Граф коммитов

1200 Коммитов

Автор SHA1 Сообщение Дата
Mozilla-GitHub-Standards 17d79360bd Add Mozilla Code of Conduct (#1656)
Fixes #1655


As of January 1 2019, Mozilla requires that all GitHub projects include this [CODE_OF_CONDUCT.md](https://github.com/mozilla/repo-templates/blob/master/templates/CODE_OF_CONDUCT.md) file in the project root. The file has two parts:

1. Required Text - All text under the headings *Community Participation Guidelines and How to Report*, are required, and should not be altered.
2. Optional Text - The Project Specific Etiquette heading provides a space to speak more specifically about ways people can work effectively and inclusively together. Some examples of those can be found on the [Firefox Debugger](https://github.com/devtools-html/debugger.html/blob/master/CODE_OF_CONDUCT.md) project, and [Common Voice](https://github.com/mozilla/voice-web/blob/master/CODE_OF_CONDUCT.md). (The optional part is commented out in the [raw template file](https://raw.githubusercontent.com/mozilla/repo-templates/blob/master/templates/CODE_OF_CONDUCT.md), and will not be visible until you modify and uncomment that part.)

If you have any questions about this file, or Code of Conduct policies and procedures, please see [Mozilla-GitHub-Standards](https://wiki.mozilla.org/GitHub/Repository_Requirements) or email Mozilla-GitHub-Standards+CoC@mozilla.com.

_(Message COC002)_
2019-03-29 21:22:53 +01:00
dependabot[bot] dcc680a315 Bump boto3 from 1.7.77 to 1.9.82 (#1550)
[//]: # (dependabot-start)
⚠️  **Dependabot is rebasing this PR** ⚠️ 

If you make any changes to it yourself then they will take precedence over the rebase.

---

[//]: # (dependabot-end)

Bumps [boto3](https://github.com/boto/boto3) from 1.7.77 to 1.9.82.
<details>
<summary>Changelog</summary>

*Sourced from [boto3's changelog](https://github.com/boto/boto3/blob/develop/CHANGELOG.rst).*

> 1.9.82
> ======
> 
> * api-change:``glue``: [``botocore``] Update glue client to latest version
> * api-change:``ec2``: [``botocore``] Update ec2 client to latest version
> 
> 
> 1.9.81
> ======
> 
> * api-change:``lightsail``: [``botocore``] Update lightsail client to latest version
> * api-change:``lambda``: [``botocore``] Update lambda client to latest version
> * api-change:``pinpoint``: [``botocore``] Update pinpoint client to latest version
> * api-change:``rekognition``: [``botocore``] Update rekognition client to latest version
> 
> 
> 1.9.80
> ======
> 
> * api-change:``dynamodb``: [``botocore``] Update dynamodb client to latest version
> * api-change:``ce``: [``botocore``] Update ce client to latest version
> * api-change:``backup``: [``botocore``] Update backup client to latest version
> 
> 
> 1.9.79
> ======
> 
> * api-change:``storagegateway``: [``botocore``] Update storagegateway client to latest version
> * api-change:``mediaconvert``: [``botocore``] Update mediaconvert client to latest version
> 
> 
> 1.9.78
> ======
> 
> * api-change:``rds-data``: [``botocore``] Update rds-data client to latest version
> * api-change:``emr``: [``botocore``] Update emr client to latest version
> 
> 
> 1.9.77
> ======
> 
> * api-change:``iot``: [``botocore``] Update iot client to latest version
> * api-change:``ec2``: [``botocore``] Update ec2 client to latest version
> * api-change:``codedeploy``: [``botocore``] Update codedeploy client to latest version
> * api-change:``sagemaker``: [``botocore``] Update sagemaker client to latest version
> 
> 
> 1.9.76
> ======
> 
></tr></table> ... (truncated)
</details>
<details>
<summary>Commits</summary>

- See full diff in [compare view](https://github.com/boto/boto3/commits/1.9.82)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=boto3&package-manager=pip&previous-version=1.7.77&new-version=1.9.82)](https://dependabot.com/compatibility-score.html?dependency-name=boto3&package-manager=pip&previous-version=1.7.77&new-version=1.9.82)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-21 14:36:54 +01:00
dependabot[bot] a3ad48f427 Bump botocore from 1.12.79 to 1.12.82 (#1544)
Bumps [botocore](https://github.com/boto/botocore) from 1.12.79 to 1.12.82.
<details>
<summary>Changelog</summary>

*Sourced from [botocore's changelog](https://github.com/boto/botocore/blob/develop/CHANGELOG.rst).*

> 1.12.82
> =======
> 
> * api-change:``glue``: Update glue client to latest version
> * api-change:``ec2``: Update ec2 client to latest version
> 
> 
> 1.12.81
> =======
> 
> * api-change:``lightsail``: Update lightsail client to latest version
> * api-change:``lambda``: Update lambda client to latest version
> * api-change:``pinpoint``: Update pinpoint client to latest version
> * api-change:``rekognition``: Update rekognition client to latest version
> 
> 
> 1.12.80
> =======
> 
> * api-change:``dynamodb``: Update dynamodb client to latest version
> * api-change:``ce``: Update ce client to latest version
> * api-change:``backup``: Update backup client to latest version
</details>
<details>
<summary>Commits</summary>

- [`8f405a4`](8f405a42d5) Merge branch 'release-1.12.82'
- [`039e626`](039e62626c) Bumping version to 1.12.82
- [`29c07bd`](29c07bd70a) Update to latest models
- [`03f81e3`](03f81e31b4) Merge branch 'release-1.12.81'
- [`207b421`](207b42160c) Merge branch 'release-1.12.81' into develop
- [`c9a41d0`](c9a41d071d) Bumping version to 1.12.81
- [`243e432`](243e432894) Update to latest endpoints
- [`e61998f`](e61998feb0) Update to latest models
- [`bdd6d8f`](bdd6d8f256) Merge branch 'release-1.12.80'
- [`5f591c6`](5f591c6692) Merge branch 'release-1.12.80' into develop
- Additional commits viewable in [compare view](https://github.com/boto/botocore/compare/1.12.79...1.12.82)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=botocore&package-manager=pip&previous-version=1.12.79&new-version=1.12.82)](https://dependabot.com/compatibility-score.html?dependency-name=botocore&package-manager=pip&previous-version=1.12.79&new-version=1.12.82)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-21 14:36:23 +01:00
dependabot[bot] 55b6f5f2c4 Bump future from 0.16.0 to 0.17.1 (#1553)
Bumps [future](https://github.com/PythonCharmers/python-future) from 0.16.0 to 0.17.1.
- [Release notes](https://github.com/PythonCharmers/python-future/releases)
- [Changelog](https://github.com/PythonCharmers/python-future/blob/master/docs/changelog.rst)
- [Commits](https://github.com/PythonCharmers/python-future/commits)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-21 14:32:53 +01:00
dependabot[bot] 98097c1a92 Bump pytz from 2018.7 to 2018.9 (#1554)
Bumps [pytz](https://github.com/stub42/pytz) from 2018.7 to 2018.9.
- [Release notes](https://github.com/stub42/pytz/releases)
- [Commits](https://github.com/stub42/pytz/compare/release_2018.7...release_2018.9)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-21 14:32:39 +01:00
dependabot[bot] cf67aabd2d Bump billiard from 3.5.0.4 to 3.5.0.5 (#1552)
Bumps [billiard](https://github.com/celery/billiard) from 3.5.0.4 to 3.5.0.5.
<details>
<summary>Changelog</summary>

*Sourced from [billiard's changelog](https://github.com/celery/billiard/blob/master/CHANGES.txt).*

> 3.5.0.5 - 2018-12-03
> --------------------
> 
> - Fix a crash when handling a timeout.
> - Improve billiard.einfo.Frame compatibility with Python to avoid crashes when using Django.
> - Cleanups.
</details>
<details>
<summary>Commits</summary>

- [`d76e621`](d76e62100c) Bump version.
- [`06faccf`](06faccf6f6) billiard.einfo.Frame: add `f_back` attribute ([#257](https://github-redirect.dependabot.com/celery/billiard/issues/257))
- [`af85146`](af851466df) Remove test dependency unittest2 ([#254](https://github-redirect.dependabot.com/celery/billiard/issues/254))
- [`3309f96`](3309f96636) fix-billiard-timeout-handler-crash ([#249](https://github-redirect.dependabot.com/celery/billiard/issues/249))
- [`7fe2edd`](7fe2eddeb2) Prefer https:// links where available ([#253](https://github-redirect.dependabot.com/celery/billiard/issues/253))
- See full diff in [compare view](https://github.com/celery/billiard/compare/v3.5.0.4...v3.5.0.5)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=billiard&package-manager=pip&previous-version=3.5.0.4&new-version=3.5.0.5)](https://dependabot.com/compatibility-score.html?dependency-name=billiard&package-manager=pip&previous-version=3.5.0.4&new-version=3.5.0.5)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-21 14:32:27 +01:00
dependabot[bot] 094aa8f9cf Bump requests from 2.20.1 to 2.21.0 (#1555)
Bumps [requests](https://github.com/requests/requests) from 2.20.1 to 2.21.0.
- [Release notes](https://github.com/requests/requests/releases)
- [Changelog](https://github.com/requests/requests/blob/master/HISTORY.md)
- [Commits](https://github.com/requests/requests/compare/v2.20.1...v2.21.0)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-21 14:32:05 +01:00
dependabot[bot] 16ba9fd021 Bump whitenoise from 4.1.1 to 4.1.2 (#1551)
Bumps [whitenoise](https://github.com/evansd/whitenoise) from 4.1.1 to 4.1.2.
- [Release notes](https://github.com/evansd/whitenoise/releases)
- [Changelog](https://github.com/evansd/whitenoise/blob/master/docs/changelog.rst)
- [Commits](https://github.com/evansd/whitenoise/compare/v4.1.1...v4.1.2)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-21 14:31:52 +01:00
dependabot[bot] 26d3fbbff4 Bump alabaster from 0.7.11 to 0.7.12 (#1549)
Bumps [alabaster](https://github.com/bitprophet/alabaster) from 0.7.11 to 0.7.12.
- [Release notes](https://github.com/bitprophet/alabaster/releases)
- [Changelog](https://github.com/bitprophet/alabaster/blob/master/docs/changelog.rst)
- [Commits](https://github.com/bitprophet/alabaster/compare/0.7.11...0.7.12)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-21 14:31:22 +01:00
dependabot[bot] 383309ac10 Bump packaging from 18.0 to 19.0 (#1548)
Bumps [packaging](https://github.com/pypa/packaging) from 18.0 to 19.0.
<details>
<summary>Changelog</summary>

*Sourced from [packaging's changelog](https://github.com/pypa/packaging/blob/master/CHANGELOG.rst).*

> 19.0 - 2019-01-20
> ~~~~~~~~~~~~~~~~~
> 
> * Fix string representation of PEP 508 direct URL requirements with markers.
> 
> * Better handling of file URLs
> 
>   This allows for using ``file:///absolute/path``, which was previously
>   prevented due to the missing ``netloc``.
> 
>   This allows for all file URLs that ``urlunparse`` turns back into the
>   original URL to be valid.
</details>
<details>
<summary>Commits</summary>

- [`7f8582b`](7f8582b698) Bump for release
- [`b66ed3b`](b66ed3bd3b) Update Copyright year
- [`1e45b81`](1e45b811f3) Sync documentation copyright with package
- [`d320de2`](d320de2f71) Fix incorrect command in Release Process
- [`7ee419c`](7ee419cb88) Merge pull request [#153](https://github-redirect.dependabot.com/pypa/packaging/issues/153) from brettcannon/update-contributing-guide
- [`d9292d9`](d9292d9f92) Merge pull request [#146](https://github-redirect.dependabot.com/pypa/packaging/issues/146) from pypa/blacken
- [`1eb971a`](1eb971a17e) Autoformat with black
- [`253401a`](253401a617) Ignore obsolete flake8 warnings/errors
- [`0aa670f`](0aa670fefd) Add black to linting
- [`1bf3d85`](1bf3d8525c) Rename 'pep8' environment to 'lint'
- Additional commits viewable in [compare view](https://github.com/pypa/packaging/compare/18.0...19.0)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=packaging&package-manager=pip&previous-version=18.0&new-version=19.0)](https://dependabot.com/compatibility-score.html?dependency-name=packaging&package-manager=pip&previous-version=18.0&new-version=19.0)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-21 14:31:11 +01:00
dependabot[bot] c6d76f0272 Bump celery-redbeat from 0.11.1 to 0.12.0 (#1538)
Bumps [celery-redbeat](https://github.com/sibson/redbeat) from 0.11.1 to 0.12.0.
<details>
<summary>Changelog</summary>

*Sourced from [celery-redbeat's changelog](https://github.com/sibson/redbeat/blob/master/CHANGES.txt).*

> 0.12.0 (2018-12-06)
> --------------------
>   - better Celery 4 support, thanks [**az-wegift**](https://github.com/az-wegift)
>   - configurably, automatically reconnect to Redis on timeout error rather than terminate, thanks [**az-wegift**](https://github.com/az-wegift)
>   - password support for Redis Sentinal connections, thanks [**az-wegift**](https://github.com/az-wegift)
>   - bugfix, rrule serialization under Celery 3, thanks [**noamkush**](https://github.com/noamkush)
</details>
<details>
<summary>Commits</summary>

- [`9831499`](9831499257) bump version to 0.12.0
- [`80758c2`](80758c2015) Merge pull request [#104](https://github-redirect.dependabot.com/sibson/redbeat/issues/104) from noamkush/redis_version
- [`b76a67c`](b76a67cdf7) Added version specifier for redis-py.
- [`97223a6`](97223a6fec) Merge pull request [#80](https://github-redirect.dependabot.com/sibson/redbeat/issues/80) from wegift/retrying
- [`90cfbe9`](90cfbe917e) Reconnect to Redis on connection or time-out error
- [`8635a28`](8635a28912) Merge pull request [#96](https://github-redirect.dependabot.com/sibson/redbeat/issues/96) from wegift/celery-version
- [`7c69f18`](7c69f18a1b) Fix interpreting Celery version (sibson/redbeat#89)
- [`3c5c6e2`](3c5c6e2a78) Add .pytest_cache to .gitignore
- [`7a4c254`](7a4c25439d) Fix celery4 unit tests
- [`76d681c`](76d681ce33) more 3.x version bumps
- See full diff in [compare view](https://github.com/sibson/redbeat/compare/v0.11.1...v0.12.0)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=celery-redbeat&package-manager=pip&previous-version=0.11.1&new-version=0.12.0)](https://dependabot.com/compatibility-score.html?dependency-name=celery-redbeat&package-manager=pip&previous-version=0.11.1&new-version=0.12.0)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-21 14:30:25 +01:00
dependabot[bot] ae430ec76f Bump django-picklefield from 1.0.0 to 2.0 (#1547)
Bumps [django-picklefield](https://github.com/gintas/django-picklefield) from 1.0.0 to 2.0.
<details>
<summary>Commits</summary>

- See full diff in [compare view](https://github.com/gintas/django-picklefield/commits)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=django-picklefield&package-manager=pip&previous-version=1.0.0&new-version=2.0)](https://dependabot.com/compatibility-score.html?dependency-name=django-picklefield&package-manager=pip&previous-version=1.0.0&new-version=2.0)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-21 14:23:22 +01:00
dependabot[bot] 1dd1cc0fc0 Bump imagesize from 1.0.0 to 1.1.0 (#1540)
Bumps [imagesize](https://github.com/shibukawa/imagesize_py) from 1.0.0 to 1.1.0.
- [Release notes](https://github.com/shibukawa/imagesize_py/releases)
- [Commits](https://github.com/shibukawa/imagesize_py/compare/1.0.0...1.1.0)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-21 14:22:36 +01:00
dependabot[bot] f486ed3a1e Bump more-itertools from 4.3.0 to 5.0.0 (#1545)
Bumps [more-itertools](https://github.com/erikrose/more-itertools) from 4.3.0 to 5.0.0.
- [Release notes](https://github.com/erikrose/more-itertools/releases)
- [Commits](https://github.com/erikrose/more-itertools/compare/4.3.0...5.0.0)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-21 14:22:18 +01:00
dependabot[bot] f2be3203b1 Bump hashin from 0.14.1 to 0.14.2 (#1543)
Bumps [hashin](https://github.com/peterbe/hashin) from 0.14.1 to 0.14.2.
<details>
<summary>Commits</summary>

- See full diff in [compare view](https://github.com/peterbe/hashin/commits)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=hashin&package-manager=pip&previous-version=0.14.1&new-version=0.14.2)](https://dependabot.com/compatibility-score.html?dependency-name=hashin&package-manager=pip&previous-version=0.14.1&new-version=0.14.2)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-21 14:21:09 +01:00
dependabot[bot] 071a42b784 Bump cryptography from 2.3.1 to 2.4.2 (#1541)
Bumps [cryptography](https://github.com/pyca/cryptography) from 2.3.1 to 2.4.2.
- [Release notes](https://github.com/pyca/cryptography/releases)
- [Changelog](https://github.com/pyca/cryptography/blob/master/CHANGELOG.rst)
- [Commits](https://github.com/pyca/cryptography/compare/2.3.1...2.4.2)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-21 14:20:52 +01:00
dependabot[bot] c3206d301c Bump python-dateutil from 2.7.3 to 2.7.5 (#1542)
Bumps [python-dateutil](https://dateutil.readthedocs.io) from 2.7.3 to 2.7.5.

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-21 14:20:43 +01:00
dependabot[bot] b68748c6bd Bump pygments from 2.2.0 to 2.3.1 (#1539)
Bumps [pygments](http://pygments.org/) from 2.2.0 to 2.3.1.

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-21 14:20:22 +01:00
dependabot[bot] 0e76e6a856 Bump django-configurations from 2.0 to 2.1 (#1546)
Bumps [django-configurations](https://github.com/jazzband/django-configurations) from 2.0 to 2.1.
<details>
<summary>Release notes</summary>

*Sourced from [django-configurations's releases](https://github.com/jazzband/django-configurations/releases).*

> ## Support Django 2.1
> - **BACKWARD INCOMPATIBLE** Drop support of Python 3.3.
> 
> - **BACKWARD INCOMPATIBLE** Drop support of Django 1.9.
> 
> - Add support for Django 2.1.
> 
> - Add ``PositiveIntegerValue`` configuration value.
> 
> - Fix ``bool(BooleanValue)`` to behave as one would expect (e.g.
>   ``bool(BooleanValue(False))`` returns ``False``).
> 
> - Miscellaneous documentation improvements and bug fixes.
</details>
<details>
<summary>Commits</summary>

- [`c804a30`](c804a30aa2) Add changelog for version 2.1
- [`fbb0ff8`](fbb0ff8884) Fix compatibility with Django 2.1
- [`b1d92cf`](b1d92cf85d) doc: add version information to PositiveIntegerValue
- [`c0ac52f`](c0ac52f948) Merge pull request [#200](https://github-redirect.dependabot.com/jazzband/django-configurations/issues/200) from jazzband/revert-197-issue/GH196
- [`80a648b`](80a648bb03) Revert "doc: cookbook: document workaround for celery ([#197](https://github-redirect.dependabot.com/jazzband/django-configurations/issues/197))"
- [`5770f02`](5770f02bab) Revert "Production/stable, really."
- [`537fde7`](537fde7f5b) Revert "Update Travis deploy info."
- [`b43bf2d`](b43bf2dd47) Update Travis deploy info.
- [`ba346e2`](ba346e2af4) Production/stable, really.
- [`2b0d2ce`](2b0d2cee0a) doc: cookbook: document workaround for celery ([#197](https://github-redirect.dependabot.com/jazzband/django-configurations/issues/197))
- Additional commits viewable in [compare view](https://github.com/jazzband/django-configurations/compare/2.0...2.1)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=django-configurations&package-manager=pip&previous-version=2.0&new-version=2.1)](https://dependabot.com/compatibility-score.html?dependency-name=django-configurations&package-manager=pip&previous-version=2.0&new-version=2.1)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-21 14:20:10 +01:00
dependabot[bot] 182d102ff9 Bump tornado from 5.1 to 5.1.1 (#1535)
Bumps [tornado](https://github.com/tornadoweb/tornado) from 5.1 to 5.1.1.
- [Release notes](https://github.com/tornadoweb/tornado/releases)
- [Changelog](https://github.com/tornadoweb/tornado/blob/master/docs/releases.rst)
- [Commits](https://github.com/tornadoweb/tornado/commits/v5.1.1)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-21 14:09:53 +01:00
dependabot[bot] c094af13a0 Bump py from 1.5.4 to 1.7.0 (#1536)
Bumps [py](https://github.com/pytest-dev/py) from 1.5.4 to 1.7.0.
- [Release notes](https://github.com/pytest-dev/py/releases)
- [Changelog](https://github.com/pytest-dev/py/blob/master/CHANGELOG)
- [Commits](https://github.com/pytest-dev/py/compare/1.5.4...1.7.0)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-21 14:09:01 +01:00
dependabot[bot] 5b75962185 Bump pytest-flake8 from 1.0.2 to 1.0.3 (#1537)
Bumps [pytest-flake8](https://github.com/tholo/pytest-flake8) from 1.0.2 to 1.0.3.
<details>
<summary>Release notes</summary>

*Sourced from [pytest-flake8's releases](https://github.com/tholo/pytest-flake8/releases).*

> ## 1.0.3
> - Don't use long deprecated functions from pytest, broke with pytest 4.1.0
> - Fix typo that caused some tests to not run as expected
> - Run Travis CI tests against Python 3.7, and fix some issues with current tox
</details>
<details>
<summary>Changelog</summary>

*Sourced from [pytest-flake8's changelog](https://github.com/tholo/pytest-flake8/blob/master/CHANGELOG).*

> 1.0.3
> -----
> 
> - Don't use long deprecated functions from pytest, broke with pytest 4.1.0
> - Fix typo that caused some tests to not run as expected
> - Run Travis CI tests against Python 3.7, and fix some issues with current tox
</details>
<details>
<summary>Commits</summary>

- [`3e18bd5`](3e18bd512a) Bump to version 1.0.3
- [`2489412`](24894124a4) Fix a new test failure
- [`58a97d6`](58a97d63bb) Fix issues with current tox
- [`a73dab3`](a73dab3ebe) Actually run CI tests on Python 3.7
- [`0c3d370`](0c3d3709d9) Don't use deprecated function name
- [`df90ece`](df90ecec4f) Fix typo
- See full diff in [compare view](https://github.com/tholo/pytest-flake8/compare/1.0.2...1.0.3)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=pytest-flake8&package-manager=pip&previous-version=1.0.2&new-version=1.0.3)](https://dependabot.com/compatibility-score.html?dependency-name=pytest-flake8&package-manager=pip&previous-version=1.0.2&new-version=1.0.3)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-21 14:08:44 +01:00
dependabot[bot] 49fa85c6d9 Bump faker from 1.0.0 to 1.0.1 (#1534)
Bumps [faker](https://github.com/joke2k/faker) from 1.0.0 to 1.0.1.
- [Release notes](https://github.com/joke2k/faker/releases)
- [Changelog](https://github.com/joke2k/faker/blob/master/CHANGELOG.rst)
- [Commits](https://github.com/joke2k/faker/compare/v1.0.0...v1.0.1)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-21 14:08:26 +01:00
dependabot[bot] cb39fe8aa0 Bump django-celery-results from 1.0.1 to 1.0.4 (#1530)
Bumps [django-celery-results](https://github.com/celery/django-celery-results) from 1.0.1 to 1.0.4.
- [Release notes](https://github.com/celery/django-celery-results/releases)
- [Changelog](https://github.com/celery/django-celery-results/blob/master/Changelog)
- [Commits](https://github.com/celery/django-celery-results/compare/v1.0.1...v1.0.4)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-21 14:08:11 +01:00
dependabot[bot] da91e31508 Bump certifi from 2018.8.13 to 2018.11.29 (#1532)
Bumps [certifi](https://github.com/certifi/python-certifi) from 2018.8.13 to 2018.11.29.
<details>
<summary>Commits</summary>

- See full diff in [compare view](https://github.com/certifi/python-certifi/commits/2018.11.29)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=certifi&package-manager=pip&previous-version=2018.8.13&new-version=2018.11.29)](https://dependabot.com/compatibility-score.html?dependency-name=certifi&package-manager=pip&previous-version=2018.8.13&new-version=2018.11.29)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-21 14:07:02 +01:00
dependabot[bot] 5e61194d1f Bump pluggy from 0.7.1 to 0.8.1 (#1533)
Bumps [pluggy](https://github.com/pytest-dev/pluggy) from 0.7.1 to 0.8.1.
- [Release notes](https://github.com/pytest-dev/pluggy/releases)
- [Changelog](https://github.com/pytest-dev/pluggy/blob/master/CHANGELOG.rst)
- [Commits](https://github.com/pytest-dev/pluggy/compare/0.7.1...0.8.1)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-21 14:06:50 +01:00
dependabot[bot] 615bcae66d Bump watchdog from 0.8.3 to 0.9.0 (#1531)
Bumps [watchdog](https://github.com/gorakhargosh/watchdog) from 0.8.3 to 0.9.0.
<details>
<summary>Commits</summary>

- [`b78fc0c`](b78fc0cda6) Bump v0.9.0
- [`f5f9010`](f5f9010d60) Fix installation to make every Travis CI job pass
- [`d95bcbd`](d95bcbd3da) Fix .travis.yml and tox.ini for Python versions
- [`0dd1e13`](0dd1e131d6) Clean "except" blocks
- [`825b94a`](825b94a26b) Move fixtures to conftest.py
- [`0a22783`](0a227835f8) Clean imports
- [`f48f735`](f48f73501b) Fix typo in DirMovedEvent with inotify
- [`c4818c2`](c4818c2168) Fix Python version in tox.in and setup.py
- [`95e68ed`](95e68ed018) Add Danilo J. S. Bellini to AUTHORS
- [`afe568c`](afe568cfcf) Merge anthrotype/utils-platform
- Additional commits viewable in [compare view](https://github.com/gorakhargosh/watchdog/compare/v0.8.3...v0.9.0)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=watchdog&package-manager=pip&previous-version=0.8.3&new-version=0.9.0)](https://dependabot.com/compatibility-score.html?dependency-name=watchdog&package-manager=pip&previous-version=0.8.3&new-version=0.9.0)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-21 14:06:41 +01:00
dependabot[bot] 00afb151db Bump django-csp from 3.4 to 3.5 (#1529)
Bumps [django-csp](https://github.com/mozilla/django-csp) from 3.4 to 3.5.
- [Release notes](https://github.com/mozilla/django-csp/releases)
- [Changelog](https://github.com/mozilla/django-csp/blob/master/CHANGES)
- [Commits](https://github.com/mozilla/django-csp/compare/3.4...3.5)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-21 14:05:48 +01:00
dependabot[bot] 142533a8a1 Bump raven from 6.9.0 to 6.10.0 (#1528)
Bumps [raven](https://github.com/getsentry/raven-python) from 6.9.0 to 6.10.0.
<details>
<summary>Release notes</summary>

*Sourced from [raven's releases](https://github.com/getsentry/raven-python/releases).*

> ## 6.10.0
> * [Core] Fixed stackframes in some situations being in inverse order.
> * [Flask] Fix wrong exception handling logic (accidentally relied on Flask internals).
> * [Core] No longer send NaN local vars as non-standard JSON.
</details>
<details>
<summary>Changelog</summary>

*Sourced from [raven's changelog](https://github.com/getsentry/raven-python/blob/master/CHANGELOG.md).*

> 6.10.0
> ------
> 
> * [Core] Fixed stackframes in some situations being in inverse order.
> * [Flask] Fix wrong exception handling logic (accidentally relied on Flask internals).
> * [Core] No longer send NaN local vars as non-standard JSON.
</details>
<details>
<summary>Commits</summary>

- [`d7d14f6`](d7d14f61b7) Release: 6.9.0 → 6.10.0
- [`8442ac1`](8442ac1f21) doc: Add changelog
- [`5cff205`](5cff20518c) fix: Dont serialize nan when present in frame local vars ([#1312](https://github-redirect.dependabot.com/getsentry/raven-python/issues/1312))
- [`d9e787b`](d9e787b7a7) fix: Flake8 updates
- [`4206873`](4206873d63) Fix link to sentry-python in README ([#1304](https://github-redirect.dependabot.com/getsentry/raven-python/issues/1304))
- [`7ecc5a8`](7ecc5a89e6) ref: Simplify travis setup ([#1303](https://github-redirect.dependabot.com/getsentry/raven-python/issues/1303))
- [`719be9a`](719be9afae) Use correct kwarg in handle_exception() for Flask ([#1300](https://github-redirect.dependabot.com/getsentry/raven-python/issues/1300))
- [`6307373`](6307373dee) Update README.rst
- [`c4403f2`](c4403f2197) chore(deprecation): fix collections.abc imports
- [`97b7d56`](97b7d56027) Merge pull request [#1301](https://github-redirect.dependabot.com/getsentry/raven-python/issues/1301) from sapcc/followup_doc_removal
- Additional commits viewable in [compare view](https://github.com/getsentry/raven-python/compare/6.9.0...6.10.0)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=raven&package-manager=pip&previous-version=6.9.0&new-version=6.10.0)](https://dependabot.com/compatibility-score.html?dependency-name=raven&package-manager=pip&previous-version=6.9.0&new-version=6.10.0)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-21 14:05:12 +01:00
dependabot[bot] bf7f71eef9 Bump dnspython from 1.15.0 to 1.16.0 (#1527)
Bumps [dnspython](https://github.com/rthalley/dnspython) from 1.15.0 to 1.16.0.
<details>
<summary>Commits</summary>

