Skip to content

build(deps): bump the pip-dependencies group in /docker with 3 updates#2737

Draft
dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot/pip/docker/pip-dependencies-499dfbeeb6
Draft

build(deps): bump the pip-dependencies group in /docker with 3 updates#2737
dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot/pip/docker/pip-dependencies-499dfbeeb6

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Mar 12, 2026

Bumps the pip-dependencies group in /docker with 3 updates: jupyterlab, pandas and rasterio.

Updates jupyterlab from 4.5.1 to 4.5.5

Release notes

Sourced from jupyterlab's releases.

v4.5.5

4.5.5

(Full Changelog)

Bugs fixed

Maintenance and upkeep improvements

Contributors to this release

The following people contributed discussions, new ideas, code and documentation contributions, and review. See our definition of contributors.

(GitHub contributors page for this release)

@​apoorvdarshan (activity) | @​bollwyvl (activity) | @​itsmevichu (activity) | @​jasongrout (activity) | @​krassowski (activity)

v4.5.4

4.5.4

(Full Changelog)

Bugs fixed

Maintenance and upkeep improvements

Documentation improvements

... (truncated)

Commits
  • 72d29f4 [ci skip] Publish 4.5.5
  • 4a223c0 Backport PR #18530 on branch 4.5.x (Fix theme settings broken in non-English ...
  • 2d54b65 Backport PR #18531 on branch 4.5.x (Fix comms subshell resource management on...
  • 5f01903 Update to marked 17.0.2 and mermaid 11.12.3 (#18532)
  • 1fa6809 Backport PR #18479 on branch 4.5.x (Upgrade @​codemirror/view, fixing slow sel...
  • 277f814 Backport PR #18503 on branch 4.5.x (Only turn off overflow anchor when window...
  • b824b96 Backport PR #18411 on branch 4.5.x (Fix table of contents navigation for Mark...
  • 2ecc1ee [ci skip] Publish 4.5.4
  • 19f81fc Backport PR #18474 on branch 4.5.x (Avoid using system clipboard in Notebook ...
  • b82e6d7 Backport PR #18466 on branch 4.5.x (Update CodeMirror versions, fixing a few ...
  • Additional commits viewable in compare view

Updates pandas from 2.3.3 to 3.0.1

Release notes

Sourced from pandas's releases.

pandas 3.0.1

We are pleased to announce the release of pandas 3.0.1. This is a patch release in the 3.0.x series and includes some regression fixes and bug fixes. We recommend that all users of the 3.0.x series upgrade to this version.

See the full whatsnew for a list of all the changes.

Pandas 3.0.0 supports Python 3.11 and higher. The release can be installed from PyPI:

python -m pip install --upgrade pandas==3.0.*

Or from conda-forge

conda install -c conda-forge pandas=3.0

Please report any issues with the release on the pandas issue tracker.

Thanks to all the contributors who made this release possible.

pandas 3.0.0

We are pleased to announce the release of pandas 3.0.0, a major release from the pandas 2.x series. This release includes various new features, bug fixes, and performance improvements, as well as possible breaking changes.

The pandas 3.0 release removed a functionality that was deprecated in previous releases. It is recommended to first upgrade to pandas 2.3 and to ensure your code is working without warnings, before upgrading to pandas 3.0.

Highlights include:

See the announcement blog post and the detailed release notes for a list of all the changes.

Pandas 3.0.0 supports Python 3.11 and higher. The release can be installed from PyPI

python -m pip install --upgrade pandas==3.0.*

Or from conda-forge

conda install -c conda-forge pandas=3.0

Please report any issues with the release on the pandas issue tracker.

Thanks to all the contributors who made this release possible.

Pandas 3.0.0rc2

No release notes provided.

Pandas 3.0.0rc1

... (truncated)

Commits
  • e04b26f RLS: 3.0.1 (#64206)
  • 47909e6 [backport 3.0.x] ENH: Add item() method to ExtensionArray class (#64134) (#64...
  • a061bfd Backport PR #64199 on branch 3.0.x (DOC: cleanup 3.0.1 whatsnew) (#64201)
  • 085a385 [backport 3.0.x] BUG: Fix read_hdf failing on generic datetime64 dtype (#6400...
  • 5f17047 [backport 3.0.x] BUG: use fill_null fallback for bug in pyarrow 21 on Windows...
  • 0d3a8cb Backport PR #64122 on branch 3.0.x (REG: Allow RE2 syntax in str.contains and...
  • 78e1917 Backport PR #64185 on branch 3.0.x (TST: remove fixed xfail for PyArrow 23.0....
  • 75a42ca Backport PR #64168 on branch 3.0.x (TST: add legacy file generation and tests...
  • 46d443f Backport PR #64092 on branch 3.0.x (BUG: DataFrame.loc fills b'' instead of N...
  • 9d67932 Backport PR #64068 on branch 3.0.x (BUG: fixed to_timedelta with list of int ...
  • Additional commits viewable in compare view

Updates rasterio from 1.4.4 to 1.5.0

Release notes

Sourced from rasterio's releases.

1.5.0

Dependencies:

  • Minimum supported versions: Python 3.12+, GDAL 3.8+, & numpy 2+ (#3465, #3467, #3468)
  • Vendor click-plugins (#3367)

Enhancements:

  • Add float16 dtype (#3469)
  • rasterio.cache: Add invalidate() and invalidate_all() for invalidation of responses in Rasterio's HTTP cache (#3276).
  • rasterio.crs: The CRS class has a new, lazily computed, geodetic_crs property (#3218)
  • rasterio.enum: Add Interleaving.tile (#3479)
  • rasterio.features.shapes: float64 fully supported GDAL 3.12.1 (#3477)
  • rasterio.features.shapes: Add uint32,uint64,int64 dtypes & warn for possible truncation (#3456)
  • rasterio.plot.show: Add indexes & percent_range parameters to handle rgb image missing color interpretation & enable histogram stretching (#3171)
  • rasterio.warp.reproject: Modify tolerance to be an argument in (#3325)
  • Move project metadata to pyproject.toml (PEP 621) (#3430)
  • Use Lapack solve to more accurately compute affine reverse transforms (#3315)
  • rasterio.open: Add thread_safe parameter (#3496)
  • rasterio.session: Add support for additional Azure credentials (#3482)

Bug fixes:

  • Ensure dataset can be closed multiple times (#3480)
  • Remove duplicate dataset cleanup (#3473, #3366)
  • Use rasterio & numpy dtypes internally instead of strings (#3472)
  • Use context manager for MemoryDataset (#3461)
  • rasterio.warp: Don't fill masked output when reprojecting (#3471)
  • rasterio.warp: Filter GDALCreateGenImgProjTransformer2 options (#3460)
  • rasterio.show_versions: Use importlib.metadata.version (#3488)
  • Static GDAL runtime version check (#3487)
  • Use GDAL open flag constants (#3494)
  • Documentation (#3459, #3458, #3455, #3346)
  • Tests (#3429, #3502, #3501, #3498)
  • Code linting (#3457)

Deprecations:

  • rasterio.warp.transform_geom: Deprecate antimeridian_cutting & antimeridian_offset (#3474)

Packaging notes:

Full list of software versions

Contributors

... (truncated)

Changelog

Sourced from rasterio's changelog.

1.5.0 (2026-01-05)

Dependencies:

  • Minimum supported versions: Python 3.12+, GDAL 3.8+, & numpy 2+ (#3465, #3467, #3468)
  • Vendor click-plugins (#3367)

Enhancements:

  • Add float16 dtype (#3469)
  • rasterio.cache: Add invalidate() and invalidate_all() for invalidation of responses in Rasterio's HTTP cache (#3276).
  • rasterio.crs: The CRS class has a new, lazily computed, geodetic_crs property (#3218)
  • rasterio.enum: Add Interleaving.tile (#3479)
  • rasterio.features.shapes: float64 fully supported GDAL 3.12.1 (#3477)
  • rasterio.features.shapes: Add uint32,uint64,int64 dtypes & warn for possible truncation (#3456)
  • rasterio.plot.show: Add indexes & percent_range parameters to handle rgb image missing color interpretation & enable histogram stretching (#3171)
  • rasterio.warp.reproject: Modify tolerance to be an argument in (#3325)
  • Move project metadata to pyproject.toml (PEP 621) (#3430)
  • Use Lapack solve to more accurately compute affine reverse transforms (#3315)
  • rasterio.open: Add thread_safe parameter (#3496)
  • rasterio.session: Add support for additional Azure credentials (#3482)

Bug fixes:

  • Ensure dataset can be closed multiple times (#3480)
  • Remove duplicate dataset cleanup (#3473, #3366)
  • Use rasterio & numpy dtypes internally instead of strings (#3472)
  • Use context manager for MemoryDataset (#3461)
  • rasterio.warp: Don't fill masked output when reprojecting (#3471)
  • rasterio.warp: Filter GDALCreateGenImgProjTransformer2 options (#3460)
  • rasterio.show_versions: Use importlib.metadata.version (#3488)
  • Static GDAL runtime version check (#3487)
  • Use GDAL open flag constants (#3494)
  • Documentation (#3459, 3458, #3455, #3346)
  • Tests (#3429, #3502, #3501, #3498)
  • Code linting (#3457)

Deprecations:

  • rasterio.warp.transform_geom: Deprecate antimeridian_cutting & antimeridian_offset (#3474)

Packaging notes:

Full list of software versions: https://github.com/rasterio/rasterio/blob/1.5.0/ci/config.sh#L1-L25

Full Changelog: rasterio/rasterio@1.4.4...1.5.0

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the pip-dependencies group in /docker with 3 updates: [jupyterlab](https://github.com/jupyterlab/jupyterlab), [pandas](https://github.com/pandas-dev/pandas) and [rasterio](https://github.com/rasterio/rasterio).


Updates `jupyterlab` from 4.5.1 to 4.5.5
- [Release notes](https://github.com/jupyterlab/jupyterlab/releases)
- [Changelog](https://github.com/jupyterlab/jupyterlab/blob/main/RELEASE.md)
- [Commits](https://github.com/jupyterlab/jupyterlab/compare/@jupyterlab/lsp@4.5.1...@jupyterlab/lsp@4.5.5)

Updates `pandas` from 2.3.3 to 3.0.1
- [Release notes](https://github.com/pandas-dev/pandas/releases)
- [Commits](pandas-dev/pandas@v2.3.3...v3.0.1)

Updates `rasterio` from 1.4.4 to 1.5.0
- [Release notes](https://github.com/rasterio/rasterio/releases)
- [Changelog](https://github.com/rasterio/rasterio/blob/main/CHANGES.txt)
- [Commits](rasterio/rasterio@1.4.4...1.5.0)

---
updated-dependencies:
- dependency-name: jupyterlab
  dependency-version: 4.5.5
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: pip-dependencies
- dependency-name: pandas
  dependency-version: 3.0.1
  dependency-type: direct:production
  update-type: version-update:semver-major
  dependency-group: pip-dependencies
- dependency-name: rasterio
  dependency-version: 1.5.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: pip-dependencies
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels Mar 12, 2026
@dependabot dependabot bot requested a review from jiayuasu as a code owner March 12, 2026 09:15
@dependabot dependabot bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels Mar 12, 2026
@github-actions
Copy link

👋 Welcome to Apache Sedona!

Thank you for opening your first pull request 🙌
We appreciate your effort to make Sedona even better.

💬 Join our Sedona Discord Server
to connect with other contributors, get feedback, and share ideas.

Great work — we're glad you're here!

@jbampton jbampton marked this pull request as draft March 13, 2026 12:03
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python Pull requests that update Python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants