chore(deps-dev): Update tox requirement from 4.30.2 to 4.30.3 by dependabot[bot] · Pull Request #977 · CycloneDX/cyclonedx-python
Updates the requirements on tox to permit the latest version.
Release notes
Sourced from tox's releases.
4.30.3
What's Changed
- Isolate the test suite from any existing
DEFAULT_CONFIG_FILEfile by@kurtmckeein tox-dev/tox#3612- Fix none config file issue 3611 by
@kurtmckeein tox-dev/tox#3613- [pre-commit.ci] pre-commit autoupdate by
@pre-commit-ci[bot] in tox-dev/tox#3608- Fix incorrect type annotations in PythonPathPackageWithDeps (fixes #3607) by
@PreistlyPythonin tox-dev/tox#3616- [pre-commit.ci] pre-commit autoupdate by
@pre-commit-ci[bot] in tox-dev/tox#3615New Contributors
@PreistlyPythonmade their first contribution in tox-dev/tox#3616Full Changelog: tox-dev/tox@4.30.2...4.30.3
Changelog
Sourced from tox's changelog.
v4.30.3 (2025-10-02)
Bugfixes - 4.30.3
- Fix incorrect type annotation in ``PythonPathPackageWithDeps.__init__()`` where ``deps`` was annotated as ``Sequence[Package]`` but should be ``Sequence[Requirement]`` to match actual runtime usage - by :user:`PreistlyPython` (:issue:`3607`) - Fix ``None`` appearing as the config filename in error output when the user's default config file is corrupt. - by :user:`kurtmckee` (:issue:`3611`)v4.30.2 (2025-09-04)
Bugfixes - 4.30.2
- Previously, when tox ran in an automatically provisioned environment, it could hang waiting for a PEP 517 build backend if used in conjunction with the
--installpkgoption. This has been fixed by properly tearing down the automatically provisioned environment after the tests.
- by :user:
vytas7(:issue:3600)v4.30.1 (2025-09-03)
Bugfixes - 4.30.1
- Prevent tox from hanging upon exit due to orphaned build threads and subprocesses when the ``--installpkg`` option is used with *sdist*. - by :user:`vytas7` (:issue:`3530`)v4.30.0 (2025-09-03)
Features - 4.30.0
- Add
__TOX_ENVIRONMENT_VARIABLE_ORIGINAL_CI, which passes through theCIvariable if present. This is intended for use by other libraries to detect if tox is running under CI. (:issue:3442)Bugfixes - 4.30.0
- Makes the error message more clear when pyproject.toml file cannot be loaded or is missing expected keys. (:issue:`3578`) - The :func:`tox_extend_envs() hook <tox.plugin.spec.tox_extend_envs>` recently added in :pull:`3591` turned out to not work well with ``tox run``. It was fixed internally, not to exhaust the underlying iterator on the first use.-- by :user:
webknjaz(:issue:3598)v4.29.0 (2025-08-29)
</tr></table>
... (truncated)
Commits
01442darelease 4.30.3984dc78[pre-commit.ci] pre-commit autoupdate (#3615)660adb5Fix incorrect type annotations in PythonPathPackageWithDeps (fixes #3607) (#3...393de39[pre-commit.ci] pre-commit autoupdate (#3608)6e32426Fix none config file issue 3611 (#3613)0805c83Isolate the test suite from any existingDEFAULT_CONFIG_FILEfile (#3612)- See full diff in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)