Skip to content

chore(deps): bump the python-minor-patch group across 1 directory with 6 updates - #8

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/pip/python-minor-patch-0954a88172
Open

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/pip/python-minor-patch-0954a88172

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 20, 2026

Copy link
Copy Markdown

Bumps the python-minor-patch group with 6 updates in the / directory:

Package From To
bedrock-agentcore 1.22.0 1.23.1
botocore 1.43.83 1.43.96
mangum 0.19.0 0.22.0
pypdf 6.16.2 6.19.0
strands-agents 1.54.0 1.56.0
strands-agents-tools 0.8.7 0.8.9

Updates bedrock-agentcore from 1.22.0 to 1.23.1

Release notes

Sourced from bedrock-agentcore's releases.

Bedrock AgentCore SDK v1.23.1

Installation

pip install bedrock-agentcore==1.23.1

What's Changed

See CHANGELOG.md for details.

What's Changed

New Contributors

Full Changelog: aws/bedrock-agentcore-sdk-python@v1.23.0...v1.23.1

Bedrock AgentCore SDK v1.23.0

Installation

pip install bedrock-agentcore==1.23.0

What's Changed

See CHANGELOG.md for details.

What's Changed

New Contributors

Full Changelog: aws/bedrock-agentcore-sdk-python@v1.22.0...v1.23.0

Changelog

Sourced from bedrock-agentcore's changelog.

[1.23.1] - 2026-09-16

Other Changes

  • fix(integ): adjust timeout on memory test. (#667) (2715d6f)
  • fix(memory): use current Strands bidi session hooks (#664) (cc980d1)

[1.23.0] - 2026-09-11

Added

  • feat: add RAGAS adapter for third-party eval metrics (#618) (d53af20)

Other Changes

  • Bump agentcore-devx-devtools reusable workflow pin (#660) (3c9f15e)
  • feat(tools): add WebSearchClient for invoking Amazon Web Search (#658) (cf71b14)
  • feat(gateway): add create_web_search_target() helper (#656) (7f75652)
  • fix(runtime): update shell session wire protocol (#642) (826416a)
  • ci: use dedicated release runners (#645) (ddfab76)
Commits
  • aea2005 chore: bump version to 1.23.1 (#668)
  • 2715d6f fix(integ): adjust timeout on memory test. (#667)
  • cc980d1 fix(memory): use current Strands bidi session hooks (#664)
  • 9f31042 chore: bump version to 1.23.0 (#662)
  • 3c9f15e Bump agentcore-devx-devtools reusable workflow pin (#660)
  • cf71b14 feat(tools): add WebSearchClient for invoking Amazon Web Search (#658)
  • 7f75652 feat(gateway): add create_web_search_target() helper (#656)
  • 826416a fix(runtime): update shell session wire protocol (#642)
  • d53af20 feat: add RAGAS adapter for third-party eval metrics (#618)
  • ddfab76 ci: use dedicated release runners (#645)
  • See full diff in compare view

Updates botocore from 1.43.83 to 1.43.96

Commits
  • 9da9912 Merge branch 'release-1.43.96'
  • edef4a7 Bumping version to 1.43.96
  • bafb058 Update to latest models
  • 4cd222f Merge branch 'release-1.43.95'
  • eb82496 Merge branch 'release-1.43.95' into develop
  • af5f9f3 Bumping version to 1.43.95
  • cee2474 Update to latest models
  • 7b8c332 Merge branch 'release-1.43.94'
  • 582c7af Merge branch 'release-1.43.94' into develop
  • c4231df Bumping version to 1.43.94
  • Additional commits viewable in compare view

Updates mangum from 0.19.0 to 0.22.0

Release notes

Sourced from mangum's releases.

0.22.0 - Python 3.15, tested against the real thing

Python 3.15, tested against the real thing

Mangum 0.22.0 moves the supported Python window forward and backs every release with end-to-end tests against a real Lambda runtime.

pip install mangum==0.22.0
  • Python 3.15 is supported. The full suite and strict type checking pass on 3.15 (#404).
  • Python 3.9 is no longer supported. The minimum is now Python 3.10 (#393).
  • Adapters are now verified against a real Lambda runtime. The test suite deploys Mangum to LocalStack and drives it through a Lambda Function URL and an API Gateway REST API with real HTTP requests - covering the HTTP v2 and REST v1 event formats plus lifespan startup, instead of relying only on hand-written mock events (#400, #401).

Full changelog: 0.21.0...0.22.0

Version 0.21.0

This release reverted the previous attempt on support Python 3.14 because it was not working as expected, and added proper support for Python 3.14 with minimal changes.


Full Changelog: Kludex/mangum@0.20.0...0.21.0

Version 0.20.0

What's Changed

New Contributors

Full Changelog: Kludex/mangum@0.19.0...0.20.0

Changelog

Sourced from mangum's changelog.

0.22.0

0.21.0

This release reverted the previous attempt on support Python 3.14 because it was not working as expected, and added proper support for Python 3.14 with minimal changes.

0.20.0

Commits

Updates pypdf from 6.16.2 to 6.19.0

Release notes

Sourced from pypdf's releases.

Version 6.19.0, 2026-09-16

What's new

Security (SEC)

Deprecations (DEP)

Performance Improvements (PI)

Bug Fixes (BUG)

Full Changelog

Version 6.18.1, 2026-09-11

What's new

Security (SEC)

Bug Fixes (BUG)

Robustness (ROB)

Documentation (DOC)

Full Changelog

Version 6.18.0, 2026-09-07

What's new

Please note that this release requires users which previously overwrote the default limits to migrate to the new approach: Docs

In short:

  • Use apply_configuration as a context manager to temporarily overwrite configuration values.

... (truncated)

Changelog

Sourced from pypdf's changelog.

Version 6.19.0, 2026-09-16

Security (SEC)

  • Limit size of alphabetical page labels (#4096)

Deprecations (DEP)

  • Replace PdfWriter method add_js (#3979)

Performance Improvements (PI)

  • Move static value out of loop body for appearance stream data (#4087)
  • Reduce number of full data lookups for attachment mapping API (#4081)

Bug Fixes (BUG)

  • Do not copy unrelated pages when appending pages with non-terminal fields (#4078)
  • Use page reference for existing internal link targets (#4076)
  • Arabic-Indic digits are reversed during text extraction (#4077)
  • Parse a string rect for add_uri into a rectangle (#4074)

Full Changelog

Version 6.18.1, 2026-09-11

Security (SEC)

  • Further restrict FlateDecode recovery (#4073)
  • Limit entry count for TrueType and Type1 font /Widths (#4072)
  • Limit allowed length of tokens in parse_bfchar (#4071)

Bug Fixes (BUG)

  • Use current text matrix for visitor_text (#4062)
  • Repeat the letter for /S /A and /S /a page labels past Z (#4065)
  • Use font color for FreeText default appearance (#4051)

Robustness (ROB)

  • Fix compatibility with fonttools < 4.58.0 (#4050, #4059)

Documentation (DOC)

  • Use combined matrix in visitor examples (#4066)

Full Changelog

Version 6.18.0, 2026-09-07

Security (SEC)

  • Limit allowed length of indirect object tokens (#4055)

Deprecations (DEP)

  • Rework configuration value handling (#4044)

New Features (ENH)

  • Draw borders and backgrounds for appearance streams and annotations (#4033)

... (truncated)

Commits
  • d62cb58 REL: 6.19.0
  • 0d8b5a8 SEC: Limit size of alphabetical page labels (#4096)
  • 959467a PI: Move static value out of loop body for appearance stream data (#4087)
  • 20822b2 DEV: Bump zizmorcore/zizmor-action from 0.6.3 to 0.6.4 (#4093)
  • 25f2301 DEP: Replace PdfWriter method add_js (#3979)
  • a924438 BUG: Do not copy unrelated pages when appending pages with non-terminal field...
  • cf5cec2 BUG: Use page reference for existing internal link targets (#4076)
  • 96d81f0 BUG: Arabic-Indic digits are reversed during text extraction (#4077)
  • 2d21901 DEV: Fix Color class for latest mypy (#4082)
  • 893a010 MAINT: Split PdfDocCommon._flatten (#4070)
  • Additional commits viewable in compare view

Updates strands-agents from 1.54.0 to 1.56.0

Release notes

Sourced from strands-agents's releases.

python/v1.56.0

Auto-drafted from commits in python/v1.55.1..python/v1.56.0, grouped by conventional-commit type. Edit on the release page after publish if you want a polished writeup; the canonical release notes live on the website.

🚀 Features

  • feat(anthropic): non-clobbering seam for Anthropic-direct server-side tools (web search) (#3568) (a0cbf29f9)
  • feat(storage): add bm25 search strategy (#4079) (495d1540e)
  • feat(sandbox): include partial output in shell timeout errors (#4325) (bd4020f8d)
  • feat(vended-tools): port Python notebook improvements to TS (#4281) (6c7988831)
  • feat(context-py): port strategy presets and agent rewire (#4282) (08ed4cfd3)
  • feat(context-ts): add context strategy presets + rewire defaults to use class (#4256) (a8b1b90af)
  • feat(bidi): render live transcripts with audio output (#4287) (381ab48ab)
  • feat(vended-tools): add web_fetch tool for TypeScript (#4153) (f8002283c)
  • feat(context-py): add session manager integration (#4254) (bea15fe26)
  • feat(bidi): add transcript completion events (#4230) (4ece5b093)
  • feat(bidi): share lifecycle hooks and add response completion hooks (#4280) (90a5a02e9)
  • feat: automatically use openAI prompt-cache keys from session id (#4083) (7462908f4)
  • feat(bidi): align model configuration and parameter overrides (#4255) (0d2beba0d)
  • feat(vended-tools): include exit_code in shell tool result (#4269) (1efa1eeff)

🐛 Fixes

  • fix: deliver background results through the registered management tool (#4347) (45c2ffd33)
  • fix(agent): make AgentResult.to_dict JSON-serializable with bytes (#4313) (39da4bbc6)
  • fix(python): force structured output retry by tool name (#4263) (f627f5425)
  • fix(mistral): preserve image blocks in requests (#4200) (8423dd307)
  • fix(bidi): align reference semantics with Agent and Model (#4286) (0a26e120a)
  • fix(skills-py): avoid leaking YAML parse error and dropping valid ski… (#4192) (9663bcfa5)
  • fix(bidi): clean up CRT streams on shutdown (#4253) (7bda6c70e)
  • fix(models): route Bedrock Mantle openai.gpt-6-* to /openai/v1 (#4267) (056f325b3)

♻️ Refactoring

  • refactor(bidi): refine model audio configuration (#4303) (a1e7e4cfd)
  • refactor(bidi): rename model configuration validator (#4297) (a04273c5a)
  • refactor(python): share repository session methods through LocalAgent (#4257) (08cc6e788)

📚 Documentation

  • docs(context-manager): split into modes, strategies, and presets pages (#4336) (af902b677)
  • docs(context-management): update to ContextManager strategy API (#4332) (d1e1d0acb)
  • docs(blog): add framework-agnostic evaluation post (#4114) (8709dd77f)
  • docs: ai usage reflection blog (#4148) (1ede04b3a)
  • docs(changelog): sync strands-agents/harness-sdk python/v1.55.1 (#4259) (66101c7d5)

✅ Tests

  • test(mcp-py): pin native OTel trace continuity on the mcp 2.x version (#4131) (7edb79627)

... (truncated)

Commits
  • 45c2ffd fix: deliver background results through the registered management tool (#4347)
  • a0cbf29 feat(anthropic): non-clobbering seam for Anthropic-direct server-side tools (...
  • 495d154 feat(storage): add bm25 search strategy (#4079)
  • af902b6 docs(context-manager): split into modes, strategies, and presets pages (#4336)
  • 39da4bb fix(agent): make AgentResult.to_dict JSON-serializable with bytes (#4313)
  • f627f54 fix(python): force structured output retry by tool name (#4263)
  • 8423dd3 fix(mistral): preserve image blocks in requests (#4200)
  • d1e1d0a docs(context-management): update to ContextManager strategy API (#4332)
  • bd4020f feat(sandbox): include partial output in shell timeout errors (#4325)
  • 7edb796 test(mcp-py): pin native OTel trace continuity on the mcp 2.x version (#4131)
  • Additional commits viewable in compare view

Updates strands-agents-tools from 0.8.7 to 0.8.9

Release notes

Sourced from strands-agents-tools's releases.

v0.8.9

Auto-drafted from commits in v0.8.8..v0.8.9, grouped by conventional-commit type. Edit on the release page after publish if you want a polished writeup; the canonical release notes live on the website.

🚀 Features

  • feat: deprecate tavily, exa, video, and journal tools (#604) (00251ae)
  • feat: deprecate bright_data tool (#603) (2533297)
  • feat: deprecate http_request tool (#602) (2921d64)

🐛 Fixes

  • fix: point deprecated tool migrations to shell (#600) (5873303)
  • fix: update mcp_client tool to use MCP 2.x client (#601) (a64f773)

v0.8.8

Auto-drafted from commits in v0.8.7..v0.8.8, grouped by conventional-commit type. Edit on the release page after publish if you want a polished writeup; the canonical release notes live on the website.

🐛 Fixes

  • fix(mem0): make memory_id ownership check fail-closed (#596) (fd4feb0)
  • fix(http_request): strip non-standard headers on cross-host redirects (#595) (64db9d7)
Commits
  • 00251ae feat: deprecate tavily, exa, video, and journal tools (#604)
  • 2533297 feat: deprecate bright_data tool (#603)
  • 2921d64 feat: deprecate http_request tool (#602)
  • 5873303 fix: point deprecated tool migrations to shell (#600)
  • a64f773 fix: update mcp_client tool to use MCP 2.x client (#601)
  • fd4feb0 fix(mem0): make memory_id ownership check fail-closed (#596)
  • 64db9d7 fix(http_request): strip non-standard headers on cross-host redirects (#595)
  • See full diff in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

…h 6 updates

Bumps the python-minor-patch group with 6 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [bedrock-agentcore](https://github.com/aws/bedrock-agentcore-sdk-python) | `1.22.0` | `1.23.1` |
| [botocore](https://github.com/boto/botocore) | `1.43.83` | `1.43.96` |
| [mangum](https://github.com/Kludex/mangum) | `0.19.0` | `0.22.0` |
| [pypdf](https://github.com/py-pdf/pypdf) | `6.16.2` | `6.19.0` |
| [strands-agents](https://github.com/strands-agents/harness-sdk) | `1.54.0` | `1.56.0` |
| [strands-agents-tools](https://github.com/strands-agents/tools) | `0.8.7` | `0.8.9` |



Updates `bedrock-agentcore` from 1.22.0 to 1.23.1
- [Release notes](https://github.com/aws/bedrock-agentcore-sdk-python/releases)
- [Changelog](https://github.com/aws/bedrock-agentcore-sdk-python/blob/main/CHANGELOG.md)
- [Commits](aws/bedrock-agentcore-sdk-python@v1.22.0...v1.23.1)

Updates `botocore` from 1.43.83 to 1.43.96
- [Commits](boto/botocore@1.43.83...1.43.96)

Updates `mangum` from 0.19.0 to 0.22.0
- [Release notes](https://github.com/Kludex/mangum/releases)
- [Changelog](https://github.com/Kludex/mangum/blob/main/CHANGELOG.md)
- [Commits](Kludex/mangum@0.19.0...0.22.0)

Updates `pypdf` from 6.16.2 to 6.19.0
- [Release notes](https://github.com/py-pdf/pypdf/releases)
- [Changelog](https://github.com/py-pdf/pypdf/blob/main/CHANGELOG.md)
- [Commits](py-pdf/pypdf@6.16.2...6.19.0)

Updates `strands-agents` from 1.54.0 to 1.56.0
- [Release notes](https://github.com/strands-agents/harness-sdk/releases)
- [Commits](strands-agents/harness-sdk@python/v1.54.0...python/v1.56.0)

Updates `strands-agents-tools` from 0.8.7 to 0.8.9
- [Release notes](https://github.com/strands-agents/tools/releases)
- [Commits](strands-agents/tools@v0.8.7...v0.8.9)

---
updated-dependencies:
- dependency-name: bedrock-agentcore
  dependency-version: 1.23.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: python-minor-patch
- dependency-name: botocore
  dependency-version: 1.43.96
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: python-minor-patch
- dependency-name: mangum
  dependency-version: 0.22.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: python-minor-patch
- dependency-name: pypdf
  dependency-version: 6.19.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: python-minor-patch
- dependency-name: strands-agents
  dependency-version: 1.56.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: python-minor-patch
- dependency-name: strands-agents-tools
  dependency-version: 0.8.9
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: python-minor-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Pull requests that update python code labels Sep 20, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python Pull requests that update python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants