{"payload":{"feedbackUrl":"https://github.com/orgs/community/discussions/53140","repo":{"id":503711763,"defaultBranch":"main","name":"tink-py","ownerLogin":"tink-crypto","currentUserCanPush":false,"isFork":false,"isEmpty":false,"createdAt":"2022-06-15T10:06:48.000Z","ownerAvatar":"https://avatars.githubusercontent.com/u/68359901?v=4","public":true,"private":false,"isOrgOwned":true},"refInfo":{"name":"","listCacheKey":"v0:1721222759.0","currentOid":""},"activityList":{"items":[{"before":"f8548abbe6a554219c1af5b0a3fba994834f3c0f","after":"dbf74d5335fd7fe7705a2f78c73cbe3a3808007c","ref":"refs/heads/main","pushedAt":"2024-09-10T15:43:17.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"Add Bazel py_proto_library target for x_aes_gcm.proto\n\nPiperOrigin-RevId: 672979087\nChange-Id: I7e25d68d6f230b8d682b84d303a1243fc6610f14","shortMessageHtmlLink":"Add Bazel py_proto_library target for x_aes_gcm.proto"}},{"before":"76b2beab0334df9a1b22d2734ed447558902e777","after":"f8548abbe6a554219c1af5b0a3fba994834f3c0f","ref":"refs/heads/main","pushedAt":"2024-09-06T00:16:46.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"Upgrade boringssl => 3a138e4, including required upgrades to transitive dependencies.\n\nPiperOrigin-RevId: 671563307\nChange-Id: I49853acffa12a75d0b89c81f32e98f0348625612","shortMessageHtmlLink":"Upgrade boringssl => 3a138e4, including required upgrades to transiti…"}},{"before":"deea1d538ccce60dc75978cc6cb67858993cd661","after":"76b2beab0334df9a1b22d2734ed447558902e777","ref":"refs/heads/main","pushedAt":"2024-08-29T20:13:36.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"Internal change\n\nPiperOrigin-RevId: 669037425\nChange-Id: If763f315f1e8894734f925c7859c9d19e443d1d6","shortMessageHtmlLink":"Internal change"}},{"before":"5a7e1b82a9e8bbcabc7a1cbf05683a8de9cf3ad3","after":"deea1d538ccce60dc75978cc6cb67858993cd661","ref":"refs/heads/main","pushedAt":"2024-08-27T18:44:20.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"X-AES-GCM proto files\n\nPiperOrigin-RevId: 668074997\nChange-Id: I81d76514b74ff7c0dfe1ad63702c53fef927394a","shortMessageHtmlLink":"X-AES-GCM proto files"}},{"before":"487c7fedfcd1e652cfe959c3881a8c689a589733","after":"5a7e1b82a9e8bbcabc7a1cbf05683a8de9cf3ad3","ref":"refs/heads/main","pushedAt":"2024-08-19T13:10:42.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"Merge #35 by dependabot[bot]\n\nBump urllib3 from 2.0.7 to 2.2.2 in /kokoro\n\nBumps [urllib3](https://github.com/urllib3/urllib3) from 2.0.7 to 2.2.2.\n
\nRelease notes\n

Sourced from urllib3's releases.

\n
\n

2.2.2

\n

🚀 urllib3 is fundraising for HTTP/2 support

\n

urllib3 is raising ~$40,000 USD to release HTTP/2 support and ensure long-term sustainable maintenance of the project after a sharp decline in financial support for 2023. If your company or organization uses Python and would benefit from HTTP/2 support in Requests, pip, cloud SDKs, and thousands of other projects please consider contributing financially to ensure HTTP/2 support is developed sustainably and maintained for the long-haul.

\n

Thank you for your support.

\n

Changes

\n\n

Full Changelog: https://github.com/urllib3/urllib3/compare/2.2.1...2.2.2

\n

2.2.1

\n

🚀 urllib3 is fundraising for HTTP/2 support

\n

urllib3 is raising ~$40,000 USD to release HTTP/2 support and ensure long-term sustainable maintenance of the project after a sharp decline in financial support for 2023. If your company or organization uses Python and would benefit from HTTP/2 support in Requests, pip, cloud SDKs, and thousands of other projects please consider contributing financially to ensure HTTP/2 support is developed sustainably and maintained for the long-haul.

\n

Thank you for your support.

\n

Changes

\n\n

2.2.0

\n

🖥️ urllib3 now works in the browser

\n

:tada: This release adds experimental support for using urllib3 in the browser with Pyodide! :tada:

\n

Thanks to Joe Marshall (@​joemarshall) for contributing this feature. This change was possible thanks to work done in urllib3 v2.0 to detach our API from http.client. Please report all bugs to the urllib3 issue tracker.

\n

🚀 urllib3 is fundraising for HTTP/2 support

\n

urllib3 is raising ~$40,000 USD to release HTTP/2 support and ensure long-term sustainable maintenance of the project after a sharp decline in financial support for 2023. If your company or organization uses Python and would benefit from HTTP/2 support in Requests, pip, cloud SDKs, and thousands of other projects please consider contributing financially to ensure HTTP/2 support is developed sustainably and maintained for the long-haul.

\n

Thank you for your support.

\n

Changes

\n\n\n
\n

... (truncated)

\n
\n
\nChangelog\n

Sourced from urllib3's changelog.

\n
\n

2.2.2 (2024-06-17)

\n\n

2.2.1 (2024-02-16)

\n\n

2.2.0 (2024-01-30)

\n\n

2.1.0 (2023-11-13)

\n\n
\n
\n
\nCommits\n\n
\n
\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=urllib3&package-manager=pip&previous-version=2.0.7&new-version=2.2.2)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n
\nDependabot commands and options\n
\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot merge` will merge this PR after your CI passes on it\n- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it\n- `@dependabot cancel merge` will cancel a previously requested merge and block automerging\n- `@dependabot reopen` will reopen this PR if it is closed\n- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually\n- `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/tink-crypto/tink-py/network/alerts).\n\n
\n\nCloses ##35\n\nPiperOrigin-RevId: 664773012\nChange-Id: I0f5efcfb62a25ade10bc93bdd1a6e343971c09d7","shortMessageHtmlLink":"Merge #35 by dependabot[bot]"}},{"before":"f7bd0364e44b5a393966328592befafe3efcb6ec","after":"487c7fedfcd1e652cfe959c3881a8c689a589733","ref":"refs/heads/main","pushedAt":"2024-08-16T08:16:27.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"Remove ctype annotations.\n\nPiperOrigin-RevId: 663639121\nChange-Id: I1a79f1ff247df576916a70e934a8386a7167179e","shortMessageHtmlLink":"Remove ctype annotations."}},{"before":"972f95359d449ab900b75c15d92acce9bd426687","after":"f7bd0364e44b5a393966328592befafe3efcb6ec","ref":"refs/heads/main","pushedAt":"2024-07-25T14:04:25.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"Use Tink 2.2.0.\n\nPiperOrigin-RevId: 655941032\nChange-Id: I0eafd725b7e5fd436a37d36d870f75d8d81e96cc","shortMessageHtmlLink":"Use Tink 2.2.0."}},{"before":"0860eeceb77df014351b6ea053b24e664b6fec15","after":"b0f5c648e2a09cf4f79db6a9a6590cb252d1e37d","ref":"refs/heads/dependabot/pip/kokoro/urllib3-2.2.2","pushedAt":"2024-07-17T13:27:08.000Z","pushType":"force_push","commitsCount":0,"pusher":{"login":"dependabot[bot]","name":null,"path":"/apps/dependabot","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/29110?s=80&v=4"},"commit":{"message":"Bump urllib3 from 2.0.7 to 2.2.2 in /kokoro\n\nBumps [urllib3](https://github.com/urllib3/urllib3) from 2.0.7 to 2.2.2.\n- [Release notes](https://github.com/urllib3/urllib3/releases)\n- [Changelog](https://github.com/urllib3/urllib3/blob/main/CHANGES.rst)\n- [Commits](https://github.com/urllib3/urllib3/compare/2.0.7...2.2.2)\n\n---\nupdated-dependencies:\n- dependency-name: urllib3\n dependency-type: indirect\n...\n\nSigned-off-by: dependabot[bot] ","shortMessageHtmlLink":"Bump urllib3 from 2.0.7 to 2.2.2 in /kokoro"}},{"before":"3af439a06b2338b00900d7864d9abf269b305012","after":null,"ref":"refs/heads/dependabot/pip/kokoro/zipp-3.19.1","pushedAt":"2024-07-17T13:25:59.000Z","pushType":"branch_deletion","commitsCount":0,"pusher":{"login":"dependabot[bot]","name":null,"path":"/apps/dependabot","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/29110?s=80&v=4"}},{"before":"870f2f1f587816dd1bd199ecf02d21c96295d376","after":null,"ref":"refs/heads/dependabot/pip/examples/certifi-2024.7.4","pushedAt":"2024-07-17T13:25:57.000Z","pushType":"branch_deletion","commitsCount":0,"pusher":{"login":"dependabot[bot]","name":null,"path":"/apps/dependabot","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/29110?s=80&v=4"}},{"before":"5d57a5a26d6a7cdda3fa11c4d7be75fec276851e","after":"972f95359d449ab900b75c15d92acce9bd426687","ref":"refs/heads/main","pushedAt":"2024-07-17T13:25:16.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"Merge #37 by dependabot[bot]\n\nBump certifi from 2023.7.22 to 2024.7.4 in /examples\n\nBumps [certifi](https://github.com/certifi/python-certifi) from 2023.7.22 to 2024.7.4.\n
\nCommits\n\n
\n
\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=certifi&package-manager=pip&previous-version=2023.7.22&new-version=2024.7.4)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n
\nDependabot commands and options\n
\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot merge` will merge this PR after your CI passes on it\n- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it\n- `@dependabot cancel merge` will cancel a previously requested merge and block automerging\n- `@dependabot reopen` will reopen this PR if it is closed\n- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually\n- `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/tink-crypto/tink-py/network/alerts).\n\n
\n\nCloses ##37\n\nPiperOrigin-RevId: 653211177\nChange-Id: Ie9608ab953ec89f22341dce34afaa1f264db8577","shortMessageHtmlLink":"Merge #37 by dependabot[bot]"}},{"before":"df80de5c97e1cdb07e09ef0fe6b9ee46c8009a50","after":"5d57a5a26d6a7cdda3fa11c4d7be75fec276851e","ref":"refs/heads/main","pushedAt":"2024-07-17T12:52:17.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"Merge #38 by dependabot[bot]\n\nBump zipp from 3.17.0 to 3.19.1 in /kokoro\n\nBumps [zipp](https://github.com/jaraco/zipp) from 3.17.0 to 3.19.1.\n
\nChangelog\n

Sourced from zipp's changelog.

\n
\n

v3.19.1

\n

Bugfixes

\n
    \n
  • Improved handling of malformed zip files. (#119)
  • \n
\n

v3.19.0

\n

Features

\n
    \n
  • Implement is_symlink. (#117)
  • \n
\n

v3.18.2

\n

No significant changes.

\n

v3.18.1

\n

No significant changes.

\n

v3.18.0

\n

Features

\n
    \n
  • Bypass ZipFile.namelist in glob for better performance. (#106)
  • \n
  • Refactored glob functionality to support a more generalized solution with support for platform-specific path separators. (#108)
  • \n
\n

Bugfixes

\n
    \n
  • Add special accounting for pypy when computing the stack level for text encoding warnings. (#114)
  • \n
\n
\n
\n
\nCommits\n\n
\n
\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=zipp&package-manager=pip&previous-version=3.17.0&new-version=3.19.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n
\nDependabot commands and options\n
\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot merge` will merge this PR after your CI passes on it\n- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it\n- `@dependabot cancel merge` will cancel a previously requested merge and block automerging\n- `@dependabot reopen` will reopen this PR if it is closed\n- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually\n- `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/tink-crypto/tink-py/network/alerts).\n\n
\n\nCloses ##38\n\nPiperOrigin-RevId: 653203304\nChange-Id: Ib25c993248c8e7534ab02620c3c5067c39516e42","shortMessageHtmlLink":"Merge #38 by dependabot[bot]"}},{"before":"415056558d73c7ffae35608abbc4d19fa8f7f6d9","after":null,"ref":"refs/heads/dependabot/pip/tools/distribution/setuptools-70.0.0","pushedAt":"2024-07-17T12:42:54.000Z","pushType":"branch_deletion","commitsCount":0,"pusher":{"login":"dependabot[bot]","name":null,"path":"/apps/dependabot","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/29110?s=80&v=4"}},{"before":"2ff768da0bec2403da317189cf2a9a2ce41b3ac4","after":"df80de5c97e1cdb07e09ef0fe6b9ee46c8009a50","ref":"refs/heads/main","pushedAt":"2024-07-17T12:41:41.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"Merge #39 by dependabot[bot]\n\nBump setuptools from 68.2.2 to 70.0.0 in /tools/distribution\n\nBumps [setuptools](https://github.com/pypa/setuptools) from 68.2.2 to 70.0.0.\n
\nChangelog\n

Sourced from setuptools's changelog.

\n
\n

v70.0.0

\n

Features

\n
    \n
  • Emit a warning when [tools.setuptools] is present in pyproject.toml and will be ignored. -- by :user:SnoopJ (#4150)
  • \n
  • Improved AttributeError error message if pkg_resources.EntryPoint.require is called without extras or distribution\nGracefully "do nothing" when trying to activate a pkg_resources.Distribution with a None location, rather than raising a TypeError\n-- by :user:Avasam (#4262)
  • \n
  • Typed the dynamically defined variables from pkg_resources -- by :user:Avasam (#4267)
  • \n
  • Modernized and refactored VCS handling in package_index. (#4332)
  • \n
\n

Bugfixes

\n
    \n
  • In install command, use super to call the superclass methods. Avoids race conditions when monkeypatching from _distutils_system_mod occurs late. (#4136)
  • \n
  • Fix finder template for lenient editable installs of implicit nested namespaces\nconstructed by using package_dir to reorganise directory structure. (#4278)
  • \n
  • Fix an error with UnicodeDecodeError handling in pkg_resources when trying to read files in UTF-8 with a fallback -- by :user:Avasam (#4348)
  • \n
\n

Improved Documentation

\n
    \n
  • Uses RST substitution to put badges in 1 line. (#4312)
  • \n
\n

Deprecations and Removals

\n
    \n
  • \n

    Further adoption of UTF-8 in setuptools.\nThis change regards mostly files produced and consumed during the build process\n(e.g. metadata files, script wrappers, automatically updated config files, etc..)\nAlthough precautions were taken to minimize disruptions, some edge cases might\nbe subject to backwards incompatibility.

    \n

    Support for "locale" encoding is now deprecated. (#4309)

    \n
  • \n
  • \n

    Remove setuptools.convert_path after long deprecation period.\nThis function was never defined by setuptools itself, but rather a\nside-effect of an import for internal usage. (#4322)

    \n
  • \n
  • \n

    Remove fallback for customisations of distutils' build.sub_command after long\ndeprecated period.\nUsers are advised to import build directly from setuptools.command.build. (#4322)

    \n
  • \n
  • \n

    Removed typing_extensions from vendored dependencies -- by :user:Avasam (#4324)

    \n
  • \n
  • \n

    Remove deprecated setuptools.dep_util.\nThe provided alternative is setuptools.modified. (#4360)

    \n
  • \n
\n\n
\n

... (truncated)

\n
\n
\nCommits\n\n
\n
\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=setuptools&package-manager=pip&previous-version=68.2.2&new-version=70.0.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n
\nDependabot commands and options\n
\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot merge` will merge this PR after your CI passes on it\n- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it\n- `@dependabot cancel merge` will cancel a previously requested merge and block automerging\n- `@dependabot reopen` will reopen this PR if it is closed\n- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually\n- `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/tink-crypto/tink-py/network/alerts).\n\n
\n\nCloses ##39\n\nPiperOrigin-RevId: 653200488\nChange-Id: I725bc36df4d0341c479b4131d7cb61f85de4dd3d","shortMessageHtmlLink":"Merge #39 by dependabot[bot]"}},{"before":null,"after":"415056558d73c7ffae35608abbc4d19fa8f7f6d9","ref":"refs/heads/dependabot/pip/tools/distribution/setuptools-70.0.0","pushedAt":"2024-07-15T18:43:58.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"dependabot[bot]","name":null,"path":"/apps/dependabot","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/29110?s=80&v=4"},"commit":{"message":"Bump setuptools from 68.2.2 to 70.0.0 in /tools/distribution\n\nBumps [setuptools](https://github.com/pypa/setuptools) from 68.2.2 to 70.0.0.\n- [Release notes](https://github.com/pypa/setuptools/releases)\n- [Changelog](https://github.com/pypa/setuptools/blob/main/NEWS.rst)\n- [Commits](https://github.com/pypa/setuptools/compare/v68.2.2...v70.0.0)\n\n---\nupdated-dependencies:\n- dependency-name: setuptools\n dependency-type: direct:production\n...\n\nSigned-off-by: dependabot[bot] ","shortMessageHtmlLink":"Bump setuptools from 68.2.2 to 70.0.0 in /tools/distribution"}},{"before":null,"after":"3af439a06b2338b00900d7864d9abf269b305012","ref":"refs/heads/dependabot/pip/kokoro/zipp-3.19.1","pushedAt":"2024-07-09T18:47:53.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"dependabot[bot]","name":null,"path":"/apps/dependabot","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/29110?s=80&v=4"},"commit":{"message":"Bump zipp from 3.17.0 to 3.19.1 in /kokoro\n\nBumps [zipp](https://github.com/jaraco/zipp) from 3.17.0 to 3.19.1.\n- [Release notes](https://github.com/jaraco/zipp/releases)\n- [Changelog](https://github.com/jaraco/zipp/blob/main/NEWS.rst)\n- [Commits](https://github.com/jaraco/zipp/compare/v3.17.0...v3.19.1)\n\n---\nupdated-dependencies:\n- dependency-name: zipp\n dependency-type: indirect\n...\n\nSigned-off-by: dependabot[bot] ","shortMessageHtmlLink":"Bump zipp from 3.17.0 to 3.19.1 in /kokoro"}},{"before":null,"after":"870f2f1f587816dd1bd199ecf02d21c96295d376","ref":"refs/heads/dependabot/pip/examples/certifi-2024.7.4","pushedAt":"2024-07-06T00:22:49.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"dependabot[bot]","name":null,"path":"/apps/dependabot","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/29110?s=80&v=4"},"commit":{"message":"Bump certifi from 2023.7.22 to 2024.7.4 in /examples\n\nBumps [certifi](https://github.com/certifi/python-certifi) from 2023.7.22 to 2024.7.4.\n- [Commits](https://github.com/certifi/python-certifi/compare/2023.07.22...2024.07.04)\n\n---\nupdated-dependencies:\n- dependency-name: certifi\n dependency-type: indirect\n...\n\nSigned-off-by: dependabot[bot] ","shortMessageHtmlLink":"Bump certifi from 2023.7.22 to 2024.7.4 in /examples"}},{"before":"44e469f84ae5dead0e2291efc04c7c537aebf551","after":"2ff768da0bec2403da317189cf2a9a2ce41b3ac4","ref":"refs/heads/main","pushedAt":"2024-07-03T19:37:48.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"feat: Allow GCP KMS key URIs with crypto key versions.\n\nPiperOrigin-RevId: 649166137\nChange-Id: I16df5f29fa6ce0f5aaef866636f7f6ccbaeeb6d9","shortMessageHtmlLink":"feat: Allow GCP KMS key URIs with crypto key versions."}},{"before":"facd1110795e86806b374d1625592f8e2c885dbf","after":"44e469f84ae5dead0e2291efc04c7c537aebf551","ref":"refs/heads/main","pushedAt":"2024-06-26T16:42:13.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"Silence C++ compilation warnings from external dependencies in the Bazel config.\n\nPiperOrigin-RevId: 646978405\nChange-Id: Ifd26821e91110e6ea0dcd7217d0a4493911bf4f1","shortMessageHtmlLink":"Silence C++ compilation warnings from external dependencies in the Ba…"}},{"before":"a72a8d6fd7636558ee2e7cc5c1ecb2ccc0b06663","after":"facd1110795e86806b374d1625592f8e2c885dbf","ref":"refs/heads/main","pushedAt":"2024-06-20T15:56:28.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"Call the correct test script\n\nPiperOrigin-RevId: 645049325\nChange-Id: I518d2a80341b9de65ccdbb24325b522076ede4e1","shortMessageHtmlLink":"Call the correct test script"}},{"before":"40b92ed05383e50f908c5bc6ba2c803de56824de","after":"a72a8d6fd7636558ee2e7cc5c1ecb2ccc0b06663","ref":"refs/heads/main","pushedAt":"2024-06-19T14:57:42.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"Remove deprecation warnings for create_kms_aead_key_template and create_kms_envelope_aead_key_template.\n\nWe don't really have a good replacement for these functions, so it's better to not mark them as deprecated.\n\nPiperOrigin-RevId: 644748016\nChange-Id: I62ea531ea89ade59e5a551b70df81b778ca5eec9","shortMessageHtmlLink":"Remove deprecation warnings for create_kms_aead_key_template and crea…"}},{"before":null,"after":"0860eeceb77df014351b6ea053b24e664b6fec15","ref":"refs/heads/dependabot/pip/kokoro/urllib3-2.2.2","pushedAt":"2024-06-17T22:11:53.000Z","pushType":"branch_creation","commitsCount":0,"pusher":{"login":"dependabot[bot]","name":null,"path":"/apps/dependabot","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/29110?s=80&v=4"},"commit":{"message":"Bump urllib3 from 2.0.7 to 2.2.2 in /kokoro\n\nBumps [urllib3](https://github.com/urllib3/urllib3) from 2.0.7 to 2.2.2.\n- [Release notes](https://github.com/urllib3/urllib3/releases)\n- [Changelog](https://github.com/urllib3/urllib3/blob/main/CHANGES.rst)\n- [Commits](https://github.com/urllib3/urllib3/compare/2.0.7...2.2.2)\n\n---\nupdated-dependencies:\n- dependency-name: urllib3\n dependency-type: indirect\n...\n\nSigned-off-by: dependabot[bot] ","shortMessageHtmlLink":"Bump urllib3 from 2.0.7 to 2.2.2 in /kokoro"}},{"before":"4bc1a5be02e8dc1b4a6b340caa5fc39214cc410c","after":null,"ref":"refs/heads/dependabot/pip/examples/requests-2.32.2","pushedAt":"2024-06-17T09:53:56.000Z","pushType":"branch_deletion","commitsCount":0,"pusher":{"login":"dependabot[bot]","name":null,"path":"/apps/dependabot","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/29110?s=80&v=4"}},{"before":"2c9ddc0f663da541e2e949bf49adf6630ec214b3","after":"40b92ed05383e50f908c5bc6ba2c803de56824de","ref":"refs/heads/main","pushedAt":"2024-06-17T09:53:13.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"Merge #33 by dependabot[bot]\n\nBump requests from 2.31.0 to 2.32.2 in /examples\n\nBumps [requests](https://github.com/psf/requests) from 2.31.0 to 2.32.2.\n
\nRelease notes\n

Sourced from requests's releases.

\n
\n

v2.32.2

\n

2.32.2 (2024-05-21)

\n

Deprecations

\n
    \n
  • \n

    To provide a more stable migration for custom HTTPAdapters impacted\nby the CVE changes in 2.32.0, we've renamed _get_connection to\na new public API, get_connection_with_tls_context. Existing custom\nHTTPAdapters will need to migrate their code to use this new API.\nget_connection is considered deprecated in all versions of Requests>=2.32.0.

    \n

    A minimal (2-line) example has been provided in the linked PR to ease\nmigration, but we strongly urge users to evaluate if their custom adapter\nis subject to the same issue described in CVE-2024-35195. (#6710)

    \n
  • \n
\n

v2.32.1

\n

2.32.1 (2024-05-20)

\n

Bugfixes

\n
    \n
  • Add missing test certs to the sdist distributed on PyPI.
  • \n
\n

v2.32.0

\n

2.32.0 (2024-05-20)

\n

🐍 PYCON US 2024 EDITION 🐍

\n

Security

\n\n

Improvements

\n
    \n
  • verify=True now reuses a global SSLContext which should improve\nrequest time variance between first and subsequent requests. It should\nalso minimize certificate load time on Windows systems when using a Python\nversion built with OpenSSL 3.x. (#6667)
  • \n
  • Requests now supports optional use of character detection\n(chardet or charset_normalizer) when repackaged or vendored.\nThis enables pip and other projects to minimize their vendoring\nsurface area. The Response.text() and apparent_encoding APIs\nwill default to utf-8 if neither library is present. (#6702)
  • \n
\n

Bugfixes

\n
    \n
  • Fixed bug in length detection where emoji length was incorrectly\ncalculated in the request content-length. (#6589)
  • \n
  • Fixed deserialization bug in JSONDecodeError. (#6629)
  • \n
  • Fixed bug where an extra leading / (path separator) could lead\nurllib3 to unnecessarily reparse the request URI. (#6644)
  • \n
\n\n
\n

... (truncated)

\n
\n
\nChangelog\n

Sourced from requests's changelog.

\n
\n

2.32.2 (2024-05-21)

\n

Deprecations

\n
    \n
  • \n

    To provide a more stable migration for custom HTTPAdapters impacted\nby the CVE changes in 2.32.0, we've renamed _get_connection to\na new public API, get_connection_with_tls_context. Existing custom\nHTTPAdapters will need to migrate their code to use this new API.\nget_connection is considered deprecated in all versions of Requests>=2.32.0.

    \n

    A minimal (2-line) example has been provided in the linked PR to ease\nmigration, but we strongly urge users to evaluate if their custom adapter\nis subject to the same issue described in CVE-2024-35195. (#6710)

    \n
  • \n
\n

2.32.1 (2024-05-20)

\n

Bugfixes

\n
    \n
  • Add missing test certs to the sdist distributed on PyPI.
  • \n
\n

2.32.0 (2024-05-20)

\n

Security

\n\n

Improvements

\n
    \n
  • verify=True now reuses a global SSLContext which should improve\nrequest time variance between first and subsequent requests. It should\nalso minimize certificate load time on Windows systems when using a Python\nversion built with OpenSSL 3.x. (#6667)
  • \n
  • Requests now supports optional use of character detection\n(chardet or charset_normalizer) when repackaged or vendored.\nThis enables pip and other projects to minimize their vendoring\nsurface area. The Response.text() and apparent_encoding APIs\nwill default to utf-8 if neither library is present. (#6702)
  • \n
\n

Bugfixes

\n
    \n
  • Fixed bug in length detection where emoji length was incorrectly\ncalculated in the request content-length. (#6589)
  • \n
  • Fixed deserialization bug in JSONDecodeError. (#6629)
  • \n
  • Fixed bug where an extra leading / (path separator) could lead\nurllib3 to unnecessarily reparse the request URI. (#6644)
  • \n
\n

Deprecations

\n\n
\n

... (truncated)

\n
\n
\nCommits\n
    \n
  • 88dce9d v2.32.2
  • \n
  • c98e4d1 Merge pull request #6710 from nateprewitt/api_rename
  • \n
  • 92075b3 Add deprecation warning
  • \n
  • aa1461b Move _get_connection to get_connection_with_tls_context
  • \n
  • 970e8ce v2.32.1
  • \n
  • d6ebc4a v2.32.0
  • \n
  • 9a40d12 Avoid reloading root certificates to improve concurrent performance (#6667)
  • \n
  • 0c030f7 Merge pull request #6702 from nateprewitt/no_char_detection
  • \n
  • 555b870 Allow character detection dependencies to be optional in post-packaging steps
  • \n
  • d6dded3 Merge pull request #6700 from franekmagiera/update-redirect-to-invalid-uri-test
  • \n
  • Additional commits viewable in compare view
  • \n
\n
\n
\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=requests&package-manager=pip&previous-version=2.31.0&new-version=2.32.2)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n
\nDependabot commands and options\n
\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot merge` will merge this PR after your CI passes on it\n- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it\n- `@dependabot cancel merge` will cancel a previously requested merge and block automerging\n- `@dependabot reopen` will reopen this PR if it is closed\n- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually\n- `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\nYou can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/tink-crypto/tink-py/network/alerts).\n\n
\n\nCloses ##33\n\nPiperOrigin-RevId: 643933629\nChange-Id: Ie5685abdca0ad5710eb5de0679f414bd6bf9e881","shortMessageHtmlLink":"Merge #33 by dependabot[bot]"}},{"before":"a14b357acd902d00d4b302cc92f359060d77c886","after":"2c9ddc0f663da541e2e949bf49adf6630ec214b3","ref":"refs/heads/main","pushedAt":"2024-06-17T09:06:25.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"Build tink-py using Bazel remote caching in macOS test scripts\n\nPiperOrigin-RevId: 643922427\nChange-Id: I3bed70c10224298c5c921484ca0dfbaf9a9fbadf","shortMessageHtmlLink":"Build tink-py using Bazel remote caching in macOS test scripts"}},{"before":"9ae2bb656e2aaefd1439f1aabd9516f4b786ed27","after":"a14b357acd902d00d4b302cc92f359060d77c886","ref":"refs/heads/main","pushedAt":"2024-06-17T08:33:01.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"Use the correct container image hash fo ARM64 jobs\n\nPiperOrigin-RevId: 643913993\nChange-Id: I296926ec3b10b5ad5bb1e7f4c173da5b90946b15","shortMessageHtmlLink":"Use the correct container image hash fo ARM64 jobs"}},{"before":"27e9834bda6f6313e1e2015961df818f738e3597","after":"9ae2bb656e2aaefd1439f1aabd9516f4b786ed27","ref":"refs/heads/main","pushedAt":"2024-06-17T08:19:59.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"Add support for remote Bazel cache in Python sdist testing\n\nPiperOrigin-RevId: 643911168\nChange-Id: Ia2171dd3c01c2dfc595e50b42cb0fce0e34dabda","shortMessageHtmlLink":"Add support for remote Bazel cache in Python sdist testing"}},{"before":"d4e3e4a51aff4274d4a3c5c8af43421c27899063","after":"27e9834bda6f6313e1e2015961df818f738e3597","ref":"refs/heads/main","pushedAt":"2024-06-17T08:09:40.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"Use Bazel remote caching in Windows Kokoro jobs\n\nPiperOrigin-RevId: 643908929\nChange-Id: I6d0cd3ce97eafa990cd475365f9d1e5e524210ef","shortMessageHtmlLink":"Use Bazel remote caching in Windows Kokoro jobs"}},{"before":"e057852b1cade8d0936e45bc84f98e2a7935129b","after":"d4e3e4a51aff4274d4a3c5c8af43421c27899063","ref":"refs/heads/main","pushedAt":"2024-06-17T07:46:28.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"Create Linux and macOS bdists building with Bazel remote caching in Kokoro\n\nPiperOrigin-RevId: 643903680\nChange-Id: Ia88272b4fd829789078aacfe9f567f0e17818f4a","shortMessageHtmlLink":"Create Linux and macOS bdists building with Bazel remote caching in K…"}},{"before":"833901da2f8c6f08b8f02d13451520c6fa5e0f7e","after":"e057852b1cade8d0936e45bc84f98e2a7935129b","ref":"refs/heads/main","pushedAt":"2024-06-17T07:25:11.000Z","pushType":"push","commitsCount":1,"pusher":{"login":"copybara-service[bot]","name":null,"path":"/apps/copybara-service","primaryAvatarUrl":"https://avatars.githubusercontent.com/in/44061?s=80&v=4"},"commit":{"message":"Allow optionally building distributions with Bazel Remote Caching\n\nAlso build tink-py with PiP using Bazel Remote Caching in Kokoro\n\nPiperOrigin-RevId: 643899063\nChange-Id: I3dde5afb8a788b8a671137064ef29bb887abfb13","shortMessageHtmlLink":"Allow optionally building distributions with Bazel Remote Caching"}}],"hasNextPage":true,"hasPreviousPage":false,"activityType":"all","actor":null,"timePeriod":"all","sort":"DESC","perPage":30,"cursor":"Y3Vyc29yOnYyOpK7MjAyNC0wOS0xMFQxNTo0MzoxNy4wMDAwMDBazwAAAASyP8Yj","startCursor":"Y3Vyc29yOnYyOpK7MjAyNC0wOS0xMFQxNTo0MzoxNy4wMDAwMDBazwAAAASyP8Yj","endCursor":"Y3Vyc29yOnYyOpK7MjAyNC0wNi0xN1QwNzoyNToxMS4wMDAwMDBazwAAAARnFYQ6"}},"title":"Activity · tink-crypto/tink-py"}