Skip to content

Bump ujson, pyjwt, cryptography, msgpack, pyasn1, setuptools - #359

Merged
alexreinking merged 1 commit into
masterfrom
deps/uv-lock-upgrade-2026-07-28
Jul 29, 2026
Merged

Bump ujson, pyjwt, cryptography, msgpack, pyasn1, setuptools#359
alexreinking merged 1 commit into
masterfrom
deps/uv-lock-upgrade-2026-07-28

Conversation

@alexreinking

Copy link
Copy Markdown
Member

Summary

Dependabot should auto-close #358, #357, #356, #355, #354, #353 once this merges, since the lockfile already satisfies those bumps.

Test plan

  • uv lock --upgrade-package scoped to the 6 affected packages (avoided a full uv lock --upgrade, which would have touched ~35 packages including several unrelated major version bumps)
  • ruff check . — pass
  • ty check — pass
  • CI (uv-lock, bandit, codespell, vulture, buildbot checkconfig)

🤖 Generated with Claude Code

Consolidates the pending dependabot uv-lock bumps into a single lockfile
update. cryptography's bump pulled in a matching pyopenssl bump since
newer pyopenssl versions require cryptography>=47.

Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
@alexreinking
alexreinking merged commit 048b78b into master Jul 29, 2026
9 checks passed
@alexreinking
alexreinking deleted the deps/uv-lock-upgrade-2026-07-28 branch July 29, 2026 02:14
@alexreinking alexreinking mentioned this pull request Jul 29, 2026
3 tasks
alexreinking added a commit that referenced this pull request Jul 29, 2026
Supersedes dependabot PR #346, which targeted the 26.4.0rc2 release
candidate and would have pinned the pyproject.toml floor to a
pre-release version. The stable 26.4.0 has since shipped and now
resolves cleanly (unblocked by the pyopenssl/cryptography bump in #359).

Co-authored-by: Claude Sonnet 5 <noreply@anthropic.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant