Skip to content

chore(deps): bump the python-dev group with 2 updates - #248

Closed
dependabot[bot] wants to merge 1 commit into
devfrom
dependabot/pip/dev/python-dev-ddac9af82d
Closed

dependabot[bot] wants to merge 1 commit into
devfrom
dependabot/pip/dev/python-dev-ddac9af82d

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 27, 2026 •

Copy link
Copy Markdown
Contributor

Updates the requirements on litellm and deepgram-sdk to permit the latest version.
Updates litellm to 1.102.1

Release notes

Sourced from litellm's releases.

v1.102.1

Verify Docker Image Signature

All LiteLLM Docker images are signed with cosign. Every release is signed with the same key introduced in commit 0112e53.

Verify using the pinned commit hash (recommended):

A commit hash is cryptographically immutable, so this is the strongest way to ensure you are using the original signing key:

cosign verify \
  --key https://raw.githubusercontent.com/BerriAI/litellm/0112e53046018d726492c814b3644b7d376029d0/cosign.pub \
  ghcr.io/berriai/litellm:v1.102.1

Verify using the release tag (convenience):

Tags are protected in this repository and resolve to the same key. This option is easier to read but relies on tag protection rules:

cosign verify \
  --key https://raw.githubusercontent.com/BerriAI/litellm/v1.102.1/cosign.pub \
  ghcr.io/berriai/litellm:v1.102.1

Expected output:

The following checks were performed on each of these signatures:
  - The cosign claims were validated
  - The signatures were verified against the specified public key

What's Changed

Full Changelog: BerriAI/litellm@v1.102.0...v1.102.1

Commits
  • d09bbae Merge pull request #42618 from BerriAI/litellm_backport_stable_1_102_x_realti...
  • 188c9d1 Merge pull request #42595 from BerriAI/litellm_cherrypick_1_102_x
  • d1cd2dc chore(backport): regenerate the openapi snapshot and dashboard api types for ...
  • 5aa45f1 test(realtime): drop legacy InvalidStatusCode tests and pin websockets imports
  • 4bfac88 fix(ui): adapt the jev dashboard pieces to stable/1.102.x
  • da246e9 chore(deps): bump anyio to 4.14.2 and soupsieve to 2.9.0
  • 9a46f1f Merge pull request #41462 from BerriAI/litellm_otel_promote_nested_request_me...
  • 96e7739 fix(realtime): surface an upstream handshake refusal as an error event and po...
  • d068734 feat(openrouter): price typesafe/jev-1.13 and add an openrouter decisions pas...
  • e20cfbe feat(auto-router): add JEV classifier alongside LLM classifier
  • Additional commits viewable in compare view

Updates deepgram-sdk to 7.10.0

Release notes

Sourced from deepgram-sdk's releases.

v7.10.0

7.10.0 (2026-09-17)

Features

  • Voice Agent: Add typed FunctionCallCancelled WebSocket events. Events identify function calls that are no longer valid; do not send a FunctionCallResponse for the listed call IDs. (#790) (7f5b642)
  • Voice Agent: Add the optional defer_until_eot function setting. When enabled, it holds a function call until the user's turn is confirmed and discards the deferred call if the turn resumes. Defaults to false. (#790) (7f5b642)
Changelog

Sourced from deepgram-sdk's changelog.

7.10.0 (2026-09-17)

Features

  • Voice Agent: Add typed FunctionCallCancelled WebSocket events. Events identify function calls that are no longer valid; do not send a FunctionCallResponse for the listed call IDs. (#790) (7f5b642)
  • Voice Agent: Add the optional defer_until_eot function setting. When enabled, it holds a function call until the user's turn is confirmed and discards the deferred call if the turn resumes. Defaults to false. (#790) (7f5b642)

7.9.0 (2026-09-14)

Features

  • Voice Agent: Adds send_force_end_turn() and typed ForceEndTurn messages for V2 Flux listen providers. (#783) (ff49864)
  • Voice Agent: Adds integer expressivity from -2 through 2 for Deepgram Flux TTS providers. (#783) (ff49864)
  • Flux TTS: speed accepts 0.5 through 1.5 in 0.05 increments, replacing the previously documented 0.85 through 1.15 range. (#783) (ff49864)

