Commit Graph

  • 771d60f44b Eliminate future tense in the password nudge in twine-upload William Woodruff 2024-05-16 11:07:28 -04:00
  • 04f4e64de3 Set Python 3.11 for the flake8-commas linter Sviatoslav Sydorenko 2024-05-16 16:29:54 +02:00
  • 3fbcf7ccf4 Merge pull request #228 from pypa/dependabot/pip/requirements/idna-3.7 Sviatoslav Sydorenko (Святослав Сидоренко) 2024-04-12 15:30:45 +02:00
  • 576aae3934 build(deps): bump idna from 3.6 to 3.7 in /requirements dependabot[bot] 2024-04-12 04:51:56 +00:00
  • dbabd61607 Merge separate flake8 runs back into one Sviatoslav Sydorenko (Святослав Сидоренко) 2024-04-11 19:01:32 +02:00
  • 30ae1f14c1 [pre-commit.ci] auto fixes from pre-commit.com hooks pre-commit-ci[bot] 2024-04-11 16:57:42 +00:00
  • 9a9b5ad3bd Bump WPS to v0.19.x series Sviatoslav Sydorenko (Святослав Сидоренко) 2024-04-11 18:57:22 +02:00
  • 852da0ca4b [pre-commit.ci] pre-commit autoupdate pre-commit-ci[bot] 2024-04-01 19:40:40 +00:00
  • 81e9d935c8 Bump pip to v24.0 in runtime prerequisites lock v1.8.14 release/v1.8 Sviatoslav Sydorenko 2024-03-08 00:20:54 +01:00
  • 91527c4583 Regenerate lockfiles with pip-tools v7.4.1 Sviatoslav Sydorenko 2024-03-08 00:19:54 +01:00
  • 3a817c6dce Bump action runtime to CPython 3.12 Sviatoslav Sydorenko 2024-03-08 00:13:50 +01:00
  • 741947b9ca Add a config file for pip-tools v1.8.13 Sviatoslav Sydorenko 2024-03-07 23:43:48 +01:00
  • d7af439579 Mass-bump transitive dependencies of runtime Sviatoslav Sydorenko 2024-03-07 23:08:31 +01:00
  • e90ddca975 Bump readme-renderer to v43.0 Sviatoslav Sydorenko 2024-03-07 23:07:33 +01:00
  • dae7fa3e8d Bump Twine to v5.0.0 Sviatoslav Sydorenko 2024-03-07 23:05:40 +01:00
  • 0fe04ae7d9 Bump id to v1.3.0 Sviatoslav Sydorenko 2024-03-07 23:04:40 +01:00
  • 444e17980b Bump cryptography to v42.0.5 Sviatoslav Sydorenko 2024-03-07 23:02:36 +01:00
  • 820be4e5e3 Normalize pip-tools' header comment @ runtime.txt Sviatoslav Sydorenko 2024-03-07 23:00:46 +01:00
  • aec4e82833 Merge pull request #219 from SigureMo/re-generate-requirements Sviatoslav Sydorenko (Святослав Сидоренко) 2024-03-06 19:16:52 +01:00
  • b065889f7f revert other bumps SigureMo 2024-03-06 19:20:47 +08:00
  • 00a7cd17a2 re-gen on Linux and run command in requirements/ SigureMo 2024-03-06 01:59:27 +00:00
  • 2972d54cda bump pkginfo only SigureMo 2024-03-05 18:16:00 +08:00
  • f6a1bcf881 Revert "build(deps): re-generate requirements to support Metadata-version=2.3" SigureMo 2024-03-05 18:07:49 +08:00
  • e6ed2a4dfb build(deps): re-generate requirements to support Metadata-version=2.3 SigureMo 2024-03-05 12:56:14 +08:00
  • e53eb8b103 Clarify the error during OIDC exchange on PRs from forks v1.8.12 William Woodruff 2024-02-26 23:09:52 -05:00
  • c1b3402824 Fix a deprecation msg typo in the ancient branch: "migrading"->"migrating" (#212) master Hugo van Kemenade 2024-02-27 05:59:28 +02:00
  • edfa8f355b Merge pull request #216 from xuanzhi33/unstable/v1 Sviatoslav Sydorenko (Святослав Сидоренко) 2024-02-24 20:27:48 +01:00
  • aeff019ac8 docs(fix): Fix a markdown alert xuanzhi33 2024-02-24 18:46:07 +08:00
  • 24c5d5ca4a Merge pull request #214 from pypa/dependabot/pip/requirements/cryptography-42.0.4 Sviatoslav Sydorenko (Святослав Сидоренко) 2024-02-22 02:26:27 +01:00
  • c13b4aa8c5 build(deps): bump cryptography from 42.0.2 to 42.0.4 in /requirements dependabot[bot] 2024-02-21 20:44:40 +00:00
  • 72a79c870c Merge pull request #213 from pypa/dependabot/pip/requirements/cryptography-42.0.2 Sviatoslav Sydorenko (Святослав Сидоренко) 2024-02-17 03:24:59 +01:00
  • 751e5b80a4 build(deps): bump cryptography from 42.0.0 to 42.0.2 in /requirements dependabot[bot] 2024-02-17 00:58:14 +00:00
  • 0580fcbb84 Merge pull request #210 from pypa/dependabot/pip/requirements/cryptography-42.0.0 Sviatoslav Sydorenko (Святослав Сидоренко) 2024-02-08 05:04:39 +01:00
  • a524841e7b build(deps): bump cryptography from 41.0.6 to 42.0.0 in /requirements dependabot[bot] 2024-02-06 03:03:07 +00:00
  • 3f824c73d9 Merge pull request #204 from pypa/pre-commit-ci-update-config Sviatoslav Sydorenko (Святослав Сидоренко) 2024-02-05 18:14:39 +01:00
  • 013c017b41 Revert flake8 to v4.0.1 for WPS Sviatoslav Sydorenko (Святослав Сидоренко) 2024-02-05 18:13:32 +01:00
  • a0620a4177 [pre-commit.ci] pre-commit autoupdate pre-commit-ci[bot] 2024-01-01 18:18:37 +00:00
  • e82f99a47c Merge pull request #186 from virtuald/virtuald-patch-1 Sviatoslav Sydorenko (Святослав Сидоренко) 2024-02-05 18:12:13 +01:00
  • e080e0073c Merge pull request #206 from trail-of-forks/ww/update-oidc-endpoint Sviatoslav Sydorenko (Святослав Сидоренко) 2024-02-05 17:59:15 +01:00
  • cd96453c9d oidc-exchange: update OIDC minting endpoint William Woodruff 2024-01-10 16:05:30 -05:00
  • 415d7a6bec Update README.md Dustin Spicuzza 2023-11-28 22:44:26 -05:00
  • dea1d707f3 Update oidc-exchange.py Dustin Spicuzza 2023-11-28 22:32:31 -05:00
  • a1a49954d3 Give more information to users Dustin Spicuzza 2023-10-23 04:00:32 -04:00
  • c12cc61414 Merge pull request #196 from woodruffw-forks/ww/notice-to-debug Sviatoslav Sydorenko (Святослав Сидоренко) 2023-12-20 12:12:06 +01:00
  • 674fb78567 twine-upload: replace notice with debug, simplify msgs William Woodruff 2023-12-04 20:27:16 -05:00
  • 2f6f737ca5 Merge commit PR #184 into unstable/v1 v1.8.11 Sviatoslav Sydorenko 2023-11-29 03:25:52 +01:00
  • 2fa448ab0c Merge PRs #190, #184, #185, #189 and #194 into unstable/v1 Sviatoslav Sydorenko 2023-11-29 03:23:56 +01:00
  • 824ad31786 Revert flake8 to v4.0.1 for WPS Sviatoslav Sydorenko 2023-11-29 03:23:18 +01:00
  • 41f3f53c75 Bump cryptography from 41.0.3 to 41.0.6 in /requirements dependabot[bot] 2023-11-28 23:56:20 +00:00
  • 2319287e0a twine-upload: ::error, switch nudge order William Woodruff 2023-11-22 17:28:02 -05:00
  • 254a0d4ec4 twine-upload: add a nudge for password auth William Woodruff 2023-11-05 23:53:52 -05:00
  • 70a33caeb9 Bump pip from 22.3.1 to 23.3 in /requirements dependabot[bot] 2023-11-02 21:42:46 +00:00
  • 102f507b75 Bump urllib3 from 2.0.6 to 2.0.7 in /requirements dependabot[bot] 2023-10-17 21:02:57 +00:00
  • 79739dc2f2 Merge pull request #183 from pypa/dependabot/pip/requirements/urllib3-2.0.6 Sviatoslav Sydorenko 2023-10-02 23:46:28 -04:00
  • 9a3f9ad5bc [pre-commit.ci] pre-commit autoupdate pre-commit-ci[bot] 2023-10-03 00:40:18 +00:00
  • 75ca4c1f12 Bump urllib3 from 2.0.3 to 2.0.6 in /requirements dependabot[bot] 2023-10-02 23:58:34 +00:00
  • a712d989cc Make the vulnerability report URL direct Sviatoslav Sydorenko 2023-09-11 16:40:56 +02:00
  • bbf06d8ae3 Migrate security doc from RST to Markdown Sviatoslav Sydorenko 2023-09-11 16:38:50 +02:00
  • 8cdc2ab67c Merge pull request #179 from pypa/di-patch-1 Sviatoslav Sydorenko 2023-08-11 17:31:18 +02:00
  • 41c10ee223 Add link to configuration docs for Trusted Publishing Dustin Ingram 2023-08-11 11:23:40 -04:00
  • b7f401de30 Merge PR #177 into unstable/v1 v1.8.10 Sviatoslav Sydorenko 2023-08-10 22:58:37 +02:00
  • ba3ecc9355 oidc-exchange: fix padding William Woodruff 2023-08-10 16:04:43 -04:00
  • ade57f54dc Merge PRs #174 #175 and #172 into unstable/v1 v1.8.9 Sviatoslav Sydorenko 2023-08-10 18:57:00 +02:00
  • 637917e5f2 README: re-add "pro tip" language William Woodruff 2023-08-09 18:01:51 -04:00
  • 4864f13c38 README: use semantic callouts William Woodruff 2023-08-09 17:58:56 -04:00
  • 326f9ad1e1 oidc-exchange: add-trailing-comma William Woodruff 2023-08-09 15:17:18 -04:00
  • e5f0690e91 oidc-exchange: ignore a nested function William Woodruff 2023-08-09 15:12:44 -04:00
  • 8bdd0cc2a0 oidc-exchange: lintage William Woodruff 2023-08-09 15:10:56 -04:00
  • 71a0032909 oidc-exchange: render claims if exchange fails William Woodruff 2023-08-09 15:08:47 -04:00
  • adef75a5a6 Bump cryptography from 41.0.2 to 41.0.3 in /requirements dependabot[bot] 2023-08-02 02:15:59 +00:00
  • 413a8d5d62 Merge pull request #171 from pypa/dependabot/pip/requirements/certifi-2023.7.22 Sviatoslav Sydorenko 2023-07-26 11:43:53 +02:00
  • c185b8ee4e Bump certifi from 2023.5.7 to 2023.7.22 in /requirements dependabot[bot] 2023-07-25 23:36:57 +00:00
  • c5d8ac5008 Add deprecationMessage to all inputs @ master Sviatoslav Sydorenko 2023-07-13 16:58:54 +02:00
  • ffa46275f9 Render a depecation message in job summary. Sviatoslav Sydorenko 2023-07-13 17:06:38 +02:00
  • 2a939dd49b 🎨📝 Link SHA pinning encouragement @ README Sviatoslav Sydorenko 2023-07-13 16:44:47 +02:00
  • f8c70e705f Merge pull request #168 from pquentin/bump-dependencies v1.8.8 Sviatoslav Sydorenko 2023-07-12 02:46:40 +02:00
  • 68276eb3e4 Merge pull request #167 from trail-of-forks/tob-nudge Sviatoslav Sydorenko 2023-07-12 02:43:50 +02:00
  • a5d57af63c Bump runtime dependencies Quentin Pradet 2023-07-11 09:31:13 +04:00
  • e90e853e89 twine-upload: only nudge on PyPI-looking domains William Woodruff 2023-07-10 12:11:56 -04:00
  • be695966b0 twine-upload: add a nudge for trusted publishing William Woodruff 2023-07-10 11:44:56 -04:00
  • 54d67ed3c5 Merge pull request #165 from pypa/pre-commit-ci-update-config Sviatoslav Sydorenko 2023-07-09 14:55:23 +02:00
  • d32e2fab32 Revert flake8 to v4.0.1 Sviatoslav Sydorenko 2023-07-09 14:53:38 +02:00
  • a8d92e9876 [pre-commit.ci] pre-commit autoupdate pre-commit-ci[bot] 2023-07-03 22:49:42 +00:00
  • f5622bde02 Merge PRs #159 and #160 into unstable/v1 v1.8.7 Sviatoslav Sydorenko 2023-06-26 18:18:24 +02:00
  • 3be882c473 Merge pull request #161 from jaap3/jaap3-patch-1 Sviatoslav Sydorenko 2023-06-08 16:22:18 +02:00
  • 775be49481 Remove extraneous } Jaap Roes 2023-06-08 14:56:32 +02:00
  • 5684530096 Bump cryptography from 39.0.1 to 41.0.0 in /requirements dependabot[bot] 2023-06-02 20:16:33 +00:00
  • 135d0d5353 Ignore pip's root user warning Hugo van Kemenade 2023-05-29 13:42:14 +03:00
  • 110f54a387 Merge pull request #157 from pypa/dependabot/pip/requirements/requests-2.31.0 Sviatoslav Sydorenko 2023-05-23 07:41:59 +02:00
  • c803c91ef0 Bump requests from 2.28.1 to 2.31.0 in /requirements dependabot[bot] 2023-05-23 05:16:54 +00:00
  • f9ed8ba9ad Merge pull request #156 from trail-of-forks/tob-fix-annotation Sviatoslav Sydorenko 2023-05-17 02:02:16 +02:00
  • 30639668ca oidc-exchange: "fix" multiline annotations William Woodruff 2023-05-12 11:04:38 -04:00
  • a56da0b891 Merge pull request #151 from asherf/trusted v1.8.6 Sviatoslav Sydorenko 2023-05-02 22:30:51 +02:00
  • e4b9031741 password input is no longer required, since not specifying it implies trusted publishing Asher Foa 2023-04-27 11:30:43 -04:00
  • 5a085bf49e Merge pull request #150 from trail-of-forks/tob-doc-tweaks Sviatoslav Sydorenko 2023-04-24 22:34:21 -06:00
  • 0811f991bd README: small doc tweaks William Woodruff 2023-04-24 09:28:57 -06:00
  • f47b34707f 📝🎨 Put OIDC on pedestal @ README Sviatoslav Sydorenko 2023-04-24 07:26:17 +02:00
  • 7a1a355fb5 🎨 Show GH environments use in README examples Sviatoslav Sydorenko 2023-04-24 07:04:43 +02:00
  • 3b6670b0bd Merge pull request #147 from trail-of-forks/tob-stabilize-oidc Sviatoslav Sydorenko 2023-04-22 18:56:18 -06:00
  • c008c2f40a README: re-add OIDC note William Woodruff 2023-04-22 07:27:01 -06:00