Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump pdm from 2.13.2 to 2.14.0 #55

Closed
wants to merge 1 commit into from
Closed

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Apr 15, 2024

Bumps pdm from 2.13.2 to 2.14.0.

Release notes

Sourced from pdm's releases.

v2.14.0

Features & Improvements

  • Revert the package cache introduced in 2.13. Don't cache the decompressed contents of wheels unless being told so. (#2803)

Bug Fixes

  • Fix inconsistent logging when pdm use a different python interpreter (#2776)
  • Fix PDM unable to find Python interpreters when PDM_IGNORE_ACTIVE_VENV is set (#2779)
  • Check verify_ssl when trusting each source. (#2784)
  • Fix name check for project itself in pdm outdated (#2785)
  • Fix a regression that proxy env vars are not respected. (#2788)
  • Fix an issue that venv provider can't be found when providers are explicitly configured. (#2792)
  • Fix a bug that [tool.pdm.options] are ignored if -c/--config CONFIG is given. (#2793)
  • Make --without respect groups in dev-dependencies (#2799)

v2.13.3

Bug Fixes

  • Per-source configuration for ca-certs and client-cert. #2754
  • Remove all caches by removing individual cache types one by one. #2757
  • Use the default HTTP client when downloading the pythons, to use the certificates settings. #2759
  • Fix a race condition where pth files take effect when multiple packages are installed in parallel. #2762
  • Refuse to run recursive composite scripts. #2766
Changelog

Sourced from pdm's changelog.

Release v2.14.0 (2024-04-12)

Features & Improvements

  • Revert the package cache introduced in 2.13. Don't cache the decompressed contents of wheels unless being told so. (#2803)

Bug Fixes

  • Fix inconsistent logging when pdm use a different python interpreter (#2776)
  • Fix PDM unable to find Python interpreters when PDM_IGNORE_ACTIVE_VENV is set (#2779)
  • Check verify_ssl when trusting each source. (#2784)
  • Fix name check for project itself in pdm outdated (#2785)
  • Fix a regression that proxy env vars are not respected. (#2788)
  • Fix an issue that venv provider can't be found when providers are explicitly configured. (#2792)
  • Fix a bug that [tool.pdm.options] are ignored if -c/--config CONFIG is given. (#2793)
  • Make --without respect groups in dev-dependencies (#2799)

Release v2.13.3 (2024-04-08)

Bug Fixes

  • Per-source configuration for ca-certs and client-cert. #2754
  • Remove all caches by removing individual cache types one by one. #2757
  • Use the default HTTP client when downloading the pythons, to use the certificates settings. #2759
  • Fix a race condition where pth files take effect when multiple packages are installed in parallel. #2762
  • Refuse to run recursive composite scripts. #2766
Commits
  • d475b6a chore: release 2.14.0
  • a39f7c6 fix: make --without respect groups in dev-dependencies (#2800)
  • ec5d7ca revert: don't cache the decompressed content of wheels unless being told so (...
  • bf07ca9 fix: proxy environment variables are not recognised by pdm anymore on windows...
  • 30b1d2d fix: Error while trying to init a new project (#2797)
  • 577b00d fix: request url for serialization
  • 13e276b fix: [tool.pdm.options] is ignored by pdm --config \<somefile> ... (#2795)
  • 577f883 fix: name check for project itself in pdm outdated (#2787)
  • b7576a1 fix: add all sources to trusted_hosts if verify_ssl is False (#2786)
  • 8c9064c fix(use): fix inconsistent logging when pdm use a different python interpre...
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [pdm](https://github.com/pdm-project/pdm) from 2.13.2 to 2.14.0.
- [Release notes](https://github.com/pdm-project/pdm/releases)
- [Changelog](https://github.com/pdm-project/pdm/blob/main/CHANGELOG.md)
- [Commits](pdm-project/pdm@2.13.2...2.14.0)

---
updated-dependencies:
- dependency-name: pdm
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added the dependabot Pull requests that update a dependency file label Apr 15, 2024
@RKIMetadataExchange RKIMetadataExchange self-assigned this Apr 15, 2024
Copy link
Contributor Author

dependabot bot commented on behalf of github Apr 22, 2024

Superseded by #56.

@dependabot dependabot bot closed this Apr 22, 2024
@dependabot dependabot bot deleted the dependabot/pip/pdm-2.14.0 branch April 22, 2024 03:56
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependabot Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant