Update slack-bolt requirement from >=1.28.0 to >=1.29.0 in /listener #67

Closed
dependabot[bot] wants to merge 1 commit from dependabot/pip/listener/slack-bolt-gte-1.29.0 into main
dependabot[bot] commented 2026-07-04 16:22:55 +00:00 (Migrated from github.com)

Updates the requirements on slack-bolt to permit the latest version.

Release notes

Sourced from slack-bolt's releases.

v1.29.0

What's Changed

🚀 Enhancements

🐛 Bug Fixes

📚 Documentation

🔒 Security

📦 Other changes

... (truncated)

Commits
  • 8028f00 chore(release): version 1.29.0 (#1542)
  • 7fdd404 fix: defer SignatureVerifier construction so Socket Mode apps init without a ...
  • 29b9dbd docs: restore canonical security policy over bot-added SECURITY.md (#1533)
  • 03d4add docs: fixing broken links (#1532)
  • 76338bf docs: removing external links for unified nav (#1531)
  • 96fd215 chore(deps): bump codecov/codecov-action from 6.0.1 to 7.0.0 (#1530)
  • a370e11 chore(deps-dev): update fastapi requirement from <1,>=0.70.0 to >=0.128.8,<1 ...
  • c1a66dc chore(deps-dev): update flask requirement from <4,>=1 to >=3.1.3,<4 (#1525)
  • 6dd69f8 chore(deps-dev): update websocket-client requirement from <2,>=1.2.3 to >=1.9...
  • 595aa97 chore(deps-dev): update aiohttp requirement from <4,>=3 to >=3.13.5,<4 (#1527)
  • Additional commits viewable in compare view

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Updates the requirements on [slack-bolt](https://github.com/slackapi/bolt-python) to permit the latest version. <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/slackapi/bolt-python/releases">slack-bolt's releases</a>.</em></p> <blockquote> <h2>v1.29.0</h2> <!-- raw HTML omitted --> <h2>What's Changed</h2> <h3>🚀 Enhancements</h3> <ul> <li>feat: add authorship arguments to say_stream by <a href="https://github.com/zimeg"><code>@​zimeg</code></a> in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1502">slackapi/bolt-python#1502</a></li> </ul> <h3>🐛 Bug Fixes</h3> <ul> <li>fix: handle malformed user/view payloads in extract_team_id by <a href="https://github.com/saschabuehrle"><code>@​saschabuehrle</code></a> in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1481">slackapi/bolt-python#1481</a></li> <li>fix: propagate Socket Mode retry_attempt and retry_reason to BoltRequest headers by <a href="https://github.com/SAY-5"><code>@​SAY-5</code></a> in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1498">slackapi/bolt-python#1498</a></li> <li>fix(falcon/async_resource): replace the use of removed resp.body by <a href="https://github.com/vytas7"><code>@​vytas7</code></a> in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1516">slackapi/bolt-python#1516</a></li> <li>fix: defer SignatureVerifier construction so Socket Mode apps init without a signing secret by <a href="https://github.com/zimeg"><code>@​zimeg</code></a> in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1541">slackapi/bolt-python#1541</a></li> </ul> <h3>📚 Documentation</h3> <ul> <li>docs: agent kit by <a href="https://github.com/lukegalbraithrussell"><code>@​lukegalbraithrussell</code></a> in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1478">slackapi/bolt-python#1478</a></li> <li>docs: add security policy by <a href="https://github.com/WilliamBergamin"><code>@​WilliamBergamin</code></a> in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1511">slackapi/bolt-python#1511</a></li> <li>docs: fix critical inaccuracies in English documentation by <a href="https://github.com/lukegalbraithrussell"><code>@​lukegalbraithrussell</code></a> in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1512">slackapi/bolt-python#1512</a></li> <li>docs: removing external links for unified nav by <a href="https://github.com/haleychaas"><code>@​haleychaas</code></a> in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1531">slackapi/bolt-python#1531</a></li> <li>docs: fixing broken links by <a href="https://github.com/haleychaas"><code>@​haleychaas</code></a> in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1532">slackapi/bolt-python#1532</a></li> <li>docs: restore canonical security policy over bot-added SECURITY.md by <a href="https://github.com/WilliamBergamin"><code>@​WilliamBergamin</code></a> in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1533">slackapi/bolt-python#1533</a></li> </ul> <h3>🔒 Security</h3> <ul> <li>fix: Require signatures for ssl_check request verification by <a href="https://github.com/homanp"><code>@​homanp</code></a> in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1495">slackapi/bolt-python#1495</a></li> </ul> <h3>📦 Other changes</h3> <ul> <li>chore(deps): bump dependabot/fetch-metadata from 3.0.0 to 3.1.0 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1485">slackapi/bolt-python#1485</a></li> <li>chore(deps): bump pypa/gh-action-pypi-publish from 1.13.0 to 1.14.0 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1489">slackapi/bolt-python#1489</a></li> <li>chore(deps): bump slackapi/slack-github-action from 3.0.1 to 3.0.3 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1487">slackapi/bolt-python#1487</a></li> <li>chore(deps): bump actions/upload-artifact from 7.0.0 to 7.0.1 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1486">slackapi/bolt-python#1486</a></li> <li>chore(deps): update boddle requirement from &lt;0.3,&gt;=0.2 to &gt;=0.2.9,&lt;0.3 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1488">slackapi/bolt-python#1488</a></li> <li>chore(deps): update werkzeug requirement from &lt;4,&gt;=2 to &gt;=3.1.8,&lt;4 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1490">slackapi/bolt-python#1490</a></li> <li>chore(deps): update falcon requirement from &lt;5,&gt;=2 to &gt;=4.2.0,&lt;5 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1491">slackapi/bolt-python#1491</a></li> <li>chore(deps): update chalice requirement from &lt;2,&gt;=1.28 to &gt;=1.32.0,&lt;2 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1492">slackapi/bolt-python#1492</a></li> <li>fix: mock module level time to improve stability by <a href="https://github.com/WilliamBergamin"><code>@​WilliamBergamin</code></a> in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1497">slackapi/bolt-python#1497</a></li> <li>chore: improve testing around socket-mode header synthesization by <a href="https://github.com/WilliamBergamin"><code>@​WilliamBergamin</code></a> in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1499">slackapi/bolt-python#1499</a></li> <li>chore(deps): update starlette requirement from &lt;1,&gt;=0.19.1 to &gt;=0.49.3,&lt;1 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1493">slackapi/bolt-python#1493</a></li> <li>chore(deps): update gunicorn requirement from &lt;24,&gt;=20 to &gt;=23.0.0,&lt;24 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1504">slackapi/bolt-python#1504</a></li> <li>chore(deps): update sanic requirement from &lt;26,&gt;=21 to &gt;=25.3.0,&lt;26 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1506">slackapi/bolt-python#1506</a></li> <li>fix: broken python 3.10 unit test by <a href="https://github.com/WilliamBergamin"><code>@​WilliamBergamin</code></a> in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1509">slackapi/bolt-python#1509</a></li> <li>chore(deps): update django requirement from &lt;6,&gt;=3 to &gt;=4.2.30,&lt;6 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1505">slackapi/bolt-python#1505</a></li> <li>chore(deps): update pytest-cov requirement from &lt;8,&gt;=3 to &gt;=7.1.0,&lt;8 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1507">slackapi/bolt-python#1507</a></li> <li>chore: rename requirements files to improve Dependabot dependency scoping by <a href="https://github.com/WilliamBergamin"><code>@​WilliamBergamin</code></a> in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1510">slackapi/bolt-python#1510</a></li> <li>chore(deps-dev): update