Bump vermin from 1.5.1 to 1.5.2 #152

Closed
opened 2025-10-14 16:10:11 -06:00 by navan · 0 comments
Owner

Originally created by @dependabot[bot] on 6/19/2023

Bumps vermin from 1.5.1 to 1.5.2.

Release notes

Sourced from vermin's releases.

v1.5.2

Note: Vermin 1.6 will end support for running via py2.7

1.5.2:

  • Union types (X | Y) detection turned into opt-in feature (#176 fixes #103)
  • Added missing rules and fixed some existing ones (#155 fixes #144)
    • Added 120 new rules
      • 31 modules
      • 68 members
      • 21 kwargs
    • Fixed 17 rules
    • Thanks to @​cpAdm for reporting the rules issues!
  • Fixed error reporting that broke parsable format (#156 fixes #150)
  • Fixed reported versions for built-in type() (#172 fixes #171)
  • Visit keyword values if not excluded/ignored (#173 fixes #168)
  • Union types detection also considers attributes (#174 fixes #159)
  • Improved usage section of README (#175 fixes #158)
  • Fixed a typo in the --help documentation (#169, @​Eutropios)
  • [actions] Don't test using EOL Python 3.6 (#134)
  • Security
    • Upgrade certifi to 2022.12.07 (#135, GHSA-43fp-rhv2-5gv8)
    • Update GitPython to 3.1.30 (#157, GHSA-hcpj-qp55-gfph)

1.5.1:

  • Make typing.NamedTuple a Python 3.5 feature (#126, @​pyrco)
  • Fix coveralls via forks (#127)

1.5.0:

  • Python 3.11 support (#124)
    • Added 124 rules specific to Python 3.11
    • Detect except* (PEP-654)
    • Updated list of built-in generic annotation types
  • More stringent rules for detecting union types (#108 fixes #103)
  • Don't visit returns annotations if not evaluating annotations (#110 fixes #109)
  • typing_extensions backport and versioned backports support (#111 fixes #100)
  • Added --exclude-regex and --no-make-paths-absolute to exclude specific file paths (#115, @​cosmicexplorer)
  • Plurality method of results messages with overridability
  • General project tweaks
    • Don't test using end-of-life Python versions (3.4 and 3.5)
    • Added security policy and vulnerability report template
    • Added CODEOWNERS file
    • Added CONTRIBUTING file
    • Added OpenSSF best practices emblem to README
    • Check GitHub Actions and Pip deps every sunday via dependabot
    • Check CodeQL on PRs and Sundays. Not when pushing to master because PRs are required and otherwise it'll run two times: once for the PR and again when the accepted PR is merged to master.
Commits
  • 5824cc0 Version 1.5.2
  • 528a330 Merge pull request #195 from netromdk/dependabot/github_actions/github/codeql...
  • 5e8fbfe chore(deps): Bump github/codeql-action from 2.3.3 to 2.20.0
  • 47270bf Merge pull request #192 from netromdk/dependabot/github_actions/actions/check...
  • 1396834 chore(deps): Bump actions/checkout from 3.5.2 to 3.5.3
  • 232601b Merge pull request #194 from netromdk/fix-test-process-value-error-win-py3.11
  • 24df805 Skip test case on Windows because Python doesn't yield the ValueError
  • 1865aaa Added skipPlatform test decorator
  • a21fe7c Added repr to ProcessResult
  • 3b03510 Merge pull request #191 from netromdk/dependabot/github_actions/coverallsapp/...
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
*Originally created by @dependabot[bot] on 6/19/2023* Bumps [vermin](https://github.com/netromdk/vermin) from 1.5.1 to 1.5.2. <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/netromdk/vermin/releases">vermin's releases</a>.</em></p> <blockquote> <h2>v1.5.2</h2> <p><strong>Note: Vermin 1.6 will end support for running via py2.7</strong></p> <p>1.5.2:</p> <ul> <li><strong>Union types (<code>X | Y</code>) detection turned into opt-in feature</strong> (<a href="https://redirect.github.com/netromdk/vermin/issues/176">#176</a> fixes <a href="https://redirect.github.com/netromdk/vermin/issues/103">#103</a>) <ul> <li>See the <a href="https://github.com/netromdk/vermin#caveats">caveats section</a> for more information.</li> </ul> </li> <li>Added missing rules and fixed some existing ones (<a href="https://redirect.github.com/netromdk/vermin/issues/155">#155</a> fixes <a href="https://redirect.github.com/netromdk/vermin/issues/144">#144</a>) <ul> <li>Added 120 new rules <ul> <li>31 modules</li> <li>68 members</li> <li>21 kwargs</li> </ul> </li> <li>Fixed 17 rules</li> <li>Thanks to <a href="https://github.com/cpAdm"><code>@​cpAdm</code></a> for reporting the rules issues!</li> </ul> </li> <li>Fixed error reporting that broke parsable format (<a href="https://redirect.github.com/netromdk/vermin/issues/156">#156</a> fixes <a href="https://redirect.github.com/netromdk/vermin/issues/150">#150</a>)</li> <li>Fixed reported versions for built-in <code>type()</code> (<a href="https://redirect.github.com/netromdk/vermin/issues/172">#172</a> fixes <a href="https://redirect.github.com/netromdk/vermin/issues/171">#171</a>)</li> <li>Visit keyword values if not excluded/ignored (<a href="https://redirect.github.com/netromdk/vermin/issues/173">#173</a> fixes <a href="https://redirect.github.com/netromdk/vermin/issues/168">#168</a>)</li> <li>Union types detection also considers attributes (<a href="https://redirect.github.com/netromdk/vermin/issues/174">#174</a> fixes <a href="https://redirect.github.com/netromdk/vermin/issues/159">#159</a>)</li> <li>Improved usage section of README (<a href="https://redirect.github.com/netromdk/vermin/issues/175">#175</a> fixes <a href="https://redirect.github.com/netromdk/vermin/issues/158">#158</a>)</li> <li>Fixed a typo in the <code>--help</code> documentation (<a href="https://redirect.github.com/netromdk/vermin/issues/169">#169</a>, <a href="https://github.com/Eutropios"><code>@​Eutropios</code></a>)</li> <li>[actions] Don't test using EOL Python 3.6 (<a href="https://redirect.github.com/netromdk/vermin/issues/134">#134</a>)</li> <li>Security <ul> <li>Upgrade certifi to 2022.12.07 (<a href="https://redirect.github.com/netromdk/vermin/issues/135">#135</a>, GHSA-43fp-rhv2-5gv8)</li> <li>Update GitPython to 3.1.30 (<a href="https://redirect.github.com/netromdk/vermin/issues/157">#157</a>, GHSA-hcpj-qp55-gfph)</li> </ul> </li> </ul> <p>1.5.1:</p> <ul> <li>Make <code>typing.NamedTuple</code> a Python 3.5 feature (<a href="https://redirect.github.com/netromdk/vermin/issues/126">#126</a>, <a href="https://github.com/pyrco"><code>@​pyrco</code></a>)</li> <li>Fix coveralls via forks (<a href="https://redirect.github.com/netromdk/vermin/issues/127">#127</a>)</li> </ul> <p>1.5.0:</p> <ul> <li>Python 3.11 support (<a href="https://redirect.github.com/netromdk/vermin/issues/124">#124</a>) <ul> <li>Added 124 rules specific to Python 3.11</li> <li>Detect <code>except*</code> (<a href="https://peps.python.org/pep-0654/">PEP-654</a>)</li> <li>Updated list of built-in generic annotation types</li> </ul> </li> <li>More stringent rules for detecting union types (<a href="https://redirect.github.com/netromdk/vermin/issues/108">#108</a> fixes <a href="https://redirect.github.com/netromdk/vermin/issues/103">#103</a>)</li> <li>Don't visit <code>returns</code> annotations if not evaluating annotations (<a href="https://redirect.github.com/netromdk/vermin/issues/110">#110</a> fixes <a href="https://redirect.github.com/netromdk/vermin/issues/109">#109</a>)</li> <li><code>typing_extensions</code> backport and versioned backports support (<a href="https://redirect.github.com/netromdk/vermin/issues/111">#111</a> fixes <a href="https://redirect.github.com/netromdk/vermin/issues/100">#100</a>)</li> <li>Added <code>--exclude-regex</code> and <code>--no-make-paths-absolute</code> to exclude specific file paths (<a href="https://redirect.github.com/netromdk/vermin/issues/115">#115</a>, <a href="https://github.com/cosmicexplorer"><code>@​cosmicexplorer</code></a>)</li> <li>Plurality method of results messages with overridability</li> <li>General project tweaks <ul> <li>Don't test using end-of-life Python versions (3.4 and 3.5)</li> <li>Added <a href="https://github.com/netromdk/vermin/blob/master/SECURITY.md">security policy</a> and vulnerability report template</li> <li>Added <a href="https://github.com/netromdk/vermin/blob/master/.github/CODEOWNERS"><code>CODEOWNERS</code></a> file</li> <li>Added <a href="https://github.com/netromdk/vermin/blob/master/CONTRIBUTING.md"><code>CONTRIBUTING</code></a> file</li> <li>Added OpenSSF best practices emblem to README</li> <li>Check GitHub Actions and Pip deps every sunday via dependabot</li> <li>Check CodeQL on PRs and Sundays. Not when pushing to master because PRs are required and otherwise it'll run two times: once for the PR and again when the accepted PR is merged to master.</li> </ul> </li> </ul> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/netromdk/vermin/commit/5824cc0036fd71946e2cfff1ba65ceddbeae5f56"><code>5824cc0</code></a> Version 1.5.2</li> <li><a href="https://github.com/netromdk/vermin/commit/528a3302e7639cd34fb57f17e735a00a18b4000b"><code>528a330</code></a> Merge pull request <a href="https://redirect.github.com/netromdk/vermin/issues/195">#195</a> from netromdk/dependabot/github_actions/github/codeql...</li> <li><a href="https://github.com/netromdk/vermin/commit/5e8fbfe6d500437e00b144ff20d35141f0ed542b"><code>5e8fbfe</code></a> chore(deps): Bump github/codeql-action from 2.3.3 to 2.20.0</li> <li><a href="https://github.com/netromdk/vermin/commit/47270bfead98283a2922a4743596bc166e530dc4"><code>47270bf</code></a> Merge pull request <a href="https://redirect.github.com/netromdk/vermin/issues/192">#192</a> from netromdk/dependabot/github_actions/actions/check...</li> <li><a href="https://github.com/netromdk/vermin/commit/13968347098686046f602bf9428ff394ea7d19f2"><code>1396834</code></a> chore(deps): Bump actions/checkout from 3.5.2 to 3.5.3</li> <li><a href="https://github.com/netromdk/vermin/commit/232601b00e95b93c6f8954292c38836a25c78284"><code>232601b</code></a> Merge pull request <a href="https://redirect.github.com/netromdk/vermin/issues/194">#194</a> from netromdk/fix-test-process-value-error-win-py3.11</li> <li><a href="https://github.com/netromdk/vermin/commit/24df805252e97829d2b541b6034ca115a8922714"><code>24df805</code></a> Skip test case on Windows because Python doesn't yield the ValueError</li> <li><a href="https://github.com/netromdk/vermin/commit/1865aaad7607273f98604c19c86c0ce36d8199c6"><code>1865aaa</code></a> Added skipPlatform test decorator</li> <li><a href="https://github.com/netromdk/vermin/commit/a21fe7c0c38e94d792a049ad97c39ae57ca95ec6"><code>a21fe7c</code></a> Added <strong>repr</strong> to ProcessResult</li> <li><a href="https://github.com/netromdk/vermin/commit/3b0351074eb7b397fa92c49767fae5b5aa972053"><code>3b03510</code></a> Merge pull request <a href="https://redirect.github.com/netromdk/vermin/issues/191">#191</a> from netromdk/dependabot/github_actions/coverallsapp/...</li> <li>Additional commits viewable in <a href="https://github.com/netromdk/vermin/compare/v1.5.1...v1.5.2">compare view</a></li> </ul> </details> <br /> [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=vermin&package-manager=pip&previous-version=1.5.1&new-version=1.5.2)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) </details>
Sign in to join this conversation.
No labels
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
dependencies
enhancement
enhancement
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
github_actions
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
python
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference: github/mitmproxy2swagger#152
No description provided.