Skip to content

deps: update protobuf and setuptools#6670

Merged
matthewelwell merged 1 commit intomainfrom
deps/update-setuptools-and-protobuf
Feb 6, 2026
Merged

deps: update protobuf and setuptools#6670
matthewelwell merged 1 commit intomainfrom
deps/update-setuptools-and-protobuf

Conversation

@matthewelwell
Copy link
Contributor

@matthewelwell matthewelwell commented Feb 6, 2026

Changes

Update protobuf (transient dependency of google-api-python-client), wheel and jaraco.context (transient dependencies of setuptools).

Resolves CVEs:

How did you test this code?

E2E / unit tests

@vercel
Copy link

vercel bot commented Feb 6, 2026

The latest updates on your projects. Learn more about Vercel for GitHub.

3 Skipped Deployments
Project Deployment Actions Updated (UTC)
docs Ignored Ignored Feb 6, 2026 10:00am
flagsmith-frontend-preview Ignored Ignored Feb 6, 2026 10:00am
flagsmith-frontend-staging Ignored Ignored Feb 6, 2026 10:00am

Request Review

@matthewelwell matthewelwell requested a review from a team as a code owner February 6, 2026 10:00
@matthewelwell matthewelwell requested review from emyller and removed request for a team February 6, 2026 10:00
@github-actions github-actions bot added the api Issue related to the REST API label Feb 6, 2026
@github-actions
Copy link
Contributor

github-actions bot commented Feb 6, 2026

Docker builds report

Image Build Status Security report
ghcr.io/flagsmith/flagsmith-e2e:pr-6670 Finished ✅ Skipped
ghcr.io/flagsmith/flagsmith-frontend:pr-6670 Finished ✅ Results
ghcr.io/flagsmith/flagsmith-api-test:pr-6670 Finished ✅ Skipped
ghcr.io/flagsmith/flagsmith-api:pr-6670 Finished ✅ Results
ghcr.io/flagsmith/flagsmith:pr-6670 Finished ✅ Results
ghcr.io/flagsmith/flagsmith-private-cloud:pr-6670 Finished ✅ Results

@matthewelwell matthewelwell changed the title Update protobuf and setuptools deps: update protobuf and setuptools Feb 6, 2026
@codecov
Copy link

codecov bot commented Feb 6, 2026

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 98.20%. Comparing base (6a97300) to head (a30ed88).
⚠️ Report is 2 commits behind head on main.

Additional details and impacted files
@@            Coverage Diff             @@
##             main    #6670      +/-   ##
==========================================
+ Coverage   98.12%   98.20%   +0.07%     
==========================================
  Files        1298     1298              
  Lines       47108    47108              
==========================================
+ Hits        46227    46262      +35     
+ Misses        881      846      -35     

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@khvn26
Copy link
Member

khvn26 commented Feb 6, 2026

Why do we need setuptools in runtime again?

@matthewelwell
Copy link
Contributor Author

Why do we need setuptools in runtime again?

This is a good question - it looks like it is a transient dependency of django-axes (see here). I would definitely like to try and remove that, but I think that's a separate concern.

@matthewelwell
Copy link
Contributor Author

@khvn26 see here: #6671

@matthewelwell matthewelwell merged commit af5e144 into main Feb 6, 2026
34 of 35 checks passed
@matthewelwell matthewelwell deleted the deps/update-setuptools-and-protobuf branch February 6, 2026 10:22
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

api Issue related to the REST API

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants