From 58773fe4ef72592b5441c4e84d0fe22446849bb5 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Thu, 8 Oct 2026 17:38:00 +0000 Subject: [PATCH] chore(deps): bump the python group across 1 directory with 6 updates Updates the requirements on [onnxruntime](https://github.com/microsoft/onnxruntime), [markitdown](https://github.com/microsoft/markitdown), [httpcore](https://github.com/encode/httpcore), [pydantic](https://github.com/pydantic/pydantic), [pydantic-settings](https://github.com/pydantic/pydantic-settings) and [mcp](https://github.com/modelcontextprotocol/python-sdk) to permit the latest version. Updates `onnxruntime` to 1.30.0 - [Release notes](https://github.com/microsoft/onnxruntime/releases) - [Changelog](https://github.com/microsoft/onnxruntime/blob/main/docs/ReleaseNotesWorkflow.md) - [Commits](https://github.com/microsoft/onnxruntime/compare/v1.20.0...v1.30.0) Updates `markitdown` from 0.1.6 to 0.1.8 - [Release notes](https://github.com/microsoft/markitdown/releases) - [Commits](https://github.com/microsoft/markitdown/compare/v0.1.6...v0.1.8) Updates `httpcore` to 1.0.9 - [Release notes](https://github.com/encode/httpcore/releases) - [Changelog](https://github.com/encode/httpcore/blob/master/CHANGELOG.md) - [Commits](https://github.com/encode/httpcore/compare/1.0.0...1.0.9) Updates `pydantic` to 2.13.5 - [Release notes](https://github.com/pydantic/pydantic/releases) - [Changelog](https://github.com/pydantic/pydantic/blob/v2.13.5/HISTORY.md) - [Commits](https://github.com/pydantic/pydantic/compare/v2.13.4...v2.13.5) Updates `pydantic-settings` to 2.15.0 - [Release notes](https://github.com/pydantic/pydantic-settings/releases) - [Commits](https://github.com/pydantic/pydantic-settings/compare/v2.14.1...v2.15.0) Updates `mcp` to 2.3.0 - [Release notes](https://github.com/modelcontextprotocol/python-sdk/releases) - [Changelog](https://github.com/modelcontextprotocol/python-sdk/blob/main/RELEASE.md) - [Commits](https://github.com/modelcontextprotocol/python-sdk/compare/v0.2.0...v2.3.0) --- updated-dependencies: - dependency-name: onnxruntime dependency-version: 1.30.0 dependency-type: direct:production dependency-group: python - dependency-name: markitdown dependency-version: 0.1.8 dependency-type: direct:production update-type: version-update:semver-patch dependency-group: python - dependency-name: httpcore dependency-version: 1.0.9 dependency-type: direct:production dependency-group: python - dependency-name: pydantic dependency-version: 2.13.5 dependency-type: direct:production dependency-group: python - dependency-name: pydantic-settings dependency-version: 2.15.0 dependency-type: direct:production dependency-group: python - dependency-name: mcp dependency-version: 2.3.0 dependency-type: direct:production dependency-group: python ... Signed-off-by: dependabot[bot] --- requirements-optional.txt | 4 ++-- requirements.txt | 8 ++++---- 2 files changed, 6 insertions(+), 6 deletions(-) diff --git a/requirements-optional.txt b/requirements-optional.txt index db624f4c9..78b01506f 100644 --- a/requirements-optional.txt +++ b/requirements-optional.txt @@ -1,7 +1,7 @@ # Optional dependencies — install only if you use the corresponding feature. # Local OCR for screenshots, scans, labels, and coordinate-grounded text extraction. rapidocr==3.9.2 -onnxruntime>=1.20,<2 +onnxruntime>=1.30.0,<2 # The app handles their absence gracefully (clear error message on first use). # # Note: chromadb-client + fastembed moved to requirements.txt — RAG, semantic @@ -46,7 +46,7 @@ PyMuPDF # magika (onnxruntime), already a core dep via fastembed. We avoid the # [all]/Azure/audio extras (cloud + heavy). Pinned to a release >30 days old per # the dependency-age discussion in issue #485. -markitdown[docx,pptx,xlsx,xls]==0.1.6 +markitdown[docx,pptx,xlsx,xls]==0.1.8 # Photoshop PSD opening / flattened previews / layer inspection. psd-tools diff --git a/requirements.txt b/requirements.txt index 7fabaae93..4a6ed05df 100644 --- a/requirements.txt +++ b/requirements.txt @@ -3,9 +3,9 @@ uvicorn python-multipart python-dotenv httpx -httpcore>=1.0,<2.0 -pydantic>=2.13.4 -pydantic-settings>=2.14.1 +httpcore>=1.0.9,<2.0 +pydantic>=2.13.5 +pydantic-settings>=2.15.0 SQLAlchemy pypdf pypdfium2 @@ -46,7 +46,7 @@ bcrypt # Built-in servers use the v1 low-level Server decorator API. MCP SDK v2 is a # breaking rewrite, so keep fresh installs on the maintained v1 line until the # servers are migrated together. -mcp<2 +mcp<3 pyotp qrcode[pil] croniter