tornado requirement from &lt;7,&gt;=6 to &gt;=6.5.6,&lt;7 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1508">slackapi/bolt-python#1508</a></li> <li>fix: align WSGI/ASGI test infrastructure and handler with spec by <a href="https://github.com/WilliamBergamin"><code>@​WilliamBergamin</code></a> in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1513">slackapi/bolt-python#1513</a></li> <li>chore(deps): bump codecov/codecov-action from 6.0.0 to 6.0.1 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1521">slackapi/bolt-python#1521</a></li> <li>chore(deps): bump actions/checkout from 6.0.2 to 6.0.3 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1523">slackapi/bolt-python#1523</a></li> <li>chore(deps): bump actions/stale from 10.2.0 to 10.3.0 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1522">slackapi/bolt-python#1522</a></li> <li>chore(deps): update asgiref requirement from &lt;4,&gt;=3.8 to &gt;=3.11.1,&lt;4 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1528">slackapi/bolt-python#1528</a></li> <li>chore(deps-dev): update aiohttp requirement from &lt;4,&gt;=3 to &gt;=3.13.5,&lt;4 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1527">slackapi/bolt-python#1527</a></li> <li>chore(deps-dev): update websocket-client requirement from &lt;2,&gt;=1.2.3 to &gt;=1.9.0,&lt;2 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1526">slackapi/bolt-python#1526</a></li> <li>chore(deps-dev): update flask requirement from &lt;4,&gt;=1 to &gt;=3.1.3,&lt;4 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1525">slackapi/bolt-python#1525</a></li> <li>chore(deps-dev): update fastapi requirement from &lt;1,&gt;=0.70.0 to &gt;=0.128.8,&lt;1 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1524">slackapi/bolt-python#1524</a></li> <li>chore(deps): bump codecov/codecov-action from 6.0.1 to 7.0.0 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1530">slackapi/bolt-python#1530</a></li> <li>chore(release): version 1.29.0 by <a href="https://github.com/zimeg"><code>@​zimeg</code></a> in <a href="https://redirect.github.com/slackapi/bolt-python/pull/1542">slackapi/bolt-python#1542</a></li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/slackapi/bolt-python/commit/8028f0003be21f909da1a387345a907d1e0f5e96"><code>8028f00</code></a> chore(release): version 1.29.0 (<a href="https://redirect.github.com/slackapi/bolt-python/issues/1542">#1542</a>)</li> <li><a href="https://github.com/slackapi/bolt-python/commit/7fdd404ef376baa2fce8e51e256fbbb99cf7f6a9"><code>7fdd404</code></a> fix: defer SignatureVerifier construction so Socket Mode apps init without a ...</li> <li><a href="https://github.com/slackapi/bolt-python/commit/29b9dbdd250bd9f1d27bdee10251656f6491fbbd"><code>29b9dbd</code></a> docs: restore canonical security policy over bot-added SECURITY.md (<a href="https://redirect.github.com/slackapi/bolt-python/issues/1533">#1533</a>)</li> <li><a href="https://github.com/slackapi/bolt-python/commit/03d4add4fa8877c95b647cbd2f759233c900eefb"><code>03d4add</code></a> docs: fixing broken links (<a href="https://redirect.github.com/slackapi/bolt-python/issues/1532">#1532</a>)</li> <li><a href="https://github.com/slackapi/bolt-python/commit/76338bf390fc07f689258194b9d5051858a514a0"><code>76338bf</code></a> docs: removing external links for unified nav (<a href="https://redirect.github.com/slackapi/bolt-python/issues/1531">#1531</a>)</li> <li><a href="https://github.com/slackapi/bolt-python/commit/96fd215841bcc020e03e3ff512334397f95ef356"><code>96fd215</code></a> chore(deps): bump codecov/codecov-action from 6.0.1 to 7.0.0 (<a href="https://redirect.github.com/slackapi/bolt-python/issues/1530">#1530</a>)</li> <li><a href="https://github.com/slackapi/bolt-python/commit/a370e1160739295bab722bc472fef92be95bf806"><code>a370e11</code></a> chore(deps-dev): update fastapi requirement from &lt;1,&gt;=0.70.0 to &gt;=0.128.8,&lt;1 ...</li> <li><a href="https://github.com/slackapi/bolt-python/commit/c1a66dc18abbc8f25427d7b327580dc5fb3cdc17"><code>c1a66dc</code></a> chore(deps-dev): update flask requirement from &lt;4,&gt;=1 to &gt;=3.1.3,&lt;4 (<a href="https://redirect.github.com/slackapi/bolt-python/issues/1525">#1525</a>)</li> <li><a href="https://github.com/slackapi/bolt-python/commit/6dd69f8f68753bf1da3d672f0874bce6232116b5"><code>6dd69f8</code></a> chore(deps-dev): update websocket-client requirement from &lt;2,&gt;=1.2.3 to &gt;=1.9...</li> <li><a href="https://github.com/slackapi/bolt-python/commit/595aa975a71f2c12e8a136424e5e72c8a3956ae0"><code>595aa97</code></a> chore(deps-dev): update aiohttp requirement from &lt;4,&gt;=3 to &gt;=3.13.5,&lt;4 (<a href="https://redirect.github.com/slackapi/bolt-python/issues/1527">#1527</a>)</li> <li>Additional commits viewable in <a href="https://github.com/slackapi/bolt-python/compare/v1.28.0...v1.29.0">compare view</a></li> </ul> </details> <br /> Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) </details>
seahaven-openswe[bot] (Migrated from github.com) reviewed 2026-07-04 16:24:36 +00:00
seahaven-openswe[bot] (Migrated from github.com) left a comment

✅ Open SWE Review: No issues found

Open SWE reviewed this PR and found no potential bugs to report.

Open in Web

## ✅ Open SWE Review: No issues found Open SWE reviewed this PR and found no potential bugs to report. [Open in Web](https://openswe.seahaven.com/agents/reviews/Sea-Haven-Industries/exec-aide/67) <!-- open-swe-reviewer pr=67 -->
dependabot[bot] commented 2026-07-04 20:27:15 +00:00 (Migrated from github.com)

OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version. You can also ignore all major, minor, or patch releases for a dependency by adding an ignore condition with the desired update_types to your config file.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.

OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting `@dependabot ignore this major version` or `@dependabot ignore this minor version`. You can also ignore all major, minor, or patch releases for a dependency by adding an [`ignore` condition](https://docs.github.com/en/code-security/supply-chain-security/configuration-options-for-dependency-updates#ignore) with the desired `update_types` to your config file. If you change your mind, just re-open this PR and I'll resolve any conflicts on it.
This repo is archived. You cannot comment on pull requests.
No description provided.