Skip to content

Bump the uv-minor-and-patch group across 1 directory with 17 updates - #181

Open
dependabot[bot] wants to merge 1 commit into
developfrom
dependabot/uv/service/develop/uv-minor-and-patch-447bc783b7
Open

dependabot[bot] wants to merge 1 commit into
developfrom
dependabot/uv/service/develop/uv-minor-and-patch-447bc783b7

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 26, 2026

Copy link
Copy Markdown
Contributor

Bumps the uv-minor-and-patch group with 17 updates in the /service directory:

Package From To
json-repair 0.63.4 0.63.5
openai 3.13.0 3.19.0
pandas 3.0.5 3.0.6
uvicorn 0.52.4 0.53.0
ruff 0.16.7 0.16.8
ty 0.0.80 0.0.83
greenlet 3.5.5 3.5.6
httpcore2 2.12.0 2.13.0
httpx2 2.12.0 2.13.0
idna 3.19 3.20
mako 1.4.1 1.4.3
networkx 3.6.1 3.7
posthog 7.53.0 7.59.0
psycopg 3.3.5 3.3.6
psycopg-binary 3.3.5 3.3.6
sqlalchemy 2.0.52 2.0.54
urllib3 2.7.0 2.8.0

Updates json-repair from 0.63.4 to 0.63.5

Release notes

Sourced from json-repair's releases.

Release 0.63.5

Fixed

  • Fix #230 preserve positive exponents
  • Fix #231 preserve numeric-prefix identifiers

Support this project

json_repair is maintained as a side project and stays free for everyone.

If it saves you debugging time, helps you handle LLM-generated JSON, or is part of your production workflow, please consider:

Sponsorship helps justify the time spent fixing edge cases, improving performance, and keeping the library reliable.

Commits
  • 8d124ec Bump version
  • d63b18d Fix #230 preserve positive exponents during repair
  • 6e5f81b Fix #231 preserve numeric-prefix identifiers
  • 0a7317e Merge pull request #228 from mangiucugna/dependabot/github_actions/astral-sh/...
  • a29b5a2 Merge pull request #229 from mangiucugna/dependabot/uv/ty-0.0.80
  • 97d7b01 Bump ty from 0.0.78 to 0.0.80
  • 5121e72 Bump astral-sh/setup-uv from 10.0.1 to 10.1.0
  • 8b051d5 Merge pull request #224 from mangiucugna/dependabot/uv/pydantic-2.13.5
  • 5616ff6 Merge pull request #225 from mangiucugna/dependabot/uv/coverage-7.16.0
  • 6591d90 Merge pull request #226 from mangiucugna/dependabot/uv/ty-0.0.78
  • Additional commits viewable in compare view

Updates openai from 3.13.0 to 3.19.0

Release notes

Sourced from openai's releases.

v3.19.0

3.19.0 (2026-09-22)

Features

Bug Fixes

  • _utils/_transform: propagate api_exclude in _async_transform_recursive (#3324) (161ae65)
  • api: handle omission markers in queued WebSocket events (#3944) (63e4616)
  • client: retry only replayable request content (#3771) (6e0c2be)
  • client: tolerate older optional aiohttp installations (#3941) (0d91efb)
  • helpers: use asyncio.get_running_loop() inside async methods (#3289) (bac3545)

v3.18.0

3.18.0 (2026-09-22)

Features

  • api: add GPT-6 Sol and Luna model identifiers (#3935) (455ce1b)

v3.17.0

3.17.0 (2026-09-22)

Features

  • api: add external storage configuration management (#3909) (6332577)
  • api: add safety case retrieval (#3911) (a87b938)
  • api: add safety warning and deactivation webhook events (#3908) (19f1f37)
  • api: add session environment reset events (#3913) (69a2c1d)
  • api: add SIP media security to incoming call events (#3907) (c377eb2)
  • api: support environment variable vault credentials (#3905) (eeebc53)

Bug Fixes

  • api: correct model types and network policy docs (618bb31)
  • api: preserve model choices and defer error response docs (#3931) (6e7a90f)
  • lib: treat null message content as empty in parse_response (#3851) (fab5283)
  • lib: use log.warning instead of the deprecated log.warn (#3878) (56b1708)

Chores

... (truncated)

Changelog

Sourced from openai's changelog.

3.19.0 (2026-09-22)

Features

Bug Fixes

  • _utils/_transform: propagate api_exclude in _async_transform_recursive (#3324) (161ae65)
  • api: handle omission markers in queued WebSocket events (#3944) (63e4616)
  • client: retry only replayable request content (#3771) (6e0c2be)
  • client: tolerate older optional aiohttp installations (#3941) (0d91efb)
  • helpers: use asyncio.get_running_loop() inside async methods (#3289) (bac3545)

3.18.0 (2026-09-22)

Features

  • api: add GPT-6 Sol and Luna model identifiers (#3935) (455ce1b)

3.17.0 (2026-09-22)

Features

  • api: add external storage configuration management (#3909) (6332577)
  • api: add safety case retrieval (#3911) (a87b938)
  • api: add safety warning and deactivation webhook events (#3908) (19f1f37)
  • api: add session environment reset events (#3913) (69a2c1d)
  • api: add SIP media security to incoming call events (#3907) (c377eb2)
  • api: support environment variable vault credentials (#3905) (eeebc53)

Bug Fixes

  • api: correct model types and network policy docs (618bb31)
  • api: preserve model choices and defer error response docs (#3931) (6e7a90f)
  • lib: treat null message content as empty in parse_response (#3851) (fab5283)
  • lib: use log.warning instead of the deprecated log.warn (#3878) (56b1708)

Chores

  • api: document API error response contracts (#3917) (fededc9)
  • api: document response management resources (#3912) (eaa5b77)
  • deps: bump actions/github-script from 7.1.0 to 9.0.0 (#3769) (32e07e1)

... (truncated)

Commits
  • cbde8a5 release: 3.19.0 (#3938)
  • 63e4616 fix(api): handle omission markers in queued WebSocket events (#3944)
  • d12d60f feat(api): add GCP external storage support (#3943)
  • bac3545 fix(helpers): use asyncio.get_running_loop() inside async methods (#3289)
  • 161ae65 fix(_utils/_transform): propagate api_exclude in _async_transform_recursi...
  • 0d91efb fix(client): tolerate older optional aiohttp installations (#3941)
  • d041d73 feat(api): add GPT-Rosalind research model (#3940)
  • 6e0c2be fix(client): retry only replayable request content (#3771)
  • b56e6d8 release: 3.18.0 (#3936)
  • 455ce1b feat(api): add GPT-6 Sol and Luna model identifiers (#3935)
  • Additional commits viewable in compare view

Updates pandas from 3.0.5 to 3.0.6

Release notes

Sourced from pandas's releases.

pandas 3.0.6

We are pleased to announce the release of pandas 3.0.6. This is a patch release in the 3.0.x series and includes some regression fixes and bug fixes. We recommend that all users of the 3.0.x series upgrade to this version. This is also the first release to support Python 3.15.

See the full whatsnew for a list of all the changes.

Pandas 3.0 supports Python 3.11 and higher. The release can be installed from PyPI:

python -m pip install --upgrade pandas==3.0.*

Or from conda-forge

conda install -c conda-forge pandas=3.0

Please report any issues with the release on the pandas issue tracker.

Thanks to all the contributors who made this release possible.