- [`1d0f64c`](1d0f64c9bc) doc->doco to avoid make confusion with doc directory
- [`86934f1`](86934f1670) further updates for 1.16.0
- [`77b4b57`](77b4b574cd) rm ChangeLog
- [`d340080`](d3400809e7) update for 1.16.0
- [`ae93637`](ae936379d8) update README.me to be current re Nominum
- [`b40011c`](b40011c3a3) fix coding lines broken by copyright update
- [`5991b0a`](5991b0a6b5) disable spurious pylint errors for python 2.7
- [`60886c8`](60886c8294) delint
- [`a3d3edc`](a3d3edc5b4) remove year on LICENSE
- [`505409b`](505409b970) update copyright
- Additional commits viewable in [compare view](https://github.com/rthalley/dnspython/compare/v1.15.0...v1.16.0)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=dnspython&package-manager=pip&previous-version=1.15.0&new-version=1.16.0)](https://dependabot.com/compatibility-score.html?dependency-name=dnspython&package-manager=pip&previous-version=1.15.0&new-version=1.16.0)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-21 14:04:55 +01:00
Jannis Leidel 8a57266ae9
Set SameSite to lax to allow login via Auth0. 2019-01-18 13:56:46 +01:00
Jannis Leidel e97f53d805
Add anoncsrf cookie name to list of cookies allowed by django-cookies-samesite. 2019-01-18 13:23:26 +01:00
Jannis Leidel fac1f60b55
Update changelog and news. 2019-01-18 11:44:39 +01:00
Jannis Leidel a5dd6a00c6
Fix sec vulns. 2019-01-18 11:31:37 +01:00
dependabot[bot] bc4b892d9d Bump clipboard from 1.7.1 to 2.0.4 (#1479)
Bumps [clipboard](https://github.com/zenorocha/clipboard.js) from 1.7.1 to 2.0.4.
<details>
<summary>Release notes</summary>

*Sourced from [clipboard's releases](https://github.com/zenorocha/clipboard.js/releases).*

> ## v2.0.4
> * Support server-side render
> 
> ## v2.0.3
> * Always run Webpack in production mode
> 
> ## v2.0.2
> * Updates to Webpack 4 and fixes issue when requiring the module.
> 
> ## v2.0.1
> * Fixes packaging issue when requiring module.
> 
> ## v2.0.0
> * Changes constructor from `new Clipboard()` to `new ClipboardJS()` [#468](https://github-redirect.dependabot.com/zenorocha/clipboard.js/issues/468) 
> 
> There are **no new features on this release**. This breaking change was only introduced due to a name conflict with the new `window.Clipboard` native API.
</details>
<details>
<summary>Commits</summary>

- [`d17eca0`](d17eca050e) 2.0.4
- [`5381600`](5381600a26) fix webpack umd build ([#599](https://github-redirect.dependabot.com/zenorocha/clipboard.js/issues/599))
- [`5be63e2`](5be63e28dd) 2.0.3
- [`adc669d`](adc669df06) Always run webpack in production mode. ([#595](https://github-redirect.dependabot.com/zenorocha/clipboard.js/issues/595))
- [`b57e6d0`](b57e6d019f) Don't claim to support ESM
- [`3d005b5`](3d005b547e) Maintain banner in minified file
- [`cf9e8fd`](cf9e8fd7ce) Updates devDependencies
- [`f1d99de`](f1d99de5d3) Removes .npmignore file
- [`fdb66d3`](fdb66d3f16) 2.0.2
- [`e0f8224`](e0f82241d0) Removes bundle analyzer
- Additional commits viewable in [compare view](https://github.com/zenorocha/clipboard.js/compare/v1.7.1...v2.0.4)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=clipboard&package-manager=npm_and_yarn&previous-version=1.7.1&new-version=2.0.4)](https://dependabot.com/compatibility-score.html?dependency-name=clipboard&package-manager=npm_and_yarn&previous-version=1.7.1&new-version=2.0.4)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-17 18:07:00 +01:00
dependabot[bot] 2cbb8e0f40 Bump coverage from 4.5.1 to 4.5.2 (#1522)
Bumps [coverage](https://bitbucket.org/ned/coveragepy) from 4.5.1 to 4.5.2.
- [Changelog](https://bitbucket.org/ned/coveragepy/src/default/CHANGES.rst)
- [Commits](https://bitbucket.org/ned/coveragepy/commits)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-17 17:22:43 +01:00
dependabot[bot] ac4596a30e Bump kombu from 4.2.1 to 4.2.2.post1 (#1517)
Bumps [kombu](https://github.com/celery/kombu) from 4.2.1 to 4.2.2.post1.
- [Release notes](https://github.com/celery/kombu/releases)
- [Changelog](https://github.com/celery/kombu/blob/master/Changelog)
- [Commits](https://github.com/celery/kombu/commits)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-17 17:22:25 +01:00
dependabot[bot] 173dd8360d Bump mozilla-django-oidc from 1.1.2 to 1.2.0 (#1524)
Bumps [mozilla-django-oidc](https://github.com/mozilla/mozilla-django-oidc) from 1.1.2 to 1.2.0.
- [Release notes](https://github.com/mozilla/mozilla-django-oidc/releases)
- [Changelog](https://github.com/mozilla/mozilla-django-oidc/blob/master/HISTORY.rst)
- [Commits](https://github.com/mozilla/mozilla-django-oidc/compare/1.1.2...1.2.0)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-17 17:22:12 +01:00
dependabot[bot] 24e810c893 Bump pytest-django from 3.4.4 to 3.4.5 (#1523)
Bumps [pytest-django](https://github.com/pytest-dev/pytest-django) from 3.4.4 to 3.4.5.
<details>
<summary>Changelog</summary>

*Sourced from [pytest-django's changelog](https://github.com/pytest-dev/pytest-django/blob/master/docs/changelog.rst).*

> 3.4.5 (2019-01-07)
> ------------------
> 
> Bugfixes
> ^^^^^^^^
> 
> * Use ``request.config`` instead of ``pytest.config`` ([#677](https://github-redirect.dependabot.com/pytest-dev/pytest-django/issues/677))
> * :fixture:`admin_user`: handle "email" username_field ([#676](https://github-redirect.dependabot.com/pytest-dev/pytest-django/issues/676))
> 
> Misc
> ^^^^
> 
> * Minor doc fixes ([#674](https://github-redirect.dependabot.com/pytest-dev/pytest-django/issues/674))
> * tests: fix for pytest 4 ([#675](https://github-redirect.dependabot.com/pytest-dev/pytest-django/issues/675))
</details>
<details>
<summary>Commits</summary>

- [`bbb8339`](bbb8339db9) Release 3.4.5
- [`82de481`](82de481a21) Use request.config instead of pytest.config ([#677](https://github-redirect.dependabot.com/pytest-dev/pytest-django/issues/677))
- [`a3dc56d`](a3dc56d895) admin_user fixture: handle "email" username_field ([#676](https://github-redirect.dependabot.com/pytest-dev/pytest-django/issues/676))
- [`0e375ec`](0e375ec868) Merge pull request [#674](https://github-redirect.dependabot.com/pytest-dev/pytest-django/issues/674) from minusf/num_queries_doc
- [`08434f7`](08434f7ac9) tests: fix for pytest 4 ([#675](https://github-redirect.dependabot.com/pytest-dev/pytest-django/issues/675))
- [`9649949`](964994919c) 2 Item.objects.create's, assert for 2 :}
- [`80ee2fe`](80ee2fe54b) fix copy pasto, add 'num' parameter, mention -v
- See full diff in [compare view](https://github.com/pytest-dev/pytest-django/compare/3.4.4...3.4.5)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=pytest-django&package-manager=pip&previous-version=3.4.4&new-version=3.4.5)](https://dependabot.com/compatibility-score.html?dependency-name=pytest-django&package-manager=pip&previous-version=3.4.4&new-version=3.4.5)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-17 17:20:20 +01:00
dependabot[bot] 446a05d5a9 Bump hashin from 0.13.4 to 0.14.1 (#1526)
Bumps [hashin](https://github.com/peterbe/hashin) from 0.13.4 to 0.14.1.
<details>
<summary>Commits</summary>

- See full diff in [compare view](https://github.com/peterbe/hashin/commits)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=hashin&package-manager=pip&previous-version=0.13.4&new-version=0.14.1)](https://dependabot.com/compatibility-score.html?dependency-name=hashin&package-manager=pip&previous-version=0.13.4&new-version=0.14.1)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-17 17:20:06 +01:00
dependabot[bot] 8c95a6d8ea Bump idna from 2.7 to 2.8 (#1525)
Bumps [idna](https://github.com/kjd/idna) from 2.7 to 2.8.
- [Release notes](https://github.com/kjd/idna/releases)
- [Changelog](https://github.com/kjd/idna/blob/master/HISTORY.rst)
- [Commits](https://github.com/kjd/idna/compare/v2.7...v2.8)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-17 17:19:55 +01:00
dependabot[bot] 6420f03bd0 Bump pip-api from 0.0.1 to 0.0.4 (#1514)
Bumps [pip-api](https://github.com/di/pip-api) from 0.0.1 to 0.0.4.
- [Release notes](https://github.com/di/pip-api/releases)
- [Changelog](https://github.com/di/pip-api/blob/master/CHANGELOG)
- [Commits](https://github.com/di/pip-api/commits)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-17 17:19:43 +01:00
dependabot[bot] 207fdf4fb6 Bump pytest from 3.7.1 to 4.1.1 (#1516)
Bumps [pytest](https://github.com/pytest-dev/pytest) from 3.7.1 to 4.1.1.
- [Release notes](https://github.com/pytest-dev/pytest/releases)
- [Changelog](https://github.com/pytest-dev/pytest/blob/master/CHANGELOG.rst)
- [Commits](https://github.com/pytest-dev/pytest/compare/3.7.1...4.1.1)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-17 17:19:26 +01:00
dependabot[bot] 4548f2818f Bump pytest-cov from 2.6.0 to 2.6.1 (#1519)
Bumps [pytest-cov](https://github.com/pytest-dev/pytest-cov) from 2.6.0 to 2.6.1.
- [Release notes](https://github.com/pytest-dev/pytest-cov/releases)
- [Changelog](https://github.com/pytest-dev/pytest-cov/blob/master/CHANGELOG.rst)
- [Commits](https://github.com/pytest-dev/pytest-cov/compare/v2.6.0...v2.6.1)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-17 17:19:12 +01:00
dependabot[bot] 984c1a04a7 Bump gunicorn from 19.8.1 to 19.9.0 (#1520)
Bumps [gunicorn](https://github.com/benoitc/gunicorn) from 19.8.1 to 19.9.0.
<details>
<summary>Release notes</summary>

*Sourced from [gunicorn's releases](https://github.com/benoitc/gunicorn/releases).*

> ## 19.9.0
> - fix: address a regression that prevented syslog support from working
>   ([#1668](https://github-redirect.dependabot.com/benoitc/gunicorn/issues/1668), [#1773](https://github-redirect.dependabot.com/benoitc/gunicorn/issues/1773))
> - fix: correctly set `REMOTE_ADDR` on versions of Python 3 affected by
>   `Python Issue 30205 <https://bugs.python.org/issue30205>`_
>   ([#1755](https://github-redirect.dependabot.com/benoitc/gunicorn/issues/1755), [#1796](https://github-redirect.dependabot.com/benoitc/gunicorn/issues/1796))
> - fix: show zero response length correctly in access log ([#1787](https://github-redirect.dependabot.com/benoitc/gunicorn/issues/1787))
> - fix: prevent raising :exc:`AttributeError` when ``--reload`` is not passed
>   in case of a :exc:`SyntaxError` raised from the WSGI application.
>   ([#1805](https://github-redirect.dependabot.com/benoitc/gunicorn/issues/1805), [#1806](https://github-redirect.dependabot.com/benoitc/gunicorn/issues/1806))
> - ️The internal module ``gunicorn.workers.async`` was renamed to 
>   ``gunicorn.workers.base_async`` since ``async`` is now a reserved word 
>    in Python 3.7.
>   ([#1527](https://github-redirect.dependabot.com/benoitc/gunicorn/issues/1527))
</details>
<details>
<summary>Commits</summary>

- [`29f0394`](29f0394cdd) Release version 19.9.0
- [`3e265d4`](3e265d4319) Regenerate settings documentation
- [`c7c0f9d`](c7c0f9db76) Update changelog
- [`bd833e0`](bd833e0009) Merge pull request [#1796](https://github-redirect.dependabot.com/benoitc/gunicorn/issues/1796) from diegoholiveira/1795-rename-async-module
- [`f0c5499`](f0c54993ca) Merge branch 'W7PEA-patch-2'
- [`7891310`](7891310d80) Use consistent style in nginx.conf
- [`101f2da`](101f2da922) Merge branch 'patch-2' of https://github.com/W7PEA/gunicorn into W7PEA-patch-2
- [`d213103`](d21310351f) Optimize by precompiling regex and using tuple for iterable copies.
- [`557b919`](557b91964c) Merge branch 'master' into 1795-rename-async-module
- [`21f0adc`](21f0adc346) Fix AttributeError when --reload was not passed ([#1806](https://github-redirect.dependabot.com/benoitc/gunicorn/issues/1806))
- Additional commits viewable in [compare view](https://github.com/benoitc/gunicorn/compare/19.8.1...19.9.0)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=gunicorn&package-manager=pip&previous-version=19.8.1&new-version=19.9.0)](https://dependabot.com/compatibility-score.html?dependency-name=gunicorn&package-manager=pip&previous-version=19.8.1&new-version=19.9.0)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-17 17:18:57 +01:00
dependabot[bot] 6308637d8a Bump amqp from 2.3.2 to 2.4.0 (#1515)
Bumps [amqp](https://github.com/celery/py-amqp) from 2.3.2 to 2.4.0.
- [Release notes](https://github.com/celery/py-amqp/releases)
- [Changelog](https://github.com/celery/py-amqp/blob/master/Changelog)
- [Commits](https://github.com/celery/py-amqp/compare/v2.3.2...v2.4.0)

Signed-off-by: dependabot[bot] <support@dependabot.com>
2019-01-17 17:18:41 +01:00
dependabot[bot] f0ba682c7f Bump sphinx from 1.7.6 to 1.8.3 (#1518)
Bumps [sphinx](https://github.com/sphinx-doc/sphinx) from 1.7.6 to 1.8.3.
<details>
<summary>Changelog</summary>

*Sourced from [sphinx's changelog](https://github.com/sphinx-doc/sphinx/blob/master/CHANGES).*

> Release 1.8.3 (released Dec 26, 2018)
> =====================================
> 
> Features added
> --------------
> 
> * LaTeX: it is possible to insert custom material to appear on back of title
>   page, see discussion of ``'maketitle'`` key of :confval:`latex_elements`
>   (``'manual'`` docclass only)
> 
> Bugs fixed
> ----------
> 
> * [#5725](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5725): mathjax: Use CDN URL for "latest" version by default
> * [#5460](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5460): html search does not work with some 3rd party themes
> * [#5520](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5520): LaTeX, caption package incompatibility since Sphinx 1.6
> * [#5614](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5614): autodoc: incremental build is broken when builtin modules are imported
> * [#5627](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5627): qthelp: index.html missing in QtHelp
> * [#5659](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5659): linkcheck: crashes for a hyperlink containing multibyte character
> * [#5754](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5754): DOC: Fix some mistakes in :doc:`/latex`
> * [#5810](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5810): LaTeX: sphinxVerbatim requires explicit "hllines" set-up since 1.6.6
>   (refs: [#1238](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/1238))
> * [#5636](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5636): C++, fix parsing of floating point literals.
> * [#5496](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5496) (again): C++, fix assertion in partial builds with duplicates.
> * [#5724](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5724): quickstart: sphinx-quickstart fails when $LC_ALL is empty
> * [#1956](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/1956): Default conf.py is not PEP8-compliant
> * [#5849](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5849): LaTeX: document class ``\maketitle`` is overwritten with no
>   possibility to use original meaning in place of Sphinx custom one
> * [#5834](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5834): apidoc: wrong help for ``--tocfile``
> * [#5800](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5800): todo: crashed if todo is defined in TextElement
> * [#5846](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5846): htmlhelp: convert hex escaping to decimal escaping in .hhc/.hhk files
> * htmlhelp: broken .hhk file generated when title contains a double quote
> 
> Release 1.8.2 (released Nov 11, 2018)
> =====================================
> 
> Incompatible changes
> --------------------
> 
> * [#5497](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5497): Do not include MathJax.js and jsmath.js unless it is really needed
> 
> Features added
> --------------
> 
> * [#5471](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5471): Show appropriate deprecation warnings
> 
> Bugs fixed
> ----------
> 
> * [#5490](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5490): latex: enumerated list causes a crash with recommonmark
></tr></table> ... (truncated)
</details>
<details>
<summary>Commits</summary>

- [`81328ca`](81328ca598) Bump to 1.8.3 final
- [`f8c6c14`](f8c6c14526) Merge pull request [#5862](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5862) from tk0miya/refactor_chm_htmlescape
- [`6ffe549`](6ffe549f49) refactor chm_htmlescape()
- [`3f92aa7`](3f92aa7e6a) Remove from CHANGES mention of non-existing 1.7.10 release
- [`503cf9c`](503cf9c39e) Merge pull request [#5860](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5860) from animalize/fix_test
- [`9052471`](9052471e19) don't generate build files inside /tests/roots/
- [`cedd94c`](cedd94c541) [1.8] htmlhelp: convert hex escaping to decimal escaping in .hhc/.hhk files (...
- [`a77f344`](a77f344035) Merge pull request [#5850](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5850) from jfbu/latex_sphinxmaketitle
- [`35d0934`](35d0934caa) Merge pull request [#5848](https://github-redirect.dependabot.com/sphinx-doc/sphinx/issues/5848) from tk0miya/5800_todo_inside_TextElement
- [`0034664`](0034664a6e) Update date and version of LaTeX class files
- Additional commits viewable in [compare view](https://github.com/sphinx-doc/sphinx/compare/v1.7.6...v1.8.3)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=sphinx&package-manager=pip&previous-version=1.7.6&new-version=1.8.3)](https://dependabot.com/compatibility-score.html?dependency-name=sphinx&package-manager=pip&previous-version=1.7.6&new-version=1.8.3)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)

---

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-17 17:18:29 +01:00
dependabot[bot] defec13a59 Bump ansi_up from 2.0.3 to 3.0.0 (#1456)
Bumps [ansi_up](https://github.com/drudru/ansi_up) from 2.0.3 to 3.0.0.
<details>
<summary>Release notes</summary>

*Sourced from [ansi_up's releases](https://github.com/drudru/ansi_up/releases).*

> ## 3.0.0 Release - Bold support
> Now has proper Bold support.
> Bug fixes and pull requests merged.
</details>
<details>
<summary>Commits</summary>

- See full diff in [compare view](https://github.com/drudru/ansi_up/commits/v3.0.0)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=ansi_up&package-manager=npm_and_yarn&previous-version=2.0.3&new-version=3.0.0)](https://dependabot.com/compatibility-score.html?dependency-name=ansi_up&package-manager=npm_and_yarn&previous-version=2.0.3&new-version=3.0.0)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

---

**Note:** This repo was added to Dependabot recently, so you'll receive a maximum of 5 PRs for your first few update runs. Once an update run creates fewer than 5 PRs we'll remove that limit.

You can always request more updates by clicking `Bump now` in your [Dependabot dashboard](https://app.dependabot.com).

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-17 17:17:42 +01:00
Jannis Leidel 900131420e
Merge branch 'master' of github.com:mozilla/telemetry-analysis-service 2019-01-17 17:12:53 +01:00
dependabot[bot] cae6ca0797 Bump prismjs from 1.8.4 to 1.15.0 (#1465)
Bumps [prismjs](https://github.com/LeaVerou/prism) from 1.8.4 to 1.15.0.
<details>
<summary>Release notes</summary>

*Sourced from [prismjs's releases](https://github.com/LeaVerou/prism/releases).*

> ## v1.15.0
> No release notes provided.
> 
> ## v1.14.0
> Release 1.14.0
> 
> ## v1.13.0
> Release 1.13.0
> 
> ## v1.12.2
> Release 1.12.2
> 
> ## v1.12.1
> Release 1.12.1
> 
> ## v1.12.0
> Release 1.12.0
> 
> ## v1.11.0
> Release 1.11.0
> 
> ## v1.10.0
> Release 1.10.0
> 
> ## v1.9.0
> Release 1.9.0
</details>
<details>
<summary>Changelog</summary>

*Sourced from [prismjs's changelog](https://github.com/PrismJS/prism/blob/master/CHANGELOG.md).*

> ## 1.15.0 (2018-06-16)
> 
> ### New components
> 
> * __Template Tookit 2__ ([#1418](https://github-redirect.dependabot.com/PrismJS/prism/issues/1418)) [[`e063992`](https://github.com/PrismJS/prism/commit/e063992)]
> * __XQuery__ ([#1411](https://github-redirect.dependabot.com/PrismJS/prism/issues/1411)) [[`e326cb0`](https://github.com/PrismJS/prism/commit/e326cb0)]
> * __TAP__ ([#1430](https://github-redirect.dependabot.com/PrismJS/prism/issues/1430)) [[`8c2b71f`](https://github.com/PrismJS/prism/commit/8c2b71f)]
> 
> ### Updated components
> 
> * __HTTP__
> 	* Absolute path is a valid request uri ([#1388](https://github-redirect.dependabot.com/PrismJS/prism/issues/1388)) [[`f6e81cb`](https://github.com/PrismJS/prism/commit/f6e81cb)]
> * __Kotlin__
> 	* Add keywords of Kotlin and modify it's number pattern. ([#1389](https://github-redirect.dependabot.com/PrismJS/prism/issues/1389)) [[`1bf73b0`](https://github.com/PrismJS/prism/commit/1bf73b0)]
> 	* Add `typealias` keyword ([#1437](https://github-redirect.dependabot.com/PrismJS/prism/issues/1437)) [[`a21fdee`](https://github.com/PrismJS/prism/commit/a21fdee)]
> * __JavaScript
> 	* Improve Regexp pattern [[`5b043cf`](https://github.com/PrismJS/prism/commit/5b043cf)]
> 	* Add support for one level of nesting inside template strings. Fix [#1397](https://github-redirect.dependabot.com/PrismJS/prism/issues/1397) [[`db2d0eb`](https://github.com/PrismJS/prism/commit/db2d0eb)]
> * __Elixir__
> 	* Elixir: Fix attributes consuming punctuation. Fix [#1392](https://github-redirect.dependabot.com/PrismJS/prism/issues/1392) [[`dac0485`](https://github.com/PrismJS/prism/commit/dac0485)]
> * __Bash__
> 	* Change reserved keyword reference ([#1396](https://github-redirect.dependabot.com/PrismJS/prism/issues/1396)) [[`b94f01f`](https://github.com/PrismJS/prism/commit/b94f01f)]
> * __PowerShell__
> 	* Allow for one level of nesting in expressions inside strings. Fix [#1407](https://github-redirect.dependabot.com/PrismJS/prism/issues/1407) [[`9272d6f`](https://github.com/PrismJS/prism/commit/9272d6f)]
> * __JSX__
> 	* Allow for two levels of nesting inside JSX tags. Fix [#1408](https://github-redirect.dependabot.com/PrismJS/prism/issues/1408) [[`f1cd7c5`](https://github.com/PrismJS/prism/commit/f1cd7c5)]
> 	* Add support for fragments short syntax. Fix [#1421](https://github-redirect.dependabot.com/PrismJS/prism/issues/1421) [[`38ce121`](https://github.com/PrismJS/prism/commit/38ce121)]
> * __Pascal__
> 	* Add `objectpascal` as an alias to `pascal` ([#1426](https://github-redirect.dependabot.com/PrismJS/prism/issues/1426)) [[`a0bfc84`](https://github.com/PrismJS/prism/commit/a0bfc84)]
> * __Swift__
> 	* Fix Swift 'protocol' keyword ([#1440](https://github-redirect.dependabot.com/PrismJS/prism/issues/1440)) [[`081e318`](https://github.com/PrismJS/prism/commit/081e318)]
> 
> ### Updated plugins
> 
> * __File Highlight__
> 	* Fix issue causing the Download button to show up on every code blocks. [[`cd22499`](https://github.com/PrismJS/prism/commit/cd22499)]
> 	* Simplify lang regex on File Highlight plugin ([#1399](https://github-redirect.dependabot.com/PrismJS/prism/issues/1399)) [[`7bc9a4a`](https://github.com/PrismJS/prism/commit/7bc9a4a)]
> * __Show Language__
> 	* Don't process language if block language not set ([#1410](https://github-redirect.dependabot.com/PrismJS/prism/issues/1410)) [[`c111869`](https://github.com/PrismJS/prism/commit/c111869)]
> * __Autoloader__
> 	* ASP.NET should require C# [[`fa328bb`](https://github.com/PrismJS/prism/commit/fa328bb)]
> * __Line Numbers__
> 	* Make line-numbers styles more specific ([#1434](https://github-redirect.dependabot.com/PrismJS/prism/issues/1434), [#1435](https://github-redirect.dependabot.com/PrismJS/prism/issues/1435)) [[`9ee4f54`](https://github.com/PrismJS/prism/commit/9ee4f54)]
> 
> ### Updated themes
> 
> * Add .token.class-name to rest of themes ([#1360](https://github-redirect.dependabot.com/PrismJS/prism/issues/1360)) [[`f356dfe`](https://github.com/PrismJS/prism/commit/f356dfe)]
> 
> ### Other changes
> 
></table> ... (truncated)
</details>
<details>
<summary>Commits</summary>

- [`7d084d5`](7d084d5f17) 1.15.0
- [`5f04f4d`](5f04f4d4bf) Merge pull request [#1440](https://github-redirect.dependabot.com/LeaVerou/prism/issues/1440) from PrismJS/fix-solidity-protocol
- [`09b56af`](09b56af28f) Merge pull request [#1430](https://github-redirect.dependabot.com/LeaVerou/prism/issues/1430) from PrismJS/add-tap
- [`41e3d6a`](41e3d6a6f6) Update minified files
- [`2c6b6a4`](2c6b6a421d) Fix Swift protocol test
- [`791f400`](791f400004) Add tests
- [`f2b1964`](f2b1964493) Add Chinese translation
- [`081e318`](081e318c40) Fix Swift 'protocol' keyword
- [`f356dfe`](f356dfe71b) Add .token.class-name to rest of themes ([#1360](https://github-redirect.dependabot.com/LeaVerou/prism/issues/1360))
- [`1595770`](1595770289) Merge branch 'gh-pages'
- Additional commits viewable in [compare view](https://github.com/LeaVerou/prism/compare/v1.8.4...v1.15.0)
</details>
<br />

[![Dependabot compatibility score](https://api.dependabot.com/badges/compatibility_score?dependency-name=prismjs&package-manager=npm_and_yarn&previous-version=1.8.4&new-version=1.15.0)](https://dependabot.com/compatibility-score.html?dependency-name=prismjs&package-manager=npm_and_yarn&previous-version=1.8.4&new-version=1.15.0)

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.

---

**Note:** This repo was added to Dependabot recently, so you'll receive a maximum of 5 PRs for your first few update runs. Once an update run creates fewer than 5 PRs we'll remove that limit.

You can always request more updates by clicking `Bump now` in your [Dependabot dashboard](https://app.dependabot.com).

<details>
<summary>Dependabot commands and options</summary>
<br />

You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot ignore this [patch|minor|major] version` will close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself)
- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
- `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language
- `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language
- `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language
- `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language
- `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme

Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com):
- Update frequency (including time of day and day of week)
- Automerge options (never/patch/minor, and dev/runtime dependencies)
- Pull request limits (per update run and/or open at any time)
- Out-of-range updates (receive only lockfile updates, if desired)
- Security updates (receive only security updates, if desired)

Finally, you can contact us by mentioning @dependabot.

</details>
2019-01-17 17:10:23 +01:00