test(deps): guard patched AnyIO lock versions - #1858
Conversation
Codex Review SummaryThis comment shows the latest Codex review activity on this pull request.
ℹ️ About Codex in GitHubYour team has set up Codex to review pull requests in this repo. Reviews are triggered when you
Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings. |
There was a problem hiding this comment.
💡 Codex Review
Here are some automated review suggestions for this pull request.
Reviewed commit: d324555009
ℹ️ About Codex in GitHub
Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you
- Open a pull request for review
- Mark a draft as ready
- Comment "@codex review".
If Codex has suggestions, it will comment; otherwise it will react with 👍.
Codex can also answer questions or update the PR. Try commenting "@codex address that feedback".
Performance BenchmarksCompared
|
|
@codex review |
|
Codex Review: Didn't find any major issues. 👍 Reviewed commit: ℹ️ About Codex in GitHubYour team has set up Codex to review pull requests in this repo. Reviews are triggered when you
If Codex has suggestions, it will comment; otherwise it will react with 👍. Codex can also answer questions or update the PR. Try commenting "@codex address that feedback". |
🛡️ Codex Security Review · Automatically triggeredSecurity review completed. No security issues were found in this pull request. Reviewed commit: Only the user who started this review can view the report in Codex. ℹ️ About Codex security reviews in GitHubThis is an experimental Codex feature. Security reviews are triggered when:
Once complete, Codex will leave suggestions, or a comment if no findings are found. |
Codecov Report✅ All modified and coverable lines are covered by tests. Additional details and impacted files@@ Coverage Diff @@
## main #1858 +/- ##
=======================================
Coverage 76.54% 76.54%
=======================================
Files 218 218
Lines 119909 119909
Branches 28392 28392
=======================================
+ Hits 91788 91789 +1
Misses 20430 20430
+ Partials 7691 7690 -1 🚀 New features to boost your workflow:
|
Reuse the AnyIO 4.14.2 and GitPython 3.1.60 lock updates and regression guards from PR #1857 so this branch passes the dependency audit independently.
Port the supported Mypy and Ruff bounds and standalone Mypy validation from PR #1858 (d324555 and 966a5fa). Restore their known-compatible locked versions so standalone Ruff remains aligned with the root tool. Keep Renovate's runtime dependency refresh, including its audited AnyIO and GitPython updates. Remove the now-unused ast-serialize lock entry from the Mypy 2.x dependency graph.
|
@codex review |
|
Codex Review: Didn't find any major issues. Keep it up! Reviewed commit: ℹ️ About Codex in GitHubYour team has set up Codex to review pull requests in this repo. Reviews are triggered when you
If Codex has suggestions, it will comment; otherwise it will react with 👍. Codex can also answer questions or update the PR. Try commenting "@codex address that feedback". |
🛡️ Codex Security Review · Automatically triggeredSecurity review completed. No security issues were found in this pull request. Reviewed commit: Only the user who started this review can view the report in Codex. ℹ️ About Codex security reviews in GitHubThis is an experimental Codex feature. Security reviews are triggered when:
Once complete, Codex will leave suggestions, or a comment if no findings are found. |
|
@codex review |
|
Codex Review: Didn't find any major issues. Another round soon, please! Reviewed commit: ℹ️ About Codex in GitHubYour team has set up Codex to review pull requests in this repo. Reviews are triggered when you
If Codex has suggestions, it will comment; otherwise it will react with 👍. Codex can also answer questions or update the PR. Try commenting "@codex address that feedback". |
🛡️ Codex Security Review · Automatically triggeredSecurity review completed. No security issues were found in this pull request. Reviewed commit: Only the user who started this review can view the report in Codex. ℹ️ About Codex security reviews in GitHubThis is an experimental Codex feature. Security reviews are triggered when:
Once complete, Codex will leave suggestions, or a comment if no findings are found. |
* chore(deps): lock file maintenance * fix(ci): preserve compatible tools during lock maintenance Port the supported Mypy and Ruff bounds and standalone Mypy validation from PR #1858 (d324555 and 966a5fa). Restore their known-compatible locked versions so standalone Ruff remains aligned with the root tool. Keep Renovate's runtime dependency refresh, including its audited AnyIO and GitPython updates. Remove the now-unused ast-serialize lock entry from the Mypy 2.x dependency graph. --------- Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com> Co-authored-by: Michael D'Angelo <mdangelo@openai.com>
Add AnyIO to the dependency lock regression test so future lock updates cannot select a release below the patched 4.14.2 floor.
Make the inherited cache interruption test deterministic across Windows identity retries and explicitly cover both initial and retried captures, preserving monitor-cleanup assertions.
Current main now supplies newer compatible Mypy/Ruff bounds and the matching standalone workflow, documentation, and regression updates. This branch integrates those changes and preserves main's AnyIO 4.15.1 and GitPython 3.1.62 lock entries; the remaining dependency change is the AnyIO guard.
Validation: 235 dependency/workflow tests and both cache interruption scenarios, repository-wide Ruff and Mypy (491 files), and lock consistency pass. An interrupted broad local run reported 2,913 passes and an unchanged one-second timing assertion failure under heavy shared-host load. The exact timing test subsequently passed on this branch and current main. Runtime sources are identical to current main.