Skip to content

Conversation

@dependabot
Copy link

@dependabot dependabot bot commented on behalf of github Mar 5, 2021

Bumps pip from 19.3.1 to 21.0.1.

Changelog

Sourced from pip's changelog.

21.0.1 (2021-01-30)

Bug Fixes

  • commands: debug: Use packaging.version.parse to compare between versions. ([#9461](https://github.com/pypa/pip/issues/9461) <https://github.com/pypa/pip/issues/9461>_)
  • New resolver: Download and prepare a distribution only at the last possible moment to avoid unnecessary network access when the same version is already installed locally. ([#9516](https://github.com/pypa/pip/issues/9516) <https://github.com/pypa/pip/issues/9516>_)

Vendored Libraries

  • Upgrade packaging to 20.9

21.0 (2021-01-23)

Deprecations and Removals

  • Drop support for Python 2. ([#6148](https://github.com/pypa/pip/issues/6148) <https://github.com/pypa/pip/issues/6148>_)
  • Remove support for legacy wheel cache entries that were created with pip versions older than 20.0. ([#7502](https://github.com/pypa/pip/issues/7502) <https://github.com/pypa/pip/issues/7502>_)
  • Remove support for VCS pseudo URLs editable requirements. It was emitting deprecation warning since version 20.0. ([#7554](https://github.com/pypa/pip/issues/7554) <https://github.com/pypa/pip/issues/7554>_)
  • Modernise the codebase after Python 2. ([#8802](https://github.com/pypa/pip/issues/8802) <https://github.com/pypa/pip/issues/8802>_)
  • Drop support for Python 3.5. ([#9189](https://github.com/pypa/pip/issues/9189) <https://github.com/pypa/pip/issues/9189>_)
  • Remove the VCS export feature that was used only with editable VCS requirements and had correctness issues. ([#9338](https://github.com/pypa/pip/issues/9338) <https://github.com/pypa/pip/issues/9338>_)

Features

  • Add --ignore-requires-python support to pip download. ([#1884](https://github.com/pypa/pip/issues/1884) <https://github.com/pypa/pip/issues/1884>_)
  • New resolver: Error message shown when a wheel contains inconsistent metadata is made more helpful by including both values from the file name and internal metadata. ([#9186](https://github.com/pypa/pip/issues/9186) <https://github.com/pypa/pip/issues/9186>_)

Bug Fixes

  • Fix a regression that made pip wheel do a VCS export instead of a VCS clone for editable requirements. This broke VCS requirements that need the VCS information to build correctly. ([#9273](https://github.com/pypa/pip/issues/9273) <https://github.com/pypa/pip/issues/9273>_)
  • Fix pip download of editable VCS requirements that need VCS information to build correctly. ([#9337](https://github.com/pypa/pip/issues/9337) <https://github.com/pypa/pip/issues/9337>_)

... (truncated)

Commits
  • 22c6efd Bump for release
  • a085068 Update AUTHORS.txt
  • 00fb5a0 Merge pull request #9533 from henryiii/chore/packaging-20.9
  • c7ace4d Upgrade packaging to 20.9
  • d1aa391 Merge pull request #9497 from hugovk/update-docs-tense
  • 55d2969 Merge pull request #9522 from uranusjr/no-dup-fetch
  • 7d43ec5 More permissive output check
  • 2e70ec0 Create the candidate lazily to avoid download
  • 68a86c5 Failing test for repeated fetch
  • fa0ee31 Merge pull request #9504 from sbidoul/improve-pre-commit-sbi
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Mar 5, 2021
@dependabot dependabot bot force-pushed the dependabot/pip/requirements/pip-21.0.1 branch 2 times, most recently from 05f36d5 to e18d382 Compare March 12, 2021 00:39
@dependabot dependabot bot force-pushed the dependabot/pip/requirements/pip-21.0.1 branch 6 times, most recently from 77aae86 to e1d6f04 Compare April 1, 2021 18:47
@dependabot dependabot bot force-pushed the dependabot/pip/requirements/pip-21.0.1 branch 2 times, most recently from b74cb21 to b45044e Compare April 14, 2021 00:28
@dependabot dependabot bot force-pushed the dependabot/pip/requirements/pip-21.0.1 branch from b45044e to 5d605d0 Compare April 24, 2021 00:03
Bumps [pip](https://github.com/pypa/pip) from 19.3.1 to 21.0.1.
- [Release notes](https://github.com/pypa/pip/releases)
- [Changelog](https://github.com/pypa/pip/blob/master/NEWS.rst)
- [Commits](pypa/pip@19.3.1...21.0.1)

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot force-pushed the dependabot/pip/requirements/pip-21.0.1 branch from 5d605d0 to 7baf607 Compare April 24, 2021 00:05
@dependabot @github
Copy link
Author

dependabot bot commented on behalf of github May 1, 2021

Superseded by #492.

@dependabot dependabot bot closed this May 1, 2021
@dependabot dependabot bot deleted the dependabot/pip/requirements/pip-21.0.1 branch May 1, 2021 06:12
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants