Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Sep 2, 2025

Bumps safety from 3.5.2 to 3.6.1.

Release notes

Sourced from safety's releases.

Version 3.6.1

What's Changed

  • bump: version 3.6.1b0 → 3.6.1 (f5e7262)
  • fix: Import rich_utils as a module and don't access as an attribute. (#780) (b0ea9c3)
  • docs: update min Python version required (#777) (42282d4)

Version 3.6.1b0

What's Changed

  • bump: version 3.6.0 → 3.6.1b0 (d50c580)
  • chore: relax psutil version constraints (#776) (a66193e)
  • chore: relax filelock version constraints (#775) (926c93f)
  • ci: introduce click main branch as a target to improve early integration (#752) (d87aa74)
  • fix: set custom user-agent header to all HTTP requests (#769) (4f09253)

Version 3.6.0

What's Changed

  • bump: version 3.6.0b0 → 3.6.0 (af75197)
  • chore: prepare for stable release (2f7df72)

Version 3.6.0b0

What's Changed

  • bump: version 3.5.2 → 3.6.0b0 (dd6c81b)
  • fix: issues with encoding in all the outputs (#757) (293bccb)
  • fix: restore missing codebase name prompt in scan command (#771) (0abd016)
  • fix: issues with click 8.2.0 (#748) (d5be19c)
  • fix: codebase init --link-to help text (#770) (99971f8)
  • feat: add Windows venv wrappers support (#768) (0a3d05a)
  • feat: add codebase init command (#756) (bd1fade)
  • test: use tomllib in tests if available (#765) (f1e3d4d)
  • fix: test isolation for firewall tests on unix-like systems (#767) (362f6e0)
Changelog

Sourced from safety's changelog.

3.6.1 (2025-09-01)

Fix

  • Import rich_utils as a module and don't access as an attribute. (#780)

3.6.1b0 (2025-08-25)

Fix

  • set custom user-agent header to all HTTP requests (#769)

3.6.0 (2025-07-09)

3.6.0b0 (2025-07-09)

Feat

  • add Windows venv wrappers support (#768)
  • add codebase init command (#756)

Fix

  • issues with encoding in all the outputs (#757)
  • restore missing codebase name prompt in scan command (#771)
  • issues with click 8.2.0 (#748)
  • codebase init --link-to help text (#770)
  • test isolation for firewall tests on unix-like systems (#767)
Commits
  • f5e7262 bump: version 3.6.1b0 → 3.6.1
  • b0ea9c3 fix: Import rich_utils as a module and don't access as an attribute. (#780)
  • 42282d4 docs: update min Python version required (#777)
  • d50c580 bump: version 3.6.0 → 3.6.1b0
  • a66193e chore: relax psutil version constraints (#776)
  • 926c93f chore: relax filelock version constraints (#775)
  • d87aa74 ci: introduce click main branch as a target to improve early integration (#752)
  • 4f09253 fix: set custom user-agent header to all HTTP requests (#769)
  • af75197 bump: version 3.6.0b0 → 3.6.0
  • 2f7df72 chore: prepare for stable release
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [safety](https://github.com/pyupio/safety) from 3.5.2 to 3.6.1.
- [Release notes](https://github.com/pyupio/safety/releases)
- [Changelog](https://github.com/pyupio/safety/blob/main/CHANGELOG.md)
- [Commits](pyupio/safety@3.5.2...3.6.1)

---
updated-dependencies:
- dependency-name: safety
  dependency-version: 3.6.1
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels Sep 2, 2025
@codecov
Copy link

codecov bot commented Sep 2, 2025

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 92.05%. Comparing base (d941373) to head (83f2729).

Additional details and impacted files
@@           Coverage Diff           @@
##           master     #803   +/-   ##
=======================================
  Coverage   92.05%   92.05%           
=======================================
  Files          34       34           
  Lines         881      881           
  Branches      101      101           
=======================================
  Hits          811      811           
  Misses         48       48           
  Partials       22       22           

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Sep 25, 2025

Superseded by #825.

@dependabot dependabot bot closed this Sep 25, 2025
@dependabot dependabot bot deleted the dependabot/pip/safety-3.6.1 branch September 25, 2025 02:03
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python Pull requests that update Python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants