py-uv: update to 0.12.23.
0.12.23
Python
Add CPython 3.15.0rc3 (#22164)
Preview features
Sync from uv.lock without a workspace manifest using uv sync --frozen with frozen-lockfile (#22018)
Export from uv.lock without a workspace manifest using uv export --frozen with frozen-lockfile (#22007)
Inspect dependency trees from uv.lock without a workspace manifest using uv tree --frozen with frozen-lockfile (#22016)
Inspect workspace metadata and optionally sync its environment from uv.lock without a workspace manifest using uv workspace metadata --frozen with frozen-lockfile (#22017, #22018)
Bug fixes
Reject alternate sources for workspace members across conflicting dependency selections, avoiding lockfiles that cannot be installed (#22153)
Allow x86-64 Python interpreters running under emulation on Windows ARM64 to install compatible win_amd64 wheels instead of building from source (#22099)
[40 lines not shown]
rcvd: Add version 0.3.1
rcvd is a privacy-first encrypted DNS engine: a single Go binary driven by
purpose-built configuration files. It speaks DNS over QUIC (DoQ), DNS over
TLS (DoT), and DNS over HTTPS (DoH/DoH3), and never falls back to cleartext
DNS. If every encrypted upstream fails it returns SERVFAIL rather than leaking
a query over port 53.
Features include multi-upstream fallback with health checks, DNSSEC
validation, domain blocklists (plain-list and hosts formats, with wildcard
support), a local cache, runtime statistics, and both forwarder and
DoH-service (upstream) modes. TLS can be automated via ACME (certmagic) so a
DoH endpoint presents a real CA certificate with a DNS-ID in its SAN.
rcvd: Update to version 0.3.1
Privacy-first DNS. One binary, encrypted egress only
This is a small bug fix release. There are no new features and no configuration changes.
[17 lines not shown]
editors/xemacs-current{,-nox11} -- Update to v21.5.37 "lettuce"
Major Features, Bugfixes, and Backward Incompatible Changes
-- Fix: Avoid OpenSSL header conflicts on windows, get Cygwin building
-- Henry S. Thompson
-- Fix: Get XEmacs building as C++ under Visual Studio
-- Aidan Kehoe
-- Fix: Handle -display correctly once more on X11
-- Aidan Kehoe
-- Fix: Turn on -fno-strict-aliasing unconditionally with clang, avoid crashes
-- Aidan Kehoe, Mike Sperber
-- Fix: Don't crash when Fselected_window() returns nil. -- Aidan Kehoe
-- Fix: Produce zero-length bit vectors without crashing, error-checking builds
-- Aidan Kehoe
-- Fix: Printing char tables respecting print-table-noreadably-length
-- Aidan Kehoe
-- Fix: Appropriate type checking with #'ephemeron-ref, avoid crashes
-- Aidan Kehoe
[142 lines not shown]
py-setuptools-git-versioning: updated to 3.2.0
3.2.0
Features
Added support for dynamic-metadata 0.4+ through the setuptools_git_versioning.dynamic_metadata provider.
This enables automatic versioning with scikit-build-core 1.0+ and other compatible backends.
Added new prefer_tag: bool = False option for version_file.
Deprecation
Deprecated the setuptools_git_versioning.scikit_metadata provider.
Migrate to [[tool.dynamic-metadata]] with provider = "setuptools_git_versioning.dynamic_metadata" on scikit-build-core 1.0+ or another compatible backend.
py-checkdmarc: updated to 6.0.3
6.0.3
Fixed
SPF: a record split into several quoted strings was reported as one
oversized string ("appears to be a single N-byte string") whenever it was
reached through an include: or redirect=, or looked up with
get_spf_record(). Only check_spf() asked the resolver to keep the
boundaries between a TXT record's character-strings, so every other caller
measured the whole record as one string. The lookup now always keeps them
Changed
SPF: the quoted_txt_segments argument of query_spf_record() is deprecated
and ignored; passing it raises a DeprecationWarning. It never changed the
returned record, which always has the quotes stripped
SPF: the record size warnings cite RFC 1035 section 3.3 for the 255-byte
[2 lines not shown]
py-aiohttp: updated to 3.14.4
3.14.4 (2026-10-04)
Features
- Added :class:`aiohttp.UploadTracker` for observing a client request's upload progress -- by :user:`Dreamsorcerer`.
- Switched ``application/x-www-form-urlencoded`` parsing in
:meth:`~aiohttp.web.BaseRequest.post` to the faster :func:`yarl.query_to_pairs`
parser and added the ``client_max_fields`` argument to
:class:`~aiohttp.web.Application` (default ``1000``) to cap the number of form
fields accepted by :meth:`~aiohttp.web.BaseRequest.post`. Forms with more
than 1000 fields now receive a ``413`` response unless the cap is raised;
``0`` disables it -- by :user:`bdraco`.
- Added constants to ``aiohttp.hdrs`` for widely used headers: those that
browsers send on every request (``Sec-Fetch-*``, ``Sec-CH-UA*``,
``Sec-GPC``, ``Upgrade-Insecure-Requests``, ``Priority``), W3C trace context
[9 lines not shown]
harfbuzz: updated to 14.6.0
14.6.0
- Fix shaping failures caused by out-of-range glyph IDs, a regression from
11.4.0.
- Update experimental beyond-64k support to the final ISO Open Font Format
5th edition. This support remains disabled by default.
- Add support for the `DMAP` table.
- Support `FeatureVariations` 1.1 lookup variations, including subsetting and
instancing.
- Update `VARC` to the revised variation-store format. The new format is
incompatible with the previous one.
- Various `VARC` fixes.
- Fix background color and stride handling in the experimental raster library.
- Improve the experimental Rust shaper (HarfRust) and font functions
(`fontations`), and update HarfRust to 0.14.
- Various subsetting fixes and improvements.
- Various fixes for malformed fonts.
- Various build and CI fixes.
ggml: update to 0.26.0.
ggml v0.26.0 brings a new alloc_buffer_n/get_alloc_size_n buffer
allocation API, sparse flash attention kernels on SYCL, Vulkan and
Metal, and major lightning indexer improvements (halved score
memory, tiling, MUSA support). The CPU backend gains BF16 ops and
a tiled k-quant mul_mat, CUDA gains a model-driven W4A4 (NVFP4/MXFP4)
mul_mat path plus MMVQ shared-expert fusion, and the Hexagon backend
adds a sampler and more quant types. Model loading is faster with
stricter GGUF size validation, Windows ARM64 MSVC builds are enabled,
and WebGPU/OpenVINO/OpenCL/SYCL pick up numerous new kernels, ops
and fixes.
www/fcgiwrap: Fix various issues with multiple children and rc.d.
- With `-c <n>', don't start spinning the CPU at 100% from the time
the first child exits to the time the operator gives up and kills
fcgiwrap altogether.
- Fix races with SIGCHLD handler.
- Allow rc.d script to spawn multiple children with new
`fcgiwrap_nchildren' option (default 1).
- Redirect stdin from /dev/null, at least, in rc.d script, in lieu of
either
(a) proper daemonization and syslogging or
(b) running under a process supervisor.
PR pkg/60853: www/fcgiwrap rc.d woes
devel/guile-lib: Change to guile30 instead of guile22
The only users in pkgsrc+wip are:
wip/g-golf, which is maintained and wants 3.0
devel/g-golf, which is not maintained and wants 2.0 (not 2.2!)
My belief is that there are zero people that are using guile-lib from
pkgsrc with guile 2.2; if so we should probably version it.