dtw-python
dtw-python copied to clipboard
Bump pypa/gh-action-pypi-publish from 1.8.11 to 1.8.14
Bumps pypa/gh-action-pypi-publish from 1.8.11 to 1.8.14.
Release notes
Sourced from pypa/gh-action-pypi-publish's releases.
v1.8.14
🛠️ Internal Dependencies
Nothing changed feature-wise. The only notable update is that the underlying container runtime now uses Python 3.12 and pip has been updated to v24.0 there. This is should go unnoticed in terms of behavior. It's just a bit of maintenance burden to be done occasionally by
@webknjaz💰. Enjoy!🪞 Full Diff: https://github.com/pypa/gh-action-pypi-publish/compare/v1.8.13...v1.8.14
🧔♂️ Release Manager:
@webknjaz 🇺🇦v1.8.13
🐛 What's Fixed
This action is now able to consume and publish distribution packages with
Metadata-Version: 2.3embedded.🛠️ Internal Dependencies
@SigureMo💰 sent us a bump ofpkginfoversion to version 1.10.0 in #219. It's a transitive dependency for us and is not an API-level change but upgrading it has a side effect of letting Twine recognize distribution packages declaringMetadata-Version: 2.3. In particular, it is known to affect distributions built withMaturin >= 1.5.0.Following that,
@webknjaz💰 upgraded other transitive and direct dependency pins, including, among others, the following notable bumps:
cryptography == 42.0.5id == 1.3.0readme-renderer == 43.0Twine == 5.0.0💪 New Contributors
@SigureMomade their first contribution in pypa/gh-action-pypi-publish#219🪞 Full Diff: https://github.com/pypa/gh-action-pypi-publish/compare/v1.8.12...v1.8.13
🧔♂️ Release Manager:
@webknjaz 🇺🇦v1.8.12
💅 Cosmetic Output Improvements
@woodruffw💰 replaced the notice annotations with simplified debug messages related to authentication methanism selection via #196. The also improved the error clarity during OIDC exchange on PRs from forks via #203.📝 What's Documented
@virtuald💰 updated the docs and pointer messages were updated to mention that reusable workflows aren't supported right now in #186 and@xuanzhi33💰 later corrected the markdown syntax there via #216.🛠️ Internal Dependencies
- pre-commit linters got autoupdated @ #204
- Cryptography was bumped from 41.0.6 to 42.0.4 @ #210, #213 and #214
⚙️ Secret Stuff
... (truncated)
Commits
81e9d93Bumppipto v24.0 in runtime prerequisites lock91527c4Regenerate lockfiles with pip-tools v7.4.13a817c6Bump action runtime to CPython 3.12741947bAdd a config file forpip-toolsd7af439Mass-bump transitive dependencies of runtimee90ddcaBumpreadme-rendererto v43.0dae7fa3Bump Twine to v5.0.00fe04aeBumpidto v1.3.0444e179Bump cryptography to v42.0.5820be4eNormalize pip-tools' header comment @runtime.txt- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)