Repository navigation
chore: prepare Python SDK 1.4.0 release - #265
Conversation
Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
There was a problem hiding this comment.
Arcjet Review — 🟡 Medium Risk
Decision: Approved
Rationale: This PR only updates package versions and reciprocal exact pins from 1.3.0 to 1.4.0 for the core Python SDK and the sensitive-info-rampart package. The dependency-change escalation trigger fires because pyproject.toml files changed, but the changes are narrow, consistent, and keep the intended lockstep relationship intact. No security concerns, secrets, auth changes, or unsafe dependency patterns were identified.
Summary of Changes
Bumps the Python SDK package version to 1.4.0 and updates the optional sensitive-info-rampart extra plus the rampart package's core dependency pin to 1.4.0.
Escalation Triggers
- Dependency Changes: Both changed files are pyproject.toml files and include package/dependency version pin updates.
Review Focus Areas
- Confirm the 1.4.0 arcjet-sensitive-info-rampart package will be published together with arcjet 1.4.0.
The optional extra uses an exact == pin, so publishing one package without the other could create install failures. - Confirm the core arcjet 1.4.0 package will be available before or at the same time as arcjet-sensitive-info-rampart 1.4.0.
The rampart package depends on an exact core version and cannot resolve if the matching core release is missing.
Notes
Path filtering: 1 file excluded by ignore paths. 2 of 3 files included in review.
Review: 7a5bb34d | Model: openai/gpt-5.5 | Powered by Arcjet Review
Stages the 1.4.0 release of the Python SDK.
arcjetandarcjet-sensitive-info-rampartmove to 1.4.0 together and both==pins follow.🤖 Generated with Claude Code