Skip to content

chore(deps): update requests-oauthlib requirement from ^1.3.1 to >=1.3.1,<3.0.0#37

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/pip/requests-oauthlib-gte-1.3.1-and-lt-3.0.0
Open

chore(deps): update requests-oauthlib requirement from ^1.3.1 to >=1.3.1,<3.0.0#37
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/pip/requests-oauthlib-gte-1.3.1-and-lt-3.0.0

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Mar 16, 2026

Updates the requirements on requests-oauthlib to permit the latest version.

Changelog

Sourced from requests-oauthlib's changelog.

v2.0.0 (22 March 2024) ++++++++++++++++++++++++

Full set of changes are in github.

Additions & changes:

  • OAuth2Session now correctly uses the self.verify value if verify is not overridden in fetch_token and refresh_token. Fixes [#404](https://github.com/requests/requests-oauthlib/issues/404) <https://github.com/requests/requests-oauthlib/issues/404>_.
  • OAuth2Session constructor now uses its client.scope when a client is provided and scope is not overridden. Fixes [#408](https://github.com/requests/requests-oauthlib/issues/408) <https://github.com/requests/requests-oauthlib/issues/408>_
  • Add refresh_token_request and access_token_request compliance hooks
  • Add PKCE support and Auth0 example
  • Add support for Python 3.8-3.12
  • Remove support of Python 2.x, <3.7
  • Migrated to Github Action
  • Updated dependencies
  • Cleanup some docs and examples

v1.4.0 (27 Feb 2024) ++++++++++++++++++++++++

  • Version 2.0.0 published initially as 1.4.0, it was yanked eventually.

v1.3.1 (21 January 2022) ++++++++++++++++++++++++

  • Add initial support for OAuth Mutual TLS (draft-ietf-oauth-mtls)
  • Removed outdated LinkedIn Compliance Fixes
  • Add eBay compliance fix
  • Add Spotify OAuth 2 Tutorial
  • Add support for python 3.8, 3.9
  • Fixed LinkedIn Compliance Fixes
  • Fixed ReadTheDocs Documentation and sphinx errors
  • Moved pipeline to GitHub Actions

v1.3.0 (6 November 2019) ++++++++++++++++++++++++

  • Instagram compliance fix
  • Added force_querystring argument to fetch_token() method on OAuth2Session

v1.2.0 (14 January 2019) ++++++++++++++++++++++++

  • This project now depends on OAuthlib 3.0.0 and above. It does not support versions of OAuthlib before 3.0.0.
  • Updated oauth2 tests to use 'sess' for an OAuth2Session instance instead of auth

... (truncated)

Commits
  • 7af9125 Merge pull request #534 from iliakur/patch-1
  • 90352e4 Merge pull request #537 from requests/2.0.0
  • a09d0ab Update 1.4.0 into 2.0.0 to be semver compliant.
  • d96b740 Added package file
  • 3109c26 simplify python_requires expression
  • 1c5cea7 python_requires gt 2.7
  • a53457e Drop py2 support from the wheel
  • eee74a2 Merge pull request #529 from dosisod/drop-python2-support
  • ed578f1 Merge pull request #530 from requests/autotest
  • 6cdf982 Automated tests for examples in docs
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Updates the requirements on [requests-oauthlib](https://github.com/requests/requests-oauthlib) to permit the latest version.
- [Release notes](https://github.com/requests/requests-oauthlib/releases)
- [Changelog](https://github.com/requests/requests-oauthlib/blob/master/HISTORY.rst)
- [Commits](requests/requests-oauthlib@v1.3.1...v2.0.0)

---
updated-dependencies:
- dependency-name: requests-oauthlib
  dependency-version: 2.0.0
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Pull requests that update python code labels Mar 16, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python Pull requests that update python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants