Skip to content

chore(deps)(deps): bump the evaluator-deps group in /scripts/aidlc-evaluator with 4 updates - #865

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/uv/scripts/aidlc-evaluator/evaluator-deps-ffac27f8a1
Closed

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/uv/scripts/aidlc-evaluator/evaluator-deps-ffac27f8a1

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 22, 2026

Copy link
Copy Markdown
Contributor

Bumps the evaluator-deps group in /scripts/aidlc-evaluator with 4 updates: boto3, ruff, strands-agents and strands-agents-tools.

Updates boto3 from 1.43.69 to 1.43.74

Commits
  • 2092299 Merge branch 'release-1.43.74'
  • 69fda4d Bumping version to 1.43.74
  • ee5ec70 Add changelog entries from botocore
  • 97c19e9 Merge branch 'release-1.43.73'
  • 5abe90c Merge branch 'release-1.43.73' into develop
  • a08d771 Bumping version to 1.43.73
  • 0cdfdc2 Add changelog entries from botocore
  • a3fc41f Merge branch 'release-1.43.72'
  • 2ec791c Merge branch 'release-1.43.72' into develop
  • 27a2636 Bumping version to 1.43.72
  • Additional commits viewable in compare view

Updates ruff from 0.16.2 to 0.16.3

Release notes

Sourced from ruff's releases.

0.16.3

Release Notes

Released on 2026-08-13.

Preview features

  • [pylint] Fix false negatives on negative numbers (PLR6104) (#27251)
  • [pyupgrade] Add rule to replace while 1 with while True (UP048) (#27190)

Bug fixes

  • [flake8-bandit] Also check keyword arguments (S602, S603, S607, S609) (#27687)
  • [pylint] Allow continue in finally on Python 3.8 (#27626)
  • [pylint] Fix PLE1307 false positive with bools (#27651)
  • [pylint] Fix false positives and negatives with %b format character (PLE1300, PLE1307) (#27560)
  • [pylint] Improve handling of concatenated strings (PLE1300) (#27659)

Rule changes

  • [numpy] Make np.chararray autofix backwards-compatible (NPY201) (#27527)

Performance

  • Enable PGO for Linux x86-64 Ruff releases (#27570)
  • Enable PGO for Linux ARM64 Ruff releases (#27574)
  • Enable PGO for Windows x86-64 Ruff releases (#27573)
  • Enable PGO for macOS ARM64 Ruff releases (#27572)
  • Reduce Expr size to 64 bytes (#27591)

CLI

  • Hyperlink rule codes in ruff check --statistics output (#27646)

Documentation

  • [ruff] Also suggest asyncio.TaskGroup (RUF006) (#27461)

Other changes

Contributors

... (truncated)

Changelog

Sourced from ruff's changelog.

0.16.3

Released on 2026-08-13.

Preview features

  • [pylint] Fix false negatives on negative numbers (PLR6104) (#27251)
  • [pyupgrade] Add rule to replace while 1 with while True (UP048) (#27190)

Bug fixes

  • [flake8-bandit] Also check keyword arguments (S602, S603, S607, S609) (#27687)
  • [pylint] Allow continue in finally on Python 3.8 (#27626)
  • [pylint] Fix PLE1307 false positive with bools (#27651)
  • [pylint] Fix false positives and negatives with %b format character (PLE1300, PLE1307) (#27560)
  • [pylint] Improve handling of concatenated strings (PLE1300) (#27659)

Rule changes

  • [numpy] Make np.chararray autofix backwards-compatible (NPY201) (#27527)

Performance

  • Enable PGO for Linux x86-64 Ruff releases (#27570)
  • Enable PGO for Linux ARM64 Ruff releases (#27574)
  • Enable PGO for Windows x86-64 Ruff releases (#27573)
  • Enable PGO for macOS ARM64 Ruff releases (#27572)
  • Reduce Expr size to 64 bytes (#27591)

CLI

  • Hyperlink rule codes in ruff check --statistics output (#27646)

Documentation

  • [ruff] Also suggest asyncio.TaskGroup (RUF006) (#27461)

Other changes

Contributors

... (truncated)

Commits
  • b0e4702 Bump 0.16.3 (#27723)
  • ecdd401 [ty] Separate script and uv modules from project metadata (#27720)
  • 1263524 [ty] Simplify display implementations with std::fmt::from_fn (#27718)
  • 59196ba [ty] Unify polarity-aware relation construction (#27707)
  • b8c5e73 [ty] Disable CodSpeed cycle estimation for instrumented benchmarks (#27706)
  • 2b0d210 [ty] Centralize matched argument relations (#27705)
  • a9130f3 [pyupgrade] Add rule to replace while 1 with while True (while-one, `...
  • c64c7d6 [ty] Model try exception flow with operation checkpoints (#27471)
  • 9dea5ef [ty] Avoid deriving sequents for typevars with concrete bounds (#27587)
  • 9798e88 [ty] Preserve enum exhaustiveness with custom missing methods (#27700)
  • Additional commits viewable in compare view

Updates strands-agents from 1.51.0 to 1.52.0

Release notes

Sourced from strands-agents's releases.

python/v1.52.0

Auto-drafted from commits in python/v1.51.0..python/v1.52.0, grouped by conventional-commit type. Edit on the release page after publish if you want a polished writeup; the canonical release notes live on the website.

🚀 Features

  • feat(model-routing): add ModelRouter and accept it via Agent(model=) (#3474) (26770e17c)
  • feat(catalog): add strands-github-storage integration (#3750) (7f19592f9)
  • feat(storage-py): add top level storage (#3743) (0b296c37d)
  • feat(middleware): add AgentStreamStage with middleware-initiated interrupts (#3594) (792afbd91)
  • feat(ts): support appending to notebooks (#3459) (1a06dffd7)

🐛 Fixes

  • fix(streaming): log warning when tool input JSON is malformed (#2054) (2e11e734c)
  • fix(bedrock/py): retry incompatible tool-result turns (#3622) (1114e8b08)
  • fix(ts): abort in-flight Bedrock requests on cancellation (#3337) (2c6c53177)
  • fix(site): keep root lockfile bumps out of the other language's changelog (#3717) (d73ed034d)
  • fix(test): Move count_tokens fixture to gemini-3.1-flash-lite (#3763) (93b67745a)
  • fix(models/gemini): emit thought signature as its own reasoning delta (#3306) (9a020b716)
  • fix(openai): send tool-result documents as file_data, not file_url (#3674) (20ecff5e4)
  • fix(context-offloader): report retrieval failures as tool errors (#3680) (d72332972)
  • fix(conversation): trim at complete tool pairs (#3447) (13990f016)
  • fix(test): move count_tokens fixture off retired gemini-2.0-flash (#3755) (86b98f628)
  • fix(vended-tools): keep the pre-rename name on the deprecated bash aliases (#3751) (679665fe9)
  • fix(bidi): update bidi google-genai version floor (#3740) (5f357aef7)
  • fix(bedrock): honor a cache point placed in the last user message (#3677) (d69941a05)
  • fix(openai): send document content as file_data on the Responses API (#3576) (ff73bd913)
  • fix(deps): bump @​aws-sdk/core to 3.977.6 to fix NumericValue metadata regression (#3709) (f621b82c9)

♻️ Refactoring

  • refactor(site): consolidate src/utils into src/util (#3777) (6ff1d9799)
  • refactor(vended-tools): treat bash as its own deprecated tool (#3756) (e4d57c1c6)

📚 Documentation

  • docs(community): add Neo4j Agent Memory session manager (#3757) (ea1027add)
  • docs(community): add Zep memory integration (#3742) (bf275c70d)
  • docs: add prescriptive guidance for keeping cognitive complexity low (#3741) (cc7597c8b)
  • docs: add business KPI best practice to metrics page (#3720) (ae44fe91c)
  • docs(changelog): sync strands-agents/evals backfill (#3715) (11ad6366a)
  • docs(changelog): sync strands-agents/harness-sdk typescript/v1.12.0 (#3716) (c4c35e129)
  • docs(changelog): sync strands-agents/harness-sdk python/v1.51.0 (#3712) (f175b5704)
  • docs: add estimateUtilization documentation (#3679) (a181423a1)

✅ Tests

  • test(models): retry inconclusive Mantle routing probes (#3747) (9eaaff4a6)

... (truncated)

Commits
  • ea1027a docs(community): add Neo4j Agent Memory session manager (#3757)
  • 243f779 ci(docs): bump markdown-it from 14.3.0 to 15.0.0 in /site (#3605)
  • d4129c3 ci(docs): bump js-yaml from 4.3.0 to 4.3.1 in /site in the npm_and_yarn group...
  • b487b9a ci(docs): bump the npm_and_yarn group across 1 directory with 2 updates (#3670)
  • 2e11e73 fix(streaming): log warning when tool input JSON is malformed (#2054)
  • 26770e1 feat(model-routing): add ModelRouter and accept it via Agent(model=) (#3474)
  • bf275c7 docs(community): add Zep memory integration (#3742)
  • c2df950 ci(docs-preview): link catalog and standalone page changes in the preview com...
  • 1114e8b fix(bedrock/py): retry incompatible tool-result turns (#3622)
  • 2c6c531 fix(ts): abort in-flight Bedrock requests on cancellation (#3337)
  • Additional commits viewable in compare view

Updates strands-agents-tools from 0.8.1 to 0.8.6

Release notes

Sourced from strands-agents-tools's releases.

v0.8.6

Auto-drafted from commits in v0.8.5..v0.8.6, grouped by conventional-commit type. Edit on the release page after publish if you want a polished writeup; the canonical release notes live on the website.

🚀 Features

  • feat: deprecate 11 tools superseded by SDK capability, MCP servers, or nothing (#566) (bddfd3a)
  • feat: deprecate sleep, editor, and shell in favor of SDK vended tools (#550) (45bf7b8)

🐛 Fixes

  • fix(environment): drive value masking from environment variable (#545) (60b6390)
  • fix(use_aws): gate and redact ssm parameter and kms responses (#520) (f924945)

📚 Documentation

  • docs: note that tools are experimental and require an independent security review (#547) (6702a90)

👷 CI

  • ci: update ruff requirement from <0.14.0,>=0.13.0 to >=0.13.0,<0.17.0 (#562) (b13980c)
  • ci: update pre-commit requirement from <4.2.0,>=3.2.0 to >=3.2.0,<4.7.0 (#552) (95293c1)
  • ci: update psutil requirement from <6.0.0,>=5.8.0 to >=5.8.0,<8.0.0 (#554) (c24fcc3)
  • ci: update mypy requirement from <1.0.0,>=0.981 to >=0.981,<3.0.0 (#556) (d6a4a52)
  • ci: align dependabot config with harness-sdk conventions (#538) (a2d90e6)
  • ci(integ): opt in to allow-unsafe-pr-checkout on fork PR checkout (#548) (b27f672)

v0.8.5

Auto-drafted from commits in v0.8.4..v0.8.5, grouped by conventional-commit type. Edit on the release page after publish if you want a polished writeup; the canonical release notes live on the website.

📚 Documentation

  • docs: fix minor README issues (#544) (a762ed8)

v0.8.4

🐛 Fixes

  • fix(python_repl): drive non_interactive mode from environment variable (#541) (07ebfb3)

👷 CI

  • ci: add CODEOWNERS (#537) (78b1c2c)

v0.8.3

Auto-drafted from commits in v0.8.2..v0.8.3, grouped by conventional-commit type. Edit on the release page after publish if you want a polished writeup; the canonical release notes live on the website.

🐛 Fixes

... (truncated)

Commits
  • bddfd3a feat: deprecate 11 tools superseded by SDK capability, MCP servers, or nothin...
  • b13980c ci: update ruff requirement from <0.14.0,>=0.13.0 to >=0.13.0,<0.17.0 (#562)
  • 95293c1 ci: update pre-commit requirement from <4.2.0,>=3.2.0 to >=3.2.0,<4.7.0 (#552)
  • c24fcc3 ci: update psutil requirement from <6.0.0,>=5.8.0 to >=5.8.0,<8.0.0 (#554)
  • d6a4a52 ci: update mypy requirement from <1.0.0,>=0.981 to >=0.981,<3.0.0 (#556)
  • a2d90e6 ci: align dependabot config with harness-sdk conventions (#538)
  • 45bf7b8 feat: deprecate sleep, editor, and shell in favor of SDK vended tools (#550)
  • 60b6390 fix(environment): drive value masking from environment variable (#545)
  • b27f672 ci(integ): opt in to allow-unsafe-pr-checkout on fork PR checkout (#548)
  • 6702a90 docs: note that tools are experimental and require an independent security re...
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the evaluator-deps group in /scripts/aidlc-evaluator with 4 updates: [boto3](https://github.com/boto/boto3), [ruff](https://github.com/astral-sh/ruff), [strands-agents](https://github.com/strands-agents/harness-sdk) and [strands-agents-tools](https://github.com/strands-agents/tools).


Updates `boto3` from 1.43.69 to 1.43.74
- [Release notes](https://github.com/boto/boto3/releases)
- [Commits](boto/boto3@1.43.69...1.43.74)

Updates `ruff` from 0.16.2 to 0.16.3
- [Release notes](https://github.com/astral-sh/ruff/releases)
- [Changelog](https://github.com/astral-sh/ruff/blob/main/CHANGELOG.md)
- [Commits](astral-sh/ruff@0.16.2...0.16.3)

Updates `strands-agents` from 1.51.0 to 1.52.0
- [Release notes](https://github.com/strands-agents/harness-sdk/releases)
- [Commits](strands-agents/harness-sdk@python/v1.51.0...python/v1.52.0)

Updates `strands-agents-tools` from 0.8.1 to 0.8.6
- [Release notes](https://github.com/strands-agents/tools/releases)
- [Commits](strands-agents/tools@v0.8.1...v0.8.6)

---
updated-dependencies:
- dependency-name: boto3
  dependency-version: 1.43.74
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: evaluator-deps
- dependency-name: ruff
  dependency-version: 0.16.3
  dependency-type: direct:development
  update-type: version-update:semver-patch
  dependency-group: evaluator-deps
- dependency-name: strands-agents
  dependency-version: 1.52.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: evaluator-deps
- dependency-name: strands-agents-tools
  dependency-version: 0.8.6
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: evaluator-deps
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python:uv Pull requests that update python:uv code labels Aug 22, 2026
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python:uv Pull requests that update python:uv code labels Aug 22, 2026
@dependabot
dependabot Bot requested a review from a team as a code owner August 22, 2026 12:27
@dependabot @github

dependabot Bot commented on behalf of github Aug 25, 2026

Copy link
Copy Markdown
Contributor Author

This pull request was built based on a group rule. Closing it will not ignore any of these versions in future pull requests.

To ignore these dependencies, configure ignore rules in dependabot.yml

@dependabot
dependabot Bot deleted the dependabot/uv/scripts/aidlc-evaluator/evaluator-deps-ffac27f8a1 branch August 25, 2026 09:51
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python:uv Pull requests that update python:uv code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant