Skip to content

Bump uv from 0.7.20 to 0.8.4#393

Merged
edmorley merged 3 commits into
mainfrom
dependabot/pip/uv-0.8.4
Jul 31, 2025
Merged

Bump uv from 0.7.20 to 0.8.4#393
edmorley merged 3 commits into
mainfrom
dependabot/pip/uv-0.8.4

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jul 31, 2025

Copy link
Copy Markdown
Contributor

Bumps uv from 0.7.20 to 0.8.4.

Release notes

Sourced from uv's releases.

0.8.4

Release Notes

Enhancements

  • Improve styling of warning cause chains (#14934)
  • Extend wheel filtering to Android tags (#14977)
  • Perform wheel lockfile filtering based on platform and OS intersection (#14976)
  • Clarify messaging when a new resolution needs to be performed (#14938)

Preview features

  • Add support for extending package's build dependencies with extra-build-dependencies (#14735)
  • Split preview mode into separate feature flags (#14823)

Configuration

  • Add support for package specific exclude-newer dates via exclude-newer-package (#14489)

Bug fixes

  • Avoid invalidating lockfile when path or workspace dependencies define explicit indexes (#14876)
  • Copy entrypoints that have a shebang that differs in python vs python3 (#14970)
  • Fix incorrect file permissions in wheel packages (#14930)
  • Update validation for environments and required-environments in uv.toml (#14905)

Documentation

  • Show uv_build in projects documentation (#14968)
  • Add UV_ prefix to installer environment variables (#14964)
  • Un-hide uv from --build-backend options (#14939)
  • Update documentation for preview flags (#14902)

Install uv 0.8.4

Install prebuilt binaries via shell script

curl --proto '=https' --tlsv1.2 -LsSf https://github.com/astral-sh/uv/releases/download/0.8.4/uv-installer.sh | sh

Install prebuilt binaries via powershell script

powershell -ExecutionPolicy Bypass -c "irm https://github.com/astral-sh/uv/releases/download/0.8.4/uv-installer.ps1 | iex"

Download uv 0.8.4

| File | Platform | Checksum |

... (truncated)

Changelog

Sourced from uv's changelog.

0.8.4

Enhancements

  • Improve styling of warning cause chains (#14934)
  • Extend wheel filtering to Android tags (#14977)
  • Perform wheel lockfile filtering based on platform and OS intersection (#14976)
  • Clarify messaging when a new resolution needs to be performed (#14938)

Preview features

  • Add support for extending package's build dependencies with extra-build-dependencies (#14735)
  • Split preview mode into separate feature flags (#14823)

Configuration

  • Add support for package specific exclude-newer dates via exclude-newer-package (#14489)

Bug fixes

  • Avoid invalidating lockfile when path or workspace dependencies define explicit indexes (#14876)
  • Copy entrypoints that have a shebang that differs in python vs python3 (#14970)
  • Fix incorrect file permissions in wheel packages (#14930)
  • Update validation for environments and required-environments in uv.toml (#14905)

Documentation

  • Show uv_build in projects documentation (#14968)
  • Add UV_ prefix to installer environment variables (#14964)
  • Un-hide uv from --build-backend options (#14939)
  • Update documentation for preview flags (#14902)

0.8.3

Python

  • Add CPython 3.14.0rc1

See the python-build-standalone release notes for more details.

Enhancements

  • Allow non-standard entrypoint names in uv_build (#14867)
  • Publish riscv64 wheels to PyPI (#14852)

Bug fixes

  • Avoid writing redacted credentials to tool receipt (#14855)
  • Respect --with versions over base environment versions (#14863)
  • Respect credentials from all defined indexes (#14858)

... (truncated)

Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [uv](https://github.com/astral-sh/uv) from 0.7.20 to 0.8.4.
- [Release notes](https://github.com/astral-sh/uv/releases)
- [Changelog](https://github.com/astral-sh/uv/blob/main/CHANGELOG.md)
- [Commits](astral-sh/uv@0.7.20...0.8.4)

---
updated-dependencies:
- dependency-name: uv
  dependency-version: 0.8.4
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Dependabot PRs that update Python dependencies labels Jul 31, 2025
@dependabot dependabot Bot requested a review from edmorley as a code owner July 31, 2025 08:36
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Dependabot PRs that update Python dependencies labels Jul 31, 2025
@edmorley edmorley requested a review from a team as a code owner July 31, 2025 11:12
@edmorley edmorley enabled auto-merge (squash) July 31, 2025 11:14
@edmorley edmorley merged commit 3db63a3 into main Jul 31, 2025
6 checks passed
@edmorley edmorley deleted the dependabot/pip/uv-0.8.4 branch July 31, 2025 11:18
heroku-linguist Bot added a commit that referenced this pull request Aug 1, 2025
## heroku/python

### Changed

- Updated uv from 0.7.20 to 0.8.4. ([#393](#393))
@heroku-linguist heroku-linguist Bot mentioned this pull request Aug 1, 2025
heroku-linguist Bot added a commit that referenced this pull request Aug 1, 2025
## heroku/python

### Changed

- Updated uv from 0.7.20 to 0.8.4. ([#393](#393))
heroku-linguist Bot added a commit that referenced this pull request Aug 1, 2025
## heroku/python

### Changed

- Updated uv from 0.7.20 to 0.8.4. ([#393](#393))
heroku-linguist Bot added a commit that referenced this pull request Aug 1, 2025
## heroku/python

### Changed

- Updated uv from 0.7.20 to 0.8.4. ([#393](#393))

Co-authored-by: heroku-linguist[bot] <136119646+heroku-linguist[bot]@users.noreply.github.com>
heroku-linguist Bot added a commit to heroku/cnb-builder-images that referenced this pull request Aug 1, 2025
## heroku/python

### Changed

- Updated uv from 0.7.20 to 0.8.4. ([#393](heroku/buildpacks-python#393))
@edmorley

edmorley commented Aug 1, 2025

Copy link
Copy Markdown
Member

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python Dependabot PRs that update Python dependencies

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant