chore(deps): bump the backend-minor-and-patch group across 1 directory with 9 updates - #515
Closed
dependabot[bot] wants to merge 3 commits into
Closed
dependabot[bot] wants to merge 3 commits into
dependabot[bot] wants to merge 3 commits into
Conversation
…y with 9 updates Bumps the backend-minor-and-patch group with 9 updates in the /apps/backend directory: | Package | From | To | | --- | --- | --- | | [fastapi](https://github.com/fastapi/fastapi) | `0.141.1` | `0.142.0` | | [uvicorn](https://github.com/Kludex/uvicorn) | `0.53.0` | `0.54.0` | | [pyjwt](https://github.com/jpadilla/pyjwt) | `2.14.0` | `2.15.1` | | [sqlalchemy](https://github.com/sqlalchemy/sqlalchemy) | `2.0.54` | `2.1.1` | | [xhtml2pdf](https://github.com/xhtml2pdf/xhtml2pdf) | `0.2.20` | `0.2.21` | | [ruff](https://github.com/astral-sh/ruff) | `0.16.8` | `0.16.9` | | [starlette](https://github.com/Kludex/starlette) | `1.6.0` | `1.7.0` | | [coverage](https://github.com/coveragepy/coveragepy) | `7.16.1` | `7.16.2` | | [librt](https://github.com/mypyc/librt) | `0.15.0` | `0.16.0` | Updates `fastapi` from 0.141.1 to 0.142.0 - [Release notes](https://github.com/fastapi/fastapi/releases) - [Commits](fastapi/fastapi@0.141.1...0.142.0) Updates `uvicorn` from 0.53.0 to 0.54.0 - [Release notes](https://github.com/Kludex/uvicorn/releases) - [Changelog](https://github.com/Kludex/uvicorn/blob/main/docs/release-notes.md) - [Commits](Kludex/uvicorn@0.53.0...0.54.0) Updates `pyjwt` from 2.14.0 to 2.15.1 - [Release notes](https://github.com/jpadilla/pyjwt/releases) - [Changelog](https://github.com/jpadilla/pyjwt/blob/master/CHANGELOG.rst) - [Commits](jpadilla/pyjwt@2.14.0...2.15.1) Updates `sqlalchemy` from 2.0.54 to 2.1.1 - [Release notes](https://github.com/sqlalchemy/sqlalchemy/releases) - [Changelog](https://github.com/sqlalchemy/sqlalchemy/blob/main/CHANGES.rst) - [Commits](https://github.com/sqlalchemy/sqlalchemy/commits) Updates `xhtml2pdf` from 0.2.20 to 0.2.21 - [Release notes](https://github.com/xhtml2pdf/xhtml2pdf/releases) - [Commits](xhtml2pdf/xhtml2pdf@v0.2.20...v0.2.21) Updates `ruff` from 0.16.8 to 0.16.9 - [Release notes](https://github.com/astral-sh/ruff/releases) - [Changelog](https://github.com/astral-sh/ruff/blob/main/CHANGELOG.md) - [Commits](astral-sh/ruff@0.16.8...0.16.9) Updates `starlette` from 1.6.0 to 1.7.0 - [Release notes](https://github.com/Kludex/starlette/releases) - [Changelog](https://github.com/Kludex/starlette/blob/main/docs/release-notes.md) - [Commits](Kludex/starlette@1.6.0...1.7.0) Updates `coverage` from 7.16.1 to 7.16.2 - [Release notes](https://github.com/coveragepy/coveragepy/releases) - [Changelog](https://github.com/coveragepy/coveragepy/blob/main/CHANGES.rst) - [Commits](coveragepy/coveragepy@7.16.1...7.16.2) Updates `librt` from 0.15.0 to 0.16.0 - [Commits](mypyc/librt@v0.15.0...v0.16.0) --- updated-dependencies: - dependency-name: fastapi dependency-version: 0.142.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: backend-minor-and-patch - dependency-name: uvicorn dependency-version: 0.54.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: backend-minor-and-patch - dependency-name: pyjwt dependency-version: 2.15.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: backend-minor-and-patch - dependency-name: sqlalchemy dependency-version: 2.1.1 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: backend-minor-and-patch - dependency-name: xhtml2pdf dependency-version: 0.2.21 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: backend-minor-and-patch - dependency-name: ruff dependency-version: 0.16.9 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: backend-minor-and-patch - dependency-name: starlette dependency-version: 1.7.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: backend-minor-and-patch - dependency-name: coverage dependency-version: 7.16.2 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: backend-minor-and-patch - dependency-name: librt dependency-version: 0.16.0 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: backend-minor-and-patch ... Signed-off-by: dependabot[bot] <support@github.com>
dependabot
Bot
requested review from
SHAURYAKSHARMA24 and
parthrohit22
as code owners
October 2, 2026 22:01
|
The latest updates on your projects. Learn more about Vercel for GitHub.
|
parthrohit22
previously approved these changes
Oct 2, 2026
SQLAlchemy 2.1 types the joined RiEvidence.observation_ref column as int | None, so mypy rejects it as a dict key. The inner join already excludes nulls; make that explicit.
Contributor
Author
|
Looks like these dependencies are updatable in another way, so this is no longer needed. |
dependabot
Bot
deleted the
dependabot/pip/apps/backend/dev/backend-minor-and-patch-a3a217638b
branch
October 5, 2026 06:16
This branch was successfully deployed
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps the backend-minor-and-patch group with 9 updates in the /apps/backend directory:
0.141.10.142.00.53.00.54.02.14.02.15.12.0.542.1.10.2.200.2.210.16.80.16.91.6.01.7.07.16.17.16.20.15.00.16.0Updates
fastapifrom 0.141.1 to 0.142.0Release notes
Sourced from fastapi's releases.
... (truncated)
Commits
bd41128🔖 Release version 0.142.0 (#16411)7aa21e5📝 Update release notes4b3949c✨ Add native OpenTelemetry support (#16403)c30032a📝 Update release notes79d42b2✅ Fix frontend test timeout with Starlette Git (#16408)a3d205b📝 Update release notes39c9a47🔧 Update sponsors: remove Permit.io (#16406)192b121📝 Update release notesd4efcba⬆ Bump anyio from 4.12.1 to 4.14.2 (#16375)50113da📝 Update release notesUpdates
uvicornfrom 0.53.0 to 0.54.0Release notes
Sourced from uvicorn's releases.
Changelog
Sourced from uvicorn's changelog.
Commits
3eb9a9aVersion 0.54.0 (#3161)cd7ef6dRemove races from supervisor tests (#3134)a56c7ccSupport HTTP/2 response trailers (#3146)9bd4404chore(deps): bump anyio from 4.13.0 to 4.14.2 (#3145)21f39efAdd HTTP/2 Early Hints support (#3137)Updates
pyjwtfrom 2.14.0 to 2.15.1Release notes
Sourced from pyjwt's releases.
Changelog
Sourced from pyjwt's changelog.
... (truncated)
Commits
7d5ef55chore: prepare 2.15.1 release7bf3252Accept canonical Base64URL padding in JWT segments (#1216)1d41a64chore: prepare 2.15.0 release9bc0665fix: make recursive payload tests deterministic5fde08afix: normalize recursive JWT payload errors171062dutils: mention bytes in force_bytes type error (#1173)c9d4d53docs/conf: drop duplicate 'and' from read() docstring (#1174)2763752Add support for Python 3.15 (#1202)4adcd02Catch http.client.HTTPException in PyJWKClient.fetch_data (#1201)9e501d9fix: correct docstring typo in _validate_jti (#1179)Updates
sqlalchemyfrom 2.0.54 to 2.1.1Release notes
Sourced from sqlalchemy's releases.
... (truncated)
Commits
Updates
xhtml2pdffrom 0.2.20 to 0.2.21Release notes
Sourced from xhtml2pdf's releases.
Commits
be20dffRelease 0.2.214747d20Accept dir="auto", keep :scope the root inside :has(), and say what form stat...6b37270Look for a :has() match only where its arguments can reach, and fix the docs1a9598fMatch HTML's case-insensitive attributes ignoring case85bccb3Compare the Selectors 4 matches against the browsercfbe508Implement :not(), :is(), :where(), :has() and the other Selectors 4 matches68f917cLet make prepare the virtualenv instead of pointing at it567ba51Re-record the browser baseline after measuring lines as drawnc59e3e9Measure a paragraph's lines the way they are drawn544e92cTell siblings apart, match |E, and drop CSSParseError's full sourceUpdates
rufffrom 0.16.8 to 0.16.9Release notes
Sourced from ruff's releases.
... (truncated)
Changelog
Sourced from ruff's changelog.
Commits
0be08a2Bump version to 0.16.9 (#28882)b4920b7Renameruff_clitoruff_command_line(#28881)47c751bUpdate dependency astral-sh/uv to v0.12.18 (#28880)8c244e5[flake8-comprehensions] Documentmap/generator exception behavior (C417...5edf5a1Usetargetform inrooster.version_files(#28876)915bb2b[ty] Prefer existing @ paths over response files in Ruff and ty (#28877)4710e1aci(github): update version number in placeholder of issue template (#28871)eedfc62[ty] Propagate outer type context through cast calls (#28855)ceaa6a0[ty] Contain rendered code within Markdown fences (#28869)dba0f30authorize ruff-pre-commit dispatch via OIDC (#28867)Updates
starlettefrom 1.6.0 to 1.7.0Release notes
Sourced from starlette's releases.
Changelog
Sourced from starlette's changelog.
Commits
2269e9aVersion 1.7.0 (#3575)4fe55ebPreserveFileResponsestatus for range requests (#3568)1f08dafMark OpenTelemetryMiddleware as experimental (#3574)57de5faSupport HTTP response trailers in TestClient (#3563)03f12b7Allow HTTPException to use non-standard status codes (#3545)76fd00fRejectWebSocketrequests toStaticFiles(#3532)f03f65cdocs: fix 'its not available' and 'This ensure' wording (#3526)485aca4docs: the test client is built on httpx2, not httpx (#3525)fd662b1ImplementidentityonSimpleUserandUnauthenticatedUser(#3271)41db6a7Stabilize CodSpeed upload buffer allocations (#3524)Updates
coveragefrom 7.16.1 to 7.16.2Release notes
Sourced from coverage's releases.
Changelog
Sourced from coverage's changelog.
Commits
5643ae7docs: prep for 7.16.2a3e969ffix: dynamic_context for@staticmethodand@classmethodtests (issue 1923) (#...8ad7236fix: stop counting the try/else line when a with statement raises (#2301)c6dab1ffix(debug): debug output doesn't mis-handle odd line separators #229608fbc32style: Protocols should use...for method bodiesbc7b0e3refactor: positional-only args are better than pragmas52afd6bDocument parallel tox coverage data files (#2284)f653aaefix: loop completion arcs on Python 3.14 (#2281)cc1ced4test: PyPy still compiles comprehensions as functions85a9088chore: make upgradeUpdates
librtfrom 0.15.0 to 0.16.0Commits
b250806Sync mypy and bump versionDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditions