distutils-e8eb87855
  • cbd1195 Merge https://github.com/jaraco/skeleton
  • bd3594e Merge pull request #5287 from Avasam/Configuring-lint.flake8-comprehensions.a...
  • f02e90a Configure C408 to allow dict(a=1) rather than disabling it
  • c55f52b Configuring lint.flake8-comprehensions.allow-dict-calls-with-keyword-argument...
  • e9904b0 Match the distutils sdist base type for the user_options override
  • Additional commits viewable in compare view

Updates wheel to 0.48.0

Release notes

Sourced from wheel's releases.

0.48.0

  • Added a --local-version option to wheel pack to add, replace, or remove a PEP 440 local version identifier from a wheel (#570)
  • Fixed wheel convert unnecessarily upgrading compatible core metadata versions (#643)
  • Fixed wheel tags producing invalid archives when retagging wheels whose entries use ZIP64, by dropping the central-directory ZIP64 extra field that is not valid in a local file header (#692)
  • Fixed wheel convert writing the converted wheel outside the destination directory when the input archive contained a maliciously crafted project name or version with path separators (arbitrary file write / path traversal) (GHSA-vgq5-9859-3mmw)
Changelog

Sourced from wheel's changelog.

Release Notes

UNRELEASED

  • Fixed the macOS platform-tag warning always using the plural "these files" wording, even when only a single library required a higher deployment target ([#697](https://github.com/pypa/wheel/issues/697) <https://github.com/pypa/wheel/pull/697>_)

0.48.0 (2026-08-12)

  • Added a --local-version option to wheel pack to add, replace, or remove a PEP 440 local version identifier from a wheel ([#570](https://github.com/pypa/wheel/issues/570) <https://github.com/pypa/wheel/issues/570>_)
  • Fixed wheel convert unnecessarily upgrading compatible core metadata versions ([#643](https://github.com/pypa/wheel/issues/643) <https://github.com/pypa/wheel/issues/643>_)
  • Fixed wheel tags producing invalid archives when retagging wheels whose entries use ZIP64, by dropping the central-directory ZIP64 extra field that is not valid in a local file header ([#692](https://github.com/pypa/wheel/issues/692) <https://github.com/pypa/wheel/issues/692>_)
  • Fixed wheel convert writing the converted wheel outside the destination directory when the input archive contained a maliciously crafted project name or version with path separators (arbitrary file write / path traversal) (GHSA-vgq5-9859-3mmw <https://github.com/pypa/wheel/security/advisories/GHSA-vgq5-9859-3mmw>_)

0.47.0 (2026-04-22)

  • Added the wheel info subcommand to display metadata about wheel files without unpacking them ([#639](https://github.com/pypa/wheel/issues/639) <https://github.com/pypa/wheel/issues/639>_)
  • Fixed WheelFile raising Missing RECORD file when the wheel filename contains uppercase characters (e.g. Django-3.2.5.whl) but the .dist-info directory inside uses normalized lowercase naming ([#411](https://github.com/pypa/wheel/issues/411) <https://github.com/pypa/wheel/issues/411>_)

0.46.3 (2026-01-22)

  • Fixed ImportError: cannot import name '_setuptools_logging' from 'wheel' when installed alongside an old version of setuptools and running the bdist_wheel command ([#676](https://github.com/pypa/wheel/issues/676) <https://github.com/pypa/wheel/issues/676>_)

0.46.2 (2026-01-22)

  • Restored the bdist_wheel command for compatibility with setuptools older than v70.1
  • Importing wheel.bdist_wheel now emits a FutureWarning instead of a DeprecationWarning
  • Fixed wheel unpack potentially altering the permissions of files outside of the destination tree with maliciously crafted wheels (CVE-2026-24049)

0.46.1 (2025-04-08)

... (truncated)

Commits
  • 21c4da4 Fixed the release heading format
  • f06d4db Flit no longer supports --setup-py
  • 1a96c3e Created a new release
  • d7d625d Fixed wheel convert writing outside the target directory on malicious input (...
  • 986a440 Strip ZIP64 extra field when retagging wheels (#692) (#695)
  • 0ca6f24 feat: add --local-version option to wheel pack (#694)
  • 4a63caf Preserve compatible metadata versions in convert (#690)
  • 33650c6 [pre-commit.ci] pre-commit autoupdate (#691)
  • 197012d Increased the upper bound for flit-core as a build requirement
  • See full diff in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

…with 6 updates

Updates the requirements on [utilo](https://github.com/anaticulae/utilo), [iamraw](https://github.com/anaticulae/iamraw), [utilotest](https://github.com/anaticulae/utilotest), [hoverpower](https://github.com/anaticulae/hoverpower), [setuptools](https://github.com/pypa/setuptools) and [wheel](https://github.com/pypa/wheel) to permit the latest version.

Updates `utilo` to 2.110.1
- [Release notes](https://github.com/anaticulae/utilo/releases)
- [Changelog](https://github.com/anaticulae/utilo/blob/main/CHANGELOG)
- [Commits](anaticulae/utilo@v2.109.1...v2.110.1)

Updates `iamraw` to 4.95.0
- [Release notes](https://github.com/anaticulae/iamraw/releases)
- [Changelog](https://github.com/anaticulae/iamraw/blob/main/CHANGELOG)
- [Commits](anaticulae/iamraw@v4.92.0...v4.95.0)

Updates `utilotest` to 1.0.5
- [Release notes](https://github.com/anaticulae/utilotest/releases)
- [Changelog](https://github.com/anaticulae/utilotest/blob/main/CHANGELOG)
- [Commits](anaticulae/utilotest@v1.0.4...v1.0.5)

Updates `hoverpower` to 1.6.1
- [Release notes](https://github.com/anaticulae/hoverpower/releases)
- [Changelog](https://github.com/anaticulae/hoverpower/blob/main/CHANGELOG)
- [Commits](anaticulae/hoverpower@v1.5.2...v1.6.1)

Updates `setuptools` to 84.0.0
- [Release notes](https://github.com/pypa/setuptools/releases)
- [Changelog](https://github.com/pypa/setuptools/blob/main/NEWS.rst)
- [Commits](pypa/setuptools@v82.0.1...v84.0.0)

Updates `wheel` to 0.48.0
- [Release notes](https://github.com/pypa/wheel/releases)
- [Changelog](https://github.com/pypa/wheel/blob/main/docs/news.rst)
- [Commits](pypa/wheel@0.47.0...0.48.0)

---
updated-dependencies:
- dependency-name: utilo
  dependency-version: 2.110.1
  dependency-type: direct:production
  dependency-group: all-dependencies
- dependency-name: iamraw
  dependency-version: 4.95.0
  dependency-type: direct:production
  dependency-group: all-dependencies
- dependency-name: utilotest
  dependency-version: 1.0.5
  dependency-type: direct:development
  dependency-group: all-dependencies
- dependency-name: hoverpower
  dependency-version: 1.6.1
  dependency-type: direct:development
  dependency-group: all-dependencies
- dependency-name: setuptools
  dependency-version: 84.0.0
  dependency-type: direct:development
  dependency-group: all-dependencies
- dependency-name: wheel
  dependency-version: 0.48.0
  dependency-type: direct:development
  dependency-group: all-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Pull requests that update python code labels Aug 21, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python Pull requests that update python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants