From 0251f2c712bd3e439c37f5f1a6667e4e82a5fee4 Mon Sep 17 00:00:00 2001 From: Justin Kim Date: Sat, 12 Sep 2026 17:57:34 +0900 Subject: [PATCH] build(deps): bump pypa/cibuildwheel from 4.2.0 to 4.2.1 Bumps pypa/cibuildwheel from v4.2.0 to v4.2.1 in the release and wheels workflows, redoing #189 with the one change Dependabot cannot make. test_wheel_workflows_use_cibuildwheel_v4_2_0 pins the exact cibuildwheel version both wheel-building workflows must use, so the bump has to update that guard in lockstep. Dependabot cannot touch the test, which is why #189 failed all twelve test-matrix jobs on that single assertion while lint passed. #185 failed the same way before the 4.1.1 to 4.2.0 bump was redone by hand in 9fc85d9. The guard is renamed to match the version it now asserts, and v4.2.0 joins the list of superseded versions the workflows must not fall back to. v4.2.1 is a patch release: it respects machine-configured NuGet sources when installing CPython on Windows, fixes a NameError on Pyodide when an already-compatible wheel is reused, updates the Android testbed for Java 25, and refreshes dependencies including CPython 3.15.0rc2. None of it reaches this wheel matrix -- `tool.cibuildwheel.build` enumerates cp311 through cp314 explicitly, `skip` excludes PyPy and musllinux, and neither Pyodide nor Android is built here. The Windows NuGet change is the only item with live exposure, so wheels.yml is dispatched on the branch to exercise it; neither wheel workflow runs on pull_request. --- .github/workflows/release.yml | 2 +- .github/workflows/wheels.yml | 2 +- tests/test_wheels_config.py | 5 +++-- 3 files changed, 5 insertions(+), 4 deletions(-) diff --git a/.github/workflows/release.yml b/.github/workflows/release.yml index b242738..eb9067e 100644 --- a/.github/workflows/release.yml +++ b/.github/workflows/release.yml @@ -127,7 +127,7 @@ jobs: } - name: build wheels - uses: pypa/cibuildwheel@v4.2.0 + uses: pypa/cibuildwheel@v4.2.1 env: CIBW_BUILD_VERBOSITY: 1 diff --git a/.github/workflows/wheels.yml b/.github/workflows/wheels.yml index bd5a12d..7f8f9d8 100644 --- a/.github/workflows/wheels.yml +++ b/.github/workflows/wheels.yml @@ -125,7 +125,7 @@ jobs: } - name: build wheels - uses: pypa/cibuildwheel@v4.2.0 + uses: pypa/cibuildwheel@v4.2.1 env: CIBW_BUILD_VERBOSITY: 1 diff --git a/tests/test_wheels_config.py b/tests/test_wheels_config.py index c67904a..e85e0e8 100644 --- a/tests/test_wheels_config.py +++ b/tests/test_wheels_config.py @@ -282,10 +282,11 @@ def test_wheels_workflow_uses_cibuildwheel_action(): assert any("pypa/cibuildwheel" in s.get("uses", "") for s in steps) -def test_wheel_workflows_use_cibuildwheel_v4_2_0(): +def test_wheel_workflows_use_cibuildwheel_v4_2_1(): for path in (".github/workflows/wheels.yml", ".github/workflows/release.yml"): text = _read(path) - assert "pypa/cibuildwheel@v4.2.0" in text + assert "pypa/cibuildwheel@v4.2.1" in text + assert "pypa/cibuildwheel@v4.2.0" not in text assert "pypa/cibuildwheel@v4.1.1" not in text assert "pypa/cibuildwheel@v4.1.0" not in text assert "pypa/cibuildwheel@v4.0.0" not in text