Skip to content

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github May 20, 2025

Bumps deptry from 0.20.0 to 0.23.0.

Release notes

Sourced from deptry's releases.

0.23.0

What's Changed

Features

  • Correctly detect transitive dependencies with different module names (#1033)

Full Changelog: fpgmaas/deptry@0.22.0...0.23.0

0.22.0

What's Changed

Poetry 2.0 introduced support for defining project metadata using PEP 621. This is now supported by deptry. Documentation has been updated to detail deptry's behavior.

Features

  • Support PEP 621 in Poetry 2.0+ (#1003)

Full Changelog: fpgmaas/deptry@0.21.2...0.22.0

0.21.2

What's Changed

Miscellaneous

  • Provide wheels for musllinux (#979)

Full Changelog: fpgmaas/deptry@0.21.1...0.21.2

0.21.1

What's Changed

Bug Fixes

  • Handle string requirements files for setuptools dynamic dependencies (#945)

Full Changelog: fpgmaas/deptry@0.21.0...0.21.1

0.21.0

What's Changed

Breaking changes

Ignore files handling

Unless --exclude is used, deptry excludes files found in common ignore files (.gitignore, .ignore, $HOME/.config/git/ignore. ...), by using ignore Rust crate. The default behaviour has been changed, so that now:

  • git-related ignore rules (.gitignore, $HOME/.config/git/ignore, ...) are only used if deptry is run inside a git repository
  • .gitignore files that are in parent directories of the git repository from where deptry is run are not used (previously, deptry would traverse parent directories up to the root system)

... (truncated)

Changelog

Sourced from deptry's changelog.

0.23.0 - 2025-01-25

Features

  • Correctly detect transitive dependencies with different module names (#1033)

Full Changelog

fpgmaas/deptry@0.22.0...0.23.0

0.22.0 - 2025-01-10

Poetry 2.0 introduced support for defining project metadata in PEP 621. This is now supported by deptry. Documentation has been updated to detail deptry's behavior.

Features

  • Support PEP 621 in Poetry 2.0+ (#1003)

Full Changelog

fpgmaas/deptry@0.21.2...0.22.0

0.21.2 - 2024-12-19

Miscellaneous

  • Provide wheels for musllinux (#979)

Full Changelog

fpgmaas/deptry@0.21.1...0.21.2

0.21.1 - 2024-11-15

Bug Fixes

  • Handle string requirements files for setuptools dynamic dependencies (#945)

Full Changelog

fpgmaas/deptry@0.21.0...0.21.1

... (truncated)

Commits
  • 1edeef3 docs(changelog): add 0.23.0 release notes (#1042)
  • 55144c0 chore(deps): bump Ruff parser to 0.9.3 (#1041)
  • ddbb004 Correctly detect transitive dependencies with different module names (#1033)
  • a5d01d8 chore(deps): update pre-commit hook woodruffw/zizmor-pre-commit to v1.2.2 (#1...
  • 0828296 chore(deps): update dependency pre-commit to v4.1.0 (#1038)
  • 2750123 chore(deps): lock file maintenance (#1040)
  • a6aeb30 fix(deps): update rust crate serde_json to v1.0.137 (#1037)
  • e67a1b1 chore(deps): update uv-version to v0.5.24 (#1036)
  • 77f533b chore(deps): update pre-commit hook astral-sh/ruff-pre-commit to v0.9.3 (#1035)
  • 9e4ecd1 fix(deps): update rust crate log to v0.4.25 (#1028)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@dependabot dependabot bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels May 20, 2025
Copy link
Contributor

mergify bot commented May 20, 2025

Merge Protections

Your pull request matches the following merge protections and will not be merged until they are valid.

🟢 Changelog requirements

Wonderful, this rule succeeded.
  • any of:
    • -title ~= ^feat
    • label = need changelog
    • label = skip changelog

🟢 Enforce conventional commit

Wonderful, this rule succeeded.

Make sure that we follow https://www.conventionalcommits.org/en/v1.0.0/

  • title ~= ^(fix|feat|docs|style|refactor|perf|test|build|ci|chore|revert)(?:\(.+\))?:

🟢 🔎 Reviews

Wonderful, this rule succeeded.
  • #changes-requested-reviews-by = 0
  • #review-requested = 0
  • #review-threads-unresolved = 0

Copy link
Contributor

mergify bot commented May 20, 2025

@dependabot[bot] this pull request is now in conflict 😩

@mergify mergify bot added the conflict label May 20, 2025
Bumps [deptry](https://github.com/fpgmaas/deptry) from 0.20.0 to 0.23.0.
- [Release notes](https://github.com/fpgmaas/deptry/releases)
- [Changelog](https://github.com/fpgmaas/deptry/blob/main/CHANGELOG.md)
- [Commits](fpgmaas/deptry@0.20.0...0.23.0)

---
updated-dependencies:
- dependency-name: deptry
  dependency-version: 0.23.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot force-pushed the dependabot/pip/deptry-0.23.0 branch from 7c7a093 to a0caaff Compare May 20, 2025 08:13
@mergify mergify bot added queued and removed conflict labels May 20, 2025
mergify bot added a commit that referenced this pull request May 20, 2025
mergify bot added a commit that referenced this pull request May 20, 2025
mergify bot added a commit that referenced this pull request May 20, 2025
mergify bot added a commit that referenced this pull request May 20, 2025
@mergify mergify bot merged commit a0caaff into main May 20, 2025
8 checks passed
@mergify mergify bot deleted the dependabot/pip/deptry-0.23.0 branch May 20, 2025 08:20
@mergify mergify bot removed the queued label May 20, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file python Pull requests that update Python code
Development

Successfully merging this pull request may close these issues.

0 participants