David Lord
|
11550f9df9
|
Merge branch '3.1.x'
|
2024-05-05 16:45:28 -07:00 |
|
David Lord
|
6e7b0face6
|
release version 3.1.4 (#1974)
|
2024-05-05 16:42:40 -07:00 |
|
David Lord
|
dd4a8b5466
|
release version 3.1.4
|
2024-05-05 16:37:30 -07:00 |
|
David Lord
|
0668239dc6
|
Merge pull request from GHSA-h75v-3vvj-5mfj
disallow invalid characters in keys to xmlattr filter
|
2024-05-05 16:35:24 -07:00 |
|
David Lord
|
bbd5bcee7b
|
Merge branch '3.1.x'
|
2024-05-02 09:18:48 -07:00 |
|
David Lord
|
d655030770
|
disallow invalid characters in keys to xmlattr filter
|
2024-05-02 09:14:00 -07:00 |
|
David Lord
|
a7863ba9d3
|
add ghsa links
|
2024-05-02 08:42:59 -07:00 |
|
David Lord
|
b5c98e78c2
|
start version 3.1.4
|
2024-05-02 08:41:50 -07:00 |
|
David Lord
|
c6dd4bac24
|
Bump the python-requirements group in /requirements with 5 updates (#1973)
|
2024-05-01 06:43:12 -07:00 |
|
David Lord
|
6fcf463011
|
fix mypy findings
|
2024-05-01 06:41:20 -07:00 |
|
David Lord
|
27ea85b001
|
Bump the github-actions group with 2 updates (#1972)
|
2024-05-01 05:54:56 -07:00 |
|
dependabot[bot]
|
2e8bbca767
|
Bump the python-requirements group in /requirements with 5 updates
Bumps the python-requirements group in /requirements with 5 updates:
| Package | From | To |
| --- | --- | --- |
| [pytest](https://github.com/pytest-dev/pytest) | `8.1.1` | `8.2.0` |
| [pallets-sphinx-themes](https://github.com/pallets/pallets-sphinx-themes) | `2.1.2` | `2.1.3` |
| [mypy](https://github.com/python/mypy) | `1.9.0` | `1.10.0` |
| [pyright](https://github.com/RobertCraigie/pyright-python) | `1.1.359` | `1.1.360` |
| [tox](https://github.com/tox-dev/tox) | `4.14.2` | `4.15.0` |
Updates `pytest` from 8.1.1 to 8.2.0
- [Release notes](https://github.com/pytest-dev/pytest/releases)
- [Changelog](https://github.com/pytest-dev/pytest/blob/main/CHANGELOG.rst)
- [Commits](https://github.com/pytest-dev/pytest/compare/8.1.1...8.2.0)
Updates `pallets-sphinx-themes` from 2.1.2 to 2.1.3
- [Release notes](https://github.com/pallets/pallets-sphinx-themes/releases)
- [Changelog](https://github.com/pallets/pallets-sphinx-themes/blob/main/CHANGES.rst)
- [Commits](https://github.com/pallets/pallets-sphinx-themes/compare/2.1.2...2.1.3)
Updates `mypy` from 1.9.0 to 1.10.0
- [Changelog](https://github.com/python/mypy/blob/master/CHANGELOG.md)
- [Commits](https://github.com/python/mypy/compare/1.9.0...v1.10.0)
Updates `pyright` from 1.1.359 to 1.1.360
- [Release notes](https://github.com/RobertCraigie/pyright-python/releases)
- [Commits](https://github.com/RobertCraigie/pyright-python/compare/v1.1.359...v1.1.360)
Updates `tox` from 4.14.2 to 4.15.0
- [Release notes](https://github.com/tox-dev/tox/releases)
- [Changelog](https://github.com/tox-dev/tox/blob/main/docs/changelog.rst)
- [Commits](https://github.com/tox-dev/tox/compare/4.14.2...4.15.0)
---
updated-dependencies:
- dependency-name: pytest
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: python-requirements
- dependency-name: pallets-sphinx-themes
dependency-type: direct:production
update-type: version-update:semver-patch
dependency-group: python-requirements
- dependency-name: mypy
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: python-requirements
- dependency-name: pyright
dependency-type: direct:production
update-type: version-update:semver-patch
dependency-group: python-requirements
- dependency-name: tox
dependency-type: direct:development
update-type: version-update:semver-minor
dependency-group: python-requirements
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-05-01 07:30:56 +00:00 |
|
dependabot[bot]
|
4a7a153a48
|
Bump the github-actions group with 2 updates
Bumps the github-actions group with 2 updates: [actions/checkout](https://github.com/actions/checkout) and [actions/download-artifact](https://github.com/actions/download-artifact).
Updates `actions/checkout` from 4.1.3 to 4.1.4
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](1d96c772d1...0ad4b8fada)
Updates `actions/download-artifact` from 4.1.6 to 4.1.7
- [Release notes](https://github.com/actions/download-artifact/releases)
- [Commits](9c19ed7fe5...65a9edc588)
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-patch
dependency-group: github-actions
- dependency-name: actions/download-artifact
dependency-type: direct:production
update-type: version-update:semver-patch
dependency-group: github-actions
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-05-01 07:10:08 +00:00 |
|
David Lord
|
2a17038fca
|
Revert "upload/download-artifact v4"
This reverts commit c8aca74587.
|
2024-04-23 16:22:41 -07:00 |
|
David Lord
|
c8aca74587
|
upload/download-artifact v4
|
2024-04-23 15:48:42 -07:00 |
|
David Lord
|
9b33637538
|
Bump the github-actions group across 1 directory with 4 updates (#1970)
|
2024-04-23 12:35:10 -07:00 |
|
dependabot[bot]
|
2e3e3774a9
|
Bump the github-actions group across 1 directory with 4 updates
Bumps the github-actions group with 4 updates in the / directory: [actions/checkout](https://github.com/actions/checkout), [actions/upload-artifact](https://github.com/actions/upload-artifact), [slsa-framework/slsa-github-generator](https://github.com/slsa-framework/slsa-github-generator) and [actions/download-artifact](https://github.com/actions/download-artifact).
Updates `actions/checkout` from 4.1.2 to 4.1.3
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](9bb56186c3...1d96c772d1)
Updates `actions/upload-artifact` from 3.1.3 to 4.3.3
- [Release notes](https://github.com/actions/upload-artifact/releases)
- [Commits](a8a3f3ad30...65462800fd)
Updates `slsa-framework/slsa-github-generator` from 1.10.0 to 2.0.0
- [Release notes](https://github.com/slsa-framework/slsa-github-generator/releases)
- [Changelog](https://github.com/slsa-framework/slsa-github-generator/blob/main/CHANGELOG.md)
- [Commits](https://github.com/slsa-framework/slsa-github-generator/compare/v1.10.0...v2.0.0)
Updates `actions/download-artifact` from 3.0.2 to 4.1.6
- [Release notes](https://github.com/actions/download-artifact/releases)
- [Commits](9bc31d5ccc...9c19ed7fe5)
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-patch
dependency-group: github-actions
- dependency-name: actions/upload-artifact
dependency-type: direct:production
update-type: version-update:semver-major
dependency-group: github-actions
- dependency-name: slsa-framework/slsa-github-generator
dependency-type: direct:production
update-type: version-update:semver-major
dependency-group: github-actions
- dependency-name: actions/download-artifact
dependency-type: direct:production
update-type: version-update:semver-major
dependency-group: github-actions
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2024-04-23 19:33:07 +00:00 |
|
David Lord
|
6d6a6c2546
|
unignore upload/download-artifact
|
2024-04-23 12:32:15 -07:00 |
|
David Lord
|
a2438d20b0
|
update dev dependencies
|
2024-04-23 12:23:07 -07:00 |
|
David Lord
|
fcd3d3bbf3
|
drop support for Python 3.7
|
2024-04-23 12:22:59 -07:00 |
|
David Lord
|
de6131232a
|
Merge branch '3.1.x'
|
2024-04-23 12:07:24 -07:00 |
|
David Lord
|
da3a9f0b80
|
update project files (#1968)
|
2024-04-23 10:20:59 -07:00 |
|
David Lord
|
0ee5eb41d1
|
satisfy formatter, linter, and strict mypy
|
2024-04-23 09:29:26 -07:00 |
|
David Lord
|
20477c6357
|
update project files (#5457)
* update pre-commit hooks
* add devcontainer
* show url in publish environment
* update actions versions
* separate typing job
* use dependabot grouped updates
ignore upload/download-artifact until slsa updates
* use sphinx.ext.extlinks instead of sphinx-issues
* update editorconfig
* update gitignore
* update .readthedocs.yaml
* license is txt, readme is md
* use pyproject.toml and flit_core instead of setuptools
add typed classifier
add pyright config
simplify urls
* tox builds docs in place
* add tox env to update all dev dependencies
* update issue and pr templates
* simplify matrix
|
2024-04-23 09:28:57 -07:00 |
|
David Lord
|
e491223739
|
update pyyaml dev dependency
|
2024-04-22 11:08:14 -07:00 |
|
David Lord
|
3fd91e4d11
|
Merge branch '3.1.x'
|
2024-01-10 15:22:02 -08:00 |
|
David Lord
|
36f98854c7
|
fix pr link
|
2024-01-10 15:17:32 -08:00 |
|
David Lord
|
a0e864ec0f
|
release version 3.1.3 (#1926)
|
2024-01-10 15:12:50 -08:00 |
|
David Lord
|
d9de4bb215
|
release version 3.1.3
|
2024-01-10 15:08:43 -08:00 |
|
David Lord
|
50124e1656
|
skip test pypi
|
2024-01-10 15:08:33 -08:00 |
|
David Lord
|
9ea7222ef3
|
use trusted publishing
|
2024-01-10 15:01:45 -08:00 |
|
David Lord
|
da703f7aae
|
use trusted publishing
|
2024-01-10 14:53:37 -08:00 |
|
David Lord
|
bce1746925
|
use trusted publishing
|
2024-01-10 14:43:52 -08:00 |
|
David Lord
|
7f8fb54782
|
use trusted publishing
|
2024-01-10 14:37:08 -08:00 |
|
David Lord
|
7277d8068b
|
update pre-commit hooks
|
2024-01-10 14:33:07 -08:00 |
|
David Lord
|
5c8a105224
|
Make nested-trans-block exceptions nicer (#1918)
|
2024-01-10 14:28:47 -08:00 |
|
Aarni Koskela
|
19a55db3b4
|
Make nested-trans-block exceptions nicer
|
2024-01-10 14:27:09 -08:00 |
|
David Lord
|
716795349a
|
Merge pull request from GHSA-h5c8-rqwp-cp95
Raise an exception when spaces are used in HTML attribute keys generated by xmlattr
|
2024-01-10 14:07:26 -08:00 |
|
Calum Hutton
|
7dd3680e6e
|
xmlattr filter disallows keys with spaces
|
2024-01-10 14:01:13 -08:00 |
|
David Lord
|
d594969d72
|
Bump slsa-framework/slsa-github-generator from 1.7.0 to 1.9.0 (#1885)
|
2023-09-06 08:59:20 -07:00 |
|
David Lord
|
ec22f25312
|
Bump pypa/gh-action-pypi-publish from 1.8.8 to 1.8.10 (#1884)
|
2023-09-06 08:59:11 -07:00 |
|
David Lord
|
21fa43ca01
|
Bump actions/checkout from 3.5.3 to 3.6.0 (#1883)
|
2023-09-06 08:59:00 -07:00 |
|
dependabot[bot]
|
938e7ca5bb
|
Bump slsa-framework/slsa-github-generator from 1.7.0 to 1.9.0
Bumps [slsa-framework/slsa-github-generator](https://github.com/slsa-framework/slsa-github-generator) from 1.7.0 to 1.9.0.
- [Release notes](https://github.com/slsa-framework/slsa-github-generator/releases)
- [Changelog](https://github.com/slsa-framework/slsa-github-generator/blob/main/CHANGELOG.md)
- [Commits](https://github.com/slsa-framework/slsa-github-generator/compare/v1.7.0...v1.9.0)
---
updated-dependencies:
- dependency-name: slsa-framework/slsa-github-generator
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-09-01 16:03:13 +00:00 |
|
dependabot[bot]
|
f0685845e1
|
Bump pypa/gh-action-pypi-publish from 1.8.8 to 1.8.10
Bumps [pypa/gh-action-pypi-publish](https://github.com/pypa/gh-action-pypi-publish) from 1.8.8 to 1.8.10.
- [Release notes](https://github.com/pypa/gh-action-pypi-publish/releases)
- [Commits](f8c70e705f...b7f401de30)
---
updated-dependencies:
- dependency-name: pypa/gh-action-pypi-publish
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-09-01 16:03:08 +00:00 |
|
dependabot[bot]
|
fcafd5087b
|
Bump actions/checkout from 3.5.3 to 3.6.0
Bumps [actions/checkout](https://github.com/actions/checkout) from 3.5.3 to 3.6.0.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](c85c95e3d7...f43a0e5ff2)
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-09-01 16:03:03 +00:00 |
|
David Lord
|
86f28a9df0
|
Bump pypa/gh-action-pypi-publish from 1.8.7 to 1.8.8 (#1877)
|
2023-08-01 09:50:36 -07:00 |
|
David Lord
|
f272b6d8b6
|
Bump actions/setup-python from 4.6.1 to 4.7.0 (#1876)
|
2023-08-01 09:50:28 -07:00 |
|
dependabot[bot]
|
9db787b566
|
Bump pypa/gh-action-pypi-publish from 1.8.7 to 1.8.8
Bumps [pypa/gh-action-pypi-publish](https://github.com/pypa/gh-action-pypi-publish) from 1.8.7 to 1.8.8.
- [Release notes](https://github.com/pypa/gh-action-pypi-publish/releases)
- [Commits](f5622bde02...f8c70e705f)
---
updated-dependencies:
- dependency-name: pypa/gh-action-pypi-publish
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-08-01 16:43:19 +00:00 |
|
dependabot[bot]
|
f575dc7385
|
Bump actions/setup-python from 4.6.1 to 4.7.0
Bumps [actions/setup-python](https://github.com/actions/setup-python) from 4.6.1 to 4.7.0.
- [Release notes](https://github.com/actions/setup-python/releases)
- [Commits](bd6b4b6205...61a6322f88)
---
updated-dependencies:
- dependency-name: actions/setup-python
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-08-01 16:43:15 +00:00 |
|
David Lord
|
d84a1743e4
|
[pre-commit.ci] pre-commit autoupdate (#1875)
|
2023-08-01 09:17:50 -07:00 |
|