upgrade-dependencies
CLI tool to check for dependency updates in your python project. Automatically creates GitHub pull requests for dependencies you wish to update!
Usage
If you have uv installed, you can install upgrade-dependencies with
uv tool install upgrade-dependencies
You can then navigate to your project directory and execute:
uvx upgrade-dependencies [OPTIONS] COMMAND [ARGS]...
See the CLI documentation for information about how each command works.
Requirements
All python requirements are installed by default. To successfully use the update
command the following executables must be installed into your shell:
gitgh, i.e. GitHub CLI - ensure you have already rungh auth loginand added appropriate permissions
GitHub API Rate Limit
The GitHub API is used to fetch data for GitHub actions and pre-commit repos.
Unauthenticated users have a rate limit of 60 requests per hour, whereas authenticated
users have a rate limit of 5,000 requests per hour. You can use a GitHub personal access
token to utilise this higher rate limit by setting the GH_PAT environment variable:
export GH_PAT=github_pat_xxx
Limitations
- Currently only supports a single specifier, e.g.
numpy~=2.0.2, notnumpy>=2,<2.1 - The project file structure is fixed and assumed, see Project File Structure.
- GH actions must only use major version, e.g.
actions/checkout@v4notactions/checkout@v4.2.2 - It is recommended to have a clean git before running
update(a warning will be printed to the terminal if this is not the case).
Project File Structure
The following project file structure is assumed:
project
├── .github
│ └── workflows
│ └── *.yml
├── .pre-commit-config.yml
└── pyproject.toml
Release files for upgrade-dependencies 0.2.1
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| upgrade_dependencies-0.2.1.tar.gz | 51.3 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| upgrade_dependencies-0.2.1-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 66.5 kB
Release files / upgrade_dependencies-0.2.1.tar.gz
| Download URL | upgrade_dependencies-0.2.1.tar.gz |
|---|---|
| Size | 51.3 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
32400ea1bdc9a4f9ee888ee071833e7cd4019b20c7498546b08424ff094eee82
|
|
BLAKE2b-256 checksum How to use checksums |
851021a2303347c988f3a53ad0be5b067448f5039a308ad14fa1200326009dd1
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/6.1.0 CPython/3.12.9
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Mar 6, 2025.
Transparency logRelease files / upgrade_dependencies-0.2.1-py3-none-any.whl
| Download URL | upgrade_dependencies-0.2.1-py3-none-any.whl |
|---|---|
| Size | 15.2 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
4e14545e63d487cbe272c054f0bbd1a8d9b7e59724391e2bbedf7a003cdd1c6b
|
|
BLAKE2b-256 checksum How to use checksums |
cf956d0281ea125fb0898091161e8e7a9e1577cd96a124274e2f12a610715c02
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/6.1.0 CPython/3.12.9
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Mar 6, 2025.
Transparency log