Skip to content

chore(deps): bump opentelemetry-semantic-conventions from 0.62b0 to 0.62b1#1

Merged
mpkrass7 merged 1 commit into
mainfrom
dependabot/pip/opentelemetry-semantic-conventions-0.62b1
May 15, 2026
Merged

chore(deps): bump opentelemetry-semantic-conventions from 0.62b0 to 0.62b1#1
mpkrass7 merged 1 commit into
mainfrom
dependabot/pip/opentelemetry-semantic-conventions-0.62b1

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github May 3, 2026

Bumps opentelemetry-semantic-conventions from 0.62b0 to 0.62b1.

Changelog

Sourced from opentelemetry-semantic-conventions's changelog.

Changelog

All notable changes to this project will be documented in this file.

The format is based on Keep a Changelog, and this project adheres to Semantic Versioning.

Breaking changes ongoing

[!IMPORTANT] We are working on stabilizing the Log signal that would require making deprecations and breaking changes. We will try to reduce the releases that may require an update to your code, especially for instrumentations or for sdk developers.

Commits

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Pull requests that update python code labels May 3, 2026
Bumps [opentelemetry-semantic-conventions](https://github.com/open-telemetry/opentelemetry-python) from 0.62b0 to 0.62b1.
- [Release notes](https://github.com/open-telemetry/opentelemetry-python/releases)
- [Changelog](https://github.com/open-telemetry/opentelemetry-python/blob/main/CHANGELOG.md)
- [Commits](https://github.com/open-telemetry/opentelemetry-python/commits)

---
updated-dependencies:
- dependency-name: opentelemetry-semantic-conventions
  dependency-version: 0.62b1
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/pip/opentelemetry-semantic-conventions-0.62b1 branch from 74fd692 to 039f83b Compare May 15, 2026 14:03
@mpkrass7 mpkrass7 merged commit b1f2b4d into main May 15, 2026
@mpkrass7 mpkrass7 deleted the dependabot/pip/opentelemetry-semantic-conventions-0.62b1 branch May 15, 2026 14:10
dgokeeffe added a commit that referenced this pull request May 16, 2026
Three dependabot PRs landed on main in the last 4 days (#1-#5) without
cross-constraint checking. Two of them combined to break every deploy:

1. PR #3 bumped importlib-metadata 8.7.1 -> 9.0.0
2. PR #4 bumped opentelemetry-sdk to 1.41.1 but left opentelemetry-api
   at 1.41.0 (mismatched — the sdk requires the api at the same version)

Symptom: `make deploy` fails at the [BUILD] step with
"ERROR: Cannot install importlib-metadata==9.0.0 and mlflow-skinny==3.11.1
because these package versions have conflicting dependencies"

Discovered when attempting to redeploy feat/enterprise-proxy-registry
for security-fix verification. Reproduces on bare main — not specific to
the feature branch.

Resolution math:

  - mlflow-skinny 3.11.1 requires importlib_metadata>=3.7,<9
  - opentelemetry-api 1.41.x requires importlib-metadata>=6.0,<8.8.0

The opentelemetry constraint is the binding one: even bumping mlflow-skinny
to 3.12.0 doesn't help (it requires opentelemetry<=1.16, undoing the
otel bump). The only path that keeps the otel and mlflow versions on main
is reverting importlib-metadata to <8.8.

Changes:
  - requirements.txt: importlib-metadata 9.0.0 -> 8.7.1
  - requirements.txt: opentelemetry-api/proto 1.41.0 -> 1.41.1 (align with sdk)
  - pyproject.toml: declare `importlib-metadata<8.8` explicitly so
    dependabot won't try this bump again until upstream widens caps

Verified with `uv pip install --dry-run -r requirements.txt` — resolves
cleanly. Ready to deploy.

Co-authored-by: Isaac
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python Pull requests that update python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant