Skip to content

chore(deps-dev): update pandas requirement from <3,>=2 to >=2,<4#115

Merged
TexasCoding merged 1 commit into
mainfrom
dependabot/pip/pandas-gte-2-and-lt-4
May 17, 2026
Merged

chore(deps-dev): update pandas requirement from <3,>=2 to >=2,<4#115
TexasCoding merged 1 commit into
mainfrom
dependabot/pip/pandas-gte-2-and-lt-4

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github May 17, 2026

Copy link
Copy Markdown
Contributor

Updates the requirements on pandas to permit the latest version.

Release notes

Sourced from pandas's releases.

pandas 3.0.3

We are pleased to announce the release of pandas 3.0.3. This is a patch release in the 3.0.x series and includes some regression fixes and bug fixes. We recommend that all users of the 3.0.x series upgrade to this version.

See the full whatsnew for a list of all the changes.

Pandas 3.0 supports Python 3.11 and higher. The release can be installed from PyPI:

python -m pip install --upgrade pandas==3.0.*

Or from conda-forge

conda install -c conda-forge pandas=3.0

Please report any issues with the release on the pandas issue tracker.

Thanks to all the contributors who made this release possible.

Commits
  • 72f2fea RLS: 3.0.3 (#65590)
  • 2897590 Backport PR #65436 on branch 3.0.x (Account for privatization of matplotlib `...
  • 49894b5 Backport PR #65499 on branch 3.0.x (BUG: fix check if pyarrow is installed in...
  • 1c6d1e3 [backport 3.0.x] PERF: remove special casing for zoneinfo in tz_localize_to_u...
  • 2a54711 Backport PR #64379 on branch 3.0.x (PERF: improve performance with ZoneInfo t...
  • 036bb7c Backport PR #65482 on branch 3.0.x (PERF: don't call unique on dtypes for che...
  • bf4c182 Backport PR #65410 on branch 3.0.x (TST: also convert str index to object in ...
  • dd02d75 [backport 3.0.x] BUG: keep fsspec OpenFile alive for chained URL reads (#6547...
  • aef3d0f [backport 3.0.x] CI: lowercase types-pymysql/types-pyyaml to fix mamba 2.6.0 ...
  • bb8e248 Backport PR #65399 on branch 3.0.x (DOC: fix source link for classes in the r...
  • Additional commits viewable in compare view

@dependabot @github

dependabot Bot commented on behalf of github May 17, 2026

Copy link
Copy Markdown
Contributor Author

Labels

The following labels could not be found: dependencies. Please create it before Dependabot can add it to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

@dependabot dependabot Bot added the infra Infrastructure/tooling label May 17, 2026
TexasCoding added a commit that referenced this pull request May 17, 2026
Root cause: GitHub does not expose repo secrets (including
CLAUDE_CODE_OAUTH_TOKEN) to workflow runs triggered by dependabot-
authored PRs — a security default that blocks malicious deps from
exfiltrating credentials. The action exits with an empty-credential
failure on every dep bump, so all 5 currently-open dependabot PRs
(#115-#119) show a red claude-review check despite tests + drift
being green.

Skip the job entirely for dependabot[bot] rather than try to wire
Dependabot secrets — dep-version-bump diffs are low-signal for AI
review anyway.

Co-authored-by: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
@TexasCoding

Copy link
Copy Markdown
Owner

@dependabot recreate

Updates the requirements on [pandas](https://github.com/pandas-dev/pandas) to permit the latest version.
- [Release notes](https://github.com/pandas-dev/pandas/releases)
- [Commits](pandas-dev/pandas@v2.0.0...v3.0.3)

---
updated-dependencies:
- dependency-name: pandas
  dependency-version: 3.0.3
  dependency-type: direct:development
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/pip/pandas-gte-2-and-lt-4 branch from 6394f8d to 897df8b Compare May 17, 2026 12:44
@TexasCoding TexasCoding merged commit eba8358 into main May 17, 2026
4 checks passed
@TexasCoding TexasCoding deleted the dependabot/pip/pandas-gte-2-and-lt-4 branch May 17, 2026 12:49
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

infra Infrastructure/tooling

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant