Skip to content

Commit 3488d60

Browse files
RSPY-630 - Fix/bot dependency updates (#1060)
* build(deps): bump fastapi from 0.115.9 to 0.115.11 in /services/frontend Bumps [fastapi](https://github.com/fastapi/fastapi) from 0.115.9 to 0.115.11. - [Release notes](https://github.com/fastapi/fastapi/releases) - [Commits](fastapi/fastapi@0.115.9...0.115.11) --- updated-dependencies: - dependency-name: fastapi dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> * build(deps-dev): bump pytest from 8.3.4 to 8.3.5 in /services/frontend Bumps [pytest](https://github.com/pytest-dev/pytest) from 8.3.4 to 8.3.5. - [Release notes](https://github.com/pytest-dev/pytest/releases) - [Changelog](https://github.com/pytest-dev/pytest/blob/main/CHANGELOG.rst) - [Commits](pytest-dev/pytest@8.3.4...8.3.5) --- updated-dependencies: - dependency-name: pytest dependency-type: direct:development update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> * build(deps-dev): bump pytest from 8.3.4 to 8.3.5 in /services/cadip Bumps [pytest](https://github.com/pytest-dev/pytest) from 8.3.4 to 8.3.5. - [Release notes](https://github.com/pytest-dev/pytest/releases) - [Changelog](https://github.com/pytest-dev/pytest/blob/main/CHANGELOG.rst) - [Commits](pytest-dev/pytest@8.3.4...8.3.5) --- updated-dependencies: - dependency-name: pytest dependency-type: direct:development update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> * build(deps-dev): bump pytest from 8.3.4 to 8.3.5 in /services/catalog Bumps [pytest](https://github.com/pytest-dev/pytest) from 8.3.4 to 8.3.5. - [Release notes](https://github.com/pytest-dev/pytest/releases) - [Changelog](https://github.com/pytest-dev/pytest/blob/main/CHANGELOG.rst) - [Commits](pytest-dev/pytest@8.3.4...8.3.5) --- updated-dependencies: - dependency-name: pytest dependency-type: direct:development update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> * build(deps-dev): bump moto from 5.1.0 to 5.1.1 in /services/catalog Bumps [moto](https://github.com/getmoto/moto) from 5.1.0 to 5.1.1. - [Release notes](https://github.com/getmoto/moto/releases) - [Changelog](https://github.com/getmoto/moto/blob/master/CHANGELOG.md) - [Commits](getmoto/moto@5.1.0...5.1.1) --- updated-dependencies: - dependency-name: moto dependency-type: direct:development update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> * build(deps-dev): bump sphinx from 8.2.1 to 8.2.3 Bumps [sphinx](https://github.com/sphinx-doc/sphinx) from 8.2.1 to 8.2.3. - [Release notes](https://github.com/sphinx-doc/sphinx/releases) - [Changelog](https://github.com/sphinx-doc/sphinx/blob/master/CHANGES.rst) - [Commits](sphinx-doc/sphinx@v8.2.1...v8.2.3) --- updated-dependencies: - dependency-name: sphinx dependency-type: direct:development update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> * build(deps-dev): bump moto from 5.1.0 to 5.1.1 Bumps [moto](https://github.com/getmoto/moto) from 5.1.0 to 5.1.1. - [Release notes](https://github.com/getmoto/moto/releases) - [Changelog](https://github.com/getmoto/moto/blob/master/CHANGELOG.md) - [Commits](getmoto/moto@5.1.0...5.1.1) --- updated-dependencies: - dependency-name: moto dependency-type: direct:development update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> * build(deps-dev): bump pytest from 8.3.4 to 8.3.5 Bumps [pytest](https://github.com/pytest-dev/pytest) from 8.3.4 to 8.3.5. - [Release notes](https://github.com/pytest-dev/pytest/releases) - [Changelog](https://github.com/pytest-dev/pytest/blob/main/CHANGELOG.rst) - [Commits](pytest-dev/pytest@8.3.4...8.3.5) --- updated-dependencies: - dependency-name: pytest dependency-type: direct:development update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> * build(deps-dev): bump pytest from 8.3.4 to 8.3.5 in /services/adgs Bumps [pytest](https://github.com/pytest-dev/pytest) from 8.3.4 to 8.3.5. - [Release notes](https://github.com/pytest-dev/pytest/releases) - [Changelog](https://github.com/pytest-dev/pytest/blob/main/CHANGELOG.rst) - [Commits](pytest-dev/pytest@8.3.4...8.3.5) --- updated-dependencies: - dependency-name: pytest dependency-type: direct:development update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> * build(deps): bump fastapi from 0.115.9 to 0.115.11 in /services/common Bumps [fastapi](https://github.com/fastapi/fastapi) from 0.115.9 to 0.115.11. - [Release notes](https://github.com/fastapi/fastapi/releases) - [Commits](fastapi/fastapi@0.115.9...0.115.11) --- updated-dependencies: - dependency-name: fastapi dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> * build(deps-dev): bump pytest from 8.3.4 to 8.3.5 in /services/common Bumps [pytest](https://github.com/pytest-dev/pytest) from 8.3.4 to 8.3.5. - [Release notes](https://github.com/pytest-dev/pytest/releases) - [Changelog](https://github.com/pytest-dev/pytest/blob/main/CHANGELOG.rst) - [Commits](pytest-dev/pytest@8.3.4...8.3.5) --- updated-dependencies: - dependency-name: pytest dependency-type: direct:development update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> * build(deps): bump authlib from 1.5.0 to 1.5.1 in /services/common Bumps [authlib](https://github.com/lepture/authlib) from 1.5.0 to 1.5.1. - [Release notes](https://github.com/lepture/authlib/releases) - [Changelog](https://github.com/lepture/authlib/blob/main/docs/changelog.rst) - [Commits](authlib/authlib@v1.5.0...v1.5.1) --- updated-dependencies: - dependency-name: authlib dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> * build(deps): bump fastapi from 0.115.9 to 0.115.11 in /services/staging Bumps [fastapi](https://github.com/fastapi/fastapi) from 0.115.9 to 0.115.11. - [Release notes](https://github.com/fastapi/fastapi/releases) - [Commits](fastapi/fastapi@0.115.9...0.115.11) --- updated-dependencies: - dependency-name: fastapi dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> * build(deps): bump authlib from 1.5.0 to 1.5.1 in /services/staging Bumps [authlib](https://github.com/lepture/authlib) from 1.5.0 to 1.5.1. - [Release notes](https://github.com/lepture/authlib/releases) - [Changelog](https://github.com/lepture/authlib/blob/main/docs/changelog.rst) - [Commits](authlib/authlib@v1.5.0...v1.5.1) --- updated-dependencies: - dependency-name: authlib dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> * build(deps-dev): bump pytest from 8.3.4 to 8.3.5 in /services/staging Bumps [pytest](https://github.com/pytest-dev/pytest) from 8.3.4 to 8.3.5. - [Release notes](https://github.com/pytest-dev/pytest/releases) - [Changelog](https://github.com/pytest-dev/pytest/blob/main/CHANGELOG.rst) - [Commits](pytest-dev/pytest@8.3.4...8.3.5) --- updated-dependencies: - dependency-name: pytest dependency-type: direct:development update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> * build(deps-dev): bump types-requests Bumps [types-requests](https://github.com/python/typeshed) from 2.32.0.20241016 to 2.32.0.20250306. - [Commits](https://github.com/python/typeshed/commits) --- updated-dependencies: - dependency-name: types-requests dependency-type: direct:development update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> * Bump botocore from 1.37.3 to 1.37.9 in /services/common Bumps [botocore](https://github.com/boto/botocore) from 1.37.3 to 1.37.9. - [Commits](boto/botocore@1.37.3...1.37.9) --- updated-dependencies: - dependency-name: botocore dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> * Bump botocore from 1.37.3 to 1.37.9 in /services/staging Bumps [botocore](https://github.com/boto/botocore) from 1.37.3 to 1.37.9. - [Commits](boto/botocore@1.37.3...1.37.9) --- updated-dependencies: - dependency-name: botocore dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com> * merge: poetry.lock files from origin/dependabot/pip/moto-5.1.1 * merge: poetry.lock files from origin/dependabot/pip/pytest-8.3.5 * merge: poetry.lock files from origin/dependabot/pip/services/adgs/pytest-8.3.5 * merge: poetry.lock files from origin/dependabot/pip/services/cadip/pytest-8.3.5 * merge: poetry.lock files from origin/dependabot/pip/services/catalog/moto-5.1.1 * merge: poetry.lock files from origin/dependabot/pip/services/catalog/pytest-8.3.5 * merge: poetry.lock files from origin/dependabot/pip/services/common/authlib-1.5.1 * merge: poetry.lock files from origin/dependabot/pip/services/common/botocore-1.37.9 * merge: poetry.lock files from origin/dependabot/pip/services/common/fastapi-0.115.11 * merge: poetry.lock files from origin/dependabot/pip/services/common/pytest-8.3.5 * merge: poetry.lock files from origin/dependabot/pip/services/frontend/fastapi-0.115.11 * merge: poetry.lock files from origin/dependabot/pip/services/frontend/pytest-8.3.5 * merge: poetry.lock files from origin/dependabot/pip/services/staging/authlib-1.5.1 * merge: poetry.lock files from origin/dependabot/pip/services/staging/botocore-1.37.9 * merge: poetry.lock files from origin/dependabot/pip/services/staging/fastapi-0.115.11 * merge: poetry.lock files from origin/dependabot/pip/services/staging/pytest-8.3.5 * merge: poetry.lock files from origin/dependabot/pip/sphinx-8.2.3 * merge: poetry.lock files from origin/dependabot/pip/types-requests-2.32.0.20250306 * merge: rebuild the poetry.lock files * Manual stac-fastapi updates * Update pytest against latest stac-fastapi behaviour * Revert to Starlette 0.45.3 because of encode/starlette#2893 --------- Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
1 parent 0a03f42 commit 3488d60

13 files changed

+627
-705
lines changed

docs/poetry.lock

Lines changed: 25 additions & 110 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

poetry.lock

Lines changed: 119 additions & 113 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

pyproject.toml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -62,7 +62,7 @@ optional = true
6262

6363
# All the dev dependencies are set here so they can be used by the CI.
6464
[tool.poetry.group.dev.dependencies]
65-
pytest = "^8.3.3"
65+
pytest = "^8.3.5"
6666
pytest-asyncio = "^0.25.3"
6767
pytest-cov = "^6.0.0"
6868
pytest-docker = "^3.2.0"
@@ -72,17 +72,17 @@ pytest-mock = "^3.14.0"
7272
black = "^25.1.0"
7373
mypy = "^1.15.0"
7474
pre-commit = "^4.1.0"
75-
types-requests = "^2.32.0.20241016"
75+
types-requests = "^2.32.0.20250306"
7676
flake8 = "^7.1.2"
7777
bandit = "^1.8.3"
7878
safety = "^3.3.0"
7979
pylint = "^3.3.0"
8080
flake8-pyproject = "^1.2.3"
8181
httpx = "^0.27.2"
82-
moto = "^5.1.0"
82+
moto = "^5.1.1"
8383
flask = "^3.0.3"
8484
flask-cors = "^5.0.1"
85-
sphinx = "^8.2.1"
85+
sphinx = "^8.2.3"
8686
sphinx-rtd-theme = "^3.0.1"
8787
orjson = [ # we need the same markers and versions as in eodag: https://github.com/CS-SI/eodag/blob/develop/setup.cfg
8888
{version = "<3.10.0", markers = "python_version>='3.12' and platform_system=='Windows'"},

services/adgs/poetry.lock

Lines changed: 90 additions & 85 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

services/cadip/poetry.lock

Lines changed: 90 additions & 85 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

services/catalog/poetry.lock

Lines changed: 96 additions & 91 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

services/catalog/tests/test_authentication_catalog.py

Lines changed: 6 additions & 31 deletions
Original file line numberDiff line numberDiff line change
@@ -187,18 +187,21 @@ async def test_authentication_and_contents(mocker, httpx_mock: HTTPXMock, client
187187
{
188188
"rel": "self",
189189
"type": "application/json",
190+
"title": "This document",
190191
"href": "http://testserver/catalog/",
191192
**AUTHENT_REF,
192193
},
193194
{
194195
"rel": "root",
195196
"type": "application/json",
197+
"title": "Root",
196198
"href": "http://testserver/catalog/",
197199
**AUTHENT_REF,
198200
},
199201
{
200202
"rel": "data",
201203
"type": "application/json",
204+
"title": "Collections available for this Catalog",
202205
"href": "http://testserver/catalog/collections",
203206
**AUTHENT_REF,
204207
},
@@ -212,55 +215,27 @@ async def test_authentication_and_contents(mocker, httpx_mock: HTTPXMock, client
212215
{
213216
"rel": "search",
214217
"type": "application/geo+json",
215-
"title": "STAC search",
218+
"title": "STAC search [GET]",
216219
"href": "http://testserver/catalog/search",
217220
"method": "GET",
218221
**AUTHENT_REF,
219222
},
220223
{
221224
"rel": "search",
222225
"type": "application/geo+json",
223-
"title": "STAC search",
226+
"title": "STAC search [POST]",
224227
"href": "http://testserver/catalog/search",
225228
"method": "POST",
226229
**AUTHENT_REF,
227230
},
228231
{
229232
"rel": "http://www.opengis.net/def/rel/ogc/1.0/queryables",
230233
"type": "application/schema+json",
231-
"title": "Queryables",
234+
"title": "Queryables available for this Catalog",
232235
"href": "http://testserver/catalog/queryables",
233236
"method": "GET",
234237
**AUTHENT_REF,
235238
},
236-
{
237-
"rel": "child",
238-
"type": "application/json",
239-
"title": "toto_S1_L1",
240-
"href": "http://testserver/catalog/collections/toto:S1_L1",
241-
**AUTHENT_REF,
242-
},
243-
{
244-
"rel": "child",
245-
"type": "application/json",
246-
"title": "toto_S2_L3",
247-
"href": "http://testserver/catalog/collections/toto:S2_L3",
248-
**AUTHENT_REF,
249-
},
250-
{
251-
"rel": "child",
252-
"type": "application/json",
253-
"title": "titi_S2_L1",
254-
"href": "http://testserver/catalog/collections/titi:S2_L1",
255-
**AUTHENT_REF,
256-
},
257-
{
258-
"rel": "child",
259-
"type": "application/json",
260-
"title": "pyteam_S1_L1",
261-
"href": "http://testserver/catalog/collections/pyteam:S1_L1",
262-
**AUTHENT_REF,
263-
},
264239
{
265240
"rel": "service-desc",
266241
"type": "application/vnd.oai.openapi+json;version=3.0",

services/common/poetry.lock

Lines changed: 88 additions & 84 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

services/common/pyproject.toml

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -37,7 +37,8 @@ include = [
3737

3838
[tool.poetry.dependencies]
3939
python = "^3.11"
40-
fastapi = "^0.115.0"
40+
fastapi = "^0.115.11"
41+
starlette = ">=0.45.3,<0.46"
4142
boto3 = ">=1.35.40"
4243
botocore = ">=1.35.99"
4344
sqlalchemy = "^2.0.35"
@@ -68,7 +69,7 @@ authlib = "^1.5.0"
6869
python-keycloak = ">=5.3.1,<6.0"
6970
itsdangerous = "^2.2.0"
7071
pyjwt = {extras = ["crypto"], version = "^2.9.0"}
71-
stac-fastapi-pgstac = "^4.0.1"
72+
stac-fastapi-pgstac = "^5.0.0"
7273

7374
[tool.poetry.group.dev]
7475
optional = true

services/frontend/poetry.lock

Lines changed: 14 additions & 14 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

services/frontend/pyproject.toml

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -38,7 +38,8 @@ include = [
3838

3939
[tool.poetry.dependencies]
4040
python = "^3.11"
41-
fastapi = "^0.115.0"
41+
fastapi = "^0.115.11"
42+
starlette = ">=0.45.3,<0.46"
4243
uvicorn = ">=0.31,<0.35"
4344
requests = "^2.32.3"
4445
attrs = ">=24.2,<26.0"

0 commit comments

Comments
 (0)