ProtoThis / python-synology

MIT License
55 stars 38 forks source link

Bump pip from 20.2.4 to 21.0.1 in /.github/workflows #148

Closed dependabot[bot] closed 3 years ago

dependabot[bot] commented 3 years ago

Bumps pip from 20.2.4 to 21.0.1.

Changelog

Sourced from pip's changelog.

21.0.1 (2021-01-30)

Bug Fixes

  • commands: debug: Use packaging.version.parse to compare between versions. ([#9461](https://github.com/pypa/pip/issues/9461) <https://github.com/pypa/pip/issues/9461>_)
  • New resolver: Download and prepare a distribution only at the last possible moment to avoid unnecessary network access when the same version is already installed locally. ([#9516](https://github.com/pypa/pip/issues/9516) <https://github.com/pypa/pip/issues/9516>_)

Vendored Libraries

  • Upgrade packaging to 20.9

21.0 (2021-01-23)

Deprecations and Removals

  • Drop support for Python 2. ([#6148](https://github.com/pypa/pip/issues/6148) <https://github.com/pypa/pip/issues/6148>_)
  • Remove support for legacy wheel cache entries that were created with pip versions older than 20.0. ([#7502](https://github.com/pypa/pip/issues/7502) <https://github.com/pypa/pip/issues/7502>_)
  • Remove support for VCS pseudo URLs editable requirements. It was emitting deprecation warning since version 20.0. ([#7554](https://github.com/pypa/pip/issues/7554) <https://github.com/pypa/pip/issues/7554>_)
  • Modernise the codebase after Python 2. ([#8802](https://github.com/pypa/pip/issues/8802) <https://github.com/pypa/pip/issues/8802>_)
  • Drop support for Python 3.5. ([#9189](https://github.com/pypa/pip/issues/9189) <https://github.com/pypa/pip/issues/9189>_)
  • Remove the VCS export feature that was used only with editable VCS requirements and had correctness issues. ([#9338](https://github.com/pypa/pip/issues/9338) <https://github.com/pypa/pip/issues/9338>_)

Features

  • Add --ignore-requires-python support to pip download. ([#1884](https://github.com/pypa/pip/issues/1884) <https://github.com/pypa/pip/issues/1884>_)
  • New resolver: Error message shown when a wheel contains inconsistent metadata is made more helpful by including both values from the file name and internal metadata. ([#9186](https://github.com/pypa/pip/issues/9186) <https://github.com/pypa/pip/issues/9186>_)

Bug Fixes

  • Fix a regression that made pip wheel do a VCS export instead of a VCS clone for editable requirements. This broke VCS requirements that need the VCS information to build correctly. ([#9273](https://github.com/pypa/pip/issues/9273) <https://github.com/pypa/pip/issues/9273>_)
  • Fix pip download of editable VCS requirements that need VCS information to build correctly. ([#9337](https://github.com/pypa/pip/issues/9337) <https://github.com/pypa/pip/issues/9337>_)

... (truncated)

Commits
  • 22c6efd Bump for release
  • a085068 Update AUTHORS.txt
  • 00fb5a0 Merge pull request #9533 from henryiii/chore/packaging-20.9
  • c7ace4d Upgrade packaging to 20.9
  • d1aa391 Merge pull request #9497 from hugovk/update-docs-tense
  • 55d2969 Merge pull request #9522 from uranusjr/no-dup-fetch
  • 7d43ec5 More permissive output check
  • 2e70ec0 Create the candidate lazily to avoid download
  • 68a86c5 Failing test for repeated fetch
  • fa0ee31 Merge pull request #9504 from sbidoul/improve-pre-commit-sbi
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
dependabot[bot] commented 3 years ago

OK, I won't notify you again about this release, but will get in touch when a new version is available.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.