Model Catalog

  • Speak V1: Removes aura-2-perseo-it from model literals. The API never served the model and returns 400 No such model/version combination found for it. (#783) (ff49864)

7.8.1 (2026-09-03)

Bug Fixes

  • TextBuilder: ssml_to_deepgram() now preserves a <phoneme> pronunciation when its valid ph and alphabet attributes appear in either order. (#741) (7fd4b63)
  • Credentials: Explicitly passing api_key=None continues to disable ambient DEEPGRAM_API_KEY lookup, which is important for multi-tenant and test environments. (#778) (e675990)
  • Credentials: DeepgramClient() and AsyncDeepgramClient() now resolve DEEPGRAM_API_KEY when constructed, so load_dotenv() can run after importing the SDK. Closes #734. (#767) (ec362ec)
  • Custom transports: Speak V2 WebSocket connections now honor transport_factory, matching the routing behavior of other WebSocket APIs for proxies, test doubles, and custom-hosted transports. (#766) (0980663)

Documentation

  • Transcription: Clarified that Nova-3 assumes English when language is omitted; non-English and multilingual audio require an explicit language such as fr or multi. (#771) (4574337)
  • Examples: Added Listen V1 live microphone transcription with optional sounddevice, device selection, bounded audio buffering, transcript output, and clean Ctrl-C shutdown. (#780) (08f0471)
  • Examples: Added a resilient Listen V1 live transcription pattern with exponential backoff, reconnect-aware audio buffering, timestamp continuity, and clean shutdown. (#776) (96b2d11)
  • Examples: Added an application-owned Voice Agent session recorder that serializes received transcripts, function calls, and latency reports as JSON while leaving consent, redaction, retention, and storage policy to the application. Closes #775. (#781) (30ad152)
  • Text-to-Speech: Corrected streaming synthesis snippets to iterate the response byte chunks instead of accessing a nonexistent .stream attribute. (#749) (178724e)

7.8.0 (2026-08-28)

Features

  • regen: listen v2 force-end-turn and listen v1 diarize metadata (#768) (bacd1b5)

7.7.1 (2026-08-21)

... (truncated)

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Updates the requirements on [litellm](https://github.com/BerriAI/litellm) and [deepgram-sdk](https://github.com/deepgram/deepgram-python-sdk) to permit the latest version.

Updates `litellm` to 1.102.1
- [Release notes](https://github.com/BerriAI/litellm/releases)
- [Commits](BerriAI/litellm@v1.101.0...v1.102.1)

Updates `deepgram-sdk` to 7.10.0
- [Release notes](https://github.com/deepgram/deepgram-python-sdk/releases)
- [Changelog](https://github.com/deepgram/deepgram-python-sdk/blob/main/CHANGELOG.md)
- [Commits](deepgram/deepgram-python-sdk@v7.9.0...v7.10.0)

---
updated-dependencies:
- dependency-name: litellm
  dependency-version: 1.102.1
  dependency-type: direct:production
  dependency-group: python-dev
- dependency-name: deepgram-sdk
  dependency-version: 7.10.0
  dependency-type: direct:production
  dependency-group: python-dev
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot @github

dependabot Bot commented on behalf of github Sep 27, 2026

Copy link
Copy Markdown
Contributor Author

Labels

The following labels could not be found: dependencies. Please create it before Dependabot can add it to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

@dependabot
dependabot Bot requested a review from eldonm as a code owner September 27, 2026 04:55
@dependabot @github

dependabot Bot commented on behalf of github Sep 27, 2026

Copy link
Copy Markdown
Contributor Author

Looks like these dependencies are updatable in another way, so this is no longer needed.

@dependabot dependabot Bot closed this Sep 27, 2026
@dependabot
dependabot Bot deleted the dependabot/pip/dev/python-dev-ddac9af82d branch September 27, 2026 20:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants