René's URL Explorer Experiment


Title: build(deps): bump pypa/gh-action-pypi-publish from 1.4.2 to 1.13.0 in /.github/workflows by dependabot[bot] · Pull Request #857 · watson-developer-cloud/python-sdk · GitHub

Open Graph Title: build(deps): bump pypa/gh-action-pypi-publish from 1.4.2 to 1.13.0 in /.github/workflows by dependabot[bot] · Pull Request #857 · watson-developer-cloud/python-sdk

X Title: build(deps): bump pypa/gh-action-pypi-publish from 1.4.2 to 1.13.0 in /.github/workflows by dependabot[bot] · Pull Request #857 · watson-developer-cloud/python-sdk

Description: Bumps pypa/gh-action-pypi-publish from 1.4.2 to 1.13.0. Release notes Sourced from pypa/gh-action-pypi-publish's releases. v1.13.0 [!important] 🚨 This release includes fixes for GHSA-vxmw-7h4f-hqxh discovered by @​woodruffw💰. We've also integrated Zizmor to catch similar issues in the future and you should too. ✨ New Stuff @​woodruffw💰 updated the README to no longer mention the attestations feature being experimental in #347: it's been rather stable for a year already 🎉 He also added more diagnostic output which includes printing out the GitHub Environment claim via #371 and warning about the unsupported reusable workflows configurations #306, when using Trusted Publishing. [!tip] The official support for reusable workflows is currently blocked on changes to PyPI. To get updates about progress on the action side, you may want to subscribe to #166. At PyCon US 2025 Sprints, @​facutuesca💰, @​miketheman💰, @​woodruffw💰 and I💰 spent several hours IRL brainstorming how to fix this and migrate projects that happen to rely on an obscure corner case with reusable workflows that temporarily allows them to function by accident. The result of that discussion is posted @ pypi/warehouse#11096. Note that this is a volunteer-led effort and there is no ETA. If you need this soon, make your employer sponsor the PSF and maybe they'll be able to hire somebody for this work on Warehouse. In addition to that, @​konstin💰 sent #378 to pin actions/setup-python to a SHA hash. This makes pypi-publish compatible with new GitHub policies that allow organizations to mandate hash-pinning actions used in workflows. 🛠️ Internal Dependencies @​webknjaz💰 made a bunch of updates to the action runtime which includes bumping it to Python 3.13 in #331 and updating the dependency tree across the board. pip-with-requires-python is no longer being installed (#332). Some related bumps were contributed by @​woodruffw💰 (#359) and @​kurtmckee💰 sent a contributor-facing PR, bumping the linting configuration via #335. 💪 New Contributors @​kurtmckee made their first contribution in #335 @​konstin made their first contribution in #378 🪞 Full Diff: pypa/gh-action-pypi-publish@v1.12.4...v1.13.0 🧔‍♂️ Release Manager: @​webknjaz 🇺🇦 💬 Discuss on Bluesky 🦋, on Mastodon 🐘 and on GitHub. v1.12.4 ... (truncated) Commits ed0c539 📦📌 Bump the pinned dependency tree 77db1b7 Merge branch PR #306, GHSA-vxmw-7h4f-hqxh fix and PR #378 into unstable/v1 280b3a1 Alias typing as t in imports e380240 Use object in place of typing.Any in annotations e50bff6 Deduplicate claim ref lookup decbc9a Hint people to subscribe to #166 for notifications 8208ad3 Ask not to report bugs with reusable workflow ff0fef5 🧪 Scope WPS202 suppression to specific files 1293b8c Use yamllint disable line length lint ed01280 Linter (different rule) Additional commits viewable in compare view You can trigger a rebase of this PR by commenting @dependabot rebase. Dependabot commands and options You can trigger Dependabot actions by commenting on this PR: @dependabot rebase will rebase this PR @dependabot recreate will recreate this PR, overwriting any edits that have been made to it @dependabot merge will merge this PR after your CI passes on it @dependabot squash and merge will squash and merge this PR after your CI passes on it @dependabot cancel merge will cancel a previously requested merge and block automerging @dependabot reopen will reopen this PR if it is closed @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually @dependabot show ignore conditions will show all of the ignore conditions of the specified dependency @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) You can disable automated security fix PRs for this repo from the Security Alerts page. Note Automatic rebases have been disabled on this pull request as it has been open for over 30 days.

Open Graph Description: Bumps pypa/gh-action-pypi-publish from 1.4.2 to 1.13.0. Release notes Sourced from pypa/gh-action-pypi-publish's releases. v1.13.0 [!important] 🚨 This release includes fixes for GHSA-vxmw-7...

X Description: Bumps pypa/gh-action-pypi-publish from 1.4.2 to 1.13.0. Release notes Sourced from pypa/gh-action-pypi-publish's releases. v1.13.0 [!important] 🚨 This release includes fixes for GHSA-vx...

Opengraph URL: https://github.com/watson-developer-cloud/python-sdk/pull/857

X: @github

direct link

Domain: github.com

route-pattern/:user_id/:repository/pull/:id/checks(.:format)
route-controllerpull_requests
route-actionchecks
fetch-noncev2:8e15b41f-ef98-93a0-e553-69f53b79516e
current-catalog-service-hash87dc3bc62d9b466312751bfd5f889726f4f1337bdff4e8be7da7c93d6c00a25a
request-id8978:28CDAA:2B9679E:3D23031:696929DC
html-safe-noncea2c946afcda4817367e920f08606e19d34cbf4dc335250c633a037e46c8664f1
visitor-payloadeyJyZWZlcnJlciI6IiIsInJlcXVlc3RfaWQiOiI4OTc4OjI4Q0RBQToyQjk2NzlFOjNEMjMwMzE6Njk2OTI5REMiLCJ2aXNpdG9yX2lkIjoiODcwMDYyNDQ3Mzc0MTE0MjQ5MiIsInJlZ2lvbl9lZGdlIjoiaWFkIiwicmVnaW9uX3JlbmRlciI6ImlhZCJ9
visitor-hmac3cd631ce9646d40c2c14ab2d7946e382feda2b7e516476bb3713115cb12d9507
hovercard-subject-tagpull_request:2799927592
github-keyboard-shortcutsrepository,pull-request-list,pull-request-conversation,pull-request-files-changed,checks,copilot
google-site-verificationApib7-x98H0j5cPqHWwSMm6dNU4GmODRoqxLiDzdx9I
octolytics-urlhttps://collector.github.com/github/collect
analytics-location///pull_requests/show/checks
fb:app_id1401488693436528
apple-itunes-appapp-id=1477376905, app-argument=https://github.com/watson-developer-cloud/python-sdk/pull/857/checks
twitter:imagehttps://avatars.githubusercontent.com/in/29110?s=400&v=4
twitter:cardsummary_large_image
og:imagehttps://avatars.githubusercontent.com/in/29110?s=400&v=4
og:image:altBumps pypa/gh-action-pypi-publish from 1.4.2 to 1.13.0. Release notes Sourced from pypa/gh-action-pypi-publish's releases. v1.13.0 [!important] 🚨 This release includes fixes for GHSA-vxmw-7...
og:site_nameGitHub
og:typeobject
hostnamegithub.com
expected-hostnamegithub.com
None54182691a21263b584d2e600b758e081b0ff1d10ffc0d2eefa51cf754b43b51d
turbo-cache-controlno-preview
go-importgithub.com/watson-developer-cloud/python-sdk git https://github.com/watson-developer-cloud/python-sdk.git
octolytics-dimension-user_id10017763
octolytics-dimension-user_loginwatson-developer-cloud
octolytics-dimension-repository_id42750248
octolytics-dimension-repository_nwowatson-developer-cloud/python-sdk
octolytics-dimension-repository_publictrue
octolytics-dimension-repository_is_forkfalse
octolytics-dimension-repository_network_root_id42750248
octolytics-dimension-repository_network_root_nwowatson-developer-cloud/python-sdk
turbo-body-classeslogged-out env-production page-responsive full-width full-width-p-0
disable-turbofalse
browser-stats-urlhttps://api.github.com/_private/browser/stats
browser-errors-urlhttps://api.github.com/_private/browser/errors
released69ac0477df0f87da03b8b06cebd187012d7a930
ui-targetfull
theme-color#1e2327
color-schemelight dark

Links:

Skip to contenthttps://github.com/watson-developer-cloud/python-sdk/pull/857/checks#start-of-content
https://github.com/
Sign in https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fwatson-developer-cloud%2Fpython-sdk%2Fpull%2F857%2Fchecks
GitHub CopilotWrite better code with AIhttps://github.com/features/copilot
GitHub SparkBuild and deploy intelligent appshttps://github.com/features/spark
GitHub ModelsManage and compare promptshttps://github.com/features/models
MCP RegistryNewIntegrate external toolshttps://github.com/mcp
ActionsAutomate any workflowhttps://github.com/features/actions
CodespacesInstant dev environmentshttps://github.com/features/codespaces
IssuesPlan and track workhttps://github.com/features/issues
Code ReviewManage code changeshttps://github.com/features/code-review
GitHub Advanced SecurityFind and fix vulnerabilitieshttps://github.com/security/advanced-security
Code securitySecure your code as you buildhttps://github.com/security/advanced-security/code-security
Secret protectionStop leaks before they starthttps://github.com/security/advanced-security/secret-protection
Why GitHubhttps://github.com/why-github
Documentationhttps://docs.github.com
Bloghttps://github.blog
Changeloghttps://github.blog/changelog
Marketplacehttps://github.com/marketplace
View all featureshttps://github.com/features
Enterpriseshttps://github.com/enterprise
Small and medium teamshttps://github.com/team
Startupshttps://github.com/enterprise/startups
Nonprofitshttps://github.com/solutions/industry/nonprofits
App Modernizationhttps://github.com/solutions/use-case/app-modernization
DevSecOpshttps://github.com/solutions/use-case/devsecops
DevOpshttps://github.com/solutions/use-case/devops
CI/CDhttps://github.com/solutions/use-case/ci-cd
View all use caseshttps://github.com/solutions/use-case
Healthcarehttps://github.com/solutions/industry/healthcare
Financial serviceshttps://github.com/solutions/industry/financial-services
Manufacturinghttps://github.com/solutions/industry/manufacturing
Governmenthttps://github.com/solutions/industry/government
View all industrieshttps://github.com/solutions/industry
View all solutionshttps://github.com/solutions
AIhttps://github.com/resources/articles?topic=ai
Software Developmenthttps://github.com/resources/articles?topic=software-development
DevOpshttps://github.com/resources/articles?topic=devops
Securityhttps://github.com/resources/articles?topic=security
View all topicshttps://github.com/resources/articles
Customer storieshttps://github.com/customer-stories
Events & webinarshttps://github.com/resources/events
Ebooks & reportshttps://github.com/resources/whitepapers
Business insightshttps://github.com/solutions/executive-insights
GitHub Skillshttps://skills.github.com
Documentationhttps://docs.github.com
Customer supporthttps://support.github.com
Community forumhttps://github.com/orgs/community/discussions
Trust centerhttps://github.com/trust-center
Partnershttps://github.com/partners
GitHub SponsorsFund open source developershttps://github.com/sponsors
Security Labhttps://securitylab.github.com
Maintainer Communityhttps://maintainers.github.com
Acceleratorhttps://github.com/accelerator
Archive Programhttps://archiveprogram.github.com
Topicshttps://github.com/topics
Trendinghttps://github.com/trending
Collectionshttps://github.com/collections
Enterprise platformAI-powered developer platformhttps://github.com/enterprise
GitHub Advanced SecurityEnterprise-grade security featureshttps://github.com/security/advanced-security
Copilot for BusinessEnterprise-grade AI featureshttps://github.com/features/copilot/copilot-business
Premium SupportEnterprise-grade 24/7 supporthttps://github.com/premium-support
Pricinghttps://github.com/pricing
Search syntax tipshttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
documentationhttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
Sign in https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fwatson-developer-cloud%2Fpython-sdk%2Fpull%2F857%2Fchecks
Sign up https://github.com/signup?ref_cta=Sign+up&ref_loc=header+logged+out&ref_page=%2F%3Cuser-name%3E%2F%3Crepo-name%3E%2Fpull_requests%2Fshow%2Fchecks&source=header-repo&source_repo=watson-developer-cloud%2Fpython-sdk
Reloadhttps://github.com/watson-developer-cloud/python-sdk/pull/857/checks
Reloadhttps://github.com/watson-developer-cloud/python-sdk/pull/857/checks
Reloadhttps://github.com/watson-developer-cloud/python-sdk/pull/857/checks
watson-developer-cloud https://github.com/watson-developer-cloud
python-sdkhttps://github.com/watson-developer-cloud/python-sdk
Notifications https://github.com/login?return_to=%2Fwatson-developer-cloud%2Fpython-sdk
Fork 823 https://github.com/login?return_to=%2Fwatson-developer-cloud%2Fpython-sdk
Star 1.5k https://github.com/login?return_to=%2Fwatson-developer-cloud%2Fpython-sdk
Code https://github.com/watson-developer-cloud/python-sdk
Issues 3 https://github.com/watson-developer-cloud/python-sdk/issues
Pull requests 5 https://github.com/watson-developer-cloud/python-sdk/pulls
Actions https://github.com/watson-developer-cloud/python-sdk/actions
Wiki https://github.com/watson-developer-cloud/python-sdk/wiki
Security Uh oh! There was an error while loading. Please reload this page. https://github.com/watson-developer-cloud/python-sdk/security
Please reload this pagehttps://github.com/watson-developer-cloud/python-sdk/pull/857/checks
Insights https://github.com/watson-developer-cloud/python-sdk/pulse
Code https://github.com/watson-developer-cloud/python-sdk
Issues https://github.com/watson-developer-cloud/python-sdk/issues
Pull requests https://github.com/watson-developer-cloud/python-sdk/pulls
Actions https://github.com/watson-developer-cloud/python-sdk/actions
Wiki https://github.com/watson-developer-cloud/python-sdk/wiki
Security https://github.com/watson-developer-cloud/python-sdk/security
Insights https://github.com/watson-developer-cloud/python-sdk/pulse
Sign up for GitHub https://github.com/signup?return_to=%2Fwatson-developer-cloud%2Fpython-sdk%2Fissues%2Fnew%2Fchoose
terms of servicehttps://docs.github.com/terms
privacy statementhttps://docs.github.com/privacy
Sign inhttps://github.com/login?return_to=%2Fwatson-developer-cloud%2Fpython-sdk%2Fissues%2Fnew%2Fchoose
dependabothttps://github.com/apps/dependabot
masterhttps://github.com/watson-developer-cloud/python-sdk/tree/master
dependabot/github_actions/dot-github/workflows/pypa/gh-action-pypi-publish-1.13.0https://github.com/watson-developer-cloud/python-sdk/tree/dependabot/github_actions/dot-github/workflows/pypa/gh-action-pypi-publish-1.13.0
Conversation 1 https://github.com/watson-developer-cloud/python-sdk/pull/857
Commits 1 https://github.com/watson-developer-cloud/python-sdk/pull/857/commits
Checks 7 https://github.com/watson-developer-cloud/python-sdk/pull/857/checks
Files changed https://github.com/watson-developer-cloud/python-sdk/pull/857/files
Please reload this pagehttps://github.com/watson-developer-cloud/python-sdk/pull/857/checks
Please reload this pagehttps://github.com/watson-developer-cloud/python-sdk/pull/857/checks
build(deps): bump pypa/gh-action-pypi-publish from 1.4.2 to 1.13.0 in /.github/workflows https://github.com/watson-developer-cloud/python-sdk/pull/857/checks#top
Please reload this pagehttps://github.com/watson-developer-cloud/python-sdk/pull/857/checks
WIP https://github.com/watson-developer-cloud/python-sdk/pull/857/checks?check_run_id=52470099738
Build and Test on: push https://github.com/watson-developer-cloud/python-sdk/actions/runs/17469186717
Build on Python 3.11 using ubuntu-latest https://github.com/watson-developer-cloud/python-sdk/actions/runs/17469186717/job/49612849382?pr=857
Build on Python 3.12 using ubuntu-latest https://github.com/watson-developer-cloud/python-sdk/actions/runs/17469186717/job/49612849262?pr=857
Build on Python 3.13 using ubuntu-latest https://github.com/watson-developer-cloud/python-sdk/actions/runs/17469186717/job/49612849258?pr=857
Build and Test on: pull_request https://github.com/watson-developer-cloud/python-sdk/actions/runs/17469187170
Build on Python 3.11 using ubuntu-latest https://github.com/watson-developer-cloud/python-sdk/actions/runs/17469187170/job/49612850546?pr=857
Build on Python 3.12 using ubuntu-latest https://github.com/watson-developer-cloud/python-sdk/actions/runs/17469187170/job/49612850545?pr=857
Build on Python 3.13 using ubuntu-latest https://github.com/watson-developer-cloud/python-sdk/actions/runs/17469187170/job/49612850534?pr=857
https://github.com/marketplace/wiphttps://github.com/marketplace/wip
Processing | p5.jshttps://p5js.org/download/support.html
View more details on WIP https://github.com/marketplace/wip
https://github.com
Termshttps://docs.github.com/site-policy/github-terms/github-terms-of-service
Privacyhttps://docs.github.com/site-policy/privacy-policies/github-privacy-statement
Securityhttps://github.com/security
Statushttps://www.githubstatus.com/
Communityhttps://github.community/
Docshttps://docs.github.com/
Contacthttps://support.github.com?tags=dotcom-footer

Viewport: width=device-width


URLs of crawlers that visited me.