Commits
  • 2905718 RLS: 3.0.6
  • 3188ced [backport 3.0.x] BUG: read_csv(sep=None) raised TypeError instead of falling...
  • f097905 DOC: cleanup 3.0.6 whatsnew + mention Python 3.15 support (#68965) (#68969)
  • 4f68223 [backport 3.0.x] BUG: fix setting with bool column mask into 1-column DataFra...
  • e3df0e8 [backport 3.0.x] BUG: full-slice setitem into a pyarrow-backed array shared m...
  • b7735f6 Backport PR #66117 on branch 3.0.x (BUG: interpolate leaving NAs unfilled for...
  • bca0b77 [backport 3.0.x] BUG: read_csv leaked the string-intern table when a column f...
  • bca1e5d [backport 3.0.x] BUG: prevent external mutation of RangeIndex._data (CoW) (#6...
  • c95b42c [3.0.x] CI: skip cython-lint on pre-commit.ci (#68910)
  • 9cbd884 [backport 3.0.x] Backport of some already merged regression fixes (#68447)
  • Additional commits viewable in compare view

Updates uvicorn from 0.52.4 to 0.53.0

Release notes

Sourced from uvicorn's releases.

Version 0.53.0

🌐 Opt-in HTTP/2 support

uvicorn 0.53.0 adds experimental HTTP/2 through zttp, alongside a new zuvloop integration and connection-handling improvements.

uv add uvicorn==0.53.0
  • Serve HTTP/1.1 and HTTP/2 with zttp (#2982, #3101). Install zttp, then enable HTTP/2 with --http zttp --http2. Uvicorn negotiates HTTP/2 over TLS with ALPN and supports cleartext prior knowledge.
  • HTTP/2 remains experimental. Upgrade-based h2c and WebSockets over HTTP/2 are not supported.

⚙️ More event loop choice

  • Run Uvicorn with zuvloop (#3104). Install zuvloop separately and select it explicitly with --loop zuvloop on CPython 3.14 or newer.

🛡️ More reliable connections and proxies

  • Honor Connection: close token lists (#3103). Uvicorn now parses comma-separated tokens case-insensitively across HTTP implementations.
  • Trust IPv6 loopback proxies by default (#3119). The default FORWARDED_ALLOW_IPS value now includes ::1.
  • Keep upgraded WebSockets alive (#3107). Uvicorn cancels the HTTP keep-alive timer when the connection becomes a WebSocket.

Full changelog: 0.52.4...0.53.0

Changelog

Sourced from uvicorn's changelog.

0.53.0 (September 14, 2026)

This release adds experimental HTTP/2 support through zttp. Enable it with --http zttp --http2. Upgrade-based h2c and WebSockets over HTTP/2 are not supported.

Added

  • Add experimental HTTP/2 support through zttp (#2982, #3101)
  • Add support for zuvloop (#3104)

Fixed

  • Handle comma-separated, case-insensitive Connection: close tokens across HTTP implementations (#3103)
  • Trust IPv6 loopback in the default FORWARDED_ALLOW_IPS value (#3119)
  • Cancel the HTTP keep-alive timer when upgrading to WebSocket (#3107)
Commits
  • 421708f Version 0.53.0 (#3136)
  • f1a1bff Unset the keep-alive timer when upgrading to WebSocket (#3107)
  • 63971ed Document HTTP/2 support (#3130)
  • 7d1a005 Remove race from multiprocess health check test (#3128)
  • 5ac6265 Add ::1 to FORWARDED_ALLOW_IPS (#3119)
  • 098b206 Remove timing race from SIGHUP supervisor test (#3127)
  • 968f15e chore(deps): bump the github-actions group with 4 updates (#3113)
  • 7d4c08c chore(deps): bump the python-packages group across 1 directory with 11 update...
  • fe528a4 Require explicit opt-in for zttp HTTP/2 (#3101)
  • fa324a4 chore(deps-dev): bump httpx2 from 2.10.0 to 2.12.0 (#3121)
  • Additional commits viewable in compare view

Updates ruff from 0.16.7 to 0.16.8

Release notes

Sourced from ruff's releases.

0.16.8

Release Notes

Released on 2026-09-16.

Bug fixes

  • Visit functional TypedDict keyword arguments correctly (#28584)
  • [flake8-simplify] Detect nested async with under sync parent (SIM117) (#27821)
  • [flake8-simplify] Preserve operand order in SIM109 fix (#27824)
  • [pyupgrade] Preserve required parentheses in multiline UP040 fixes (#28164)
  • [pyupgrade] Skip TypeVarTuple and ParamSpec conversions with bounds or constraints (UP040, UP046, UP047) (#28505)

Rule changes

  • Add support for __lazy_modules__ (#28459)
  • Recognize PEP-728 TypedDict class keywords (#28533)
  • Recognize quoted types in typing.TypeForm (#28507)
  • Support conditional assignment to __lazy_modules__ (#28491)
  • [flake8-type-checking] Prefer lazy imports over TYPE_CHECKING on Python 3.15 and later (TC001, TC002, TC003) (#28541)
  • [pyupgrade] Make the fix for UP040 always unsafe (#28526)
  • [pyupgrade] Stop recommending deprecated ByteString aliases (UP035) (#28498)
  • [ruff, flake8-use-pathlib] Recognize the parent_mode argument (RUF064, PTH103) (#28528)
  • [ruff] Detect \Z in pytest.raises() match patterns (RUF043) (#28598)

CLI

  • Use rule name and code in formatter incompatibility warnings (#28571)

Configuration

  • [flake8-tidy-imports] Add extend-banned-api (#28644)

Contributors

Install ruff 0.16.8

Install prebuilt binaries via shell script

curl --proto '=https' --tlsv1.2 -LsSf https://releases.astral.sh/github/ruff/releases/download/0.16.8/ruff-installer.sh | sh
</tr></table> 

... (truncated)

Changelog

Sourced from ruff's changelog.

0.16.8

Released on 2026-09-16.

Bug fixes

  • Visit functional TypedDict keyword arguments correctly (#28584)
  • [flake8-simplify] Detect nested async with under sync parent (SIM117) (#27821)
  • [flake8-simplify] Preserve operand order in SIM109 fix (#27824)
  • [pyupgrade] Preserve required parentheses in multiline UP040 fixes (#28164)
  • [pyupgrade] Skip TypeVarTuple and ParamSpec conversions with bounds or constraints (UP040, UP046, UP047) (#28505)

Rule changes

  • Add support for __lazy_modules__ (#28459)
  • Recognize PEP-728 TypedDict class keywords (#28533)
  • Recognize quoted types in typing.TypeForm (#28507)
  • Support conditional assignment to __lazy_modules__ (#28491)
  • [flake8-type-checking] Prefer lazy imports over TYPE_CHECKING on Python 3.15 and later (TC001, TC002, TC003) (#28541)
  • [pyupgrade] Make the fix for UP040 always unsafe (#28526)
  • [pyupgrade] Stop recommending deprecated ByteString aliases (UP035) (#28498)
  • [ruff, flake8-use-pathlib] Recognize the parent_mode argument (RUF064, PTH103) (#28528)
  • [ruff] Detect \Z in pytest.raises() match patterns (RUF043) (#28598)

CLI

  • Use rule name and code in formatter incompatibility warnings (#28571)

Configuration

  • [flake8-tidy-imports] Add extend-banned-api (#28644)

Contributors

Commits
  • 62914c4 Bump version to 0.16.8 (#28648)
  • c47e0cd [ty] Bound aliased intersection expansion during inference (#28546)
  • ff4747b renovate: update uv hashes correctly with setup-uv (#28621)
  • 94efeaa [ty] Compact reachable binding and declaration histories (#28349)
  • 50020fb [ty] Avoid storing constraint nodes twice (#28375)
  • 446bb68 [ty] Compare bound-method receivers before signatures (#28384)
  • 304ab86 [flake8-type-checking] Prefer lazy imports over TYPE_CHECKING on 3.15+ (`...
  • d940b24 [ty] Watch script dependencies in CLI watch mode (#28125)
  • fe9f065 [flake8-tidy-imports] Add extend-banned-api (#28644)
  • 31131db [ty] Support type[A & B] (#27124)
  • Additional commits viewable in compare view

Updates ty from 0.0.80 to 0.0.83

Release notes

Sourced from ty's releases.

0.0.83

Release Notes

Released on 2026-09-21.

Bug fixes

  • Fix hangs from repeated partial application (#28754)
  • Preserve PEP 695 bindings across nested classes (#28723)

LSP server

  • Include required imports in every inlay hint (#28724)
  • Preserve fast name filtering for normalized Unicode source (#28701)
  • Refresh diagnostics after workspace configuration changes (#28755)

Diagnostic improvements

  • Expand unreachable-code annotations for redundant conditions (#28674)
  • Improve diagnostics for async generator stubs (#28692)
  • Improve primary diagnostic annotations for redundant-condition(-strict) diagnostics (#28666)
  • Point misplaced tuple ellipsis diagnostics at each ellipsis (#28709)

Other changes

  • Add rules that detect suspicious uses of Callable, Iterable, Iterator or Generator types in a boolean context (#28554)
  • Allow slots to override abstract properties (#28698)
  • Avoid leaking Unknown from unconstrained collection use-sites (#28659)
  • Diagnose unguarded cycles in implicit and PEP 613 aliases (#28704)
  • Eagerly bind unused Self receivers (#28662)
  • Generalize receiver binding for wrapped callables (#28725)
  • More faithful representation of bound methods (#28410)
  • Only classify evidence bounds for constrained type variables (#28700)
  • Preserve inferred bindings during annotation cycles (#28717)
  • Preserve quoted aliases during cycle recovery (#28710)
  • Reject class-scoped type variables in init receivers (#28706)
  • Reject unsafe TypedDict updates from hidden fields (#28711)
  • Respect fixed caller type variables when selecting constraints (#28652)
  • Reuse cached type alias inference for diagnostics (#28696)
  • Simplify unions of disjoint exclusions (#28684)
  • Update typing conformance suite (#28718)

Contributors

... (truncated)

Changelog

Sourced from ty's changelog.

0.0.83

Released on 2026-09-21.

Bug fixes

  • Fix hangs from repeated partial application (#28754)
  • Preserve PEP 695 bindings across nested classes (#28723)

LSP server

  • Include required imports in every inlay hint (#28724)
  • Preserve fast name filtering for normalized Unicode source (#28701)
  • Refresh diagnostics after workspace configuration changes (#28755)

Diagnostic improvements

  • Expand unreachable-code annotations for redundant conditions (#28674)
  • Improve diagnostics for async generator stubs (#28692)
  • Improve primary diagnostic annotations for redundant-condition(-strict) diagnostics (#28666)
  • Point misplaced tuple ellipsis diagnostics at each ellipsis (#28709)

Other changes

  • Add rules that detect suspicious uses of Callable, Iterable, Iterator or Generator types in a boolean context (#28554)
  • Allow slots to override abstract properties (#28698)
  • Avoid leaking Unknown from unconstrained collection use-sites (#28659)
  • Diagnose unguarded cycles in implicit and PEP 613 aliases (#28704)
  • Eagerly bind unused Self receivers (#28662)
  • Generalize receiver binding for wrapped callables (#28725)
  • More faithful representation of bound methods (#28410)
  • Only classify evidence bounds for constrained type variables (#28700)
  • Preserve inferred bindings during annotation cycles (#28717)
  • Preserve quoted aliases during cycle recovery (#28710)
  • Reject class-scoped type variables in init receivers (#28706)
  • Reject unsafe TypedDict updates from hidden fields (#28711)
  • Respect fixed caller type variables when selecting constraints (#28652)
  • Reuse cached type alias inference for diagnostics (#28696)
  • Simplify unions of disjoint exclusions (#28684)
  • Update typing conformance suite (#28718)

Contributors

... (truncated)

Commits

Updates greenlet from 3.5.5 to 3.5.6

Changelog

Sourced from greenlet's changelog.

3.5.6 (2026-09-14)

  • Correct a race condition that could lead to garbage collection unintentionally being disabled. See PR 529 <https://github.com/python-greenlet/greenlet/pull/529>_ by Yurii.
Commits
  • abfe740 Preparing release 3.5.6
  • e23e3e4 Change note for #529
  • 8de830f Merge pull request #529 from Georggi/patch-1
  • 72d7cac Merge pull request #530 from python-greenlet/dependabot/github_actions/github...
  • ac01b7d Bump github/codeql-action in the github-actions group
  • e18f5a6 Simplify GCDisabledGuard constructor
  • 6aaf3af Back to development: 3.5.6
  • See full diff in compare view

Updates httpcore2 from 2.12.0 to 2.13.0

Release notes

Sourced from httpcore2's releases.

v2.13.0

Highlights

🔐 Reliable TLS verification controls

The CLI --no-verify flag now disables TLS certificate verification as intended, and --verify provides an explicit counterpart (pydantic/httpx2#1140, pydantic/httpx2#1186).

🧹 Safer async stream cleanup

Stopping a streamed response early no longer risks a nested async generator finalization error (pydantic/httpx2#1204).

httpx2

Changed

  • Require brotlicffi 1.2.0.2 or later for the brotli extra on non-CPython implementations in pydantic/httpx2#1179

Fixed

httpcore2

Changed

Fixed

  • Avoid nested async generator finalization errors when streamed responses are abandoned early in pydantic/httpx2#1204

Full Changelog: pydantic/httpx2@v2.12.0...v2.13.0

Commits
  • f295185 Prepare version 2.13.0 (#1208)
  • c518f71 Avoid nested async generator finalization errors (#1204)
  • 8f215b5 Use portable links in API docstrings (#1202)
  • 81c523f Revert "Maintain connection reservations incrementally in the pool" (#1197)
  • 23a24f0 Maintain connection reservations incrementally in the pool (#1076)
  • 36d636a Group httpx2.__all__ exports by source module (#1188)
  • f1064aa Bump the python-packages group across 1 directory with 11 updates (#1179)
  • bc27137 Update uv-dynamic-versioning requirement from >=0.14.0 to >=0.14.1 (#1180)
  • 62e0827 Restore --no-verify CLI flag (#1186)
  • c9b1d33 Replace --no-verify flag with --verify (#1140)
  • Additional commits viewable in compare view

Updates httpx2 from 2.12.0 to 2.13.0

Release notes

Sourced from httpx2's releases.

v2.13.0

Highlights

🔐 Reliable TLS verification controls

The CLI --no-verify flag now disables TLS certificate verification as intended, and --verify provides an explicit counterpart (pydantic/httpx2#1140, pydantic/httpx2#1186).

🧹 Safer async stream cleanup

Stopping a streamed response early no longer risks a nested async generator finalization error (pydantic/httpx2#1204).

httpx2

Changed

  • Require brotlicffi 1.2.0.2 or later for the brotli extra on non-CPython implementations in pydantic/httpx2#1179

Fixed

httpcore2

Changed

Fixed

  • Avoid nested async generator finalization errors when streamed responses are abandoned early in pydantic/httpx2#1204

Full Changelog: pydantic/httpx2@v2.12.0...v2.13.0

Changelog

Sourced from httpx2's changelog.

2.13.0 (September 14th, 2026)

Changed

  • Require brotlicffi 1.2.0.2 or later for the brotli extra on non-CPython implementations. (#1179)

Fixed

  • Make the --no-verify CLI flag disable TLS certificate verification and add an explicit --verify counterpart. (#1140, #1186)
  • Avoid nested async generator finalization errors when streamed responses are abandoned early. (#1204)
Commits

