Repository navigation
chore(deps): update wandb requirement from >=0.28.2 to >=0.30.0 - #110
dependabot[bot] wants to merge 1 commit into
Conversation
Updates the requirements on [wandb](https://github.com/wandb/wandb) to permit the latest version. - [Release notes](https://github.com/wandb/wandb/releases) - [Changelog](https://github.com/wandb/wandb/blob/main/CHANGELOG.md) - [Commits](wandb/wandb@v0.28.2...v0.30.0) --- updated-dependencies: - dependency-name: wandb dependency-version: 0.30.0 dependency-type: direct:production ... Signed-off-by: dependabot[bot] <support@github.com>
LabelsThe following labels could not be found: Please fix the above issues or remove invalid values from |
|
Thanks, Dependabot. The uv lock has to be regenerated for this one, so it's now part of #113, together with the other floors. Closing this one. |
|
OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting If you change your mind, just re-open this PR and I'll resolve any conflicts on it. |
* chore(deps): update urllib3 requirement from >=2.7.0 to >=2.8.0 Updates the requirements on [urllib3](https://github.com/urllib3/urllib3) to permit the latest version. - [Release notes](https://github.com/urllib3/urllib3/releases) - [Changelog](https://github.com/urllib3/urllib3/blob/main/CHANGES.rst) - [Commits](urllib3/urllib3@2.7.0...2.8.0) --- updated-dependencies: - dependency-name: urllib3 dependency-version: 2.8.0 dependency-type: direct:production ... Signed-off-by: dependabot[bot] <support@github.com> * Regenerate requirements.lock for urllib3 2.8.0 urllib3 2.7.0 has two HIGH advisories (GHSA-8988-9cw3-xx77, GHSA-vxq7-64xx-v4gw), which fail the dependency gate on main. Dependabot raised the floor in constraints.txt but cannot regenerate the uv lock, so the lock check failed. Regenerated with CI's own command; one line moves. Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com> * Apply four dependency floors and regenerate the lock Dependabot opened four PRs (#109 idna, #110 wandb, #111 huggingface_hub, #112 filelock) that raise a floor but cannot regenerate the uv lock, so each failed the lock check, and each still carried urllib3 2.7.0. This applies all four floors on top of #107 and regenerates the lock once with CI's own command. huggingface_hub 2 brings httpx2; wandb 0.30 brings OpenTelemetry. The dependency gate passes on the new lock. Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com> --------- Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Claude Opus 5.5 <noreply@anthropic.com>
Updates the requirements on wandb to permit the latest version.
Release notes
Sourced from wandb's releases.
... (truncated)
Changelog
Sourced from wandb's changelog.
... (truncated)
Commits
e5ec9dcBump version and update CHANGELOG for release 0.30.07bde6e2chore: clean up unreleased changelog (#12759)f12c99fchore(deps): update go dependencies (#12730)ee66c0ffix(sdk): skip final uploads for uninitialized runs (#12753)5b24c18fix(sdk): stop reporting exited processes as sampling errors (#12752)f611649fix: explain incomplete .wandb files in wandb sync (#12751)4043780feat(sdk): addprompt=Falsetowandb.login()to skip the interactive prom...1bfd7f9chore: deleteInternalApiand thePublicApialias (#12724)8498a63feat(sandbox): deprecate W&B sandbox CLI (#12689)ebd423bchore: run the non-sweep CLI commands andwandb verifyon the public API (#...Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)