Skip to content

build(deps): update python-hcl2 requirement from >=8.1.3 to >=8.1.4 - #762

Merged
github-actions[bot] merged 1 commit into
mainfrom
dependabot/pip/python-hcl2-gte-8.1.4
Sep 18, 2026
Merged

github-actions[bot] merged 1 commit into
mainfrom
dependabot/pip/python-hcl2-gte-8.1.4

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 18, 2026

Copy link
Copy Markdown
Contributor

Updates the requirements on python-hcl2 to permit the latest version.

Release notes

Sourced from python-hcl2's releases.

v8.1.4

What's Changed

Fixed

  • Parse blocks whose type or unquoted label is an HCL keyword, such as the in block in Snowflake's snowflake_schemas data source. HCL reserves no keywords, so all are now accepted as block labels. Diagnosed independently in #355. (#357)
  • Parse keyword-named object keys reliably, fixing a regression of #148. A key such as in parsed only where the lexer fell back to NAME, so its separator and position decided whether the file parsed. (#357)

Full Changelog: amplify-education/python-hcl2@v8.1.3...v8.1.4

Changelog

Sourced from python-hcl2's changelog.

[8.1.4] - 2026-09-08

Fixed

  • Parse blocks whose type or unquoted label is an HCL keyword, such as the in block in Snowflake's snowflake_schemas data source. HCL reserves no keywords, so all are now accepted as block labels. Diagnosed independently in #355. (#357)
  • Parse keyword-named object keys reliably, fixing a regression of #148. A key such as in parsed only where the lexer fell back to NAME, so its separator and position decided whether the file parsed. (#357)

[8.1.3] - 2026-08-26

Several fixes below change the values loads() returns for input that already parsed without error in 8.1.x — negative integer literals, both strip_string_quotes behaviours, and the two heredoc body fixes. The previous result was a bug in each case, so this stays a patch release; re-check your expectations if you built around the old values.

Fixed

  • Restore py.typed marker so type checkers recognize hcl2 (and cli) as typed packages. (#299)
  • Parse heredocs with an empty body again. A marker immediately followed by its closing delimiter failed to match, and the lexer then ran on to a later delimiter, silently absorbing the attributes in between. Thanks, @​livingstaccato (#312)
  • Negative integer literals load as numbers again instead of ${-N} expression strings, matching negative floats and the pre-8.x behaviour. Thanks, @​livingstaccato (#311)
  • strip_string_quotes no longer unquotes string literals nested inside expressions, which produced invalid HCL such as ${upper(x)} from upper("x"). Thanks, @​livingstaccato (#313)
  • strip_string_quotes now resolves escape sequences, so the values it yields match what the option documents. Escapes naming a codepoint outside the Unicode range, or a lone surrogate, are preserved verbatim rather than raising. Thanks, @​livingstaccato (#313)
  • Parse files with CRLF (\r\n) line endings, including heredocs. A \r acting as part of a line ending is ignored, so a CRLF file reconstructs with LF endings; a \r that is content — inside a quoted string or a heredoc body — is preserved. Thanks, @​agu2347 (#317)
  • Flattened heredoc bodies keep their trailing blank lines and trailing spaces instead of being right-stripped away, for both <<MARKER and <<-MARKER. The closing marker line's own indentation is still removed, and a blank line no longer cancels the <<- dedent. Thanks, @​agu2347 (#318)
  • Parse heredocs whose delimiter is a single character, such as <<E. The spec defines the delimiter as an Identifier, which permits one character. (#323)
  • preserve_heredocs=False combined with strip_string_quotes now returns the heredoc body as a plain multi-line string instead of escaping every newline to a literal \n. The escaping is still applied to the quoted source form produced without strip_string_quotes. (#324)

[8.1.2] - 2026-04-10

Fixed

  • true, false, and null now serialize to native JSON types instead of strings. (#293)

[8.1.1] - 2026-04-07

Added

  • v7-to-v8 migration guide and absolute GitHub links in README docs table. (#287)

[8.1.0] - 2026-04-07

Added

  • Full architecture overhaul: bidirectional HCL2 ↔ JSON pipeline with typed rule classes. (#203)
  • hq read-only query CLI for HCL2 files (#277)
  • Agent-friendly conversion CLIs: hcl2tojson and jsontohcl2 (#274)
  • Add template directives support (%{if}, %{for}) in quoted strings (#276)
  • Support loading comments (#134)
  • CLAUDE.md (#260)

... (truncated)

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Updates the requirements on [python-hcl2](https://github.com/amplify-education/python-hcl2) to permit the latest version.
- [Release notes](https://github.com/amplify-education/python-hcl2/releases)
- [Changelog](https://github.com/amplify-education/python-hcl2/blob/main/CHANGELOG.md)
- [Commits](amplify-education/python-hcl2@v8.1.3...v8.1.4)

---
updated-dependencies:
- dependency-name: python-hcl2
  dependency-version: 8.1.4
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels Sep 18, 2026
@dependabot
dependabot Bot requested a review from yaleman as a code owner September 18, 2026 16:03
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels Sep 18, 2026
@github-actions
github-actions Bot enabled auto-merge (squash) September 18, 2026 16:04
@github-actions
github-actions Bot merged commit 0aa09bd into main Sep 18, 2026
7 checks passed
@github-actions
github-actions Bot deleted the dependabot/pip/python-hcl2-gte-8.1.4 branch September 18, 2026 16:06
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python Pull requests that update Python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants