Repository navigation
Update all non-major dependencies - #663
Open
renovate[bot] wants to merge 1 commit into
Open
renovate[bot] wants to merge 1 commit into
renovate[bot] wants to merge 1 commit into
Conversation
seb4stien
approved these changes
Sep 22, 2026
renovate
Bot
force-pushed
the
renovate/all-minor-patch
branch
from
September 25, 2026 15:55
3481ae3 to
6da1b0e
Compare
renovate
Bot
force-pushed
the
renovate/all-minor-patch
branch
from
September 28, 2026 20:16
6da1b0e to
eab25c4
Compare
renovate
Bot
force-pushed
the
renovate/all-minor-patch
branch
from
September 30, 2026 06:11
eab25c4 to
fc9b5c7
Compare
renovate
Bot
force-pushed
the
renovate/all-minor-patch
branch
from
October 1, 2026 09:28
fc9b5c7 to
0a0271b
Compare
renovate
Bot
force-pushed
the
renovate/all-minor-patch
branch
from
October 8, 2026 05:50
fc6fe03 to
dc2c619
Compare
renovate
Bot
force-pushed
the
renovate/all-minor-patch
branch
from
October 8, 2026 11:58
dc2c619 to
3ca09cd
Compare
renovate
Bot
force-pushed
the
renovate/all-minor-patch
branch
from
October 8, 2026 13:27
3ca09cd to
67b096c
Compare
renovate
Bot
force-pushed
the
renovate/all-minor-patch
branch
from
October 8, 2026 21:03
67b096c to
46a4478
Compare
This branch has not been deployed
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
==1.10.3→==1.11.2==50.0.1→==50.0.2==1.13.0→==1.14.0==1.44.0→==1.45.1==3.8.2→==3.9.0==1.62.0→==1.63.0==2.13.5→==2.14.0Warning
Some dependencies could not be looked up. Check the Dependency Dashboard for more information.
Release Notes
canonical/cos-lib (cosl)
v1.11.2Compare Source
What's Changed
Full Changelog: canonical/cos-lib@1.11.1...1.11.2
v1.11.1Compare Source
What's Changed
Full Changelog: canonical/cos-lib@1.11.0...1.11.1
v1.11.0Compare Source
What's Changed
Full Changelog: canonical/cos-lib@1.10.3...1.11.0
pyca/cryptography (cryptography)
v50.0.2Compare Source
canonical/jubilant (jubilant)
v1.14.0Compare Source
Features
ConstraintValuetype alias publicly (#416)Documentation
Chores
CI
attest-build-provenanceforactions/attest(#411)open-telemetry/opentelemetry-python (opentelemetry-api)
v1.45.1Compare Source
Fixed
opentelemetry-api: makeAnyValueandAttributeValueexplicit typealiases
(#5703)
opentelemetry-sdk: fix thread leak bug in resource initialization logic forlong running resource detectors
(#5706)
opentelemetry-exporter-otlp-proto-http: restorerequestsas the defaultHTTP transport so proxy environment variables such as
HTTPS_PROXYarehonored again
(#5714)
opentelemetry-api: fix quadratic time parsing of thetracestateheaderand discard
tracestateheaders longer than 8192 characters(#5746)
v1.45.0Compare Source
Added
opentelemetry-exporter-prometheus: add support to configure Resourceattributes as metric labels
(#5122)
(#5202)
opentelemetry-api,opentelemetry-sdk: add support for extended attributevalues everywhere.
(#5266)
opentelemetry-sdk: wire the top-levellog_levelfield in declarativeconfiguration — when set, maps the OTel
SeverityNumbervalue to a Pythonlogging level and applies it to the
opentelemetrylogger so SDK internaldiagnostics respect the configured severity.
(#5351)
opentelemetry-sdk: add the new stableAlwaysRecordSampler(#5354)
opentelemetry-configuration,opentelemetry-sdk: wire top-levelattribute_limitsinto per-signal providers via declarative config; addlog_record_limitssupport toLoggerProvider(#5365)
opentelemetry-exporter-otlp-json-http: add OTLP JSON HTTP exporter package(#5374)
opentelemetry-api,opentelemetry-sdk: addenabled()support to theLogger API, SDK, and
LogRecordProcessorto let instrumentation skipexpensive work when logging is disabled
(#5380)
opentelemetry-exporter-otlp-json-file: add OTLP JSON file Docker tests(#5412)
opentelemetry-configuration: wire the experimentaltracer_configurator/development,meter_configurator/developmentandlogger_configurator/developmentfields intocreate_tracer_provider,create_meter_providerandcreate_logger_provider, soper-instrumentation-scope
enabledoverrides declared in the config file are applied to the provider(previously these fields were parsed but silently discarded). The logger
minimum_severity/trace_basedfields are not supported by the Python SDKand
are ignored with a warning.
(#5418)
docs/examples: add example on how to manually setup the SDK to get SDKmetrics
(#5449)
opentelemetry-docker-tests: add Prometheus exporter docker tests(#5457)
opentelemetry-sdk: count records dropped after shutdown onotel.sdk.processor.{span,log}.processedwitherror.type=already_shutdown(batch span/log and simple log processors), which the semantic conventions
define as a valid value for this metric.
(#5509)
opentelemetry-semantic-conventions: update semantic conventions to v1.44.0(#5511)
opentelemetry-sdk: addhost.idto the host resource detector(#5653)
opentelemetry-test-utils: addCapturingSamplerto record what samplersreceive in instrumentation tests
(#5681)
Changed
PIE(flake8-pie) ruff rule and fix all violations(#5150)
opentelemetry.util.types.AttributeValuetype in packageopentelemetry-apiis being expanded to includeNone, heterogeneoussequences of primitive types (and nested sequences) as opposed to only
homogeneous primitive sequences, and Mappings of strings to any primitive
types or sequences/mappings (which themselves must only contain primitive
types or sequences/mappings validated the same way).
If a
bytestype is set as an attribute value in the SDK, it will no longerbe utf-8 decoded to a string, instead it will be passed along as is in
accordance with the OTEL spec, since
bytesis a valid type in the OTLPproto.
(#5266)
opentelemetry-exporter-otlp-proto-http: add amax_request_sizeargumentto the OTLP HTTP exporters (traces, logs, metrics); serialized requests
larger than the limit are dropped before sending, measured before
compression. Defaults to 64 MiB (enabled); set to 0 to disable. Mirrors
opentelemetry-go#8157.
(#5369)
opentelemetry-api: subclasses ofLoggerneed to implement theenabledmethod(#5380)
opentelemetry-exporter-otlp-proto-http: refactor to use sharedopentelemetry-exporter-otlp-common and opentelemetry-exporter-http-transport
packages and switch default HTTP backend to urllib3
(#5389)
opentelemetry-sdk: unify logging force_flush timeout defaults to 30000ms(#5438)
opentelemetry-python: enable Ruff default ruleset and fix auto-fixable lintissues
(#5491)
opentelemetry-sdk:SimpleSpanProcessornow drops spans ended aftershutdown()instead of passing them to the exporter, and counts them onotel.sdk.processor.span.processedwitherror.type=already_shutdown.(#5512)
(#5518)
opentelemetry-exporter-otlp-proto-http: clarify that theendpoint=kwargrequires the full signal path
(#5633)
opentelemetry-sdk: fix typos in SpanLimits docstring(#5658)
Fixed
opentelemetry-configuration: perform environment variable substitution onscalar values after parsing the configuration file, so
${VAR}referencesinside comments and mapping keys are no longer substituted and undefined
references in comments no longer abort loading
(#5407)
opentelemetry-configuration: declarative config environment variablesubstitution now replaces an unset variable that has no default with an empty
value instead of raising an error, per the configuration spec.
Resource attributes whose value resolves to null (an unset
${VAR}with nodefault) are skipped with a warning instead of being inserted as a null
value.
(#5408)
: addopentelemetry-configurationandopentelemetry-proto-json` to the package to release(#5425)
opentelemetry-sdk: fixViewinstrument-name matching so a view configuredwith an instrument's real (mixed-case) name is applied; matching is now
case-insensitive and platform-independent instead of relying on
fnmatch'sOS-dependent case handling
(#5430)
opentelemetry-sdk: fix missing f-prefix in exponential histogram errormessages
(#5434)
opentelemetry-configuration: resolve false-positive warning logs for newerschema minor version
(#5436)
opentelemetry-sdk: make methods onFixedSizeExemplarReservoirABCthreadsafe
(#5437)
opentelemetry-propagator-jaeger: fix typing issues and enable pyrighttypechecking for the package
opentelemetry-propagator-jaeger: skipuberctx-baggage headers with anempty value on extraction instead of raising
TypeError(#5440)
opentelemetry-sdk: fixTypeErrorwhen instantiating a_BaseConfiguratorsubclass whose
__init__takes arguments(#5441)
opentelemetry-sdk: fixTypeErrorinos.fork()when aBatchProcessoror
PeriodicExportingMetricReaderis garbage collected(#5453)
opentelemetry-configuration: a declarative config key present with an empty(null) value on an object-typed node (e.g.
always_on:, a- service:detector, or a metric
console:exporter) is now treated the same as anexplicit empty config (
always_on: {}) instead of failing type dispatch orsilently skipping the node. Both
dict-typed nodes and dataclassesconstructible with no arguments are covered.
(#5454)
opentelemetry-api: fix copy-pasted log message inSpanContext.__delattr__(#5455)
opentelemetry-sdk: reject views withExponentialBucketHistogramAggregationfor asynchronous instruments insteadof silently producing no data
(#5461)
opentelemetry-sdk: fill every bucket ofSimpleFixedSizeExemplarReservoirbefore random sampling
(#5462)
opentelemetry-sdk: Import code_attributes from stable semconv package(#5465)
opentelemetry-sdk: for both the simple and batch span/log processors, countotel.sdk.processor.{span,log}.processedwhen the processor submits recordsto the exporter instead of after export completes, and stop stamping exporter
failures onto this metric as
error.type(#5472)
opentelemetry-sdk: fix misleading instrument name validation error message(name max length is 255, not 63).
(#5513)
opentelemetry-configuration: add missing process executable name to defaultservice name when available in resource attributes
(#5534)
opentelemetry-sdk: fix values forprocess.executable.nameandprocess.executable.pathto match semantic conventions.(#5535)
opentelemetry-api: fixTraceState.updatedropping all entries when addinga new key at the 32-key limit
(#5543)
opentelemetry-sdk: boundget_aggregated_resources()wait to the timeout(#5545)
opentelemetry-sdk: don't readprocess.executable.nameresource attributewhen building default
service.name(#5547)
opentelemetry-propagator-jaeger: enforce baggage limits on bothuberctx-extract and inject, borrowing the same limits (180 entries, 4096 bytes per
entry, 8192 bytes total) the package's core
W3CBaggagePropagatoralreadyuses, so neither an inbound carrier nor an in-process baggage map can produce
unbounded work or headers.
(#5556)
opentelemetry-sdk: keep metric attribute values that Python considers equalbut the data model does not, such as
True,1and1.0, in separatemetric streams
(#5573)
opentelemetry-sdk: keepResourcehashable and serialisable when anattribute value is
bytes, instead of raisingTypeErrorfrom every OTLPencoder
(#5577)
opentelemetry-sdk: fix instrumentation scope name matching in the tracer,meter and logger configurators so it is case-sensitive on every platform
instead of relying on
fnmatch's OS-dependent case handling(#5584)
opentelemetry-sdk: fixTracerProvider()raisingValueErrorwhenOTEL_TRACES_SAMPLER_ARGis a syntactically valid number outside the[0.0, 1.0]range, instead of logging a warning and falling back like other invalidvalues
(#5594)
opentelemetry-sdk: retain values from synchronous instruments usinglast-value aggregation across cumulative collections
(#5637)
opentelemetry-api: Added guard for negative value on max_value_len(#5647)
opentelemetry-sdk: fix overriding of the service.instance.id which has beenpopulated from the user provided values through the resource detectors
(#5660)
opentelemetry-exporter-otlp-proto-grpc: Fix incorrect default port for OTLPgRPC exporter self-metrics
(#5668)
opentelemetry-api: update W3CBaggagePropagator to properly handlewhitespace
(#5680)
canonical/operator (ops)
v3.9.0Compare Source
Features
ModelErroris raised (#2786)Fixes
_CharmSpeccovariant in its charm type (#2715)RelationNotFoundError, not "permission denied" (#2748)_Abort(0)from the charm's__init__as success in ops.testing (#2780)onwithout a type: ignore (#2775)Documentation
Tests
Refactoring
CI
v3.8.3Compare Source
Security Fixes
Microsoft/playwright-python (playwright)
v1.63.0Compare Source
🪟 Locate across frames
page.frame_locator() and frame.frame_locator() called without a selector search in any frame of the
subtree, so you no longer need to locate the iframe first:
The rest of the locator resolves inside a single frame, just like a regular locator, and an error is thrown when it
matches elements in several frames.
👁️ Visible-only locators
New locator.visible returns a locator that matches only visible elements. It is the recommended
replacement for the
:visibleCSS pseudo-class:🖼️ Aria and screen snapshots in traces
New
aria_snapshotsandscreen_snapshotsoptions oftracing.start() capture an aria snapshot and a screenshot of the page on every action:
With aria and screen snapshots recorded, the new Display Aria mode in the trace viewer shows the action screenshot
side by side with the aria snapshot, and hovering an aria node highlights it on the screenshot.
New APIs
Browser and Context
http_credentialsnow also accepts an array of credentials. The first entry matching the request origin is used, and entries without an origin match any request.opfsincludes the origin private file system in the storage state, so it can be persisted and restored into later contexts.Command line
playwright install --no-removekeeps the browsers of other Playwright installations instead of removing them.playwright codegen --http-credentialsrecords against pages behind HTTP authentication.Announcements
Browser Versions
This version was also tested against the following stable channels:
pydantic/pydantic (pydantic)
v2.14.0Compare Source
GitHub release
What's Changed
The highlights of the v2.14 release are available in the blog post.
Several minor changes (considered non-breaking changes according to our versioning policy)
are also included in this release. Make sure to look into them before upgrading.
This release drops support for Python 3.9 and adds support for Python 3.15.
New Features
multiple_ofconstraint infractionandtimedeltacore schemas by @Viicos in #13873__namespace__parameter tocreate_model()by @Viicos in #13895Changes
ordered-dictcore schema by @Viicos in #13796countercore schema by @Viicos in #13824model_configattribute by @Viicos in #13825NameEmailvalidation by @Viicos in #13897Fixes
string_sub_typeunused error code by @Viicos in #13821OverflowErrorduringByteSizevalidation by @Viicos in #13850multiple_ofconstraints to be positive by @Viicos in #13862TypeErrorgracefully during docstring extraction by @Viicos in #13874TypedDicts in JSON Schema by @Viicos in #13891ser_json_timedeltato all datetime types in serialization inference by @Viicos in #13892initandkw_only=FalsefromField()to stdlib dataclass fields by @Viicos in #13898ZoneInfovalidation by @Viicos in #13912Decimalvalidation by @Viicos in #13940Fractionvalidation by @Viicos in #13944New Contributors
Configuration
📅 Schedule: (UTC)
* * * * 0,6)🚦 Automerge: Enabled.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.