Skip to content

core: bump astral-sh/uv from 0.9.7 to 0.9.8#18037

Merged
BeryJu merged 1 commit intomainfrom
dependabot/docker/astral-sh/uv-0.9.8
Nov 10, 2025
Merged

core: bump astral-sh/uv from 0.9.7 to 0.9.8#18037
BeryJu merged 1 commit intomainfrom
dependabot/docker/astral-sh/uv-0.9.8

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Nov 10, 2025

Bumps astral-sh/uv from 0.9.7 to 0.9.8.

Release notes

Sourced from astral-sh/uv's releases.

0.9.8

Release Notes

Released on 2025-11-07.

Enhancements

  • Accept multiple packages in uv export (#16603)
  • Accept multiple packages in uv sync (#16543)
  • Add a uv cache size command (#16032)
  • Add prerelease guidance for build-system resolution failures (#16550)
  • Allow Python requests to include +gil to require a GIL-enabled interpreter (#16537)
  • Avoid pluralizing 'retry' for single value (#16535)
  • Enable first-class dependency exclusions (#16528)
  • Fix inclusive constraints on available package versions in resolver errors (#16629)
  • Improve uv init error for invalid directory names (#16554)
  • Show help on uv build -h (#16632)
  • Include the Python variant suffix in "Using Python ..." messages (#16536)
  • Log most recently modified file for cache-keys (#16338)
  • Update Docker builds to use nightly Rust toolchain with musl v1.2.5 (#16584)

Configuration

  • Expose UV_NO_GROUP as an environment variable (#16529)
  • Add UV_NO_SOURCES as an environment variable (#15883)

Bug fixes

  • Allow --check and --locked to be used together in uv lock (#16538)
  • Allow for unnormalized names in the METADATA file (#16547) (#16548)
  • Fix missing value_type for default-groups in schema (#16575)
  • Respect multi-GPU outputs in nvidia-smi (#15460)
  • Fix DNS lookup errors in Docker containers (#8450)

Documentation

  • Fix typo in uv tool list doc (#16625)
  • Note uv pip list name normalization in docs (#13210)

Other changes

  • Update Rust toolchain to 1.91 and MSRV to 1.89 (#16531)

Install uv 0.9.8

Install prebuilt binaries via shell script

curl --proto '=https' --tlsv1.2 -LsSf https://github.com/astral-sh/uv/releases/download/0.9.8/uv-installer.sh | sh

... (truncated)

Changelog

Sourced from astral-sh/uv's changelog.

0.9.8

Released on 2025-11-07.

Enhancements

  • Accept multiple packages in uv export (#16603)
  • Accept multiple packages in uv sync (#16543)
  • Add a uv cache size command (#16032)
  • Add prerelease guidance for build-system resolution failures (#16550)
  • Allow Python requests to include +gil to require a GIL-enabled interpreter (#16537)
  • Avoid pluralizing 'retry' for single value (#16535)
  • Enable first-class dependency exclusions (#16528)
  • Fix inclusive constraints on available package versions in resolver errors (#16629)
  • Improve uv init error for invalid directory names (#16554)
  • Show help on uv build -h (#16632)
  • Include the Python variant suffix in "Using Python ..." messages (#16536)
  • Log most recently modified file for cache-keys (#16338)
  • Update Docker builds to use nightly Rust toolchain with musl v1.2.5 (#16584)
  • Add GitHub attestations for uv release artifacts (#11357)

Configuration

  • Expose UV_NO_GROUP as an environment variable (#16529)
  • Add UV_NO_SOURCES as an environment variable (#15883)

Bug fixes

  • Allow --check and --locked to be used together in uv lock (#16538)
  • Allow for unnormalized names in the METADATA file (#16547) (#16548)
  • Fix missing value_type for default-groups in schema (#16575)
  • Respect multi-GPU outputs in nvidia-smi (#15460)
  • Fix DNS lookup errors in Docker containers (#8450)

Documentation

  • Fix typo in uv tool list doc (#16625)
  • Note uv pip list name normalization in docs (#13210)

Other changes

  • Update Rust toolchain to 1.91 and MSRV to 1.89 (#16531)
Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [astral-sh/uv](https://github.com/astral-sh/uv) from 0.9.7 to 0.9.8.
- [Release notes](https://github.com/astral-sh/uv/releases)
- [Changelog](https://github.com/astral-sh/uv/blob/main/CHANGELOG.md)
- [Commits](astral-sh/uv@0.9.7...0.9.8)

---
updated-dependencies:
- dependency-name: astral-sh/uv
  dependency-version: 0.9.8
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Nov 10, 2025
@dependabot dependabot bot requested a review from a team as a code owner November 10, 2025 04:45
@netlify
Copy link

netlify bot commented Nov 10, 2025

Deploy Preview for authentik-storybook canceled.

Name Link
🔨 Latest commit 87e72ad
🔍 Latest deploy log https://app.netlify.com/projects/authentik-storybook/deploys/69116dff8d631f0008bd159a

@netlify
Copy link

netlify bot commented Nov 10, 2025

Deploy Preview for authentik-docs ready!

Name Link
🔨 Latest commit 87e72ad
🔍 Latest deploy log https://app.netlify.com/projects/authentik-docs/deploys/69116dff3b414f0008a3a5c0
😎 Deploy Preview https://deploy-preview-18037--authentik-docs.netlify.app
📱 Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.

To edit notification comments on pull requests, go to your Netlify project configuration.

@codecov
Copy link

codecov bot commented Nov 10, 2025

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 92.88%. Comparing base (7068d4d) to head (87e72ad).
⚠️ Report is 5 commits behind head on main.
✅ All tests successful. No failed tests found.

Additional details and impacted files
@@            Coverage Diff             @@
##             main   #18037      +/-   ##
==========================================
+ Coverage   92.82%   92.88%   +0.06%     
==========================================
  Files         869      869              
  Lines       48040    48040              
==========================================
+ Hits        44591    44623      +32     
+ Misses       3449     3417      -32     
Flag Coverage Δ
e2e 45.28% <ø> (+0.48%) ⬆️
integration 23.13% <ø> (-0.06%) ⬇️
unit 91.08% <ø> (+<0.01%) ⬆️

Flags with carried forward coverage won't be shown. Click here to find out more.

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

@netlify
Copy link

netlify bot commented Nov 10, 2025

Deploy Preview for authentik-integrations canceled.

Name Link
🔨 Latest commit 87e72ad
🔍 Latest deploy log https://app.netlify.com/projects/authentik-integrations/deploys/69116dff8ac01f00087d9fdc

@BeryJu BeryJu merged commit 9625270 into main Nov 10, 2025
84 of 95 checks passed
@BeryJu BeryJu deleted the dependabot/docker/astral-sh/uv-0.9.8 branch November 10, 2025 13:41
@github-project-automation github-project-automation bot moved this from Todo to Done in authentik Core Nov 10, 2025
kensternberg-authentik added a commit that referenced this pull request Nov 10, 2025
* main: (42 commits)
  core, web: update translations (#17943)
  web: bump @types/node from 24.9.1 to 24.10.0 in /packages/prettier-config (#17949)
  core: bump library/nginx from `f547e3d` to `1beed3c` in /website (#17955)
  core: bump goauthentik.io/api/v3 from 3.2025120.2 to 3.2025120.3 (#17945)
  web: bump @types/node from 22.15.19 to 24.10.0 in /web (#17950)
  ci: bump docker/setup-qemu-action from 3.6.0 to 3.7.0 (#17999)
  lifecycle/aws: bump aws-cdk from 2.1031.1 to 2.1031.2 in /lifecycle/aws (#18014)
  core: bump golang.org/x/sync from 0.17.0 to 0.18.0 (#18033)
  core: bump astral-sh/uv from 0.9.7 to 0.9.8 (#18037)
  core: bump golang.org/x/oauth2 from 0.32.0 to 0.33.0 (#18034)
  core: bump axllent/mailpit from v1.27.10 to v1.27.11 in /tests/e2e (#18035)
  ci: bump golangci/golangci-lint-action from 8.0.0 to 9.0.0 (#18036)
  core: bump library/golang from `a13297b` to `27e1c92` (#18038)
  ci: fix migrate-from-stable for old versions (#18019)
  core: bump library/golang from 1.25.3-trixie to 1.25.4-trixie (#18000)
  website/docs: updates img-src csp (#18010)
  providers/saml: move sp binding location and default value (#17609)
  core: Add example invitation blueprint (#17661)
  root: settings.py: fix comment (#18006)
  core: bump google-auth-httplib2 from 0.2.0 to v0.2.1 (#17978)
  ...
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

Status: Done

Development

Successfully merging this pull request may close these issues.

1 participant