Add tomlkit as a runtime dependency, which is required to rewrite pyproject.toml when setting a static version
Added:
The version command can now set a version that is statically defined by the project.version field, updating pyproject.toml in place. Pass --force to allow an explicit downgrade
Fixed:
Allow the ; private annotation on project.import-names and project.import-namespaces entries rather than rejecting them as invalid import names.
Reject project.readme paths that are absolute or resolve outside of the project directory.
Hatchling v1.31.0
Fixed
Only rewrite the shebang of a shared script when a Python shebang is present on the first line, preserving binary files and other content verbatim instead of dropping leading bytes.
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase will rebase this PR
@dependabot recreate will recreate this PR, overwriting any edits that have been made to it
@dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
@dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
@dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
@dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Bumps [hatchling](https://github.com/pypa/hatch) from 1.30.1 to 1.32.0.
<details>
<summary>Release notes</summary>
<p><em>Sourced from <a href="https://github.com/pypa/hatch/releases">hatchling's releases</a>.</em></p>
<blockquote>
<h2>Hatchling v1.32.0</h2>
<p><em><strong>Changed:</strong></em></p>
<ul>
<li>
<p>Bump default core metadata version to 2.5</p>
</li>
<li>
<p>Add <code>tomlkit</code> as a runtime dependency, which is required to rewrite <code>pyproject.toml</code> when setting a static version</p>
</li>
</ul>
<p><em><strong>Added:</strong></em></p>
<ul>
<li>The <code>version</code> command can now set a version that is statically defined by the <code>project.version</code> field, updating <code>pyproject.toml</code> in place. Pass <code>--force</code> to allow an explicit downgrade</li>
</ul>
<p><em><strong>Fixed:</strong></em></p>
<ul>
<li>
<p>Allow the <code>; private</code> annotation on <code>project.import-names</code> and <code>project.import-namespaces</code> entries rather than rejecting them as invalid import names.</p>
</li>
<li>
<p>Reject <code>project.readme</code> paths that are absolute or resolve outside of the project directory.</p>
</li>
</ul>
<h2>Hatchling v1.31.0</h2>
<p><em><strong>Fixed</strong></em></p>
<ul>
<li>Only rewrite the shebang of a shared script when a Python shebang is present on the first line, preserving binary files and other content verbatim instead of dropping leading bytes.</li>
</ul>
</blockquote>
</details>
<details>
<summary>Commits</summary>
<ul>
<li><a href="https://github.com/pypa/hatch/commit/558061c5ecbe7e9b10d81965d4cdc8df05832228"><code>558061c</code></a> Fix ci (<a href="https://redirect.github.com/pypa/hatch/issues/2377">#2377</a>)</li>
<li><a href="https://github.com/pypa/hatch/commit/bc6d1bc1347445dfad06e731d4ae50f562692683"><code>bc6d1bc</code></a> release Hatch v1.18.0 (<a href="https://redirect.github.com/pypa/hatch/issues/2376">#2376</a>)</li>
<li><a href="https://github.com/pypa/hatch/commit/8429e5d5bc84b2c9ace623b99518661e9032d422"><code>8429e5d</code></a> release Hatchling v1.32.0 (<a href="https://redirect.github.com/pypa/hatch/issues/2375">#2375</a>)</li>
<li><a href="https://github.com/pypa/hatch/commit/413b3a880cfa69cb5095a927a725b074be669930"><code>413b3a8</code></a> Prepare for release (<a href="https://redirect.github.com/pypa/hatch/issues/2374">#2374</a>)</li>
<li><a href="https://github.com/pypa/hatch/commit/4ccc9ea9cd2800c90549768f7eaa7dc9985b45e1"><code>4ccc9ea</code></a> Bug Fix - fix CTRL-C behavior to correctly handle signals (<a href="https://redirect.github.com/pypa/hatch/issues/2369">#2369</a>)</li>
<li><a href="https://github.com/pypa/hatch/commit/a8858032b372ad8e13950a06b1783e723ee892e5"><code>a885803</code></a> Add sources to enable other types of local dependencies (<a href="https://redirect.github.com/pypa/hatch/issues/2313">#2313</a>)</li>
<li><a href="https://github.com/pypa/hatch/commit/ab3e000585fc95c32196d406d0c224fca62ff1b1"><code>ab3e000</code></a> Add --all flag to hatch build for building all workspace members (<a href="https://redirect.github.com/pypa/hatch/issues/2352">#2352</a>)</li>
<li><a href="https://github.com/pypa/hatch/commit/bb9027761d1325a540ca1eda5aee067098249b41"><code>bb90277</code></a> fix: Allow the <code>; private</code> annotation in <code>import-names</code>/<code>import-namespaces</code> p...</li>
<li><a href="https://github.com/pypa/hatch/commit/3a9d853a68d009db91e70e4271b1d688e5381d3b"><code>3a9d853</code></a> fix: prevent backward relative paths in readme (<a href="https://redirect.github.com/pypa/hatch/issues/2354">#2354</a>)</li>
<li><a href="https://github.com/pypa/hatch/commit/c4dc4f8ab4399a9f35b56c3367ff39d6fb09271c"><code>c4dc4f8</code></a> test: Fix test expectations for metadata generated by <code>flit-core</code> (<a href="https://redirect.github.com/pypa/hatch/issues/2365">#2365</a>)</li>
<li>Additional commits viewable in <a href="https://github.com/pypa/hatch/compare/hatchling-v1.30.1...hatchling-v1.32.0">compare view</a></li>
</ul>
</details>
<br />
[](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.
[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)
---
<details>
<summary>Dependabot commands and options</summary>
<br />
You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency
- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
</details>
---
GitHub 来源:https://github.com/xixu-me/deepseek-harness/pull/6
作者:dependabot[bot] · 创建时间:2026-10-08T07:13:02Z
<!-- github-archive:4783242188 -->
### Labels
The following labels could not be found: `area/infra`, `kind/dependency`. Please create them before Dependabot can add them to a pull request.
Please fix the above issues or remove invalid values from `dependabot.yml`.
---
GitHub 来源:https://github.com/xixu-me/deepseek-harness/pull/6#issuecomment-6054636784
作者:dependabot[bot] · 创建时间:2026-10-08T07:13:05Z
<!-- github-archive:6054636784 -->
You are not authorized to merge this pull request.
This pull request can be merged automatically.
View command line instructions
Checkout
From your project repository, check out a new branch and test the changes.
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
Bumps hatchling from 1.30.1 to 1.32.0.
Release notes
Sourced from hatchling's releases.
Commits
558061cFix ci (#2377)bc6d1bcrelease Hatch v1.18.0 (#2376)8429e5drelease Hatchling v1.32.0 (#2375)413b3a8Prepare for release (#2374)4ccc9eaBug Fix - fix CTRL-C behavior to correctly handle signals (#2369)a885803Add sources to enable other types of local dependencies (#2313)ab3e000Add --all flag to hatch build for building all workspace members (#2352)bb90277fix: Allow the; privateannotation inimport-names/import-namespacesp...3a9d853fix: prevent backward relative paths in readme (#2354)c4dc4f8test: Fix test expectations for metadata generated byflit-core(#2365)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)GitHub 来源:https://github.com/xixu-me/deepseek-harness/pull/6
作者:dependabot[bot] · 创建时间:2026-10-08T07:13:02Z
Labels
The following labels could not be found:
area/infra,kind/dependency. Please create them before Dependabot can add them to a pull request.Please fix the above issues or remove invalid values from
dependabot.yml.GitHub 来源:https://github.com/xixu-me/deepseek-harness/pull/6#issuecomment-6054636784
作者:dependabot[bot] · 创建时间:2026-10-08T07:13:05Z
View command line instructions
Checkout
From your project repository, check out a new branch and test the changes.