WeConnect-python
WeConnect-python copied to clipboard
Update bandit requirement from ~=1.7.9 to ~=1.8.0
Updates the requirements on bandit to permit the latest version.
Release notes
Sourced from bandit's releases.
1.8.0
What's Changed
- Bump docker/build-push-action from 6.7.0 to 6.9.0 by
@dependabotin PyCQA/bandit#1178- Rename doc file to match proper bandit ID by
@ericwbin PyCQA/bandit#1183- Removal of Python 3.8 support by
@ericwbin PyCQA/bandit#1174- Add more insecure cryptography cipher algorithms by
@ericwbin PyCQA/bandit#1185- Bump docker/setup-buildx-action from 3.6.1 to 3.7.1 by
@dependabotin PyCQA/bandit#1186- Bump sigstore/cosign-installer from 3.6.0 to 3.7.0 by
@dependabotin PyCQA/bandit#1187- [pre-commit.ci] pre-commit autoupdate by
@pre-commit-ciin PyCQA/bandit#1162- No need to check httpx client without timeout defined by
@ericwbin PyCQA/bandit#1177- [pre-commit.ci] pre-commit autoupdate by
@pre-commit-ciin PyCQA/bandit#1191- Mark Python 3.13 as officially supported by
@ericwbin PyCQA/bandit#1192- Update project urls with added links by
@ericwbin PyCQA/bandit#1193- [pre-commit.ci] pre-commit autoupdate by
@pre-commit-ciin PyCQA/bandit#1196- Add a JSON to seek funding from the FLOSS/fund by
@ericwbin PyCQA/bandit#1194- Remove Sentry as a sponsor by
@ericwbin PyCQA/bandit#1198- Remove more leftover OpenStack references by
@ericwbin PyCQA/bandit#1195Full Changelog: https://github.com/PyCQA/bandit/compare/1.7.10...1.8.0
Commits
8fd258aRemove more leftover OpenStack references (#1195)a19b072Remove Sentry as a sponsor (#1198)48e0258Add a JSON to seek funding from the FLOSS/fund (#1194)5300a21[pre-commit.ci] pre-commit autoupdate (#1196)0b249d9Update project urls with added links (#1193)4be653dMark Python 3.13 as officially supported (#1192)8e6dc1b[pre-commit.ci] pre-commit autoupdate (#1191)071386bNo need to check httpx client without timeout defined (#1177)9b4d480[pre-commit.ci] pre-commit autoupdate (#1162)ddf9b48Bump sigstore/cosign-installer from 3.6.0 to 3.7.0 (#1187)- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebasewill rebase this PR -
@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it -
@dependabot mergewill merge this PR after your CI passes on it -
@dependabot squash and mergewill squash and merge this PR after your CI passes on it -
@dependabot cancel mergewill cancel a previously requested merge and block automerging -
@dependabot reopenwill reopen this PR if it is closed -
@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually -
@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency -
@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)