Skip to content

chore(deps): bump dependabot/fetch-metadata from 3.0.0 to 3.1.0#1451

Closed
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/github_actions/dependabot/fetch-metadata-3.1.0
Closed

chore(deps): bump dependabot/fetch-metadata from 3.0.0 to 3.1.0#1451
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/github_actions/dependabot/fetch-metadata-3.1.0

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Apr 20, 2026

Bumps dependabot/fetch-metadata from 3.0.0 to 3.1.0.

Release notes

Sourced from dependabot/fetch-metadata's releases.

v3.1.0

What's Changed

New Contributors

Full Changelog: dependabot/fetch-metadata@v3...v3.1.0

Commits
  • 25dd0e3 v3.1.0 (#692)
  • e073f50 Merge pull request #705 from dependabot/dependabot/npm_and_yarn/hono-4.12.14
  • 0670e16 build(deps-dev): bump hono from 4.12.12 to 4.12.14
  • 7a7fe10 Merge pull request #702 from dependabot/dependabot/npm_and_yarn/dependencies-...
  • 5168191 Updating dist build
  • 23882e1 build(deps): bump @​actions/github in the dependencies group
  • 1072469 Merge pull request #701 from dependabot/dependabot/github_actions/actions/cre...
  • 43f8a00 build(deps): bump actions/create-github-app-token from 3.0.0 to 3.1.1
  • b4d904a Merge pull request #703 from dependabot/dependabot/npm_and_yarn/globals-17.5.0
  • c8046bb build(deps-dev): bump globals from 17.4.0 to 17.5.0
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [dependabot/fetch-metadata](https://github.com/dependabot/fetch-metadata) from 3.0.0 to 3.1.0.
- [Release notes](https://github.com/dependabot/fetch-metadata/releases)
- [Commits](dependabot/fetch-metadata@v3.0.0...v3.1.0)

---
updated-dependencies:
- dependency-name: dependabot/fetch-metadata
  dependency-version: 3.1.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Apr 20, 2026
@dependabot dependabot Bot requested a review from a team as a code owner April 20, 2026 05:34
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Apr 20, 2026
@github-actions github-actions Bot enabled auto-merge April 20, 2026 05:34
@dependabot @github
Copy link
Copy Markdown
Contributor Author

dependabot Bot commented on behalf of github May 8, 2026

Looks like dependabot/fetch-metadata is up-to-date now, so this is no longer needed.

@dependabot dependabot Bot closed this May 8, 2026
auto-merge was automatically disabled May 8, 2026 18:09

Pull request was closed

@dependabot dependabot Bot deleted the dependabot/github_actions/dependabot/fetch-metadata-3.1.0 branch May 8, 2026 18:09
pull Bot pushed a commit to TheTechOddBug/msgraph-sdk-python that referenced this pull request May 8, 2026
Combines 12 open dependabot PRs into a single update:

requirements-dev.txt:
- anyio: 4.10.0 -> 4.12.1 (microsoftgraph#1458)
- attrs: 25.3.0 -> 26.1.0 (microsoftgraph#1460)
- azure-core: 1.38.0 -> 1.39.0 (microsoftgraph#1438)
- azure-identity: 1.25.1 -> 1.25.3 (microsoftgraph#1438)
- msal: 1.33.0 -> 1.36.0 (microsoftgraph#1457)
- multidict: 6.7.0 -> 6.7.1 (microsoftgraph#1452)
- PyJWT: 2.12.0 -> 2.12.1 (microsoftgraph#1459)
- tomli: 2.3.0 -> 2.4.1 (microsoftgraph#1453)
- tomlkit: 0.13.3 -> 0.14.0 (microsoftgraph#1454)
- tzdata: 2025.2 -> 2026.1 (microsoftgraph#1455)
- zipp: 3.23.0 -> 3.23.1 (microsoftgraph#1456)

GitHub Actions:
- googleapis/release-please-action: v4 -> v5 (microsoftgraph#1463)
- dependabot/fetch-metadata: v3.0.0 -> v3.1.0 (microsoftgraph#1451)

Note: msal bump to 1.36.0 resolves the dependency conflict that
caused PR microsoftgraph#1438 to fail (azure-identity 1.25.3 requires msal>=1.35.1).

Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants