Skip to content

Bump the cargo group across 2 directories with 2 updates - #2119

Open
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/cargo/cargo-f8d5f8ebb9
Open

dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/cargo/cargo-f8d5f8ebb9

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 4, 2026

Copy link
Copy Markdown
Contributor

Bumps the cargo group with 1 update in the / directory: cc.
Bumps the cargo group with 1 update in the /examples/experimental/missing_doc_comment_llm directory: litellm-rs.

Updates cc from 1.4.7 to 1.5.1

Release notes

Sourced from cc's releases.

cc-v1.5.1

Fixed

  • link the static C++ stdlib with -bundle, once per Build (#1955)

Other

  • Use lp64d ABI for Redox riscv64 (#1953)

cc-v1.5.0

Added

  • inherit x86 target features from RUSTFLAGS (#1948)

Fixed

  • don't report the file name cl.exe echoes as a warning in expand() (#1950)
  • ignore MSVC /link flags with a warning (#1949)
  • Make windows_sys more private and re-export types needed by cc-rs (#1944)
  • pass -Tp on MSVC for .cc so they are not treated as objects (#1930)

Other

  • document macOS SDKROOT and Xcode CLT for testing (#1943)
  • remove License section from CONTRIBUTING.md (#1942)
  • add CONTRIBUTING.md and Conventional Commit PR title check (#1938)

Fixed

  • Pass -Tp immediately before .cc sources on MSVC (not clang-cl) when compiling C++ so they are not treated as object files (#1877)
Changelog

Sourced from cc's changelog.

1.5.1 - 2026-09-25

Fixed

  • link the static C++ stdlib with -bundle, once per Build (#1955)

Other

  • Use lp64d ABI for Redox riscv64 (#1953)

1.5.0 - 2026-09-25

Added

  • inherit x86 target features from RUSTFLAGS (#1948)

Fixed

  • don't report the file name cl.exe echoes as a warning in expand() (#1950)
  • ignore MSVC /link flags with a warning (#1949)
  • Make windows_sys more private and re-export types needed by cc-rs (#1944)
  • pass -Tp on MSVC for .cc so they are not treated as objects (#1930)

Other

  • document macOS SDKROOT and Xcode CLT for testing (#1943)
  • remove License section from CONTRIBUTING.md (#1942)
  • add CONTRIBUTING.md and Conventional Commit PR title check (#1938)

Fixed

  • Pass -Tp immediately before .cc sources on MSVC (not clang-cl) when compiling C++ so they are not treated as object files (#1877)
Commits
  • d279cdd chore(cc): release v1.5.1 (#1954)
  • 87533b7 fix: link the static C++ stdlib with -bundle, once per Build (#1955)
  • 0faaa40 Use lp64d ABI for Redox riscv64 (#1953)
  • 6b0d8e6 chore: release (#1952)
  • b7d59a9 fix: don't report the file name cl.exe echoes as a warning in expand() (#1950)
  • fc01fd7 fix: ignore MSVC /link flags with a warning (#1949)
  • b81fc77 feat: inherit x86 target features from RUSTFLAGS (#1948)
  • 0da3fab ci: add additional targets for MSRV testing (#1945)
  • 0c74c6a ci(deps): bump release-plz/action from 0.5.137 to 0.5.138 (#1947)
  • e2bff2c docs: document macOS SDKROOT and Xcode CLT for testing (#1943)
  • Additional commits viewable in compare view

Updates litellm-rs from 0.6.0 to 0.7.0

Release notes

Sourced from litellm-rs's releases.

Release v0.7.0

[0.7.0] - 2026-10-01

Fixed

  • Preserve Anthropic streaming input and cache usage from message_start; merge cumulative counters, honor explicit zeros, and isolate usage between messages and transformer clones (#1348, #1349). Thanks to @​allenrchan for the reproduction and fix.
  • Require the Admin role for /admin even when general authentication is disabled; invalidate output-blocked chat cache entries and bound custom guardrail regex compilation (#1340, #1343, #1344).
  • Update rustls to address the handshake vulnerability and improve provider protocol, pricing, and streaming error handling.

Added

  • Provider and routing-policy administration, runtime routing inventory, provider/model budgets, and a metadata-only request log explorer.
  • Redis-backed distributed budget reservations, deployment admission limits, circuit-breaker coordination, runtime revision synchronization, and Redis Cluster configuration.
  • Native media, audio, retrieval, and enterprise inference providers, plus generic OpenAI-compatible embedding, image, and audio operations.
  • Custom guardrail rules, sanitized decision events, output fallback routing, Helm deployment assets, and Kubernetes autoscaling/disruption budgets.

Breaking changes and migration

  • Public TokenCounter methods and StreamingHandler::create_sse_stream require an explicit TokenizerIdentity instead of inferring a tokenizer from a raw model name (#1208, #1245).
  • Import TokenizerIdentity from litellm_rs::utils::ai::counter::token_counter. Use TokenizerIdentity::exact_openai(model) for exact OpenAI tokenization, or TokenizerIdentity::approximate(provider, model) when explicitly choosing an estimate. Pass the identity by reference to token-counting methods and by value as the final argument to create_sse_stream; propagate returned errors.
  • Previously deprecated provider and subsystem symbols remain available in this release. The removals proposed in the GH837/GH838 migration plans are not part of v0.7.0.

Full changelog: majiayu000/litellm-rs@v0.6.0...v0.7.0

Changelog

Sourced from litellm-rs's changelog.

[0.7.0] - 2026-10-01

Fixed

  • Preserve Anthropic streaming input and cache usage from message_start; merge cumulative counters, honor explicit zeros, and isolate usage between messages and transformer clones (#1348, #1349). Thanks to @​allenrchan for the reproduction and fix.
  • Require the Admin role for /admin even when general authentication is disabled; invalidate output-blocked chat cache entries and bound custom guardrail regex compilation (#1340, #1343, #1344).
  • Update rustls to address the handshake vulnerability and improve provider protocol, pricing, and streaming error handling.

Added

  • Provider and routing-policy administration, runtime routing inventory, provider/model budgets, and a metadata-only request log explorer.
  • Redis-backed distributed budget reservations, deployment admission limits, circuit-breaker coordination, runtime revision synchronization, and Redis Cluster configuration.
  • Native media, audio, retrieval, and enterprise inference providers, plus generic OpenAI-compatible embedding, image, and audio operations.
  • Custom guardrail rules, sanitized decision events, output fallback routing, Helm deployment assets, and Kubernetes autoscaling/disruption budgets.

Breaking changes and migration

  • Public TokenCounter methods and StreamingHandler::create_sse_stream require an explicit TokenizerIdentity instead of inferring a tokenizer from a raw model name (#1208, #1245).
  • Import TokenizerIdentity from litellm_rs::utils::ai::counter::token_counter. Use TokenizerIdentity::exact_openai(model) for exact OpenAI tokenization, or TokenizerIdentity::approximate(provider, model) when explicitly choosing an estimate. Pass the identity by reference to token-counting methods and by value as the final argument to create_sse_stream; propagate returned errors.
  • Previously deprecated provider and subsystem symbols remain available in this release. The removals proposed in the GH837/GH838 migration plans are not part of v0.7.0.
Commits
  • 3341e54 chore(release): prepare v0.7.0
  • 495886b fix(anthropic): preserve cumulative streaming input and cache usage (#1349)
  • 2b1bcc3 Merge pull request #1340 from majiayu000/fix/issue-1337-admin-anon-bypass
  • 200a27e fix(deps): patch rustls handshake vulnerability
  • b11ecc9 test(auth): authenticate admin integration checks
  • 2efd259 fix(cache): invalidate output-blocked chat cache entries (#1341) (#1344)
  • 42147d4 fix(guardrails): harden custom rules against regex compile blowup (#1343)
  • dee492e fix(middleware): allowlist new dashboard public assets (#1339)
  • a357bf1 fix(auth): require Admin role for /admin even when auth disabled
  • c222d1f Merge pull request #1336 from majiayu000/test/gh1283-two-gateways
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the cargo group with 1 update in the / directory: [cc](https://github.com/rust-lang/cc-rs).
Bumps the cargo group with 1 update in the /examples/experimental/missing_doc_comment_llm directory: [litellm-rs](https://github.com/majiayu000/litellm-rs).


Updates `cc` from 1.4.7 to 1.5.1
- [Release notes](https://github.com/rust-lang/cc-rs/releases)
- [Changelog](https://github.com/rust-lang/cc-rs/blob/main/CHANGELOG.md)
- [Commits](rust-lang/cc-rs@cc-v1.4.7...cc-v1.5.1)

Updates `litellm-rs` from 0.6.0 to 0.7.0
- [Release notes](https://github.com/majiayu000/litellm-rs/releases)
- [Changelog](https://github.com/majiayu000/litellm-rs/blob/main/CHANGELOG.md)
- [Commits](majiayu000/litellm-rs@v0.6.0...v0.7.0)

---
updated-dependencies:
- dependency-name: cc
  dependency-version: 1.5.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: cargo
- dependency-name: litellm-rs
  dependency-version: 0.7.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: cargo
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file rust Pull requests that update Rust code labels Oct 4, 2026
@dependabot
dependabot Bot requested a review from smoelius as a code owner October 4, 2026 03:11
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file rust Pull requests that update Rust code labels Oct 4, 2026

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file rust Pull requests that update Rust code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants