From 7024b0bb7032106fa6fd57df46749c535534dfd8 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Sun, 30 Aug 2026 06:05:46 +0000 Subject: [PATCH] deps: bump the python-minor-and-patch group across 1 directory with 8 updates Bumps the python-minor-and-patch group with 8 updates in the / directory: | Package | From | To | | --- | --- | --- | | [uvicorn](https://github.com/Kludex/uvicorn) | `0.52.1` | `0.52.4` | | [numpy](https://github.com/numpy/numpy) | `2.4.6` | `2.5.2` | | [click](https://github.com/pallets/click) | `8.4.2` | `8.5.0` | | [scipy](https://github.com/scipy/scipy) | `1.18.0` | `1.18.1` | | [ruff](https://github.com/astral-sh/ruff) | `0.16.2` | `0.16.4` | | [mypy](https://github.com/python/mypy) | `2.3.0` | `2.3.1` | | [hypothesis](https://github.com/HypothesisWorks/hypothesis) | `6.165.5` | `6.165.10` | | [websockets](https://github.com/python-websockets/websockets) | `17.0.1` | `17.1` | Updates `uvicorn` from 0.52.1 to 0.52.4 - [Release notes](https://github.com/Kludex/uvicorn/releases) - [Changelog](https://github.com/Kludex/uvicorn/blob/main/docs/release-notes.md) - [Commits](https://github.com/Kludex/uvicorn/compare/0.52.1...0.52.4) Updates `numpy` from 2.4.6 to 2.5.2 - [Release notes](https://github.com/numpy/numpy/releases) - [Changelog](https://github.com/numpy/numpy/blob/main/doc/RELEASE_WALKTHROUGH.rst) - [Commits](https://github.com/numpy/numpy/compare/v2.4.6...v2.5.2) Updates `click` from 8.4.2 to 8.5.0 - [Release notes](https://github.com/pallets/click/releases) - [Changelog](https://github.com/pallets/click/blob/main/CHANGES.md) - [Commits](https://github.com/pallets/click/compare/8.4.2...8.5.0) Updates `scipy` from 1.18.0 to 1.18.1 - [Release notes](https://github.com/scipy/scipy/releases) - [Commits](https://github.com/scipy/scipy/compare/v1.18.0...v1.18.1) Updates `ruff` from 0.16.2 to 0.16.4 - [Release notes](https://github.com/astral-sh/ruff/releases) - [Changelog](https://github.com/astral-sh/ruff/blob/main/CHANGELOG.md) - [Commits](https://github.com/astral-sh/ruff/compare/0.16.2...0.16.4) Updates `mypy` from 2.3.0 to 2.3.1 - [Changelog](https://github.com/python/mypy/blob/master/CHANGELOG.md) - [Commits](https://github.com/python/mypy/compare/v2.3.0...v2.3.1) Updates `hypothesis` from 6.165.5 to 6.165.10 - [Release notes](https://github.com/HypothesisWorks/hypothesis/releases) - [Commits](https://github.com/HypothesisWorks/hypothesis/compare/v6.165.5...v6.165.10) Updates `websockets` from 17.0.1 to 17.1 - [Release notes](https://github.com/python-websockets/websockets/releases) - [Commits](https://github.com/python-websockets/websockets/compare/17.0.1...17.1) --- updated-dependencies: - dependency-name: uvicorn dependency-version: 0.52.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: python-minor-and-patch - dependency-name: numpy dependency-version: 2.5.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: python-minor-and-patch - dependency-name: click dependency-version: 8.5.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: python-minor-and-patch - dependency-name: scipy dependency-version: 1.18.1 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: python-minor-and-patch - dependency-name: ruff dependency-version: 0.16.4 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: python-minor-and-patch - dependency-name: mypy dependency-version: 2.3.1 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: python-minor-and-patch - dependency-name: hypothesis dependency-version: 6.165.10 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: python-minor-and-patch - dependency-name: websockets dependency-version: '17.1' dependency-type: direct:development update-type: version-update:semver-minor dependency-group: python-minor-and-patch ... Signed-off-by: dependabot[bot] --- pyproject.toml | 16 ++++++++-------- 1 file changed, 8 insertions(+), 8 deletions(-) diff --git a/pyproject.toml b/pyproject.toml index db96fee..5e6bb05 100644 --- a/pyproject.toml +++ b/pyproject.toml @@ -7,7 +7,7 @@ license = { text = "Apache-2.0" } dependencies = [ "fastapi==0.141.1", - "uvicorn[standard]==0.52.1", + "uvicorn[standard]==0.52.4", "pydantic==2.13.4", "pydantic-settings==2.15.0", "SQLAlchemy==2.0.52", @@ -20,7 +20,7 @@ dependencies = [ # `deploy/open-observatory-refine.service`. Dependabot proposed 2.5.2 # because nothing declares that constraint at the top level; this comment # and the pin are the constraint. - "numpy==2.4.6", + "numpy==2.5.2", "soundfile==0.14.0", "typer==0.27.1", # Pinned, not left to typer's own `click>=8.0.0` range. click 8.2 changed @@ -29,7 +29,7 @@ dependencies = [ # `oo ... --help` die with a TypeError before printing anything. Found on # 2026-08-08 with click 8.4.2 -- on this laptop AND on the live station, so # the operator CLI documented in HANDOVER.md was already broken there. - "click==8.4.2", + "click==8.5.0", "rich==15.0.0", "structlog==26.1.0", "prometheus-client==0.26.0", @@ -49,7 +49,7 @@ dependencies = [ # ALSA capture on the target device. alsa = ["pyalsaaudio==0.11.0"] # Preferred high-quality polyphase resampler. Falls back to scipy when absent. -resample = ["soxr==1.1.0", "scipy==1.18.0"] +resample = ["soxr==1.1.0", "scipy==1.18.1"] # TFLite inference for the BirdNET adapter. `tflite-runtime` has no cp312 # aarch64 wheel; ai-edge-litert is its maintained successor and does. birdnet = ["ai-edge-litert==2.2.0"] @@ -59,16 +59,16 @@ dev = [ "pytest==9.1.1", "pytest-asyncio==1.4.0", "httpx==0.28.1", - "ruff==0.16.2", - "mypy==2.3.0", + "ruff==0.16.4", + "mypy==2.3.1", # Validates real emitted events against schemas/detection-event.schema.json # (tests/test_mqtt_schema.py) so the envelope cannot drift unnoticed again. "jsonschema==4.26.0", - "hypothesis==6.165.5", + "hypothesis==6.165.10", # Client for scripts/probe_display_channel.py, which measures what # /api/v1/display actually costs on the wire against a real station (ADR-038). # Not a runtime dependency: the server side is Starlette's own WebSocket. - "websockets==17.0.1", + "websockets==17.1", # scripts/serial_capture.py. `pio device monitor` needs a tty, which an agent # or a CI job does not have, and reading the display's serial output is the # only evidence that the firmware works.