Skip to content

chore: bump the minor-and-patch group across 1 directory with 2 updates#527

Merged
Aureliolo merged 2 commits intomainfrom
dependabot/uv/minor-and-patch-a2d68bacfc
Mar 17, 2026
Merged

chore: bump the minor-and-patch group across 1 directory with 2 updates#527
Aureliolo merged 2 commits intomainfrom
dependabot/uv/minor-and-patch-a2d68bacfc

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot bot commented on behalf of github Mar 17, 2026

Bumps the minor-and-patch group with 2 updates in the / directory: litellm and mem0ai.

Updates litellm from 1.82.2 to 1.82.3

Release notes

Sourced from litellm's releases.

litellm-v1.81.14.pre-call-hook-fix.dev

What's Changed

... (truncated)

Commits

Updates mem0ai from 1.0.5 to 1.0.6

Release notes

Sourced from mem0ai's releases.

v1.0.6

What's Changed

New Contributors

... (truncated)

Changelog

Sourced from mem0ai's changelog.


title: "Product Updates" mode: "wide"

Bug Fixes:

  • Telemetry: Fixed telemetry vector store initialization still running when MEM0_TELEMETRY is disabled (#4351)
  • Core: Removed destructive vector_store.reset() call from delete_all() that was wiping the entire vector store instead of deleting only the target memories (#4349)
  • OSS: OllamaLLM now respects the configured URL instead of always falling back to localhost (#4320)
  • Core: Fixed KeyError when LLM omits the entities key in tool call response (#4313)
  • Prompts: Ensured JSON instruction is included in prompts when using json_object response format (#4271)
  • Core: Fixed incorrect database parameter handling (#3913)

Dependencies:

  • Updated LangChain dependencies to v1.0.0 (#4353)
  • Bumped protobuf dependency to 5.29.6 and extended upper bound to <7.0.0 (#4326)

New Features & Updates:

  • Memory Update:
    • Added timestamp parameter to update() — accepts Unix epoch (int/float) or ISO 8601 string

New Features & Updates:

  • Project Settings:
    • Added inclusion prompt, exclusion prompt, memory depth, and usecase setting

New Features & Updates:

  • Vector Stores:

... (truncated)

Commits
  • 3cdcb65 chore: end to end test coverage for ts sdk (#4357)
  • 336fbce feat(mem0-ts): add LM Studio embedder and LLM support (#4354)
  • 9eb5b9e fix(qdrant): handle 401/403 in ensureCollection for scoped JWTs (#4356)
  • 8230a5d fix: cast vector_distance to float in Redis search (#4377)
  • 9864584 feat: add openclaw checks CI workflow (#4368)
  • 9eea060 docs: fix mintlify build failing (#4363)
  • 15218d4 chore: bump mem0-ts to 2.4.1, pyproject to 1.0.6, update changelog with bug f...
  • 69001d7 chore(docs): adding skills.sh installation command in the readme. (#4350)
  • 35fe30a fix: ensure JSON instruction in prompts for json_object response format (#355...
  • 11a7d83 chore: update langchain dependencies to v1.0.0 (#4353)
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the minor-and-patch group with 2 updates in the / directory: [litellm](https://github.com/BerriAI/litellm) and [mem0ai](https://github.com/mem0ai/mem0).


Updates `litellm` from 1.82.2 to 1.82.3
- [Release notes](https://github.com/BerriAI/litellm/releases)
- [Commits](https://github.com/BerriAI/litellm/commits)

Updates `mem0ai` from 1.0.5 to 1.0.6
- [Release notes](https://github.com/mem0ai/mem0/releases)
- [Changelog](https://github.com/mem0ai/mem0/blob/main/docs/changelog.mdx)
- [Commits](mem0ai/mem0@v1.0.5...v1.0.6)

---
updated-dependencies:
- dependency-name: litellm
  dependency-version: 1.82.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: minor-and-patch
- dependency-name: mem0ai
  dependency-version: 1.0.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: minor-and-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added the type:chore Maintenance, cleanup, dependency updates label Mar 17, 2026
@dependabot dependabot bot requested a review from Aureliolo as a code owner March 17, 2026 22:11
@dependabot dependabot bot added the type:chore Maintenance, cleanup, dependency updates label Mar 17, 2026
@github-actions
Copy link
Copy Markdown
Contributor

github-actions bot commented Mar 17, 2026

Dependency Review

The following issues were found:
  • ✅ 0 vulnerable package(s)
  • ✅ 0 package(s) with incompatible licenses
  • ✅ 0 package(s) with invalid SPDX license definitions
  • ⚠️ 1 package(s) with unknown licenses.
See the Details below.

License Issues

uv.lock

PackageVersionLicenseIssue Type
litellm1.82.3NullUnknown License
Allowed Licenses: MIT, MIT-0, Apache-2.0, BSD-2-Clause, BSD-3-Clause, ISC, MPL-2.0, PSF-2.0, Unlicense, 0BSD, CC0-1.0, Python-2.0, Python-2.0.1, LicenseRef-scancode-free-unknown, LicenseRef-scancode-protobuf, LicenseRef-scancode-google-patent-license-golang, ZPL-2.1, LGPL-2.0-only, LGPL-2.1-only, LGPL-3.0-only, LGPL-3.0-or-later, BlueOak-1.0.0
Excluded from license check: pkg:pypi/mem0ai@1.0.5, pkg:pypi/numpy@2.4.3, pkg:pypi/qdrant-client@1.17.0, pkg:pypi/posthog@7.9.12, pkg:npm/@img/sharp-wasm32@0.33.5, pkg:npm/@img/sharp-win32-ia32@0.33.5, pkg:npm/@img/sharp-win32-x64@0.33.5

OpenSSF Scorecard

PackageVersionScoreDetails
pip/litellm 1.82.3 UnknownUnknown
pip/mem0ai 1.0.6 UnknownUnknown

Scanned Files

  • uv.lock

Copy link
Copy Markdown
Owner

@Aureliolo Aureliolo left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Changelog reviewed: litellm 1.82.2→1.82.3 (HTTP client cache eviction fix, cost map accuracy improvements, PyJWT security bump) + mem0ai 1.0.5→1.0.6 (destructive delete_all fix, entities KeyError fix, JSON instruction reliability, database param fix). All bugfixes, no breaking changes, no config changes needed. CI Pass green.

@codecov
Copy link
Copy Markdown

codecov bot commented Mar 17, 2026

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 93.18%. Comparing base (35e8338) to head (e4abe40).
⚠️ Report is 5 commits behind head on main.
✅ All tests successful. No failed tests found.

Additional details and impacted files
@@           Coverage Diff           @@
##             main     #527   +/-   ##
=======================================
  Coverage   93.18%   93.18%           
=======================================
  Files         522      522           
  Lines       25157    25157           
  Branches     2386     2386           
=======================================
  Hits        23443    23443           
  Misses       1356     1356           
  Partials      358      358           

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@Aureliolo Aureliolo merged commit e96c0d4 into main Mar 17, 2026
32 checks passed
@Aureliolo Aureliolo deleted the dependabot/uv/minor-and-patch-a2d68bacfc branch March 17, 2026 22:31
@Aureliolo Aureliolo temporarily deployed to cloudflare-preview March 17, 2026 22:31 — with GitHub Actions Inactive
Aureliolo added a commit that referenced this pull request Mar 17, 2026
## Summary

- Set `MEM0_TELEMETRY=false` in Docker compose, CLI compose template,
and `.env.example`
- Mem0's telemetry initializes an extra vector store to stage usage data
before shipping to Mem0's servers — disabling it reduces startup
overhead and keeps all data local
- Identified during review of PR #527 (mem0ai 1.0.5 → 1.0.6), which
fixed telemetry vector store init still running when `MEM0_TELEMETRY` is
disabled

## Changes

- `docker/.env.example` — added `MEM0_TELEMETRY=false` with
documentation comment
- `docker/compose.yml` — added `MEM0_TELEMETRY: "false"` to backend
environment
- `cli/internal/compose/compose.yml.tmpl` — added `MEM0_TELEMETRY:
"false"` to CLI-generated compose
- `cli/testdata/compose_*.yml` — updated 3 golden files to match
template

## Test plan

- [x] Go CLI compose generation tests pass (`go test
./internal/compose/`)
- [x] `go vet ./...` clean
- [x] Full Go test suite passes
- [ ] CI passes
Aureliolo added a commit that referenced this pull request Mar 17, 2026
🤖 I have created a release *beep* *boop*
---


##
[0.3.2](v0.3.1...v0.3.2)
(2026-03-17)


### Features

* **settings:** route structural data reads through SettingsService
([#525](#525))
([289f604](289f604))


### Bug Fixes

* **cli:** add fallback arch detection in PowerShell installer
([#529](#529))
([0250afb](0250afb)),
closes [#521](#521)


### CI/CD

* bump the minor-and-patch group with 2 updates
([#517](#517))
([46bdd1a](46bdd1a))
* bump wrangler from 4.73.0 to 4.74.0 in /.github in the minor-and-patch
group ([#511](#511))
([903b71a](903b71a))


### Maintenance

* bump node from `7a4ef57` to `44bcbf4` in /docker/sandbox
([#515](#515))
([3cbddd1](3cbddd1))
* bump python from `6a27522` to `584e89d` in /docker/backend
([#513](#513))
([0715910](0715910))
* bump python from `6a27522` to `584e89d` in /docker/sandbox
([#514](#514))
([787dfe1](787dfe1))
* bump the minor-and-patch group across 1 directory with 2 updates
([#527](#527))
([e96c0d4](e96c0d4))
* bump the minor-and-patch group across 2 directories with 3 updates
([#512](#512))
([b95ba3d](b95ba3d))
* **docker:** disable Mem0 telemetry in container config
([#531](#531))
([9fc29eb](9fc29eb))
* improve GitHub issue templates with structured forms
([#528](#528))
([4fb66cf](4fb66cf)),
closes [#522](#522)

---
This PR was generated with [Release
Please](https://github.com/googleapis/release-please). See
[documentation](https://github.com/googleapis/release-please#release-please).
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

type:chore Maintenance, cleanup, dependency updates

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant