From b024ed7825ef9bc4f2f499a4ebbf06c75084ab20 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Sun, 6 Sep 2026 06:06:25 +0000 Subject: [PATCH] deps: bump the python-minor-and-patch group across 1 directory with 11 updates Bumps the python-minor-and-patch group with 11 updates in the / directory: | Package | From | To | | --- | --- | --- | | [uvicorn](https://github.com/Kludex/uvicorn) | `0.52.1` | `0.52.4` | | [pydantic](https://github.com/pydantic/pydantic) | `2.13.4` | `2.13.5` | | [numpy](https://github.com/numpy/numpy) | `2.4.6` | `2.5.2` | | [typer](https://github.com/fastapi/typer) | `0.27.1` | `0.27.2` | | [click](https://github.com/pallets/click) | `8.4.2` | `8.5.0` | | [scipy](https://github.com/scipy/scipy) | `1.18.0` | `1.18.1` | | [psycopg](https://github.com/psycopg/psycopg) | `3.3.4` | `3.3.5` | | [ruff](https://github.com/astral-sh/ruff) | `0.16.2` | `0.16.5` | | [mypy](https://github.com/python/mypy) | `2.3.0` | `2.3.1` | | [hypothesis](https://github.com/HypothesisWorks/hypothesis) | `6.165.5` | `6.167.1` | | [websockets](https://github.com/python-websockets/websockets) | `17.0.1` | `17.1` | Updates `uvicorn` from 0.52.1 to 0.52.4 - [Release notes](https://github.com/Kludex/uvicorn/releases) - [Changelog](https://github.com/Kludex/uvicorn/blob/main/docs/release-notes.md) - [Commits](https://github.com/Kludex/uvicorn/compare/0.52.1...0.52.4) Updates `pydantic` from 2.13.4 to 2.13.5 - [Release notes](https://github.com/pydantic/pydantic/releases) - [Changelog](https://github.com/pydantic/pydantic/blob/v2.13.5/HISTORY.md) - [Commits](https://github.com/pydantic/pydantic/compare/v2.13.4...v2.13.5) Updates `numpy` from 2.4.6 to 2.5.2 - [Release notes](https://github.com/numpy/numpy/releases) - [Changelog](https://github.com/numpy/numpy/blob/main/doc/RELEASE_WALKTHROUGH.rst) - [Commits](https://github.com/numpy/numpy/compare/v2.4.6...v2.5.2) Updates `typer` from 0.27.1 to 0.27.2 - [Release notes](https://github.com/fastapi/typer/releases) - [Changelog](https://github.com/fastapi/typer/blob/master/docs/release-notes.md) - [Commits](https://github.com/fastapi/typer/compare/0.27.1...0.27.2) Updates `click` from 8.4.2 to 8.5.0 - [Release notes](https://github.com/pallets/click/releases) - [Changelog](https://github.com/pallets/click/blob/main/CHANGES.md) - [Commits](https://github.com/pallets/click/compare/8.4.2...8.5.0) Updates `scipy` from 1.18.0 to 1.18.1 - [Release notes](https://github.com/scipy/scipy/releases) - [Commits](https://github.com/scipy/scipy/compare/v1.18.0...v1.18.1) Updates `psycopg` from 3.3.4 to 3.3.5 - [Changelog](https://github.com/psycopg/psycopg/blob/master/docs/news.rst) - [Commits](https://github.com/psycopg/psycopg/compare/3.3.4...3.3.5) Updates `ruff` from 0.16.2 to 0.16.5 - [Release notes](https://github.com/astral-sh/ruff/releases) - [Changelog](https://github.com/astral-sh/ruff/blob/main/CHANGELOG.md) - [Commits](https://github.com/astral-sh/ruff/compare/0.16.2...0.16.5) Updates `mypy` from 2.3.0 to 2.3.1 - [Changelog](https://github.com/python/mypy/blob/master/CHANGELOG.md) - [Commits](https://github.com/python/mypy/compare/v2.3.0...v2.3.1) Updates `hypothesis` from 6.165.5 to 6.167.1 - [Release notes](https://github.com/HypothesisWorks/hypothesis/releases) - [Commits](https://github.com/HypothesisWorks/hypothesis/compare/v6.165.5...v6.167.1) Updates `websockets` from 17.0.1 to 17.1 - [Release notes](https://github.com/python-websockets/websockets/releases) - [Commits](https://github.com/python-websockets/websockets/compare/17.0.1...17.1) --- updated-dependencies: - dependency-name: uvicorn dependency-version: 0.52.4 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: python-minor-and-patch - dependency-name: pydantic dependency-version: 2.13.5 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: python-minor-and-patch - dependency-name: numpy dependency-version: 2.5.2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: python-minor-and-patch - dependency-name: typer dependency-version: 0.27.2 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: python-minor-and-patch - dependency-name: click dependency-version: 8.5.0 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: python-minor-and-patch - dependency-name: scipy dependency-version: 1.18.1 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: python-minor-and-patch - dependency-name: psycopg dependency-version: 3.3.5 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: python-minor-and-patch - dependency-name: ruff dependency-version: 0.16.5 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: python-minor-and-patch - dependency-name: mypy dependency-version: 2.3.1 dependency-type: direct:development update-type: version-update:semver-patch dependency-group: python-minor-and-patch - dependency-name: hypothesis dependency-version: 6.167.1 dependency-type: direct:development update-type: version-update:semver-minor dependency-group: python-minor-and-patch - dependency-name: websockets dependency-version: '17.1' dependency-type: direct:development update-type: version-update:semver-minor dependency-group: python-minor-and-patch ... Signed-off-by: dependabot[bot] --- pyproject.toml | 22 +++++++++++----------- 1 file changed, 11 insertions(+), 11 deletions(-) diff --git a/pyproject.toml b/pyproject.toml index db96fee..a113af2 100644 --- a/pyproject.toml +++ b/pyproject.toml @@ -7,8 +7,8 @@ license = { text = "Apache-2.0" } dependencies = [ "fastapi==0.141.1", - "uvicorn[standard]==0.52.1", - "pydantic==2.13.4", + "uvicorn[standard]==0.52.4", + "pydantic==2.13.5", "pydantic-settings==2.15.0", "SQLAlchemy==2.0.52", "alembic==1.19.1", @@ -20,16 +20,16 @@ dependencies = [ # `deploy/open-observatory-refine.service`. Dependabot proposed 2.5.2 # because nothing declares that constraint at the top level; this comment # and the pin are the constraint. - "numpy==2.4.6", + "numpy==2.5.2", "soundfile==0.14.0", - "typer==0.27.1", + "typer==0.27.2", # Pinned, not left to typer's own `click>=8.0.0` range. click 8.2 changed # `Parameter.make_metavar()` to require a `ctx` argument; typer 0.15.1 still # calls it with none, so any fresh install resolving click >=8.2 makes every # `oo ... --help` die with a TypeError before printing anything. Found on # 2026-08-08 with click 8.4.2 -- on this laptop AND on the live station, so # the operator CLI documented in HANDOVER.md was already broken there. - "click==8.4.2", + "click==8.5.0", "rich==15.0.0", "structlog==26.1.0", "prometheus-client==0.26.0", @@ -49,26 +49,26 @@ dependencies = [ # ALSA capture on the target device. alsa = ["pyalsaaudio==0.11.0"] # Preferred high-quality polyphase resampler. Falls back to scipy when absent. -resample = ["soxr==1.1.0", "scipy==1.18.0"] +resample = ["soxr==1.1.0", "scipy==1.18.1"] # TFLite inference for the BirdNET adapter. `tflite-runtime` has no cp312 # aarch64 wheel; ai-edge-litert is its maintained successor and does. birdnet = ["ai-edge-litert==2.2.0"] # PostgreSQL production profile (ADR-007). -postgres = ["psycopg[binary]==3.3.4"] +postgres = ["psycopg[binary]==3.3.5"] dev = [ "pytest==9.1.1", "pytest-asyncio==1.4.0", "httpx==0.28.1", - "ruff==0.16.2", - "mypy==2.3.0", + "ruff==0.16.5", + "mypy==2.3.1", # Validates real emitted events against schemas/detection-event.schema.json # (tests/test_mqtt_schema.py) so the envelope cannot drift unnoticed again. "jsonschema==4.26.0", - "hypothesis==6.165.5", + "hypothesis==6.167.1", # Client for scripts/probe_display_channel.py, which measures what # /api/v1/display actually costs on the wire against a real station (ADR-038). # Not a runtime dependency: the server side is Starlette's own WebSocket. - "websockets==17.0.1", + "websockets==17.1", # scripts/serial_capture.py. `pio device monitor` needs a tty, which an agent # or a CI job does not have, and reading the display's serial output is the # only evidence that the firmware works.