Skip to content

Bump mypy from 2.3.0 to 2.3.1 - #445

Merged
github-actions[bot] merged 1 commit into
mainfrom
dependabot/pip/mypy-2.3.1
Sep 7, 2026
Merged

Bump mypy from 2.3.0 to 2.3.1#445
github-actions[bot] merged 1 commit into
mainfrom
dependabot/pip/mypy-2.3.1

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 7, 2026

Copy link
Copy Markdown
Contributor

Bumps mypy from 2.3.0 to 2.3.1.

Changelog

Sourced from mypy's changelog.

Mypy 2.3.1

  • Fix mypyc crash on double yielding Iterators (Daniël van Noord, PR 21826)
  • Fix mypyc default_factory for inherited dataclass (Daniël van Noord, PR 21785)
  • Clear mypyc coroutine env on coroutine completion (Piotr Sawicki, PR 21734)
  • Fix crash when unpacking return value from overload (Shantanu, PR 21830)

Acknowledgements

Thanks to all mypy contributors who contributed to this release:

  • Agriya Khetarpal
  • Ethan Sarp
  • Ivan Levkivskyi
  • Jingchen Ye
  • Jukka Lehtosalo
  • Piotr Sawicki
  • Shantanu
  • Tom Bannink
  • Viktor Szépe
  • ygale

I'd also like to thank my employer, Dropbox, for supporting mypy development.

Mypy 2.2

We've just uploaded mypy 2.2.0 to the Python Package Index (PyPI). Mypy is a static type checker for Python. This release includes new features, performance improvements and bug fixes. You can install it as follows:

python3 -m pip install -U mypy

You can read the full documentation for this release on Read the Docs.

Support for Closed TypedDicts (PEP 728)

Mypy now supports closed TypedDicts as specified in PEP 728. A closed TypedDict cannot have extra keys beyond those explicitly defined. This allows the type checker to determine that certain operations are safe when they otherwise wouldn't be due to the potential presence of unknown keys.

You can use the closed keyword argument with TypedDict:

HasName = TypedDict("HasName", {"name": str})
HasOnlyName = TypedDict("HasOnlyName", {"name": str}, closed=True)
Movie = TypedDict("Movie", {"name": str, "year": int})
movie: Movie = {"name": "Nimona", "year": 2023}
has_name: HasName = movie  # OK: HasName is open (default)
has_only_name: HasOnlyName = movie  # Error: HasOnlyName is closed and Movie has extra "year" key
</tr></table>

... (truncated)

Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [mypy](https://github.com/python/mypy) from 2.3.0 to 2.3.1.
- [Changelog](https://github.com/python/mypy/blob/master/CHANGELOG.md)
- [Commits](python/mypy@v2.3.0...v2.3.1)

---
updated-dependencies:
- dependency-name: mypy
  dependency-version: 2.3.1
  dependency-type: direct:development
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python python programming languagae labels Sep 7, 2026
@dependabot
dependabot Bot requested a review from a team as a code owner September 7, 2026 22:53
@dependabot dependabot Bot added python python programming languagae dependencies Pull requests that update a dependency file labels Sep 7, 2026
@github-actions

github-actions Bot commented Sep 7, 2026

Copy link
Copy Markdown

🤖 Claude Code Review

PR Code Review

Summary: This is a single-line dependency version bump in pyproject.toml, updating mypy from 2.3.0 to 2.3.1 in the lint optional-dependencies group (line 78).

Code Quality

  • ✅ Style conventions: Change follows the existing pinned-version pattern used throughout the lint list (e.g., flake8==7.3.0).
  • ✅ No commented-out code.
  • ✅ N/A — no variable names introduced.
  • ✅ N/A — single-value change, no duplication introduced.
  • ✅ No defects: This is a patch-version bump of a dev/lint tool dependency (pyproject.toml:78). No logic, runtime behavior, or production code paths are affected.
  • .claude/CLAUDE.md reviewed — not touched by this diff and its content is already environment-general.

Testing

  • ✅ N/A — dependency version bump with no new functions/endpoints. No tests required.
  • ✅ N/A — no new endpoints.
  • ✅ N/A — no new logic/edge cases.
  • ✅ N/A — coverage threshold unaffected by a dependency pin.

Documentation

  • ✅ N/A — no README-relevant behavior change.
  • ✅ N/A — no API changes.
  • ✅ N/A — no complex logic added.
  • CHANGELOG.md not updated. If this repo maintains a CHANGELOG.md for dependency bumps (many Senzing repos do via automated Dependabot/release-please flows), verify whether this bump should be reflected there or if it's excluded by convention (bot-generated PRs often skip changelog entries by design — check .github/dependabot.yml or release automation config to confirm this is expected).
  • ✅ Markdown formatting — N/A, no .md files changed.

Security

  • ✅ No hardcoded credentials.
  • ✅ N/A — no input handling changed.
  • ✅ N/A — no error handling changed.
  • ✅ No sensitive data in logs.
  • ✅ No .lic files or AQAAAD-prefixed strings present in this diff.

Overall

This is a low-risk, mechanical dependency bump (mypy patch release) with no functional impact. No blocking issues found. The only item worth a quick sanity check is whether CHANGELOG.md should note dependency bumps per this repo's convention — likely not required if these PRs are automated (e.g., Dependabot), consistent with the other recent bump commits visible in git history (wheel, virtualenv, pylint).

Automated code review analyzing defects and coding standards

@senzingdevops senzingdevops left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Automated: approving this pull request because it includes a patch update

@github-actions
github-actions Bot enabled auto-merge (squash) September 7, 2026 22:53
@github-actions
github-actions Bot merged commit 9c5f664 into main Sep 7, 2026
57 checks passed
@github-actions
github-actions Bot deleted the dependabot/pip/mypy-2.3.1 branch September 7, 2026 22:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python python programming languagae

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant