Jussi Kukkonen
fbe336dbea
Merge pull request #2406 from theupdateframework/dependabot/pip/urllib3-2.0.3
...
build(deps): bump urllib3 from 2.0.2 to 2.0.3
2023-06-13 13:18:59 +03:00
Jussi Kukkonen
66bdc1c84e
Merge pull request #2407 from theupdateframework/dependabot/github_actions/actions/checkout-3.5.3
...
build(deps): bump actions/checkout from 3.5.2 to 3.5.3
2023-06-12 15:56:39 +03:00
dependabot[bot]
55a17cc3ee
build(deps): bump actions/checkout from 3.5.2 to 3.5.3
...
Bumps [actions/checkout](https://github.com/actions/checkout ) from 3.5.2 to 3.5.3.
- [Release notes](https://github.com/actions/checkout/releases )
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md )
- [Commits](8e5e7e5ab8...c85c95e3d7 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
2023-06-12 11:00:10 +00:00
dependabot[bot]
8bd8c5059c
build(deps): bump urllib3 from 2.0.2 to 2.0.3
...
Bumps [urllib3](https://github.com/urllib3/urllib3 ) from 2.0.2 to 2.0.3.
- [Release notes](https://github.com/urllib3/urllib3/releases )
- [Changelog](https://github.com/urllib3/urllib3/blob/main/CHANGES.rst )
- [Commits](https://github.com/urllib3/urllib3/compare/2.0.2...2.0.3 )
---
updated-dependencies:
- dependency-name: urllib3
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
2023-06-08 10:57:23 +00:00
Jussi Kukkonen
61d29b32e9
Merge pull request #2405 from theupdateframework/dependabot/github_actions/github/codeql-action-2.3.6
...
build(deps): bump github/codeql-action from 2.3.3 to 2.3.6
2023-06-02 15:21:27 +03:00
Jussi Kukkonen
529e06c4a7
Merge pull request #2404 from theupdateframework/dependabot/pip/cryptography-41.0.1
...
build(deps): bump cryptography from 40.0.2 to 41.0.1
2023-06-02 15:21:17 +03:00
Jussi Kukkonen
4dabbd0b38
Merge pull request #2403 from theupdateframework/dependabot/github_actions/actions/dependency-review-action-3.0.6
...
build(deps): bump actions/dependency-review-action from 3.0.4 to 3.0.6
2023-06-02 14:13:47 +03:00
Jussi Kukkonen
984a5efa35
Merge pull request #2401 from theupdateframework/dependabot/pip/coverage-7.2.7
...
build(deps): bump coverage from 7.2.6 to 7.2.7
2023-06-02 14:13:35 +03:00
Jussi Kukkonen
55e6cbd57b
Merge pull request #2398 from theupdateframework/dependabot/github_actions/actions/setup-python-4.6.1
...
build(deps): bump actions/setup-python from 4.6.0 to 4.6.1
2023-06-02 14:13:15 +03:00
dependabot[bot]
1359485a67
build(deps): bump github/codeql-action from 2.3.3 to 2.3.6
...
Bumps [github/codeql-action](https://github.com/github/codeql-action ) from 2.3.3 to 2.3.6.
- [Release notes](https://github.com/github/codeql-action/releases )
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md )
- [Commits](29b1f65c5e...83f0fe6c49 )
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
2023-06-02 10:58:18 +00:00
dependabot[bot]
ae8b5b25e9
build(deps): bump cryptography from 40.0.2 to 41.0.1
...
Bumps [cryptography](https://github.com/pyca/cryptography ) from 40.0.2 to 41.0.1.
- [Changelog](https://github.com/pyca/cryptography/blob/main/CHANGELOG.rst )
- [Commits](https://github.com/pyca/cryptography/compare/40.0.2...41.0.1 )
---
updated-dependencies:
- dependency-name: cryptography
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com>
2023-06-02 10:57:12 +00:00
dependabot[bot]
bedbeb0002
build(deps): bump actions/dependency-review-action from 3.0.4 to 3.0.6
...
Bumps [actions/dependency-review-action](https://github.com/actions/dependency-review-action ) from 3.0.4 to 3.0.6.
- [Release notes](https://github.com/actions/dependency-review-action/releases )
- [Commits](f46c48ed6d...1360a344cc )
---
updated-dependencies:
- dependency-name: actions/dependency-review-action
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
2023-06-01 10:59:23 +00:00
dependabot[bot]
a7feffa93f
build(deps): bump coverage from 7.2.6 to 7.2.7
...
Bumps [coverage](https://github.com/nedbat/coveragepy ) from 7.2.6 to 7.2.7.
- [Release notes](https://github.com/nedbat/coveragepy/releases )
- [Changelog](https://github.com/nedbat/coveragepy/blob/master/CHANGES.rst )
- [Commits](https://github.com/nedbat/coveragepy/compare/7.2.6...7.2.7 )
---
updated-dependencies:
- dependency-name: coverage
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
2023-05-30 10:57:29 +00:00
dependabot[bot]
4f3ff9fa12
build(deps): bump actions/setup-python from 4.6.0 to 4.6.1
...
Bumps [actions/setup-python](https://github.com/actions/setup-python ) from 4.6.0 to 4.6.1.
- [Release notes](https://github.com/actions/setup-python/releases )
- [Commits](57ded4d7d5...bd6b4b6205 )
---
updated-dependencies:
- dependency-name: actions/setup-python
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
2023-05-25 10:58:36 +00:00
Jussi Kukkonen
1c1005c35e
Merge pull request #2396 from theupdateframework/dependabot/pip/requests-2.31.0
...
build(deps): bump requests from 2.30.0 to 2.31.0
2023-05-25 12:28:32 +03:00
Jussi Kukkonen
be5f791733
Merge pull request #2397 from theupdateframework/dependabot/pip/coverage-7.2.6
...
build(deps): bump coverage from 7.2.5 to 7.2.6
2023-05-25 10:03:47 +03:00
dependabot[bot]
a657f00eb3
build(deps): bump coverage from 7.2.5 to 7.2.6
...
Bumps [coverage](https://github.com/nedbat/coveragepy ) from 7.2.5 to 7.2.6.
- [Release notes](https://github.com/nedbat/coveragepy/releases )
- [Changelog](https://github.com/nedbat/coveragepy/blob/master/CHANGES.rst )
- [Commits](https://github.com/nedbat/coveragepy/compare/7.2.5...7.2.6 )
---
updated-dependencies:
- dependency-name: coverage
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
2023-05-24 10:58:13 +00:00
dependabot[bot]
98167ec9dc
build(deps): bump requests from 2.30.0 to 2.31.0
...
Bumps [requests](https://github.com/psf/requests ) from 2.30.0 to 2.31.0.
- [Release notes](https://github.com/psf/requests/releases )
- [Changelog](https://github.com/psf/requests/blob/main/HISTORY.md )
- [Commits](https://github.com/psf/requests/compare/v2.30.0...v2.31.0 )
---
updated-dependencies:
- dependency-name: requests
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
2023-05-23 10:57:21 +00:00
Lukas Pühringer
9316a45662
Merge pull request #2392 from joshuagl/joshuagl/affiliation
...
Update Joshua's affiliation
2023-05-15 09:24:43 +02:00
Joshua Lock
cca3ce1026
Update Joshua's affiliation
...
Recently changed employer
Signed-off-by: Joshua Lock <joshua.lock@uk.verizon.com>
2023-05-12 12:01:38 +01:00
Jussi Kukkonen
77f5269790
Merge pull request #2391 from theupdateframework/dependabot/pip/mypy-1.3.0
...
build(deps): bump mypy from 1.2.0 to 1.3.0
2023-05-12 09:07:14 +03:00
dependabot[bot]
df0996808d
build(deps): bump mypy from 1.2.0 to 1.3.0
...
Bumps [mypy](https://github.com/python/mypy ) from 1.2.0 to 1.3.0.
- [Commits](https://github.com/python/mypy/compare/v1.2.0...v1.3.0 )
---
updated-dependencies:
- dependency-name: mypy
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
2023-05-11 10:57:43 +00:00
Jussi Kukkonen
8c7dfd1876
Merge pull request #2389 from jku/fix-draft-release
...
github: Fix issue with draft releases
2023-05-10 14:54:28 +03:00
Jussi Kukkonen
ffc904906c
github: Fix issue with draft releases
...
Commit 707dc49 included a change where the release candidate was marked
as draft. This was a mistake as draft releases are only visible to
logged in maintainers. This leads to e.g. ./verify_release script
failing while the release is a draft.
Revert those changes:
* don't use "draft" attribute
* postfix the release name with "-rc" while the release waits for
approval
* Only set the real description and name after release approval
Signed-off-by: Jussi Kukkonen <jkukkonen@google.com>
2023-05-10 14:06:55 +03:00
Lukas Pühringer
e2a2afa791
Merge pull request #2390 from jku/update-release-docs
...
docs: Document PyPI Trusted Publishing
2023-05-10 12:36:57 +02:00
Jussi Kukkonen
85cbb1c7b2
docs: Document PyPI Trusted Publishing
...
Fixes #2386
Signed-off-by: Jussi Kukkonen <jkukkonen@google.com>
2023-05-10 10:31:35 +03:00
Lukas Pühringer
eff842201e
Merge pull request #2387 from jku/release-3.0.0
...
Release python-tuf 3.0.0
2023-05-09 11:51:11 +02:00
Jussi Kukkonen
0c107c6a8b
Release python-tuf 3.0.0
...
* Update changelog
* Bump version
Signed-off-by: Jussi Kukkonen <jkukkonen@google.com>
2023-05-09 11:42:49 +03:00
Lukas Pühringer
2baa80becc
Merge pull request #2376 from theupdateframework/dependabot/github_actions/pypa/gh-action-pypi-publish-1.8.6
...
build(deps): bump pypa/gh-action-pypi-publish from 1.8.5 to 1.8.6
2023-05-08 16:25:48 +02:00
Lukas Pühringer
671691304b
Merge pull request #2377 from theupdateframework/dependabot/pip/urllib3-2.0.2
...
build(deps): bump urllib3 from 1.26.15 to 2.0.2
2023-05-08 16:17:24 +02:00
dependabot[bot]
a6ea12754d
build(deps): bump pypa/gh-action-pypi-publish from 1.8.5 to 1.8.6
...
Bumps [pypa/gh-action-pypi-publish](https://github.com/pypa/gh-action-pypi-publish ) from 1.8.5 to 1.8.6.
- [Release notes](https://github.com/pypa/gh-action-pypi-publish/releases )
- [Commits](0bf742be3e...a56da0b891 )
---
updated-dependencies:
- dependency-name: pypa/gh-action-pypi-publish
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
2023-05-08 14:14:07 +00:00
Lukas Pühringer
93d068373a
Merge pull request #2383 from theupdateframework/dependabot/pip/certifi-2023.5.7
...
build(deps): bump certifi from 2022.12.7 to 2023.5.7
2023-05-08 16:13:57 +02:00
Lukas Pühringer
2524a3c239
Merge pull request #2384 from theupdateframework/dependabot/pip/pylint-2.17.4
...
build(deps): bump pylint from 2.17.3 to 2.17.4
2023-05-08 16:12:01 +02:00
Lukas Pühringer
209f87275a
Merge pull request #2371 from jku/trusted-publisher
...
release: Use PyPI Trusted Publishing
2023-05-08 16:04:26 +02:00
dependabot[bot]
0c13869341
build(deps): bump pylint from 2.17.3 to 2.17.4
...
Bumps [pylint](https://github.com/PyCQA/pylint ) from 2.17.3 to 2.17.4.
- [Release notes](https://github.com/PyCQA/pylint/releases )
- [Commits](https://github.com/PyCQA/pylint/compare/v2.17.3...v2.17.4 )
---
updated-dependencies:
- dependency-name: pylint
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
2023-05-08 10:08:21 +00:00
dependabot[bot]
1d286baade
build(deps): bump certifi from 2022.12.7 to 2023.5.7
...
Bumps [certifi](https://github.com/certifi/python-certifi ) from 2022.12.7 to 2023.5.7.
- [Commits](https://github.com/certifi/python-certifi/compare/2022.12.07...2023.05.07 )
---
updated-dependencies:
- dependency-name: certifi
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com>
2023-05-08 10:07:45 +00:00
Jussi Kukkonen
9415647c0f
Merge pull request #2381 from theupdateframework/dependabot/github_actions/github/codeql-action-2.3.3
...
build(deps): bump github/codeql-action from 2.3.2 to 2.3.3
2023-05-05 14:07:46 +03:00
dependabot[bot]
7f1c3f74aa
build(deps): bump urllib3 from 1.26.15 to 2.0.2
...
Bumps [urllib3](https://github.com/urllib3/urllib3 ) from 1.26.15 to 2.0.2.
- [Release notes](https://github.com/urllib3/urllib3/releases )
- [Changelog](https://github.com/urllib3/urllib3/blob/main/CHANGES.rst )
- [Commits](https://github.com/urllib3/urllib3/compare/1.26.15...2.0.2 )
---
updated-dependencies:
- dependency-name: urllib3
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com>
2023-05-05 11:04:20 +00:00
Jussi Kukkonen
b74aafbf50
Merge pull request #2380 from theupdateframework/dependabot/pip/requests-2.30.0
...
build(deps): bump requests from 2.29.0 to 2.30.0
2023-05-05 14:03:05 +03:00
dependabot[bot]
224ce8ec8c
build(deps): bump github/codeql-action from 2.3.2 to 2.3.3
...
Bumps [github/codeql-action](https://github.com/github/codeql-action ) from 2.3.2 to 2.3.3.
- [Release notes](https://github.com/github/codeql-action/releases )
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md )
- [Commits](f3feb00acb...29b1f65c5e )
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
2023-05-05 10:58:24 +00:00
dependabot[bot]
97eebaf049
build(deps): bump requests from 2.29.0 to 2.30.0
...
Bumps [requests](https://github.com/psf/requests ) from 2.29.0 to 2.30.0.
- [Release notes](https://github.com/psf/requests/releases )
- [Changelog](https://github.com/psf/requests/blob/main/HISTORY.md )
- [Commits](https://github.com/psf/requests/compare/v2.29.0...v2.30.0 )
---
updated-dependencies:
- dependency-name: requests
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
2023-05-05 10:57:06 +00:00
Lukas Pühringer
c56def7c18
Merge pull request #2379 from jku/rtd-workaround
...
readthedocs: Specify build image
2023-05-05 10:48:45 +02:00
Jussi Kukkonen
93d1d29d48
readthedocs: Specify build image
...
RTD docs build is failing because the default image has openssl that is
incompatible with current urllib3: Specify a newer image.
Signed-off-by: Jussi Kukkonen <jkukkonen@google.com>
2023-05-05 10:55:21 +03:00
Jussi Kukkonen
6433355f42
Merge pull request #2375 from theupdateframework/dependabot/pip/coverage-7.2.5
...
build(deps): bump coverage from 7.2.4 to 7.2.5
2023-05-02 10:49:09 +03:00
Lukas Pühringer
979d69c3b2
Merge pull request #2367 from theupdateframework/dependabot/pip/requests-2.29.0
...
build(deps): bump requests from 2.28.2 to 2.29.0
2023-05-01 14:43:54 +02:00
dependabot[bot]
078f996781
build(deps): bump requests from 2.28.2 to 2.29.0
...
Bumps [requests](https://github.com/psf/requests ) from 2.28.2 to 2.29.0.
- [Release notes](https://github.com/psf/requests/releases )
- [Changelog](https://github.com/psf/requests/blob/main/HISTORY.md )
- [Commits](https://github.com/psf/requests/compare/v2.28.2...v2.29.0 )
---
updated-dependencies:
- dependency-name: requests
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
2023-05-01 11:14:47 +00:00
dependabot[bot]
1de47255c5
build(deps): bump coverage from 7.2.4 to 7.2.5
...
Bumps [coverage](https://github.com/nedbat/coveragepy ) from 7.2.4 to 7.2.5.
- [Release notes](https://github.com/nedbat/coveragepy/releases )
- [Changelog](https://github.com/nedbat/coveragepy/blob/master/CHANGES.rst )
- [Commits](https://github.com/nedbat/coveragepy/compare/7.2.4...7.2.5 )
---
updated-dependencies:
- dependency-name: coverage
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
2023-05-01 10:59:07 +00:00
Lukas Pühringer
3630dac49b
Merge pull request #2373 from theupdateframework/dependabot/github_actions/github/codeql-action-2.3.2
...
build(deps): bump github/codeql-action from 2.3.0 to 2.3.2
2023-04-28 15:15:18 +02:00
Lukas Pühringer
00543b0aef
Merge pull request #2372 from theupdateframework/dependabot/pip/coverage-7.2.4
...
build(deps): bump coverage from 7.2.3 to 7.2.4
2023-04-28 15:14:08 +02:00
dependabot[bot]
ac419451cc
build(deps): bump github/codeql-action from 2.3.0 to 2.3.2
...
Bumps [github/codeql-action](https://github.com/github/codeql-action ) from 2.3.0 to 2.3.2.
- [Release notes](https://github.com/github/codeql-action/releases )
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md )
- [Commits](b2c19fb9a2...f3feb00acb )
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
2023-04-28 10:58:26 +00:00