This issue lists Renovate updates and detected dependencies. Read the Dependency Dashboard docs to learn more.View this repository on the Mend.io Web Portal .
Pending Approval
The following branches are pending approval. To create them, click on a checkbox below.
Pending Status Checks
The following updates await pending status checks. To force their creation now, click on a checkbox below.
Open
The following updates have all been created. To force a retry/rebase of any, click on a checkbox below.
fix(deps): update dependency python-dotenv to v1.2.2 [security]
chore(deps): update dependency pytest to v9 [security]
fix(deps): update dependency flask to v3 [security]
fix(deps): update all patch dependencies (PyYAML, freezegun, pytest-env)
chore(deps): update all non-major github action dependencies (actions/cache, actions/checkout, actions/setup-python, aws-actions/configure-aws-credentials, cds-snc/backstage-catalog-info-helper-action, cds-snc/dns-proxy-action, cds-snc/security-tools, github/codeql-action, peter-evans/create-pull-request, python)
fix(deps): update all minor dependencies (aws-xray-sdk, gevent, mypy, newrelic, notifications-utils, poethepoet, pycryptodome, pytest-mock, python, requests-mock, ruff, types-requests)
chore(deps): lock file maintenance
Click on this checkbox to rebase all open PRs at once
Detected Dependencies
docker-compose (1)
.devcontainer/docker-compose.yml
dockerfile (2)
.devcontainer/Dockerfile (1)
mcr.microsoft.com/vscode/devcontainers/python 1-3.12 → [Updates: 3-3.12]
ci/Dockerfile (1)
python 3.12-alpine3.20@sha256:5049c050bdc68575a10bcb1885baa0689b6c15152d8a56a7e399fb49f783bf98 → [Updates: 3.12-alpine3.20]
github-actions (11)
.github/workflows/backstage-catalog-helper.yml (4)
cds-snc/dns-proxy-action v1.0.2@f0796e7f3d6bec5d40aecb0321ed8012f5602f84 → [Updates: v1.2.0, v1.0.2]
actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11 → [Updates: v4.4.0, v7.0.1]
cds-snc/backstage-catalog-info-helper-action v0.3.1@cc75afc29a0ade6c41400132ff9e1222f8916ba6 → [Updates: v0.3.1]
peter-evans/create-pull-request v7.0.3@6cd32fd93684475c31847837f87bb135d40a2b79 → [Updates: v7.0.11, v8.1.1]
.github/workflows/check_pinned_actions.yaml (2)
actions/checkout v4.2.2@11bd71901bbe5b1630ceea73d27597364c9af683 → [Updates: v4.4.0, v7.0.1]
astral-sh/setup-uv v10.0.1@20cfd1bf945f4377ade1205e4dbc17946fc9a30d
.github/workflows/codeql.yml (4)
actions/checkout v3.6.0@f43a0e5ff2bd294095638e18286ca9a3d1956744 → [Updates: v3.7.0, v7.0.1]
github/codeql-action v2.26.9@d97ba04b39135f37e9d60c84a6995bb18b7ac328 → [Updates: v2.28.1, v4.37.9]
github/codeql-action v2.26.9@d97ba04b39135f37e9d60c84a6995bb18b7ac328 → [Updates: v2.28.1, v4.37.9]
github/codeql-action v2.26.9@d97ba04b39135f37e9d60c84a6995bb18b7ac328 → [Updates: v2.28.1, v4.37.9]
.github/workflows/dev_branch_build_push_images.yml (2)
actions/checkout v4.1.1@b4ffde65f46336ab88eb53be808477a3936bae11 → [Updates: v4.4.0, v7.0.1]
actions/upload-artifact v4.6.2@ea165f8d65b6e75b540449e92b4886f43607fa02 → [Updates: v7.0.1]
.github/workflows/docker-vulnerability-scan.yml (3)
aws-actions/configure-aws-credentials v2.2.0@5fd3084fc36e372ff1fff382a39b10d03659f355 → [Updates: v6.2.3]
aws-actions/amazon-ecr-login v1.7.1@5a88a04c91d5c6f97aae0d9be790e64d9b1d47b7 → [Updates: v2.1.7]
cds-snc/security-tools v3.2.0@34794baf2af592913bb5b51d8df4f8d0acc49b6f → [Updates: v3.2.1, v4.0.4]
.github/workflows/docker.yaml (6)
actions/checkout v3.6.0@f43a0e5ff2bd294095638e18286ca9a3d1956744 → [Updates: v3.7.0, v7.0.1]
aws-actions/configure-aws-credentials v2.2.0@5fd3084fc36e372ff1fff382a39b10d03659f355 → [Updates: v6.2.3]
aws-actions/amazon-ecr-login v1.7.1@5a88a04c91d5c6f97aae0d9be790e64d9b1d47b7 → [Updates: v2.1.7]
aws-actions/configure-aws-credentials v2.2.0@5fd3084fc36e372ff1fff382a39b10d03659f355 → [Updates: v6.2.3]
getsentry/action-github-app-token v2.0.0@97c9e23528286821f97fba885c1b1123284b29cc → [Updates: v4.0.0]
cds-snc/security-tools v4.0.1@12a0cdea1c5a515dfcbe353693db804a1793c0ed → [Updates: v4.0.4]
.github/workflows/export_github_data.yml (2)
actions/checkout v4.2.2@11bd71901bbe5b1630ceea73d27597364c9af683 → [Updates: v4.4.0, v7.0.1]
aws-actions/configure-aws-credentials v4.3.1@7474bc4690e29a8392af63c5b98e7449536d5c3a → [Updates: v6.2.3]
.github/workflows/ossf-scorecard.yml (2)
cds-snc/dns-proxy-action v1.0.2@f0796e7f3d6bec5d40aecb0321ed8012f5602f84 → [Updates: v1.2.0, v1.0.2]
actions/checkout v4.2.2@11bd71901bbe5b1630ceea73d27597364c9af683 → [Updates: v4.4.0, v7.0.1]
.github/workflows/push.yml (5)
actions/checkout v3.6.0@f43a0e5ff2bd294095638e18286ca9a3d1956744 → [Updates: v3.7.0, v7.0.1]
actions/setup-python v4.8.0@b64ffcaf5b410884ad320a9cfac8866006a109aa → [Updates: v4.9.1, v7.0.0]
actions/cache v4.2.0@1bd1e32a3bdc45362d1e726936510720a7c30a57 → [Updates: v4.3.0, v6.1.0]
cds-snc/notification-utils 52.0.16@f8de0602f5aa34ef1e62691c94b7d0764568f423
python 3.12 → [Updates: 3.14]
.github/workflows/reusable_push_ecr.yml (3)
actions/download-artifact v4.3.0@d3f86a106a0bac45b974a628896c90dbdf5c8093 → [Updates: v8.0.1]
aws-actions/configure-aws-credentials v4.1.0@ececac1a45f3b08a01d2dd070d28d111c5fe6722 → [Updates: v4.3.1, v6.2.3]
aws-actions/amazon-ecr-login v1.7.1@5a88a04c91d5c6f97aae0d9be790e64d9b1d47b7 → [Updates: v2.1.7]
.github/workflows/s3-backup.yml (3)
cds-snc/dns-proxy-action v1.0.2@f0796e7f3d6bec5d40aecb0321ed8012f5602f84 → [Updates: v1.2.0, v1.0.2]
actions/checkout v4.2.2@11bd71901bbe5b1630ceea73d27597364c9af683 → [Updates: v4.4.0, v7.0.1]
aws-actions/configure-aws-credentials v5.1.0@00943011d9042930efac3dcd3a170e4273319bc8 → [Updates: v5.1.1, v6.2.3]
poetry (1)
pyproject.toml (28)
poetry-core >=1.7.1
python ~3.12.7 → [Updates: ~3.14.0]
aws-xray-sdk ^2.14.0 → [Updates: ^2.14.0]
awscli-cwlogs 1.4.6
environs ^11.2.1 → [Updates: ^15.0.0]
Flask 2.3.3 → [Updates: 3.1.3]
Flask-Env 2.0.0
gevent 24.2.1 → [Updates: 24.11.1, 26.8.0]
gunicorn 22.0.0 → [Updates: 26.2.0]
newrelic 11.0.0 → [Updates: 11.5.0, 13.5.0]
notifications-utils 53.0.1 → [Updates: 53.2.34]
pycryptodome * → [Updates: *]
python-dotenv 1.0.1 → [Updates: 1.2.2]
python-magic 0.4.27
PyYAML 6.0.1 → [Updates: 6.0.3]
coveralls 1.11.1 → [Updates: 4.1.0]
freezegun 1.5.1 → [Updates: 1.5.5]
jinja2-cli 0.8.2 → [Updates: 1.0.1]
monkeytype 23.3.0
mypy 1.0.1 → [Updates: 1.20.2, 2.3.1]
poethepoet ^0.24.4 → [Updates: ^0.48.0]
pytest 7.2.0 → [Updates: 9.0.3]
pytest-cov 3.0.0 → [Updates: 7.1.0]
pytest-env 0.8.1 → [Updates: 0.8.2, 1.7.0]
pytest-mock 3.14.0 → [Updates: 3.15.1]
requests-mock 1.10.0 → [Updates: 1.12.1]
ruff ^0.8.2 → [Updates: ^0.16.0]
types-requests 2.28.11 → [Updates: 2.33.0.20260712]
renovate-config (1)
renovate.json
This issue lists Renovate updates and detected dependencies. Read the Dependency Dashboard docs to learn more.
View this repository on the Mend.io Web Portal.
Pending Approval
The following branches are pending approval. To create them, click on a checkbox below.
actions/download-artifact,actions/upload-artifact)Pending Status Checks
The following updates await pending status checks. To force their creation now, click on a checkbox below.
Open
The following updates have all been created. To force a retry/rebase of any, click on a checkbox below.
PyYAML,freezegun,pytest-env)actions/cache,actions/checkout,actions/setup-python,aws-actions/configure-aws-credentials,cds-snc/backstage-catalog-info-helper-action,cds-snc/dns-proxy-action,cds-snc/security-tools,github/codeql-action,peter-evans/create-pull-request,python)aws-xray-sdk,gevent,mypy,newrelic,notifications-utils,poethepoet,pycryptodome,pytest-mock,python,requests-mock,ruff,types-requests)Detected Dependencies
docker-compose (1)
dockerfile (2)
github-actions (11)
poetry (1)
renovate-config (1)