Updates idna from 3.19 to 3.20

Release notes

Sourced from Description has been truncated

Bumps the uv-minor-and-patch group with 17 updates in the /service directory:

| Package | From | To |
| --- | --- | --- |
| [json-repair](https://github.com/mangiucugna/json_repair) | `0.63.4` | `0.63.5` |
| [openai](https://github.com/openai/openai-python) | `3.13.0` | `3.19.0` |
| [pandas](https://github.com/pandas-dev/pandas) | `3.0.5` | `3.0.6` |
| [uvicorn](https://github.com/Kludex/uvicorn) | `0.52.4` | `0.53.0` |
| [ruff](https://github.com/astral-sh/ruff) | `0.16.7` | `0.16.8` |
| [ty](https://github.com/astral-sh/ty) | `0.0.80` | `0.0.83` |
| [greenlet](https://github.com/python-greenlet/greenlet) | `3.5.5` | `3.5.6` |
| [httpcore2](https://github.com/pydantic/httpx2) | `2.12.0` | `2.13.0` |
| [httpx2](https://github.com/pydantic/httpx2) | `2.12.0` | `2.13.0` |
| [idna](https://github.com/kjd/idna) | `3.19` | `3.20` |
| [mako](https://github.com/sqlalchemy/mako) | `1.4.1` | `1.4.3` |
| [networkx](https://github.com/networkx/networkx) | `3.6.1` | `3.7` |
| [posthog](https://github.com/posthog/posthog-python) | `7.53.0` | `7.59.0` |
| [psycopg](https://github.com/psycopg/psycopg) | `3.3.5` | `3.3.6` |
| [psycopg-binary](https://github.com/psycopg/psycopg) | `3.3.5` | `3.3.6` |
| [sqlalchemy](https://github.com/sqlalchemy/sqlalchemy) | `2.0.52` | `2.0.54` |
| [urllib3](https://github.com/urllib3/urllib3) | `2.7.0` | `2.8.0` |



Updates `json-repair` from 0.63.4 to 0.63.5
- [Release notes](https://github.com/mangiucugna/json_repair/releases)
- [Commits](mangiucugna/json_repair@v0.63.4...v0.63.5)

Updates `openai` from 3.13.0 to 3.19.0
- [Release notes](https://github.com/openai/openai-python/releases)
- [Changelog](https://github.com/openai/openai-python/blob/main/CHANGELOG.md)
- [Commits](openai/openai-python@v3.13.0...v3.19.0)

Updates `pandas` from 3.0.5 to 3.0.6
- [Release notes](https://github.com/pandas-dev/pandas/releases)
- [Commits](pandas-dev/pandas@v3.0.5...v3.0.6)

Updates `uvicorn` from 0.52.4 to 0.53.0
- [Release notes](https://github.com/Kludex/uvicorn/releases)
- [Changelog](https://github.com/Kludex/uvicorn/blob/main/docs/release-notes.md)
- [Commits](Kludex/uvicorn@0.52.4...0.53.0)

Updates `ruff` from 0.16.7 to 0.16.8
- [Release notes](https://github.com/astral-sh/ruff/releases)
- [Changelog](https://github.com/astral-sh/ruff/blob/main/CHANGELOG.md)
- [Commits](astral-sh/ruff@0.16.7...0.16.8)

Updates `ty` from 0.0.80 to 0.0.83
- [Release notes](https://github.com/astral-sh/ty/releases)
- [Changelog](https://github.com/astral-sh/ty/blob/main/CHANGELOG.md)
- [Commits](astral-sh/ty@0.0.80...0.0.83)

Updates `greenlet` from 3.5.5 to 3.5.6
- [Changelog](https://github.com/python-greenlet/greenlet/blob/master/CHANGES.rst)
- [Commits](python-greenlet/greenlet@3.5.5...3.5.6)

Updates `httpcore2` from 2.12.0 to 2.13.0
- [Release notes](https://github.com/pydantic/httpx2/releases)
- [Commits](pydantic/httpx2@v2.12.0...v2.13.0)

Updates `httpx2` from 2.12.0 to 2.13.0
- [Release notes](https://github.com/pydantic/httpx2/releases)
- [Changelog](https://github.com/pydantic/httpx2/blob/main/src/httpx2/CHANGELOG.md)
- [Commits](pydantic/httpx2@v2.12.0...v2.13.0)

Updates `idna` from 3.19 to 3.20
- [Release notes](https://github.com/kjd/idna/releases)
- [Changelog](https://github.com/kjd/idna/blob/master/HISTORY.md)
- [Commits](kjd/idna@v3.19...v3.20)

Updates `mako` from 1.4.1 to 1.4.3
- [Release notes](https://github.com/sqlalchemy/mako/releases)
- [Changelog](https://github.com/sqlalchemy/mako/blob/main/CHANGES)
- [Commits](https://github.com/sqlalchemy/mako/commits)

Updates `networkx` from 3.6.1 to 3.7
- [Release notes](https://github.com/networkx/networkx/releases)
- [Commits](networkx/networkx@networkx-3.6.1...networkx-3.7)

Updates `posthog` from 7.53.0 to 7.59.0
- [Release notes](https://github.com/posthog/posthog-python/releases)
- [Changelog](https://github.com/PostHog/posthog-python/blob/main/CHANGELOG.md)
- [Commits](PostHog/posthog-python@posthog-v7.53.0...posthog-v7.59.0)

Updates `psycopg` from 3.3.5 to 3.3.6
- [Changelog](https://github.com/psycopg/psycopg/blob/master/docs/news.rst)
- [Commits](psycopg/psycopg@3.3.5...3.3.6)

Updates `psycopg-binary` from 3.3.5 to 3.3.6
- [Changelog](https://github.com/psycopg/psycopg/blob/master/docs/news.rst)
- [Commits](psycopg/psycopg@3.3.5...3.3.6)

Updates `sqlalchemy` from 2.0.52 to 2.0.54
- [Release notes](https://github.com/sqlalchemy/sqlalchemy/releases)
- [Changelog](https://github.com/sqlalchemy/sqlalchemy/blob/main/CHANGES.rst)
- [Commits](https://github.com/sqlalchemy/sqlalchemy/commits)

Updates `urllib3` from 2.7.0 to 2.8.0
- [Release notes](https://github.com/urllib3/urllib3/releases)
- [Changelog](https://github.com/urllib3/urllib3/blob/main/CHANGES.rst)
- [Commits](urllib3/urllib3@2.7.0...2.8.0)

---
updated-dependencies:
- dependency-name: json-repair
  dependency-version: 0.63.5
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: uv-minor-and-patch
- dependency-name: openai
  dependency-version: 3.19.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: uv-minor-and-patch
- dependency-name: pandas
  dependency-version: 3.0.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: uv-minor-and-patch
- dependency-name: uvicorn
  dependency-version: 0.53.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: uv-minor-and-patch
- dependency-name: ruff
  dependency-version: 0.16.8
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: uv-minor-and-patch
- dependency-name: ty
  dependency-version: 0.0.83
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: uv-minor-and-patch
- dependency-name: greenlet
  dependency-version: 3.5.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: uv-minor-and-patch
- dependency-name: httpcore2
  dependency-version: 2.13.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: uv-minor-and-patch
- dependency-name: httpx2
  dependency-version: 2.13.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: uv-minor-and-patch
- dependency-name: idna
  dependency-version: '3.20'
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: uv-minor-and-patch
- dependency-name: mako
  dependency-version: 1.4.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: uv-minor-and-patch
- dependency-name: networkx
  dependency-version: '3.7'
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: uv-minor-and-patch
- dependency-name: posthog
  dependency-version: 7.59.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: uv-minor-and-patch
- dependency-name: psycopg
  dependency-version: 3.3.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: uv-minor-and-patch
- dependency-name: psycopg-binary
  dependency-version: 3.3.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: uv-minor-and-patch
- dependency-name: sqlalchemy
  dependency-version: 2.0.54
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: uv-minor-and-patch
- dependency-name: urllib3
  dependency-version: 2.8.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: uv-minor-and-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python:uv Pull requests that update python:uv code labels Sep 26, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python:uv Pull requests that update python:uv code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants