chore(deps): bump coverage from 7.14.1 to 7.15.1#21
Conversation
Bumps [coverage](https://github.com/coveragepy/coveragepy) from 7.14.1 to 7.15.1. - [Release notes](https://github.com/coveragepy/coveragepy/releases) - [Changelog](https://github.com/coveragepy/coveragepy/blob/main/CHANGES.rst) - [Commits](coveragepy/coveragepy@7.14.1...7.15.1) --- updated-dependencies: - dependency-name: coverage dependency-version: 7.15.1 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]>
LabelsThe following labels could not be found: Please fix the above issues or remove invalid values from |
## Why The 5 open Dependabot uv PRs (#21 click, #22 click*, #23 ruff, #24 pyright, #25 hypothesis + coverage) each failed CI with: ``` The lockfile at `uv.lock` needs to be updated, but `--locked` was provided. ``` Root cause: this repo routes installs through **Takumi Guard** (`pypi.flatt.tech`). Dependabot resolves against public PyPI and rewrites the lock's URLs to `files.pythonhosted.org`, so `uv sync --locked` (running behind the Takumi index) sees the lock as inconsistent and fails. It is **not** a code problem — `main` is green. ## What One relock via `uv lock --upgrade-package {click,coverage,hypothesis,pyright,ruff}` against the `pypi.flatt.tech` index, honoring the pinned `exclude-newer = 2026-07-22`. Only `uv.lock` changes; the index URLs stay on `pypi.flatt.tech` (0 pythonhosted leaks). Resolved: click 8.4.2 · coverage 7.15.2 · hypothesis 6.157.0 · pyright 1.1.411 · ruff 0.15.22. Supersedes #21, #22, #23, #24, #25. 🤖 Generated with [Claude Code](https://claude.com/claude-code) Co-authored-by: Claude Opus 4.8 <[email protected]>
|
Superseded by #26, which relocks these bumps against the Takumi Guard index (pypi.flatt.tech) in one consolidated uv.lock. Individual Dependabot PRs fail because they rewrite the lock URLs to files.pythonhosted.org. |
|
OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting If you change your mind, just re-open this PR and I'll resolve any conflicts on it. |
Bumps coverage from 7.14.1 to 7.15.1.
Release notes
Sourced from coverage's releases.
Changelog
Sourced from coverage's changelog.
... (truncated)
Commits
da63beddocs: sample HTML for 7.15.1bc35e64docs: prep for 7.15.1182b010perf: resolve sysmon branch events lazily, one pair at a time (#2221)ee271eeperf: compute multiline maps cheaply in the sysmon core (#2220)1441b96chore: bump the action-dependencies group with 6 updates (#2225)dd80635fix: escape context labels in html report inline script block (#2224)7c3ae71docs: normalize earlier history order (#2222)088dc60chore: make upgradef7e15a8test: upload .json and .xml coverage reports3b62112docs: thanks, Paul KehrerDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)