Skip to content

⬆ Bump the python-packages group with 3 updates - #108

Merged
YuriiMotov merged 2 commits into
mainfrom
dependabot/uv/python-packages-4801d9f12c
Oct 5, 2026
Merged

YuriiMotov merged 2 commits into
mainfrom
dependabot/uv/python-packages-4801d9f12c

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 1, 2026

Copy link
Copy Markdown
Contributor

Bumps the python-packages group with 3 updates: ruff, ty and prek.

Updates ruff from 0.16.4 to 0.16.8

Release notes

Sourced from ruff's releases.

0.16.8

Release Notes

Released on 2026-09-16.

Bug fixes

  • Visit functional TypedDict keyword arguments correctly (#28584)
  • [flake8-simplify] Detect nested async with under sync parent (SIM117) (#27821)
  • [flake8-simplify] Preserve operand order in SIM109 fix (#27824)
  • [pyupgrade] Preserve required parentheses in multiline UP040 fixes (#28164)
  • [pyupgrade] Skip TypeVarTuple and ParamSpec conversions with bounds or constraints (UP040, UP046, UP047) (#28505)

Rule changes

  • Add support for __lazy_modules__ (#28459)
  • Recognize PEP-728 TypedDict class keywords (#28533)
  • Recognize quoted types in typing.TypeForm (#28507)
  • Support conditional assignment to __lazy_modules__ (#28491)
  • [flake8-type-checking] Prefer lazy imports over TYPE_CHECKING on Python 3.15 and later (TC001, TC002, TC003) (#28541)
  • [pyupgrade] Make the fix for UP040 always unsafe (#28526)
  • [pyupgrade] Stop recommending deprecated ByteString aliases (UP035) (#28498)
  • [ruff, flake8-use-pathlib] Recognize the parent_mode argument (RUF064, PTH103) (#28528)
  • [ruff] Detect \Z in pytest.raises() match patterns (RUF043) (#28598)

CLI

  • Use rule name and code in formatter incompatibility warnings (#28571)

Configuration

  • [flake8-tidy-imports] Add extend-banned-api (#28644)

Contributors

Install ruff 0.16.8

Install prebuilt binaries via shell script

curl --proto '=https' --tlsv1.2 -LsSf https://releases.astral.sh/github/ruff/releases/download/0.16.8/ruff-installer.sh | sh
</tr></table> 

... (truncated)

Changelog

Sourced from ruff's changelog.

0.16.8

Released on 2026-09-16.

Bug fixes

  • Visit functional TypedDict keyword arguments correctly (#28584)
  • [flake8-simplify] Detect nested async with under sync parent (SIM117) (#27821)
  • [flake8-simplify] Preserve operand order in SIM109 fix (#27824)
  • [pyupgrade] Preserve required parentheses in multiline UP040 fixes (#28164)
  • [pyupgrade] Skip TypeVarTuple and ParamSpec conversions with bounds or constraints (UP040, UP046, UP047) (#28505)

Rule changes

  • Add support for __lazy_modules__ (#28459)
  • Recognize PEP-728 TypedDict class keywords (#28533)
  • Recognize quoted types in typing.TypeForm (#28507)
  • Support conditional assignment to __lazy_modules__ (#28491)
  • [flake8-type-checking] Prefer lazy imports over TYPE_CHECKING on Python 3.15 and later (TC001, TC002, TC003) (#28541)
  • [pyupgrade] Make the fix for UP040 always unsafe (#28526)
  • [pyupgrade] Stop recommending deprecated ByteString aliases (UP035) (#28498)
  • [ruff, flake8-use-pathlib] Recognize the parent_mode argument (RUF064, PTH103) (#28528)
  • [ruff] Detect \Z in pytest.raises() match patterns (RUF043) (#28598)

CLI

  • Use rule name and code in formatter incompatibility warnings (#28571)

Configuration

  • [flake8-tidy-imports] Add extend-banned-api (#28644)

Contributors

0.16.7

Released on 2026-09-10.

Preview features

  • [ruff] Add rule for default values on method receivers (RUF077) (#26700)

... (truncated)

Commits
  • 62914c4 Bump version to 0.16.8 (#28648)
  • c47e0cd [ty] Bound aliased intersection expansion during inference (#28546)
  • ff4747b renovate: update uv hashes correctly with setup-uv (#28621)
  • 94efeaa [ty] Compact reachable binding and declaration histories (#28349)
  • 50020fb [ty] Avoid storing constraint nodes twice (#28375)
  • 446bb68 [ty] Compare bound-method receivers before signatures (#28384)
  • 304ab86 [flake8-type-checking] Prefer lazy imports over TYPE_CHECKING on 3.15+ (`...
  • d940b24 [ty] Watch script dependencies in CLI watch mode (#28125)
  • fe9f065 [flake8-tidy-imports] Add extend-banned-api (#28644)
  • 31131db [ty] Support type[A & B] (#27124)
  • Additional commits viewable in compare view

Updates ty from 0.0.74 to 0.0.83

Release notes

Sourced from ty's releases.

0.0.83

Release Notes

Released on 2026-09-21.

Bug fixes

  • Fix hangs from repeated partial application (#28754)
  • Preserve PEP 695 bindings across nested classes (#28723)

LSP server

  • Include required imports in every inlay hint (#28724)
  • Preserve fast name filtering for normalized Unicode source (#28701)
  • Refresh diagnostics after workspace configuration changes (#28755)

Diagnostic improvements

  • Expand unreachable-code annotations for redundant conditions (#28674)
  • Improve diagnostics for async generator stubs (#28692)
  • Improve primary diagnostic annotations for redundant-condition(-strict) diagnostics (#28666)
  • Point misplaced tuple ellipsis diagnostics at each ellipsis (#28709)

Other changes

  • Add rules that detect suspicious uses of Callable, Iterable, Iterator or Generator types in a boolean context (#28554)
  • Allow slots to override abstract properties (#28698)
  • Avoid leaking Unknown from unconstrained collection use-sites (#28659)
  • Diagnose unguarded cycles in implicit and PEP 613 aliases (#28704)
  • Eagerly bind unused Self receivers (#28662)
  • Generalize receiver binding for wrapped callables (#28725)
  • More faithful representation of bound methods (#28410)
  • Only classify evidence bounds for constrained type variables (#28700)
  • Preserve inferred bindings during annotation cycles (#28717)
  • Preserve quoted aliases during cycle recovery (#28710)
  • Reject class-scoped type variables in init receivers (#28706)
  • Reject unsafe TypedDict updates from hidden fields (#28711)
  • Respect fixed caller type variables when selecting constraints (#28652)
  • Reuse cached type alias inference for diagnostics (#28696)
  • Simplify unions of disjoint exclusions (#28684)
  • Update typing conformance suite (#28718)

Contributors

... (truncated)

Changelog

Sourced from ty's changelog.

0.0.83

Released on 2026-09-21.

Bug fixes

  • Fix hangs from repeated partial application (#28754)
  • Preserve PEP 695 bindings across nested classes (#28723)

LSP server

  • Include required imports in every inlay hint (#28724)
  • Preserve fast name filtering for normalized Unicode source (#28701)
  • Refresh diagnostics after workspace configuration changes (#28755)

Diagnostic improvements

  • Expand unreachable-code annotations for redundant conditions (#28674)
  • Improve diagnostics for async generator stubs (#28692)
  • Improve primary diagnostic annotations for redundant-condition(-strict) diagnostics (#28666)
  • Point misplaced tuple ellipsis diagnostics at each ellipsis (#28709)

Other changes

  • Add rules that detect suspicious uses of Callable, Iterable, Iterator or Generator types in a boolean context (#28554)
  • Allow slots to override abstract properties (#28698)
  • Avoid leaking Unknown from unconstrained collection use-sites (#28659)
  • Diagnose unguarded cycles in implicit and PEP 613 aliases (#28704)
  • Eagerly bind unused Self receivers (#28662)
  • Generalize receiver binding for wrapped callables (#28725)
  • More faithful representation of bound methods (#28410)
  • Only classify evidence bounds for constrained type variables (#28700)
  • Preserve inferred bindings during annotation cycles (#28717)
  • Preserve quoted aliases during cycle recovery (#28710)
  • Reject class-scoped type variables in init receivers (#28706)
  • Reject unsafe TypedDict updates from hidden fields (#28711)
  • Respect fixed caller type variables when selecting constraints (#28652)
  • Reuse cached type alias inference for diagnostics (#28696)
  • Simplify unions of disjoint exclusions (#28684)
  • Update typing conformance suite (#28718)

Contributors

... (truncated)

Commits

Updates prek from 0.4.14 to 0.5.3

Release notes

Sourced from prek's releases.

0.5.3

Release Notes

Released on 2026-09-13.

Enhancements

  • Add PEP 740 attestations for PyPI releases (#2705)
  • Add a check-jsonc builtin hook (#2682)
  • Allow disabling automatic uv installation (#2702)

Bug fixes

  • Fix Julia additional dependency specifiers (#2703)
  • Update granit-parser to fix YAML flow indentation (#2707)

Contributors

Install prek 0.5.3

Install prebuilt binaries via shell script

curl --proto '=https' --tlsv1.2 -LsSf https://github.com/j178/prek/releases/download/v0.5.3/prek-installer.sh | sh

Install prebuilt binaries via powershell script

powershell -ExecutionPolicy Bypass -c "irm https://github.com/j178/prek/releases/download/v0.5.3/prek-installer.ps1 | iex"

Install prebuilt binaries via Homebrew

brew install prek

Download prek 0.5.3

File Platform Checksum
prek-aarch64-apple-darwin.tar.gz Apple Silicon macOS checksum
prek-x86_64-apple-darwin.tar.gz Intel macOS checksum
prek-aarch64-pc-windows-msvc.zip ARM64 Windows checksum
prek-x86_64-pc-windows-msvc.zip x64 Windows checksum

... (truncated)

Changelog

Sourced from prek's changelog.

0.5.3

Released on 2026-09-13.

Enhancements

  • Add PEP 740 attestations for PyPI releases (#2705)
  • Add a check-jsonc builtin hook (#2682)
  • Allow disabling automatic uv installation (#2702)

Bug fixes

  • Fix Julia additional dependency specifiers (#2703)
  • Update granit-parser to fix YAML flow indentation (#2707)

Contributors

0.5.2

Released on 2026-09-03.

Enhancements

  • Allow unknown tags by default in check-yaml (#2678)

Contributors

0.5.1

Released on 2026-09-01.

Enhancements

  • Add --hide-status <passed|failed|skipped> for hook reports (#2644)
  • Add prek init for repository setup (#2636)
  • Apply hook env during environment creation (#2650)
  • Disable error snippets in check-yaml diagnostics (#2664)
  • Show hooks excluded by skip selectors (#2645)
  • Support Pixi for Conda environments (#2667)
  • Support cargo-binstall for Rust CLI dependencies (#2658)
  • Warn about unused keys in user settings (#2665)

Bug fixes

... (truncated)

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the python-packages group with 3 updates: [ruff](https://github.com/astral-sh/ruff), [ty](https://github.com/astral-sh/ty) and [prek](https://github.com/j178/prek).


Updates `ruff` from 0.16.4 to 0.16.8
- [Release notes](https://github.com/astral-sh/ruff/releases)
- [Changelog](https://github.com/astral-sh/ruff/blob/main/CHANGELOG.md)
- [Commits](astral-sh/ruff@0.16.4...0.16.8)

Updates `ty` from 0.0.74 to 0.0.83
- [Release notes](https://github.com/astral-sh/ty/releases)
- [Changelog](https://github.com/astral-sh/ty/blob/main/CHANGELOG.md)
- [Commits](astral-sh/ty@0.0.74...0.0.83)

Updates `prek` from 0.4.14 to 0.5.3
- [Release notes](https://github.com/j178/prek/releases)
- [Changelog](https://github.com/j178/prek/blob/master/CHANGELOG.md)
- [Commits](j178/prek@v0.4.14...v0.5.3)

---
updated-dependencies:
- dependency-name: ruff
  dependency-version: 0.16.8
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: python-packages
- dependency-name: ty
  dependency-version: 0.0.83
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: python-packages
- dependency-name: prek
  dependency-version: 0.5.3
  dependency-type: direct:development
  update-type: version-update:semver-minor
  dependency-group: python-packages
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python:uv Pull requests that update python:uv code labels Oct 1, 2026
@latest-changes latest-changes Bot added the internal Internal changes label Oct 1, 2026
uv.lock
- name: Bump pre-commit hooks
run: uv run prek auto-update --freeze --cooldown-days 7
run: uv run prek update --freeze --cooldown-days 7

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

prek auto-update was removed in prek 0.5.0 in favor of prek update.

See https://github.com/j178/prek/releases#release-v0.5.0

@YuriiMotov
YuriiMotov merged commit 6140944 into main Oct 5, 2026
26 checks passed
@YuriiMotov
YuriiMotov deleted the dependabot/uv/python-packages-4801d9f12c branch October 5, 2026 18:48
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file internal Internal changes python:uv Pull requests that update python:uv code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants