Skip to content

Updated cpex dependency to 1.0.4+ - #186

Merged
msureshkumar88 merged 3 commits into
mainfrom
update_cpex
Sep 22, 2026
Merged

msureshkumar88 merged 3 commits into
mainfrom
update_cpex

Conversation

@cafalchio

Copy link
Copy Markdown
Collaborator

Updated dependency on cpex 1.0.4 to allow cf to update SDK.

Signed-off-by: cafalchio <mcafalchio@gmail.com>
Signed-off-by: cafalchio <mcafalchio@gmail.com>
@cafalchio
cafalchio marked this pull request as ready for review September 19, 2026 11:25
@cafalchio
cafalchio marked this pull request as draft September 19, 2026 11:25
Signed-off-by: cafalchio <mcafalchio@gmail.com>
@cafalchio
cafalchio marked this pull request as ready for review September 21, 2026 15:46

@madhu-mohan-jaishankar madhu-mohan-jaishankar left a comment

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@gandhipratik203 gandhipratik203 left a comment

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM! Necessary cpex update for 2.0.

@msureshkumar88 msureshkumar88 left a comment

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Verified against the actual diff and resolved lockfiles (uv.lock: cpex 0.1.3→0.1.4, mcp 1.29.1→2.2.0). No blocking issues — approving. A few non-blocking follow-ups worth picking up:

  1. mcp>=2.0.0 has no upper bound, in pyproject.toml and all 8 Rust-plugin pyproject.toml files. Every other major-sensitive dep in the same file is bounded (pydantic<3, maturin<2.0, cpex<0.2). Worth matching that convention (mcp>=2.0.0,<3) so a future uv lock --upgrade can't silently pull in mcp 3.x.
  2. PR title/description say "cpex 1.0.4" — actual bump is cpex>=0.1.4,<0.2 (0.1.4, not 1.0.4). Cosmetic, but worth fixing for changelog/search clarity.
  3. [tool.uv.exclude-newer-package] cpex = "2026-09-19T23:59:59Z" is an absolute-date exception against the rolling exclude-newer = "10 days" window. Needed today, but once the rolling window passes this date (~2026-09-29) it flips from permissive to more restrictive than default, silently blocking future cpex releases. A removal-date comment or follow-up ticket would help.
  4. Cargo.lock carries ~59 lines of unrelated transitive Rust crate bumps (clap, syn, rustls, wasm-bindgen, etc.) with no Rust crate named cpex. Optional to split out for cleaner bisect history.

@msureshkumar88
msureshkumar88 merged commit ed5f144 into main Sep 22, 2026
41 checks passed
@msureshkumar88
msureshkumar88 deleted the update_cpex branch September 22, 2026 11:10
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants