Skip to content

[pull] master from aio-libs:master - #753

Merged
pull[bot] merged 4 commits into
tj-python:masterfrom
aio-libs:master
Sep 7, 2026
Merged

[pull] master from aio-libs:master#753
pull[bot] merged 4 commits into
tj-python:masterfrom
aio-libs:master

Conversation

@pull

@pull pull Bot commented Sep 7, 2026

Copy link
Copy Markdown

See Commits and Changes for more details.


Created by pull[bot] (v2.0.0-alpha.4)

Can you help keep this open source service alive? 💖 Please sponsor : )

dependabot Bot added 4 commits September 7, 2026 11:33
Bumps [ast-serialize](https://github.com/mypyc/ast_serialize) from 0.8.0
to 0.9.0.
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/mypyc/ast_serialize/commit/e2c661ef50e14a59ff401780be161ee78550683d"><code>e2c661e</code></a>
Bump version to 0.9.0</li>
<li><a
href="https://github.com/mypyc/ast_serialize/commit/789d1faa0a9d15f9fb754fd682f3fd1c7e22af7d"><code>789d1fa</code></a>
Fix bytes escaping logic to match old parser (<a
href="https://redirect.github.com/mypyc/ast_serialize/issues/81">#81</a>)</li>
<li><a
href="https://github.com/mypyc/ast_serialize/commit/beaec7e3c298c541d75d1b1a5b7edce53a4456b6"><code>beaec7e</code></a>
Support sys.platform membership checks (<a
href="https://redirect.github.com/mypyc/ast_serialize/issues/80">#80</a>)</li>
<li><a
href="https://github.com/mypyc/ast_serialize/commit/3fdffbcd2cd0e3bb5e1c14856eefd69ec7d04347"><code>3fdffbc</code></a>
Bump Ruff crates to 0.16.3 (<a
href="https://redirect.github.com/mypyc/ast_serialize/issues/79">#79</a>)</li>
<li><a
href="https://github.com/mypyc/ast_serialize/commit/969b630fd123645ee52b156a0e73f8b116ede16f"><code>969b630</code></a>
Fix panics while searching type comments in function with syntax error
(<a
href="https://redirect.github.com/mypyc/ast_serialize/issues/78">#78</a>)</li>
<li><a
href="https://github.com/mypyc/ast_serialize/commit/fc059308b52eebb0cc98c01c2115a2b62c9e90d7"><code>fc05930</code></a>
Set custom version for vendored crates (<a
href="https://redirect.github.com/mypyc/ast_serialize/issues/77">#77</a>)</li>
<li>See full diff in <a
href="https://github.com/mypyc/ast_serialize/compare/v0.8.0...v0.9.0">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=ast-serialize&package-manager=pip&previous-version=0.8.0&new-version=0.9.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps
[sphinxcontrib-mermaid](https://github.com/mgaitan/sphinxcontrib-mermaid)
from 2.1.0 to 2.1.1.
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/mgaitan/sphinxcontrib-mermaid/blob/master/CHANGELOG.md">sphinxcontrib-mermaid's
changelog</a>.</em></p>
<blockquote>
<h2>2.1.1 (July 19, 2026)</h2>
<ul>
<li>Preserve source metadata on generated Mermaid caption nodes so
Sphinx extracts them into gettext catalogs and applies normal caption
translations</li>
<li>Pass the existing mermaid image class through the HTML visitor so
PNG output can be targeted consistently with CSS</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/mgaitan/sphinxcontrib-mermaid/commit/6e51230b4781f578efdc54af5bae0952e1627c53"><code>6e51230</code></a>
Merge pull request <a
href="https://redirect.github.com/mgaitan/sphinxcontrib-mermaid/issues/262">#262</a>
from mgaitan/tkp/211</li>
<li><a
href="https://github.com/mgaitan/sphinxcontrib-mermaid/commit/7c61bb6ee312d0233bb422c082ed7355013a7925"><code>7c61bb6</code></a>
Merge pull request <a
href="https://redirect.github.com/mgaitan/sphinxcontrib-mermaid/issues/264">#264</a>
from mgaitan/dependabot/github_actions/github-actions...</li>
<li><a
href="https://github.com/mgaitan/sphinxcontrib-mermaid/commit/77bd5937e93169925187c74e85fe5658fe27f5e6"><code>77bd593</code></a>
Merge branch 'master' into
dependabot/github_actions/github-actions-a934d7c76e</li>
<li><a
href="https://github.com/mgaitan/sphinxcontrib-mermaid/commit/d1b8ca8baee3464cd2d626d22fb8860811100fc9"><code>d1b8ca8</code></a>
Merge pull request <a
href="https://redirect.github.com/mgaitan/sphinxcontrib-mermaid/issues/265">#265</a>
from mgaitan/tkp/ruff</li>
<li><a
href="https://github.com/mgaitan/sphinxcontrib-mermaid/commit/4ad2812dcb7b65229df1438974bed2b8f45eb968"><code>4ad2812</code></a>
Fixes for ruff 16</li>
<li><a
href="https://github.com/mgaitan/sphinxcontrib-mermaid/commit/056261dbfbc38c3405a22418aec0205bde1b09ea"><code>056261d</code></a>
