From b36307e7de845280340ada0e0dfee30dc890fa55 Mon Sep 17 00:00:00 2001 From: bk86a Date: Thu, 24 Sep 2026 09:34:18 +0200 Subject: [PATCH] chore(deps): sync requirements.lock with the #182 bumps (v3.1.3) requirements.txt now requires uvicorn>=0.53.0, httpx2>=2.13.0 and idna>=3.20, but the image installs from requirements.lock, which still pinned the old versions. Regenerated with minimal upgrades; httpcore2 moves to 2.13.1 as httpx2 2.13 requires it. --- CHANGELOG.md | 9 +++++++++ app/__init__.py | 2 +- requirements.lock | 8 ++++---- 3 files changed, 14 insertions(+), 5 deletions(-) diff --git a/CHANGELOG.md b/CHANGELOG.md index 1d0eb5d..8aa97ab 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -6,6 +6,15 @@ The format is based on [Keep a Changelog](https://keepachangelog.com/). ## [Unreleased] +## [3.1.3] - 2026-09-24 + +### Changed + +- The container image now ships uvicorn 0.53.0, httpx2 2.13.1 (with httpcore2 + 2.13.1) and idna 3.20. The bumps merged in #182 raised the minimums in + `requirements.txt` but left `requirements.lock`, which the image installs + from, on the old versions. + ## [3.1.2] - 2026-09-17 ### Fixed diff --git a/app/__init__.py b/app/__init__.py index 911557b..f749372 100644 --- a/app/__init__.py +++ b/app/__init__.py @@ -1 +1 @@ -__version__ = "3.1.2" +__version__ = "3.1.3" diff --git a/requirements.lock b/requirements.lock index f9cb2a4..84a5b2d 100644 --- a/requirements.lock +++ b/requirements.lock @@ -8,10 +8,10 @@ click==8.4.2 Deprecated==1.3.1 fastapi==0.141.1 h11==0.16.0 -httpcore2==2.12.0 +httpcore2==2.13.1 httptools==0.8.0 -httpx2==2.12.0 -idna==3.19 +httpx2==2.13.1 +idna==3.20 limits==5.8.0 numpy==2.5.2 packaging==26.3 @@ -27,7 +27,7 @@ starlette==1.6.0 truststore==0.10.4 typing-inspection==0.4.4 typing_extensions==4.16.0 -uvicorn==0.52.4 +uvicorn==0.53.0 uvloop==0.22.1 watchfiles==1.2.0 websockets==17.0.1