python-openapi / openapi-core

Openapi-core is a Python library that adds client-side and server-side support for the OpenAPI v3.0 and OpenAPI v3.1 specification.
BSD 3-Clause "New" or "Revised" License
287 stars 131 forks source link

Bump deptry from 0.12.0 to 0.14.1 #811

Closed dependabot[bot] closed 3 months ago

dependabot[bot] commented 3 months ago

Bumps deptry from 0.12.0 to 0.14.1.

Release notes

Sourced from deptry's releases.

0.14.1

What's Changed

This release improves runtime performance of built wheels by about 5%, and reduces their size (by @​mkniewallner in fpgmaas/deptry#594).

PyPy wheels are now also published on PyPI (by @​edgarrmondragon in fpgmaas/deptry#612).

Bug fixes

Full Changelog: https://github.com/fpgmaas/deptry/compare/0.14.0...0.14.1

0.14.0

What's Changed

This release significantly improves the speed of deptry, particularly for large projects, by utilizing Rust to manage the parsing of Abstract Syntax Trees (AST) from .py files and to extract the import statements. For some benchmarks, see below:

Changes

Since the changes are all in the back-end, little has changed for the user other than the execution speed. The two minor notable changes are:

  • Improved identification of column identifier in imports detection. Where earlier the column identifier for an imported module foo in the line import foo would be 0, it now points to column 8

Available wheels on PyPi

Where earlier releases published a single .whl file to PyPi, with the move to Rust we now build and publish wheels for a variety of platforms and architectures. More specifically, wheel files for the following combinations are now available on PyPi:

  • Linux: ABI3 wheels for x86_64 and aarch64 architectures.
  • Windows: ABI3 wheels for the x64 architecture.
  • macOS: ABI3 wheels for x86_64 and aarch64 (Apple Silicon) architectures.

Alongside the ABI3 wheels, we provide a source distribution (sdist) package.

Full Changelog: https://github.com/fpgmaas/deptry/compare/0.13.0...0.14.0

0.14.0a1

This release speeds up deptry significantly, especially on large projects, by leveraging Rust to handle the parsing of the Abstract Syntax Trees (AST) from .py files and the extraction of import statements.

What's Changed

Full Changelog: https://github.com/fpgmaas/deptry/compare/0.13.0...0.14.0a1

0.13.0

... (truncated)

Changelog

Sourced from deptry's changelog.

0.14.1 - 2024-03-18

This release improves runtime performance of built wheels by about 5%, and reduces their size (#594).

PyPy wheels are now also published on PyPI (#612).

Bug Fixes

  • Improve handling of comments in requirements.txt files (#588)
  • Avoid process hanging on error when parsing Python files (#619)

Full Changelog

https://github.com/fpgmaas/deptry/compare/0.14.0...0.14.1

0.14.0 - 2024-03-14

This release significantly improves the speed of deptry, particularly for large projects, by utilizing Rust to manage the parsing of Abstract Syntax Trees (AST) from .py files and to extract the import statements. For some benchmarks, see below:

Since the changes are all in the back-end, little has changed for the user other than the execution speed. The two minor notable changes are:

  • Improved identification of column identifier in imports detection. Where earlier the column identifier for an imported module foo in the line import foo would be 0, it now points to column 8.

Available wheels on PyPI

Where earlier releases published a single .whl file to PyPI, with the move to Rust we now build and publish wheels for a variety of platforms and architectures. More specifically, wheel files for the following combinations are now available on PyPI:

  • Linux: ABI3 wheels for x86_64 and aarch64 architectures.
  • Windows: ABI3 wheels for the x64 architecture.
  • macOS: ABI3 wheels for x86_64 and aarch64 (Apple Silicon) architectures.

Alongside the ABI3 wheels, we provide a source distribution (sdist) package.

Full Changelog

https://github.com/fpgmaas/deptry/compare/0.13.0...0.14.0

0.13.0 - 2024-03-12

Features

  • deptry will now report invalid configuration options defined in pyproject.toml (#571)

Bug Fixes

  • Stricten URL detection to avoid flagging libraries like httpx as URLs (#570)

... (truncated)

Commits
  • 6c73675 docs(changelog): add 0.14.1 release notes (#614)
  • 673371c fix(imports): handle errors after processing AST (#619)
  • a85339e fix unit tests (#617)
  • 370e471 Build PyPy wheels (#612)
  • d8790e1 chore(cargo): aim for faster runtime on release profile (#594)
  • 95477b9 chore: speed up functional tests (#598)
  • 7cf0aab chore(deps): lock file maintenance
  • 0bcbafc chore(deps): update pre-commit hook astral-sh/ruff-pre-commit to v0.3.3
  • af4ae01 chore(deps): update dependency dev/pytest to v8.1.1 (#602)
  • 1f93524 chore(deps): update dependency typing/types-colorama to v0.4.15.20240311
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)