Bump pypa/gh-action-pypi-publish in the github-actions group</li>
<li><a
href="https://github.com/mgaitan/sphinxcontrib-mermaid/commit/015f47a3ea392d324a0a99e82727a31f8bc7ecb7"><code>015f47a</code></a>
Merge pull request <a
href="https://redirect.github.com/mgaitan/sphinxcontrib-mermaid/issues/263">#263</a>
from mgaitan/dependabot/github_actions/github-actions...</li>
<li><a
href="https://github.com/mgaitan/sphinxcontrib-mermaid/commit/a8f8b59780c988e7a4a420543b6d764e0167e8a2"><code>a8f8b59</code></a>
Bump the github-actions group with 3 updates</li>
<li><a
href="https://github.com/mgaitan/sphinxcontrib-mermaid/commit/e81147ddb1c7b5a7888ed74728c887f226d440ef"><code>e81147d</code></a>
Bump to 2.1.1 and update changelog</li>
<li><a
href="https://github.com/mgaitan/sphinxcontrib-mermaid/commit/e26789082fa6e95552957af5fe64c4cf327372be"><code>e267890</code></a>
Merge pull request <a
href="https://redirect.github.com/mgaitan/sphinxcontrib-mermaid/issues/261">#261</a>
from timkpaine/tkp/translate-mermaid-captions</li>
<li>Additional commits viewable in <a
href="https://github.com/mgaitan/sphinxcontrib-mermaid/compare/2.1.0...2.1.1">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=sphinxcontrib-mermaid&package-manager=pip&previous-version=2.1.0&new-version=2.1.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps [virtualenv](https://github.com/pypa/virtualenv) from 21.7.7 to
21.7.8.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/pypa/virtualenv/releases">virtualenv's
releases</a>.</em></p>
<blockquote>
<h2>21.7.8</h2>
<!-- raw HTML omitted -->
<h2>What's Changed</h2>
<ul>
<li>🐛 fix(create): report a missing source that both modes need by <a
href="https://github.com/darrenhuai"><code>@​darrenhuai</code></a> in <a
href="https://redirect.github.com/pypa/virtualenv/pull/3227">pypa/virtualenv#3227</a></li>
</ul>
<p><strong>Full Changelog</strong>: <a
href="https://github.com/pypa/virtualenv/compare/21.7.7...21.7.8">https://github.com/pypa/virtualenv/compare/21.7.7...21.7.8</a></p>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/pypa/virtualenv/blob/main/docs/changelog.rst">virtualenv's
changelog</a>.</em></p>
<blockquote>
<h1>Bugfixes - 21.7.8</h1>
<ul>
<li>A missing source needed by both install modes now disables the
builtin creator through <code>meta.error</code>. The check
compared <code>RefWhen</code> values against <code>RefMust</code>
members, so creation went on to fail with a
<code>FileNotFoundError</code> or a
dangling symlink - by :user:<code>darrenhuai</code>.
(:issue:<code>3227</code>)</li>
</ul>
<hr />
<p>v21.7.7 (2026-08-28)</p>
<hr />
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/pypa/virtualenv/commit/e8e8615269d665cc5e780803e54846bb0beffb6d"><code>e8e8615</code></a>
release 21.7.8</li>
<li><a
href="https://github.com/pypa/virtualenv/commit/f4e186e4a5349690eb00a941022559973ed86958"><code>f4e186e</code></a>
🐛 fix(create): report a missing source that both modes need (<a
href="https://redirect.github.com/pypa/virtualenv/issues/3227">#3227</a>)</li>
<li><a
href="https://github.com/pypa/virtualenv/commit/adfa9e463315c4f8f67845eb3de2d4857ddac78a"><code>adfa9e4</code></a>
[pre-commit.ci] pre-commit autoupdate (<a
href="https://redirect.github.com/pypa/virtualenv/issues/3226">#3226</a>)</li>
<li>See full diff in <a
href="https://github.com/pypa/virtualenv/compare/21.7.7...21.7.8">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=virtualenv&package-manager=pip&previous-version=21.7.7&new-version=21.7.8)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Bumps [platformdirs](https://github.com/tox-dev/platformdirs) from
4.11.6 to 4.11.7.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a
href="https://github.com/tox-dev/platformdirs/releases">platformdirs's
releases</a>.</em></p>
<blockquote>
<h2>4.11.7</h2>
<!-- raw HTML omitted -->
<p><strong>Full Changelog</strong>: <a
href="https://github.com/tox-dev/platformdirs/compare/4.11.6...4.11.7">https://github.com/tox-dev/platformdirs/compare/4.11.6...4.11.7</a></p>
</blockquote>
</details>
<details>
<summary>Changelog</summary>
<p><em>Sourced from <a
href="https://github.com/tox-dev/platformdirs/blob/main/docs/changelog.rst">platformdirs's
changelog</a>.</em></p>
<blockquote>
<p>###########
Changelog
###########</p>
<p>.. towncrier-draft-entries:: Unreleased</p>
<p>.. towncrier release notes start</p>
<hr />
<p>4.11.7 (2026-09-01)</p>
<hr />
<hr />
<p>4.11.6 (2026-09-01)</p>
<hr />
<ul>
<li>Give :func:<code>~platformdirs.user_bin_dir</code> and
:func:<code>~platformdirs.user_bin_path</code> the
<code>use_site_for_root</code> argument. They
took none, so neither could reach the Unix redirect of root to
:func:<code>~platformdirs.site_bin_dir</code>. :pr:<code>537</code></li>
</ul>
<hr />
<p>4.11.5 (2026-08-27)</p>
<hr />
<ul>
<li>Give :func:<code>~platformdirs.user_preference_dir</code> and
:func:<code>~platformdirs.user_preference_path</code> the same arguments
as
:func:<code>~platformdirs.user_config_dir</code>. Added without
arguments in :pr:<code>491</code>, they could only return the unscoped
base
directory even though the property they wrap appends the app name and
version. :pr:<code>531</code></li>
<li>Make :func:<code>~platformdirs.site_applications_path</code> return
the first entry when <code>multipath=True</code>, matching
:func:<code>~platformdirs.site_data_path</code>. On Unix and macOS it
passed the whole <code>$XDG_DATA_DIRS</code> list to
:class:<code>~pathlib.Path</code>, giving one unusable path such as
<code>/first/applications:/second/applications</code>.
:pr:<code>532</code></li>
<li>Give :func:<code>~platformdirs.user_applications_dir</code>,
:func:<code>~platformdirs.user_applications_path</code>,
:func:<code>~platformdirs.site_applications_dir</code> and
:func:<code>~platformdirs.site_applications_path</code> the app
arguments.
Android scopes both applications directories to the app, so without them
the functions could only return the unscoped
base directory there. On the two site functions they are keyword-only,
keeping <code>multipath</code> first positional as it
has been since 4.9.0; the two user functions take their boolean options
keyword-only. :pr:<code>534</code></li>
<li>Correct the ordering note on the iterator methods.
<code>use_site_for_root</code> drops the user directory entirely, so the
iterators are documented as yielding the most specific directory first
rather than always yielding the user one.
:pr:<code>533</code></li>
</ul>
<hr />
<p>4.11.4 (2026-08-24)</p>
<hr />
<ul>
<li>Stop the <code>iter_*_dirs</code> methods yielding the same
directory twice when a site directory resolves to its user
equivalent - :pr:<code>520</code> covered only Unix with
<code>use_site_for_root</code>. It also hit
:meth:<code>~platformdirs.PlatformDirs.iter_runtime_dirs</code> on Unix
with <code>$XDG_RUNTIME_DIR</code> set, on Windows and macOS, and
all six iterators on Android. :pr:<code>524</code></li>
<li>Fix the config merging example in the how-to guide.
<code>iter_config_paths</code> yields the user directory first, so the
<code>config.update</code> loop let the site defaults override the
user's config instead of the other way round. :pr:<code>529</code></li>
</ul>
<!-- raw HTML omitted -->
</blockquote>
<p>... (truncated)</p>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a
href="https://github.com/tox-dev/platformdirs/commit/e0847a69cafd0f2534270980a269c4e07f449e1e"><code>e0847a6</code></a>
Release 4.11.7</li>
<li>See full diff in <a
href="https://github.com/tox-dev/platformdirs/compare/4.11.6...4.11.7">compare
view</a></li>
</ul>
</details>
<br />


[![Dependabot compatibility
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=platformdirs&package-manager=pip&previous-version=4.11.6&new-version=4.11.7)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)

Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot show <dependency name> ignore conditions` will show all
of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop
Dependabot creating any more for this major version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop
Dependabot creating any more for this minor version (unless you reopen
the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop
Dependabot creating any more for this dependency (unless you reopen the
PR or upgrade to it yourself)


</details>

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
@pull pull Bot locked and limited conversation to collaborators Sep 7, 2026
@pull pull Bot added the ⤵️ pull label Sep 7, 2026
@pull
pull Bot merged commit 37c78a7 into tj-python:master Sep 7, 2026
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants