Skip to content

chore(deps): pin dependencies#2

Open
mend-for-github-com[bot] wants to merge 1 commit intomainfrom
whitesource-remediate/pin-dependencies
Open

chore(deps): pin dependencies#2
mend-for-github-com[bot] wants to merge 1 commit intomainfrom
whitesource-remediate/pin-dependencies

Conversation

@mend-for-github-com
Copy link
Copy Markdown

@mend-for-github-com mend-for-github-com bot commented Nov 10, 2025

This PR contains the following updates:

Package Type Update Change
accelerate dev pin ^0.33.00.33.0
actions/checkout action pinDigest 34e1148
actions/setup-python action pinDigest 7f4fc3e
actions/setup-python action pinDigest a26af69
actions/upload-artifact action pinDigest ea165f8
aioconsole dev pin ^0.8.10.8.1
anthropic dev pin ^0.55.00.55.0
azure-ai-formrecognizer dev pin ^3.3.33.3.3
azure-ai-textanalytics dev pin ^5.3.05.3.0
azure-core (source) dev pin ^1.35.01.35.0
azure-core (source) dev pin ^1.31.01.35.0
azure-identity dev pin ^1.23.11.23.1
azure-identity dev pin ^1.18.01.24.0
black (changelog) dev pin ^24.10.024.10.0
boto3 dev pin ^1.39.151.39.15
cohere dev pin ^5.5.85.16.1
colorama dev pin ^0.4.60.4.6
dataclasses-jsonschema dev pin ^2.16.02.16.0
dspy dev pin ^2.6.272.6.27
dspy-ai dev pin ^2.6.272.6.27
faiss-cpu dev pin ^1.8.0.post11.11.0.post1
fastapi (changelog) dev pin ^0.116.10.116.1
google-generativeai dev pin ^0.8.30.8.5
graphviz (changelog) dev pin ^0.20.30.20.3
groq dev pin ^0.9.00.9.0
ipykernel dev pin ^6.29.46.30.0
jupyter dev pin ^1.0.01.1.1
matplotlib dev pin ^3.9.03.10.3
matplotlib dev pin ^3.9.13.10.5
mcp dev pin ^1.9.41.12.2
mlflow dev pin ^3.1.43.1.4
nltk (source) dev pin ^3.9.13.9.1
ollama dev pin ^0.2.10.2.1
openai dev pin ^1.97.11.97.1
openai-agents dev pin ^0.0.190.0.19
peaceiris/actions-gh-pages action pinDigest 373f7f2
pgvector dev pin ^0.2.50.2.5
pre-commit dev pin ^3.7.03.8.0
pydot (changelog) dev pin ^2.0.02.0.0
pyvis dev pin ^0.3.20.3.2
ragas dev pin ^0.1.160.1.22
ruff (source, changelog) dev pin ^0.8.00.8.6
snok/install-poetry action pinDigest 76e04a9
softprops/action-gh-release action pinDigest de2c0eb
tensorboard dev pin ^2.17.02.20.0
textgrad dev pin ^0.1.40.1.8
together (changelog) dev pin ^1.3.141.5.21
torch dev pin >=2.0, <3.0==2.7.1
torchmetrics dev pin ^1.4.0.post01.8.0
transformers dev pin ^4.44.04.54.1
uvicorn (changelog) dev pin ^0.35.00.35.0

Add the preset :preserveSemverRanges to your config if you don't want to pin your dependencies.


Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

@mend-for-github-com
Copy link
Copy Markdown
Author

⚠️ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

  • any of the package files in this branch needs updating, or
  • the branch becomes conflicted, or
  • you click the rebase/retry checkbox if found above, or
  • you rename this PR's title to start with "rebase!" to trigger it manually

The artifact failure details are included below:

File name: adalflow/poetry.lock
Updating dependencies
Resolving dependencies...

Creating virtualenv adalflow-CzL_IF4J-py3.14 in /home/ubuntu/.cache/pypoetry/virtualenvs

The current project's supported Python range (>=3.9,<3.10) is not compatible with some of the required packages Python requirement:
  - matplotlib requires Python >=3.10, so it will not be installable for Python >=3.9,<3.10

Because adalflow depends on matplotlib (3.10.5) which requires Python >=3.10, version solving failed.

  * Check your dependencies Python requirement: The Python requirement can be specified via the `python` or `markers` properties

    For matplotlib, a possible solution would be to set the `python` property to "<empty>"

    https://python-poetry.org/docs/dependency-specification/#python-restricted-dependencies,
    https://python-poetry.org/docs/dependency-specification/#using-environment-markers


@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/pin-dependencies branch from 8401acd to b89e9f2 Compare November 20, 2025 01:56
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants