{"id":48798,"name":"aws-encryption-sdk","ecosystem":"pip","repository_url":"https://github.com/aws/aws-encryption-sdk-python","issues_count":4,"created_at":"2025-07-02T21:25:32.455Z","updated_at":"2025-07-02T21:25:32.455Z","purl":"pkg:pypi/aws-encryption-sdk","metadata":{"id":2649273,"name":"aws-encryption-sdk","ecosystem":"pypi","description":"AWS Encryption SDK implementation for Python","homepage":"https://github.com/aws/aws-encryption-sdk-python","licenses":"Apache License 2.0","normalized_licenses":["Apache-2.0"],"repository_url":"https://github.com/aws/aws-encryption-sdk-python","keywords_array":["aws-encryption-sdk","aws","kms","encryption"],"namespace":null,"versions_count":32,"first_release_published_at":"2017-03-21T22:06:12.000Z","latest_release_published_at":"2025-07-02T17:09:35.000Z","latest_release_number":"4.0.2","last_synced_at":"2025-07-02T17:32:11.563Z","created_at":"2022-04-10T10:07:54.294Z","updated_at":"2025-07-02T17:34:35.377Z","registry_url":"https://pypi.org/project/aws-encryption-sdk/","install_command":"pip install aws-encryption-sdk --index-url https://pypi.org/simple","documentation_url":"https://aws-encryption-sdk.readthedocs.io/","metadata":{"funding":null,"documentation":null,"classifiers":["Development Status :: 5 - Production/Stable","Intended Audience :: Developers","License :: OSI Approved :: Apache Software License","Natural Language :: English","Programming Language :: Python","Programming Language :: Python :: 3","Programming Language :: Python :: 3.10","Programming Language :: Python :: 3.11","Programming Language :: Python :: 3.12","Programming Language :: Python :: 3.8","Programming Language :: Python :: 3.9","Programming Language :: Python :: Implementation :: CPython","Topic :: Security","Topic :: Security :: Cryptography"],"normalized_name":"aws-encryption-sdk"},"repo_metadata":{"id":37271527,"uuid":"79851305","full_name":"aws/aws-encryption-sdk-python","owner":"aws","description":"AWS Encryption SDK","archived":false,"fork":false,"pushed_at":"2025-06-27T19:17:33.000Z","size":2375,"stargazers_count":242,"open_issues_count":48,"forks_count":85,"subscribers_count":27,"default_branch":"master","last_synced_at":"2025-06-30T01:11:34.316Z","etag":null,"topics":[],"latest_commit_sha":null,"homepage":"https://docs.aws.amazon.com/encryption-sdk/latest/developer-guide/introduction.html","language":"Python","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"apache-2.0","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/aws.png","metadata":{"files":{"readme":"README.rst","changelog":"CHANGELOG.rst","contributing":"CONTRIBUTING.md","funding":null,"license":"LICENSE","code_of_conduct":"CODE_OF_CONDUCT.md","threat_model":null,"audit":null,"citation":null,"codeowners":".github/CODEOWNERS","security":null,"support":"SUPPORT_POLICY.rst","governance":null,"roadmap":null,"authors":null,"dei":null,"publiccode":null,"codemeta":null,"zenodo":null}},"created_at":"2017-01-23T21:43:26.000Z","updated_at":"2025-06-24T11:42:59.000Z","dependencies_parsed_at":"2023-10-03T08:56:37.907Z","dependency_job_id":"7f7e6f44-515f-4977-a46e-d8b608e9b588","html_url":"https://github.com/aws/aws-encryption-sdk-python","commit_stats":{"total_commits":497,"total_committers":39,"mean_commits":"12.743589743589743","dds":0.3843058350100603,"last_synced_commit":"899af22c25fdd5d896817e40514b5ea0e1537e90"},"previous_names":[],"tags_count":24,"template":false,"template_full_name":null,"purl":"pkg:github/aws/aws-encryption-sdk-python","repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/aws","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/refs/heads/master","sbom_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/sbom","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":263066557,"owners_count":23408387,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"},"owner_record":{"login":"aws","name":"Amazon Web Services","uuid":"2232217","kind":"organization","description":"","email":"open-source-github@amazon.com","website":"https://amazon.com/aws","location":"United States of America","twitter":null,"company":null,"icon_url":"https://avatars.githubusercontent.com/u/2232217?v=4","repositories_count":492,"last_synced_at":"2025-06-30T01:11:26.901Z","metadata":{"has_sponsors_listing":false},"html_url":"https://github.com/aws","funding_links":[],"total_stars":232831,"followers":12074,"following":0,"created_at":"2022-11-02T16:20:18.436Z","updated_at":"2025-06-30T01:11:26.902Z","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/aws","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/aws/repositories"},"tags":[{"name":"v4.0.1","sha":"18352146239976a93dfd26955b5b695e5a62ab68","kind":"commit","published_at":"2025-03-26T22:00:25.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/v4.0.1","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/v4.0.1","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@v4.0.1","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v4.0.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v4.0.1/manifests"},{"name":"v4.0.0","sha":"242d974e43ffce424bf5c23c77614270d612f455","kind":"commit","published_at":"2024-11-13T21:08:43.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/v4.0.0","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/v4.0.0","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@v4.0.0","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v4.0.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v4.0.0/manifests"},{"name":"v3.3.0","sha":"e55db0a249599d82c66c46c4dd17057625e8a93c","kind":"commit","published_at":"2024-05-21T18:03:50.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/v3.3.0","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/v3.3.0","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@v3.3.0","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v3.3.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v3.3.0/manifests"},{"name":"v3.2.0","sha":"9f6d7e4e89125241d6df545d374b9b6f912e8bcb","kind":"commit","published_at":"2024-03-18T19:27:25.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/v3.2.0","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/v3.2.0","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@v3.2.0","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v3.2.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v3.2.0/manifests"},{"name":"v2.5.1","sha":"a5d1a90b1f61dea8644d86bfeb4853af9a322b42","kind":"commit","published_at":"2022-08-30T17:20:04.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/v2.5.1","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/v2.5.1","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@v2.5.1","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v2.5.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v2.5.1/manifests"},{"name":"v1.10.1","sha":"c220d57cf1588b3eb88a07cc54144b21f2265359","kind":"commit","published_at":"2022-08-30T03:06:00.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/v1.10.1","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/v1.10.1","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@v1.10.1","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v1.10.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v1.10.1/manifests"},{"name":"v1.10.0","sha":"c2f0c75969db2c29be2fb85ed6b29459c1baf9f6","kind":"commit","published_at":"2022-06-21T17:42:02.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/v1.10.0","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/v1.10.0","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@v1.10.0","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v1.10.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v1.10.0/manifests"},{"name":"v2.5.0","sha":"77c2d884850adbd4b33081467a12fe2a8f54ac74","kind":"commit","published_at":"2022-06-21T17:41:56.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/v2.5.0","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/v2.5.0","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@v2.5.0","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v2.5.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v2.5.0/manifests"},{"name":"v3.1.1","sha":"dcb5ee47cb35258f2cd3c4740f5e609e22de32f6","kind":"commit","published_at":"2022-06-20T23:20:14.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/v3.1.1","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/v3.1.1","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@v3.1.1","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v3.1.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v3.1.1/manifests"},{"name":"v3.1.0","sha":"7950abd73ee333407d2dadd02ef2d57c3df464cf","kind":"commit","published_at":"2021-11-10T23:52:57.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/v3.1.0","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/v3.1.0","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@v3.1.0","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v3.1.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v3.1.0/manifests"},{"name":"v3.0.0","sha":"40fd1e8e9b06a2a5c1cea65602849539a040f1c8","kind":"commit","published_at":"2021-07-01T21:44:16.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/v3.0.0","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/v3.0.0","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@v3.0.0","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v3.0.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v3.0.0/manifests"},{"name":"v2.4.0","sha":"2f4773fcd72371d86363b833d9f807daf9e1a505","kind":"commit","published_at":"2021-07-01T18:08:47.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/v2.4.0","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/v2.4.0","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@v2.4.0","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v2.4.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v2.4.0/manifests"},{"name":"v2.3.0","sha":"3ed84f7559861845657a22fbf77f66f8eb4f2337","kind":"commit","published_at":"2021-06-16T16:25:36.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/v2.3.0","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/v2.3.0","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@v2.3.0","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v2.3.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v2.3.0/manifests"},{"name":"v2.2.0","sha":"863b04dbbeccf0b4c27009f9c44be470449ec1ea","kind":"commit","published_at":"2021-05-27T20:20:10.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/v2.2.0","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/v2.2.0","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@v2.2.0","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v2.2.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v2.2.0/manifests"},{"name":"v1.9.0","sha":"5a3b9216b075000d5fcb1dc74936e5ef8a4fa89e","kind":"commit","published_at":"2021-05-27T17:47:57.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/v1.9.0","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/v1.9.0","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@v1.9.0","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v1.9.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v1.9.0/manifests"},{"name":"2.1.0","sha":"bb2600742a0a0829067aa07c935342ba3ddca929","kind":"commit","published_at":"2021-04-19T16:19:31.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/2.1.0","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/2.1.0","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@2.1.0","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/2.1.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/2.1.0/manifests"},{"name":"v2.0.0","sha":"f03b50b2098ff7869969ea2c5e73a82cefad5245","kind":"commit","published_at":"2020-09-25T01:23:46.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/v2.0.0","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/v2.0.0","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@v2.0.0","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v2.0.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v2.0.0/manifests"},{"name":"v1.7.1","sha":"dd296450adb2e0791fd3720f0eee046e9e7b1099","kind":"commit","published_at":"2020-09-25T00:05:52.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/v1.7.1","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/v1.7.1","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@v1.7.1","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v1.7.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v1.7.1/manifests"},{"name":"v1.7.0","sha":"02b442f1a5f073d73cc2659c5ace9cf1b597e2fe","kind":"commit","published_at":"2020-09-24T21:14:59.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/v1.7.0","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/v1.7.0","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@v1.7.0","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v1.7.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/v1.7.0/manifests"},{"name":"1.4.1","sha":"6a309ed7088f03069cace50482c7e57491f92414","kind":"commit","published_at":"2019-09-20T20:54:47.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/1.4.1","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/1.4.1","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@1.4.1","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/1.4.1","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/1.4.1/manifests"},{"name":"1.4.0","sha":"d6c39a7cc2ba76bb8f67a60f6e269ef8115c62a1","kind":"commit","published_at":"2019-05-23T21:28:21.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/1.4.0","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/1.4.0","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@1.4.0","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/1.4.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/1.4.0/manifests"},{"name":"1.3.8","sha":"8f047fbba5f208f8b082b2355d60b023e5def361","kind":"commit","published_at":"2018-11-15T19:06:34.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/1.3.8","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/1.3.8","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@1.3.8","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/1.3.8","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/1.3.8/manifests"},{"name":"1.3.7","sha":"d29643e7df0e01bd6d10c2952e632c281df733c1","kind":"commit","published_at":"2018-09-20T19:04:49.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/1.3.7","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/1.3.7","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@1.3.7","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/1.3.7","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/1.3.7/manifests"},{"name":"1.3.0","sha":"b6a2bbca4db6ab46d65fe7e2eacfffe25abff3a2","kind":"commit","published_at":"2017-08-04T21:04:13.000Z","download_url":"https://codeload.github.com/aws/aws-encryption-sdk-python/tar.gz/1.3.0","html_url":"https://github.com/aws/aws-encryption-sdk-python/releases/tag/1.3.0","dependencies_parsed_at":null,"dependency_job_id":null,"purl":"pkg:github/aws/aws-encryption-sdk-python@1.3.0","tag_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/1.3.0","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws%2Faws-encryption-sdk-python/tags/1.3.0/manifests"}]},"repo_metadata_updated_at":"2025-07-02T17:34:35.377Z","dependent_packages_count":7,"downloads":3340059,"downloads_period":"last-month","dependent_repos_count":51,"rankings":{"downloads":0.393857878971273,"dependent_repos_count":2.0646213301561116,"dependent_packages_count":1.8554551373976274,"stargazers_count":4.587495799346226,"forks_count":4.667563981404585,"docker_downloads_count":0.3775263905650866,"average":2.324420086306818},"purl":"pkg:pypi/aws-encryption-sdk","advisories":[{"uuid":"MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXg1aDQtOWdxdy05NDJq","url":"https://github.com/advisories/GHSA-x5h4-9gqw-942j","title":"Improper Verification of Cryptographic Signature in aws-encryption-sdk","description":"### Impact\n\nThis advisory addresses several LOW severity issues with streaming signed messages and restricting processing of certain types of invalid messages. \n\nThis ESDK supports a streaming mode where callers may stream the plaintext of signed messages before the ECDSA signature is validated. In addition to these signatures, the ESDK uses AES-GCM encryption and all plaintext is verified before being released to a caller. There is no impact on the integrity of the ciphertext or decrypted plaintext, however some callers may rely on the the ECDSA signature for non-repudiation. Without validating the ECDSA signature, an actor with trusted KMS permissions to decrypt a message may also be able to encrypt messages. This update introduces a new API for callers who wish to stream only unsigned messages. \n\nFor customers who process ESDK messages from untrusted sources, this update also introduces a new configuration to limit the number of Encrypted Data Keys (EDKs) that the ESDK will attempt to process per message. This configuration provides customers with a way to limit the number of AWS KMS Decrypt API calls that the ESDK will make per message. This setting will reject messages with more EDKs than the configured limit.\n\nFinally, this update adds early rejection of invalid messages with certain invalid combinations of algorithm suite and header data.\n\n### Patches\n\nFixed in versions 1.9 and 2.2. We recommend that all users upgrade to address these issues.\n\nCustomers leveraging the ESDK’s streaming features have several options to protect signature validation. One is to ensure that client code reads to the end of the stream before using released plaintext. With this release, using the new API for streaming and falling back to the non-streaming decrypt API for signed messages prevents using any plaintext from signed data before the signature is validated. See https://docs.aws.amazon.com/encryption-sdk/latest/developer-guide/about-versions.html#version2.2.x\n\nUsers processing ESDK messages from untrusted sources should use the new maximum encrypted data keys parameter. See https://docs.aws.amazon.com/encryption-sdk/latest/developer-guide/about-versions.html#version2.2.x\n\n### Workarounds\n\nNone\n\n### For more information\n\nhttps://docs.aws.amazon.com/encryption-sdk/latest/developer-guide/concepts.html#digital-sigs\n\nhttps://docs.aws.amazon.com/encryption-sdk/latest/developer-guide/about-versions.html#version2.2.x\n","origin":"UNSPECIFIED","severity":"MODERATE","published_at":"2021-06-01T21:17:53.000Z","withdrawn_at":null,"classification":"GENERAL","cvss_score":0.0,"cvss_vector":null,"references":["https://github.com/aws/aws-encryption-sdk-python/security/advisories/GHSA-x5h4-9gqw-942j","https://github.com/advisories/GHSA-x5h4-9gqw-942j"],"source_kind":"github","identifiers":["GHSA-x5h4-9gqw-942j"],"repository_url":"https://github.com/aws/aws-encryption-sdk-python","blast_radius":0.0,"packages":[{"versions":[{"first_patched_version":"2.2.0","vulnerable_version_range":"\u003e= 2.0.0, \u003c 2.2.0"},{"first_patched_version":"1.9.0","vulnerable_version_range":"\u003c 1.9.0"}],"ecosystem":"pypi","package_name":"aws-encryption-sdk"}],"created_at":"2022-12-21T16:13:00.124Z","updated_at":"2023-01-09T05:04:59.000Z","epss_percentage":null,"epss_percentile":null},{"uuid":"GSA_kwCzR0hTQS13cWdwLXZwaHctaHBoZs0Wbg","url":"https://github.com/advisories/GHSA-wqgp-vphw-hphf","title":"Security issues in AWS KMS and AWS Encryption SDKs: in-band protocol negotiation and robustness","description":"Authors: Thai \"[thaidn](https://twitter.com/xorninja)\" Duong\n\n# Summary\n\nThe following security vulnerabilities was discovered and reported to Amazon, affecting AWS KMS and all versions of [AWS Encryption SDKs](https://docs.aws.amazon.com/encryption-sdk/latest/developer-guide/introduction.html) prior to version 2.0.0:\n\n* **Information leakage**: an attacker can create ciphertexts that would leak the user’s AWS account ID, encryption context, user agent, and IP address upon decryption\n* **Ciphertext forgery**: an attacker can create ciphertexts that are accepted by other users\n* **Robustness**: an attacker can create ciphertexts that decrypt to different plaintexts for different users\n\nThe first two bugs are somewhat surprising because they show that the ciphertext format can lead to vulnerabilities. These bugs (and the infamous [alg: \"None\"](https://auth0.com/blog/critical-vulnerabilities-in-json-web-token-libraries/) bugs in JWT) belong to a class of vulnerabilities called **in-band protocol negotiation**. This is the second time we’ve found in-band protocol negotiation vulnerabilities in AWS cryptography libraries; see this [bug](https://github.com/google/security-research/security/advisories/GHSA-7f33-f4f5-xwgw) in S3 Crypto SDK discovered by my colleague Sophie Schmieg.\n\nIn JWT and S3 SDK the culprit is the algorithm field—here it is the key ID. Because the key ID is used to determine which decryption key to use, it can’t be meaningfully authenticated despite being under the attacker’s control. If the key ID is a URL indicating where to fetch the key, the attacker can replace it with their own URL, and learn side-channel information such as the timing and machines on which the decryption happens (this can also lead to [SSRF](https://portswigger.net/web-security/ssrf) issues, but that’s another topic for another day).\n\nIn AWS, the key ID is a unique [Amazon Resource Name](https://docs.aws.amazon.com/general/latest/gr/aws-arns-and-namespaces.html). If an attacker were to capture a ciphertext from a user and replace its key ID with their own, the victim’s AWS account ID, encryption context, user agent, and IP address would be logged to the attacker’s AWS account whenever the victim attempted to decrypt the modified ciphertext.\n\nThe last bug shows that the non-committing property of AES-GCM (and other AEAD ciphers such as [AES-GCM-SIV](https://keymaterial.net/2020/09/07/invisible-salamanders-in-aes-gcm-siv/) or (X)ChaCha20Poly1305) is especially problematic in multi-recipient settings. These ciphers have a property that can cause nonidentical plaintexts when decrypting a single ciphertext with two different keys! For example, you can send a single encrypted email to Alice and Bob which, upon decryption, reads “attack” to Alice and “retreat” to Bob. The AWS Encryption SDKs are vulnerable to this attack because they allow a single ciphertext to be generated for multiple recipients, with each decrypting using a different key. I believe this kind of problem is prevalent. I briefly looked at [JWE](https://tools.ietf.org/html/rfc7516) and I think it is vulnerable.\n\n# Mitigations\n\nAmazon has fixed these bugs in release 2.0.0 of the SDKs. A new major version was required because, unfortunately, the fix for the last bug requires a breaking change from earlier versions. All users are recommended to upgrade. More details about Amazon’s mitigations can be found in [their announcement](https://aws.amazon.com/blogs/security/improved-client-side-encryption-explicit-keyids-and-key-commitment/).\n\nWe’re collaborating with Shay Gueron on a paper regarding fast committing AEADs.\n\n# Vulnerabilities\n\n## Information Leakage\n\nThe [Encrypt](https://docs.aws.amazon.com/kms/latest/APIReference/API_Encrypt.html) API in AWS KMS encrypts plaintext into ciphertext by using a customer master key (CMK). The ciphertext format is undocumented, but it contains metadata that specifies the CMK and the encryption algorithm. I reverse-engineered the format and found the location of the CMK. Externally the CMK is identified by its key ARN, but within a ciphertext it is represented by an internal ID, which remained stable during my testing.\n\nWhen I replaced the internal ID of a CMK in a ciphertext with the internal ID of another CMK, I found that AWS KMS attempted to decrypt the ciphertext with the new CMK. The encryption failed and the failure event—including the AWS Account ID, the user agent and the IP address of the caller—was logged to Cloud Trail in the account that owned the replacement CMK.\n\nThis enables the following attack:\n* The attacker creates a CMK that has a key policy that allows access from everyone. This requires no prior knowledge about the victim.\n* The attacker intercepts a ciphertext from the victim, and replaces its CMK with their CMK.\n* Whenever the victim attempts to decrypt the modified ciphertext, the attacker learns the timing of such actions, the victim’s AWS Account ID, user agent, encryption context, and IP address.\n\nThis attack requires the victim to have an IAM policy that allows them to access the attacker’s CMK. I found that this practice was allowed by the AWS Visual Policy Editor, but I don’t know whether it is common.\n\nThe AWS Encryption SDKs also succumb to this attack. The SDKs implement envelope encryption: encrypting data with a data encryption key (DEK) and then wrapping the DEK with a CMK using the Encrypt API in AWS KMS. The wrapped DEK is stored as part of the final ciphertext (format is defined [here](https://docs.aws.amazon.com/encryption-sdk/latest/developer-guide/message-format.html)). The attacker can mount this attack by replacing the CMK in the wrapped DEK with their own.\n\n```\n{\n    \"eventVersion\": \"1.05\",\n    \"userIdentity\": {\n        \"type\": \"AWSAccount\",\n        \"principalId\": \"\u003credacted this is the principal ID of the victim\u003e\",\n        \"accountId\": \"\u003credacted - this is the AWS account ID of the victim\u003e\"\n    },\n    \"eventTime\": \"2020-06-21T21:05:04Z\",\n    \"eventSource\": \"kms.amazonaws.com\",\n    \"eventName\": \"Decrypt\",\n    \"awsRegion\": \"us-west-2\",\n    \"sourceIPAddress\": \"\u003credacted - this is the IP address of the victim\u003e\",\n    \"userAgent\": \"\u003credacted - this is the user agent of the victim\u003e\",\n    \"errorCode\": \"InvalidCiphertextException\",\n    \"requestParameters\": {\n        // The encryption context might include other data from the victim\n        \"encryptionContext\": {\n            \"aws-crypto-public-key\": \"AzfNOGOnNYFmpHspKrAm1L6XtRybONkmkhmB/IriKSA7b2NsV4MEPMph9yX2KTPKWw==\"\n        },\n        \"encryptionAlgorithm\": \"SYMMETRIC_DEFAULT\"\n    },\n    \"responseElements\": null,\n    \"requestID\": \"aeced8e8-75a2-42c3-96ac-d1fa2a1c5ee6\",\n    \"eventID\": \"780a0a6e-4ad8-43d4-a426-75d05022f870\",\n    \"readOnly\": true,\n    \"resources\": [\n        {\n            \"accountId\": \"\u003credacted - this is the account ID of the attacker\u003e\",\n            \"type\": \"AWS::KMS::Key\",\n            \"ARN\": \u003credacted - this is the key ARN of the attacker\u003e\n        }\n    ],\n    \"eventType\": \"AwsApiCall\",\n    \"recipientAccountId\": \"\u003credacted - this is the account ID of the attacker\u003e\",\n    \"sharedEventID\": \"033e147c-8a36-42f5-9d6c-9e071eb752b7\"\n}\n```\n**Figure 1: A failure event logged to the attacker’s Cloud Trail when the victim attempted to decrypt a modified ciphertext containing the attacker’s CMK.**\n\n## Ciphertext Forgery\n\nThe [Decrypt](https://docs.aws.amazon.com/kms/latest/APIReference/API_Decrypt.html) API in AWS KMS doesn’t require the caller to specify the CMK. This parameter is required only when the ciphertext was encrypted under an asymmetric CMK. Otherwise, AWS KMS uses the metadata that it adds to the ciphertext blob to determine which CMK was used to encrypt the ciphertext.\n\nThis leads to the following attack:\n* The attacker creates a CMK that has a key policy that allows access from everyone. This requires no prior knowledge about the victim.\n* The attacker generates a ciphertext by calling the Encrypt API with their key.\n* The attacker intercepts a ciphertext from the victim, and replaces it entirely with their ciphertext.\n* The victim successfully decrypts the ciphertext, as if it was encrypted under their own key. The attacker also learns when this happened, the victim’s AWS Account ID, user agent, encryption context, and IP address.\n\nSimilar to the information leakage attack, this attack also requires the victim to have an IAM policy that allows them to access the attacker’s CMK.\n\nThe AWS Encryption SDKs also succumb to this attack. They don’t specify the CMK when they call the Decrypt API to unwrap the DEK.\n\n## Robustness\n\nThe AWS Encryption SDKs allow a single ciphertext to be generated for multiple recipients, with each decrypting using a different key. To that end, it wraps the DEK multiple times, each under a different CMK. The wrapped DEKs can be combined to form a single ciphertext which can be sent to multiple recipients who can use their own credentials to decrypt it. It’s reasonable to expect that all recipients should decrypt the ciphertext to an identical plaintext. However, because of the use of AES-GMAC and AES-GCM, it’s possible to create a ciphertext that decrypts to two valid yet different plaintexts for two different users. In other words, the AWS Encryption SDKs are [not](https://eprint.iacr.org/2008/440.pdf) [robust](https://eprint.iacr.org/2019/016.pdf).\n\nThe encryption of a message under two CMKs can be summarized as follows:\n* A DEK is randomly generated, and two wrapped DEKs are produced by calling the Encrypt API using the two CMKs\n* A per-message AES-GCM key (K) is derived using HKDF from the DEK, a randomly generated message ID, and a fixed algorithm ID.\n* A header is formed from the wrapped DEKs, the encryption context, and other metadata. A header authentication tag is computed on the header using AES-GMAC with K and a zero IV.\n* The message is encrypted using AES-GCM with K, a non-zero IV, and fixed associated additional data. This produces a message authentication tag.\n* The ciphertext consists of the header, the header authentication tag, the encrypted message, and the message authentication tag.\n\n(There’s also a self-signed digital signature that is irrelevant to this discussion).\n\nIn order to decrypt a ciphertext, the AWS Encryption SDKs loops over the list of wrapped DEKs and returns the first one that it can successfully unwrap. The attacker therefore can wrap a unique DEK for each recipient. Next, the attacker exploits the non-committing property of GMAC to produce two messages that have the same GMAC tag under two different keys. The attacker has to do this twice, one for the header authentication tag and one for the message authentication tag.\n\n```\nGiven a data blob B of one 128-bit block B_1, a GMAC tag is computed as follows:\n\nB_1 * H^2 + B_len * H + J\n\nwhere H and J depends on the key and B_len depends on the length of B.\n\nTo find a message that can produce the same tag under two different keys, one\ncan add append to B a new block B_2 whose value can be deduced by solving\nan algebraic equation. That is, we want to find B_2 such that:\n\nB_1 * H^3 + B_2 * H^2 + B_len * H + J = B_1 * H’^3 + B_2 * H’^2 + B_len * H’ + J’\n\nwhere H’ and J’ are the corresponding H and J of the other key.\n\nB_2 is the only unknown value in this equation, thus it can be computed using\nfinite field arithmetics of GF(2^128):\n\nB_2 = [B_1 * (H^3+H’^3) + B_len * (H + H’) + J + J’] * (H^2 + H’^2)^-1.\n```\n**Figure 2: How to find a message that has the same GMAC tag under two different keys.**\n\nThe overall attack works as follows:\n* The attacker generates a random DEK, derives a per-message key K, and encrypts message M with it using AES in counter mode. This generates a ciphertext C.\n* The attacker generates another random DEK’, derives a per-message key K’, and performs trial decryption of C until the decrypted message M’ has desirable properties. For example, if the attacker wants the first bit of M’ different from that of M, this process should only take a few attempts.\n* The attacker finds a block C* such that the GMAC of C’ = C || C* under K and K’ are identical. Denote this tag C’_tag.\n* The attacker wraps DEK and DEK’ under two recipients’ CMK.\n* The attacker forms a header H and adds a block H* to the encryption context such that the new H’ has the same authentication tag H’_tag under K and K’.\n* The attacker output H’, H’_tag, C’, C’_tag.\n\nThis attack is similar to the one discovered in [Facebook Messenger](https://eprint.iacr.org/2019/016.pdf).\n\n# Acknowledgement\n\nI’m grateful to Jen Barnason for carefully editing this advisory. I will never publish anything without her approval! I want to thank my friend and coworker Sophie “Queen of Hashing” Schmieg for wonderful discussions and for showing me how the arithmetic in GF(2^128) works. I want to thank Jonathan Bannet for asking the questions that led to this work.","origin":"UNSPECIFIED","severity":"HIGH","published_at":"2021-10-12T16:01:12.000Z","withdrawn_at":null,"classification":"GENERAL","cvss_score":8.6,"cvss_vector":"CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N","references":["https://github.com/google/security-research/security/advisories/GHSA-wqgp-vphw-hphf","https://nvd.nist.gov/vuln/detail/CVE-2020-8897","https://aws.amazon.com/blogs/security/improved-client-side-encryption-explicit-keyids-and-key-commitment","https://github.com/pypa/advisory-database/tree/main/vulns/aws-encryption-sdk/PYSEC-2020-261.yaml","https://github.com/advisories/GHSA-wqgp-vphw-hphf"],"source_kind":"github","identifiers":["GHSA-wqgp-vphw-hphf","CVE-2020-8897"],"repository_url":null,"blast_radius":31.09807467679864,"packages":[{"versions":[{"first_patched_version":"2.0.0","vulnerable_version_range":"\u003c 2.0.0"}],"ecosystem":"pypi","package_name":"aws-encryption-sdk"},{"versions":[{"first_patched_version":"2.0.0","vulnerable_version_range":"\u003c 2.0.0"}],"ecosystem":"maven","package_name":"com.amazonaws:aws-encryption-sdk-java"}],"created_at":"2022-12-21T16:12:44.897Z","updated_at":"2025-04-13T01:08:51.530Z","epss_percentage":0.00092,"epss_percentile":0.23499}],"docker_usage_url":"https://docker.ecosyste.ms/usage/pypi/aws-encryption-sdk","docker_dependents_count":9,"docker_downloads_count":201749688,"usage_url":"https://repos.ecosyste.ms/usage/pypi/aws-encryption-sdk","dependent_repositories_url":"https://repos.ecosyste.ms/api/v1/usage/pypi/aws-encryption-sdk/dependencies","status":null,"funding_links":[],"critical":null,"versions_url":"https://packages.ecosyste.ms/api/v1/registries/pypi.org/packages/aws-encryption-sdk/versions","version_numbers_url":"https://packages.ecosyste.ms/api/v1/registries/pypi.org/packages/aws-encryption-sdk/version_numbers","dependent_packages_url":"https://packages.ecosyste.ms/api/v1/registries/pypi.org/packages/aws-encryption-sdk/dependent_packages","related_packages_url":"https://packages.ecosyste.ms/api/v1/registries/pypi.org/packages/aws-encryption-sdk/related_packages","maintainers":[{"uuid":"aws-crypto-builder-tools","login":"aws-crypto-builder-tools","name":null,"email":null,"url":null,"packages_count":58,"html_url":"https://pypi.org/user/aws-crypto-builder-tools/","role":null,"created_at":"2023-02-23T16:21:02.939Z","updated_at":"2023-02-23T16:21:02.939Z","packages_url":"https://packages.ecosyste.ms/api/v1/registries/pypi.org/maintainers/aws-crypto-builder-tools/packages"}],"registry":{"name":"pypi.org","url":"https://pypi.org","ecosystem":"pypi","default":true,"packages_count":701454,"maintainers_count":297631,"namespaces_count":0,"keywords_count":231258,"github":"pypi","metadata":{"funded_packages_count":49348},"icon_url":"https://github.com/pypi.png","created_at":"2022-04-04T15:19:23.364Z","updated_at":"2025-07-02T05:26:45.711Z","packages_url":"https://packages.ecosyste.ms/api/v1/registries/pypi.org/packages","maintainers_url":"https://packages.ecosyste.ms/api/v1/registries/pypi.org/maintainers","namespaces_url":"https://packages.ecosyste.ms/api/v1/registries/pypi.org/namespaces"}},"unique_repositories_count":3,"unique_repositories_count_past_30_days":1,"recent_issues":[{"uuid":"3661291659","node_id":"PR_kwDOQcbI3s61U5G4","number":3,"state":"closed","title":"fix: bump aws-encryption-sdk from 3.3.0 to 4.0.3","user":"dependabot[bot]","labels":["dependencies","python:uv"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2025-11-25T03:05:11.000Z","author_association":null,"state_reason":null,"created_at":"2025-11-25T02:46:28.000Z","updated_at":"2025-11-25T03:05:19.000Z","time_to_close":1123,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"fix","packages":[{"name":"aws-encryption-sdk","old_version":"3.3.0","new_version":"4.0.3","repository_url":"https://github.com/aws/aws-encryption-sdk-python"}],"path":null,"ecosystem":"pip"},"body":"Bumps [aws-encryption-sdk](https://github.com/aws/aws-encryption-sdk-python) from 3.3.0 to 4.0.3.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/releases\"\u003eaws-encryption-sdk's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.0.3 -- 2025-09-03\u003c/h2\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ca href=\"https://github.com/aws/aws-cryptographic-material-providers-library\"\u003eMPL\u003c/a\u003e versions to include v1.11.1 \u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/pull/770\"\u003eaws/aws-encryption-sdk-python#770\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eMPL v1.11.1 updates pytz version range to include 2025 releases.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.0.2 -- 2025-06-30\u003c/h2\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ca href=\"https://pypi.org/project/aws-cryptographic-material-providers/\"\u003eMPL\u003c/a\u003e versions to include v1.11.0. (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/763\"\u003e#763\u003c/a\u003e)\u003c/p\u003e\n\u003cp\u003eMPL v1.11.0 contains performance improvements for the hierarchical keyring and\nextends the range of supported \u003ccode\u003ecryptography\u003c/code\u003e versions.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.0.1 -- 2025-03-27\u003c/h2\u003e\n\u003ch2\u003eFixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003efix: Improve header serialization (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/747\"\u003e#747\u003c/a\u003e)\u003c/p\u003e\n\u003cp\u003eESDK-Python \u0026lt;4.0.1 would truncate non-ASCII key provider IDs it wrote to message headers.\nIf a Raw or Custom MasterKeyProvider or Keyring supplied a non-ASCII key provider ID / key namespace,\nESDK-Python would truncate the the key provider ID it wrote to the message's header.\nThe message can be decrypted by replacing the truncated provider ID with the expected provider ID in decryption code.\nContact AWS for any questions about this approach.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003edeps: Extend supported \u003ca href=\"https://pypi.org/project/aws-cryptographic-material-providers/\"\u003eMPL\u003c/a\u003e versions to include v1.10.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.0.0 -- 2024-11-13\u003c/h2\u003e\n\u003ch2\u003eFeatures\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd support for constructs from the \u003ca href=\"https://github.com/aws/aws-cryptographic-material-providers-library\"\u003eAWS Cryptographic Material Providers Library (MPL)\u003c/a\u003e.\nThe MPL contains new constructs for encrypting and decrypting your data.\nWe highly recommend installing the MPL. See \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/tree/master?tab=readme-ov-file#installation\"\u003eInstalling\u003c/a\u003e for instructions.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eBreaking Changes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eThe MPL introduces the Required Encryption Context Cryptographic Materials Manager\n(\u0026quot;required EC CMM\u0026quot;) as a new construct for protecting your data.\nOn encrypt, the required EC CMM will use specific configured\nencryption context key-value pairs to calculate the message signature,\nbut will not store those pairs in the ESDK message.\nOn decrypt, decryptors must supply these same pairs that were used when encrypting the message.\nAll messages that have been encrypted with versions of the ESDK \u0026lt;4.0.0 are forward compatible with this change.\nHowever, messages that are constructed with the required EC CMM are not backward compatible with ESDK \u0026lt;4.0.0,\nas no version of ESDK \u0026lt;4.0.0 supports reading messages encrypted with the required EC CMM.\nA message that is encrypted with the required EC CMM from the MPL must be decrypted with a CMM from the MPL.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eFixes\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/blob/master/CHANGELOG.rst\"\u003eaws-encryption-sdk's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e4.0.3 -- 2025-09-03\u003c/h1\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ccode\u003eMPL\u003c/code\u003e_ versions to include v1.11.1\n\u003ccode\u003e[#770](https://github.com/aws/aws-encryption-sdk-python/issues/770) \u0026lt;https://github.com/aws/aws-encryption-sdk-python/pull/770\u0026gt;\u003c/code\u003e_\u003c/p\u003e\n\u003cp\u003eMPL v1.11.1 updates pytz version range to include 2025 releases.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.0.2 -- 2025-06-30\u003c/h1\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ccode\u003eMPL\u003c/code\u003e_ versions to include v1.11.0\n\u003ccode\u003e[#763](https://github.com/aws/aws-encryption-sdk-python/issues/763) \u0026lt;https://github.com/aws/aws-encryption-sdk-python/pull/763\u0026gt;\u003c/code\u003e_\u003c/p\u003e\n\u003cp\u003eMPL v1.11.0 contains performance improvements for the hierarchical keyring and\nextends the range of supported \u003ccode\u003ecryptography\u003c/code\u003e versions.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.0.1 -- 2025-03-26\u003c/h1\u003e\n\u003ch2\u003eFixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003efix: Improve header serialization\n\u003ccode\u003e[#747](https://github.com/aws/aws-encryption-sdk-python/issues/747) \u0026lt;https://github.com/aws/aws-encryption-sdk-python/pull/747\u0026gt;\u003c/code\u003e_\u003c/p\u003e\n\u003cp\u003eESDK-Python \u0026lt;4.0.1 would truncate non-ASCII key provider IDs it wrote to message headers.\nIf a Raw or Custom MasterKeyProvider or Keyring supplied a non-ASCII key provider ID / key namespace,\nESDK-Python would truncate the the key provider ID it wrote to the message's header.\nThe message can be decrypted by replacing the truncated provider ID with the expected provider ID in decryption code.\nContact AWS for any questions about this approach.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003edeps: Extend supported \u003ccode\u003eMPL\u003c/code\u003e_ versions to include v1.10.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.0.0 -- 2024-10-29\u003c/h1\u003e\n\u003ch2\u003eFeatures\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd support for constructs from the \u003ccode\u003eAWS Cryptographic Material Providers Library (MPL) \u0026lt;https://github.com/aws/aws-cryptographic-material-providers-library\u0026gt;\u003c/code\u003e\u003cem\u003e.\nThe MPL contains new constructs for encrypting and decrypting your data.\nWe highly recommend installing the MPL. See \u003ccode\u003eInstalling \u0026lt;https://github.com/aws/aws-encryption-sdk-python/tree/master?tab=readme-ov-file#installation\u0026gt;\u003c/code\u003e\u003c/em\u003e for instructions.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eBreaking Changes\n^^^^^^^^^^^^^^^^\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/d316a1835869a27b76ff6dfe8db6897e85f6eebd\"\u003e\u003ccode\u003ed316a18\u003c/code\u003e\u003c/a\u003e chore: update CHANGELOG for v4.0.3 (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/770\"\u003e#770\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/cbfab663e94c4ed1db5211886770e1aa403a7c67\"\u003e\u003ccode\u003ecbfab66\u003c/code\u003e\u003c/a\u003e chore(CI): clean up gha and unused files (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/767\"\u003e#767\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/ee9e3f86903006f256e652a172ae493a2fbbb523\"\u003e\u003ccode\u003eee9e3f8\u003c/code\u003e\u003c/a\u003e chore: remove uploading fake artifacts during release (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/765\"\u003e#765\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/848f1714d2b5c8469cc41266f4215bb7aaefed55\"\u003e\u003ccode\u003e848f171\u003c/code\u003e\u003c/a\u003e chore: Update CHANGELOG for v4.0.2 (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/763\"\u003e#763\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/b423f5c9a8e18294e4bce6d74b0001ec5bf9d6ac\"\u003e\u003ccode\u003eb423f5c\u003c/code\u003e\u003c/a\u003e chore(CI): Use Github Actions to start CodeBuild builds (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/762\"\u003e#762\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/0dd4e16d10fc139e24908bfd0008d57680b064e9\"\u003e\u003ccode\u003e0dd4e16\u003c/code\u003e\u003c/a\u003e chore: Update SUPPORT_POLICY.rst (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/756\"\u003e#756\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/37fb387af48c0acbadecd245b32943496d8d24a2\"\u003e\u003ccode\u003e37fb387\u003c/code\u003e\u003c/a\u003e chore(deps): bump setuptools from 66.1.1 to 70.0.0 in /dev_requirements (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/712\"\u003e#712\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/18352146239976a93dfd26955b5b695e5a62ab68\"\u003e\u003ccode\u003e1835214\u003c/code\u003e\u003c/a\u003e fix: Improve header serialization (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/747\"\u003e#747\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/899af22c25fdd5d896817e40514b5ea0e1537e90\"\u003e\u003ccode\u003e899af22\u003c/code\u003e\u003c/a\u003e chore(CI): Build test vectors from source (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/724\"\u003e#724\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/8a9d97bb79076ed648ff4337b43dee1bd2ed807b\"\u003e\u003ccode\u003e8a9d97b\u003c/code\u003e\u003c/a\u003e chore: Update release policy, fix linter (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/733\"\u003e#733\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/compare/v3.3.0...v4.0.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=aws-encryption-sdk\u0026package-manager=uv\u0026previous-version=3.3.0\u0026new-version=4.0.3)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot merge` will merge this PR after your CI passes on it\n- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it\n- `@dependabot cancel merge` will cancel a previously requested merge and block automerging\n- `@dependabot reopen` will reopen this PR if it is closed\n- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/jerny-stoiclane/uv-dependabot-wtf/pull/3","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/jerny-stoiclane%2Fuv-dependabot-wtf/issues/3","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/3/packages"},{"uuid":"2825215480","node_id":"PR_kwDOEZqEkM6oZV34","number":1033,"state":"open","title":"Bump aws-encryption-sdk from 4.0.0 to 4.0.3","user":"dependabot[bot]","labels":["dependencies","python:uv"],"assignees":[],"locked":false,"comments_count":0,"pull_request":true,"closed_at":null,"author_association":"CONTRIBUTOR","state_reason":null,"created_at":"2025-09-13T12:11:48.000Z","updated_at":"2025-09-13T12:11:49.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"aws-encryption-sdk","old_version":"4.0.0","new_version":"4.0.3","repository_url":"https://github.com/aws/aws-encryption-sdk-python"}],"path":null,"ecosystem":"pip"},"body":"Bumps [aws-encryption-sdk](https://github.com/aws/aws-encryption-sdk-python) from 4.0.0 to 4.0.3.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/releases\"\u003eaws-encryption-sdk's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.0.3 -- 2025-09-03\u003c/h2\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ca href=\"https://github.com/aws/aws-cryptographic-material-providers-library\"\u003eMPL\u003c/a\u003e versions to include v1.11.1 \u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/pull/770\"\u003eaws/aws-encryption-sdk-python#770\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eMPL v1.11.1 updates pytz version range to include 2025 releases.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.0.2 -- 2025-06-30\u003c/h2\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ca href=\"https://pypi.org/project/aws-cryptographic-material-providers/\"\u003eMPL\u003c/a\u003e versions to include v1.11.0. (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/763\"\u003e#763\u003c/a\u003e)\u003c/p\u003e\n\u003cp\u003eMPL v1.11.0 contains performance improvements for the hierarchical keyring and\nextends the range of supported \u003ccode\u003ecryptography\u003c/code\u003e versions.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.0.1 -- 2025-03-27\u003c/h2\u003e\n\u003ch2\u003eFixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003efix: Improve header serialization (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/747\"\u003e#747\u003c/a\u003e)\u003c/p\u003e\n\u003cp\u003eESDK-Python \u0026lt;4.0.1 would truncate non-ASCII key provider IDs it wrote to message headers.\nIf a Raw or Custom MasterKeyProvider or Keyring supplied a non-ASCII key provider ID / key namespace,\nESDK-Python would truncate the the key provider ID it wrote to the message's header.\nThe message can be decrypted by replacing the truncated provider ID with the expected provider ID in decryption code.\nContact AWS for any questions about this approach.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003edeps: Extend supported \u003ca href=\"https://pypi.org/project/aws-cryptographic-material-providers/\"\u003eMPL\u003c/a\u003e versions to include v1.10.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/blob/master/CHANGELOG.rst\"\u003eaws-encryption-sdk's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e4.0.3 -- 2025-09-03\u003c/h1\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ccode\u003eMPL\u003c/code\u003e_ versions to include v1.11.1\n\u003ccode\u003e[#770](https://github.com/aws/aws-encryption-sdk-python/issues/770) \u0026lt;https://github.com/aws/aws-encryption-sdk-python/pull/770\u0026gt;\u003c/code\u003e_\u003c/p\u003e\n\u003cp\u003eMPL v1.11.1 updates pytz version range to include 2025 releases.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.0.2 -- 2025-06-30\u003c/h1\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ccode\u003eMPL\u003c/code\u003e_ versions to include v1.11.0\n\u003ccode\u003e[#763](https://github.com/aws/aws-encryption-sdk-python/issues/763) \u0026lt;https://github.com/aws/aws-encryption-sdk-python/pull/763\u0026gt;\u003c/code\u003e_\u003c/p\u003e\n\u003cp\u003eMPL v1.11.0 contains performance improvements for the hierarchical keyring and\nextends the range of supported \u003ccode\u003ecryptography\u003c/code\u003e versions.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.0.1 -- 2025-03-26\u003c/h1\u003e\n\u003ch2\u003eFixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003efix: Improve header serialization\n\u003ccode\u003e[#747](https://github.com/aws/aws-encryption-sdk-python/issues/747) \u0026lt;https://github.com/aws/aws-encryption-sdk-python/pull/747\u0026gt;\u003c/code\u003e_\u003c/p\u003e\n\u003cp\u003eESDK-Python \u0026lt;4.0.1 would truncate non-ASCII key provider IDs it wrote to message headers.\nIf a Raw or Custom MasterKeyProvider or Keyring supplied a non-ASCII key provider ID / key namespace,\nESDK-Python would truncate the the key provider ID it wrote to the message's header.\nThe message can be decrypted by replacing the truncated provider ID with the expected provider ID in decryption code.\nContact AWS for any questions about this approach.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003edeps: Extend supported \u003ccode\u003eMPL\u003c/code\u003e_ versions to include v1.10.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/d316a1835869a27b76ff6dfe8db6897e85f6eebd\"\u003e\u003ccode\u003ed316a18\u003c/code\u003e\u003c/a\u003e chore: update CHANGELOG for v4.0.3 (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/770\"\u003e#770\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/cbfab663e94c4ed1db5211886770e1aa403a7c67\"\u003e\u003ccode\u003ecbfab66\u003c/code\u003e\u003c/a\u003e chore(CI): clean up gha and unused files (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/767\"\u003e#767\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/ee9e3f86903006f256e652a172ae493a2fbbb523\"\u003e\u003ccode\u003eee9e3f8\u003c/code\u003e\u003c/a\u003e chore: remove uploading fake artifacts during release (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/765\"\u003e#765\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/848f1714d2b5c8469cc41266f4215bb7aaefed55\"\u003e\u003ccode\u003e848f171\u003c/code\u003e\u003c/a\u003e chore: Update CHANGELOG for v4.0.2 (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/763\"\u003e#763\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/b423f5c9a8e18294e4bce6d74b0001ec5bf9d6ac\"\u003e\u003ccode\u003eb423f5c\u003c/code\u003e\u003c/a\u003e chore(CI): Use Github Actions to start CodeBuild builds (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/762\"\u003e#762\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/0dd4e16d10fc139e24908bfd0008d57680b064e9\"\u003e\u003ccode\u003e0dd4e16\u003c/code\u003e\u003c/a\u003e chore: Update SUPPORT_POLICY.rst (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/756\"\u003e#756\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/37fb387af48c0acbadecd245b32943496d8d24a2\"\u003e\u003ccode\u003e37fb387\u003c/code\u003e\u003c/a\u003e chore(deps): bump setuptools from 66.1.1 to 70.0.0 in /dev_requirements (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/712\"\u003e#712\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/18352146239976a93dfd26955b5b695e5a62ab68\"\u003e\u003ccode\u003e1835214\u003c/code\u003e\u003c/a\u003e fix: Improve header serialization (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/747\"\u003e#747\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/899af22c25fdd5d896817e40514b5ea0e1537e90\"\u003e\u003ccode\u003e899af22\u003c/code\u003e\u003c/a\u003e chore(CI): Build test vectors from source (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/724\"\u003e#724\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/8a9d97bb79076ed648ff4337b43dee1bd2ed807b\"\u003e\u003ccode\u003e8a9d97b\u003c/code\u003e\u003c/a\u003e chore: Update release policy, fix linter (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/733\"\u003e#733\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/compare/v4.0.0...v4.0.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=aws-encryption-sdk\u0026package-manager=uv\u0026previous-version=4.0.0\u0026new-version=4.0.3)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot merge` will merge this PR after your CI passes on it\n- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it\n- `@dependabot cancel merge` will cancel a previously requested merge and block automerging\n- `@dependabot reopen` will reopen this PR if it is closed\n- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/aiarena/aiarena-web/pull/1033","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/aiarena%2Faiarena-web/issues/1033","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/1033/packages"},{"uuid":"3382018266","node_id":"PR_kwDODTo4k86mxF6e","number":7305,"state":"open","title":"chore(deps): bump aws-encryption-sdk from 4.0.2 to 4.0.3","user":"dependabot[bot]","labels":["dependencies","internal","size/XS","python"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":"CONTRIBUTOR","state_reason":null,"created_at":"2025-09-04T03:43:13.000Z","updated_at":"2025-09-04T09:55:40.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"aws-encryption-sdk","old_version":"4.0.2","new_version":"4.0.3","repository_url":"https://github.com/aws/aws-encryption-sdk-python"}],"path":null,"ecosystem":"pip"},"body":"[//]: # (dependabot-start)\n⚠️  **Dependabot is rebasing this PR** ⚠️ \n\nRebasing might not happen immediately, so don't worry if this takes some time.\n\nNote: if you make any changes to this PR yourself, they will take precedence over the rebase.\n\n---\n\n[//]: # (dependabot-end)\n\nBumps [aws-encryption-sdk](https://github.com/aws/aws-encryption-sdk-python) from 4.0.2 to 4.0.3.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/releases\"\u003eaws-encryption-sdk's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.0.3 -- 2025-09-03\u003c/h2\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ca href=\"https://github.com/aws/aws-cryptographic-material-providers-library\"\u003eMPL\u003c/a\u003e versions to include v1.11.1 \u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/pull/770\"\u003eaws/aws-encryption-sdk-python#770\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eMPL v1.11.1 updates pytz version range to include 2025 releases.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/blob/master/CHANGELOG.rst\"\u003eaws-encryption-sdk's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e4.0.3 -- 2025-09-03\u003c/h1\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ccode\u003eMPL\u003c/code\u003e_ versions to include v1.11.1\n\u003ccode\u003e[#770](https://github.com/aws/aws-encryption-sdk-python/issues/770) \u0026lt;https://github.com/aws/aws-encryption-sdk-python/pull/770\u0026gt;\u003c/code\u003e_\u003c/p\u003e\n\u003cp\u003eMPL v1.11.1 updates pytz version range to include 2025 releases.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/d316a1835869a27b76ff6dfe8db6897e85f6eebd\"\u003e\u003ccode\u003ed316a18\u003c/code\u003e\u003c/a\u003e chore: update CHANGELOG for v4.0.3 (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/770\"\u003e#770\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/cbfab663e94c4ed1db5211886770e1aa403a7c67\"\u003e\u003ccode\u003ecbfab66\u003c/code\u003e\u003c/a\u003e chore(CI): clean up gha and unused files (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/767\"\u003e#767\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/compare/v4.0.2...v4.0.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=aws-encryption-sdk\u0026package-manager=pip\u0026previous-version=4.0.2\u0026new-version=4.0.3)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot merge` will merge this PR after your CI passes on it\n- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it\n- `@dependabot cancel merge` will cancel a previously requested merge and block automerging\n- `@dependabot reopen` will reopen this PR if it is closed\n- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/aws-powertools/powertools-lambda-python/pull/7305","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws-powertools%2Fpowertools-lambda-python/issues/7305","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/7305/packages"},{"uuid":"2636540763","node_id":"PR_kwDODTo4k86dJmtb","number":6932,"state":"closed","title":"chore(deps): bump aws-encryption-sdk from 4.0.1 to 4.0.2","user":"dependabot[bot]","labels":["dependencies","internal","size/XS","python"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2025-07-02T22:30:58.000Z","author_association":"CONTRIBUTOR","state_reason":null,"created_at":"2025-07-02T20:43:55.000Z","updated_at":"2025-07-02T22:30:58.000Z","time_to_close":6423,"merged_at":"2025-07-02T22:30:58.000Z","merged_by":"anafalcao","closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"aws-encryption-sdk","old_version":"4.0.1","new_version":"4.0.2","repository_url":"https://github.com/aws/aws-encryption-sdk-python"}],"path":null,"ecosystem":"pip"},"body":"Bumps [aws-encryption-sdk](https://github.com/aws/aws-encryption-sdk-python) from 4.0.1 to 4.0.2.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/releases\"\u003eaws-encryption-sdk's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.0.2 -- 2025-06-30\u003c/h2\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ca href=\"https://pypi.org/project/aws-cryptographic-material-providers/\"\u003eMPL\u003c/a\u003e versions to include v1.11.0. (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/763\"\u003e#763\u003c/a\u003e)\u003c/p\u003e\n\u003cp\u003eMPL v1.11.0 contains performance improvements for the hierarchical keyring and\nextends the range of supported \u003ccode\u003ecryptography\u003c/code\u003e versions.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/blob/master/CHANGELOG.rst\"\u003eaws-encryption-sdk's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e4.0.2 -- 2025-06-30\u003c/h1\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ccode\u003eMPL\u003c/code\u003e_ versions to include v1.11.0\n\u003ccode\u003e[#763](https://github.com/aws/aws-encryption-sdk-python/issues/763) \u0026lt;https://github.com/aws/aws-encryption-sdk-python/pull/763\u0026gt;\u003c/code\u003e_\u003c/p\u003e\n\u003cp\u003eMPL v1.11.0 contains performance improvements for the hierarchical keyring and\nextends the range of supported \u003ccode\u003ecryptography\u003c/code\u003e versions.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/ee9e3f86903006f256e652a172ae493a2fbbb523\"\u003e\u003ccode\u003eee9e3f8\u003c/code\u003e\u003c/a\u003e chore: remove uploading fake artifacts during release (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/765\"\u003e#765\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/848f1714d2b5c8469cc41266f4215bb7aaefed55\"\u003e\u003ccode\u003e848f171\u003c/code\u003e\u003c/a\u003e chore: Update CHANGELOG for v4.0.2 (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/763\"\u003e#763\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/b423f5c9a8e18294e4bce6d74b0001ec5bf9d6ac\"\u003e\u003ccode\u003eb423f5c\u003c/code\u003e\u003c/a\u003e chore(CI): Use Github Actions to start CodeBuild builds (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/762\"\u003e#762\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/0dd4e16d10fc139e24908bfd0008d57680b064e9\"\u003e\u003ccode\u003e0dd4e16\u003c/code\u003e\u003c/a\u003e chore: Update SUPPORT_POLICY.rst (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/756\"\u003e#756\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/37fb387af48c0acbadecd245b32943496d8d24a2\"\u003e\u003ccode\u003e37fb387\u003c/code\u003e\u003c/a\u003e chore(deps): bump setuptools from 66.1.1 to 70.0.0 in /dev_requirements (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/712\"\u003e#712\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/compare/v4.0.1...v4.0.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=aws-encryption-sdk\u0026package-manager=pip\u0026previous-version=4.0.1\u0026new-version=4.0.2)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot merge` will merge this PR after your CI passes on it\n- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it\n- `@dependabot cancel merge` will cancel a previously requested merge and block automerging\n- `@dependabot reopen` will reopen this PR if it is closed\n- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/aws-powertools/powertools-lambda-python/pull/6932","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws-powertools%2Fpowertools-lambda-python/issues/6932","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/6932/packages"}],"issue_packages":[{"old_version":"3.3.0","new_version":"4.0.3","update_type":"major","path":null,"pr_created_at":"2025-11-25T02:46:28.000Z","version_change":"3.3.0 → 4.0.3","issue":{"uuid":"3661291659","node_id":"PR_kwDOQcbI3s61U5G4","number":3,"state":"closed","title":"fix: bump aws-encryption-sdk from 3.3.0 to 4.0.3","user":"dependabot[bot]","labels":["dependencies","python:uv"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2025-11-25T03:05:11.000Z","author_association":null,"state_reason":null,"created_at":"2025-11-25T02:46:28.000Z","updated_at":"2025-11-25T03:05:19.000Z","time_to_close":1123,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"fix","packages":[{"name":"aws-encryption-sdk","old_version":"3.3.0","new_version":"4.0.3","repository_url":"https://github.com/aws/aws-encryption-sdk-python"}],"path":null,"ecosystem":"pip"},"body":"Bumps [aws-encryption-sdk](https://github.com/aws/aws-encryption-sdk-python) from 3.3.0 to 4.0.3.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/releases\"\u003eaws-encryption-sdk's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.0.3 -- 2025-09-03\u003c/h2\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ca href=\"https://github.com/aws/aws-cryptographic-material-providers-library\"\u003eMPL\u003c/a\u003e versions to include v1.11.1 \u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/pull/770\"\u003eaws/aws-encryption-sdk-python#770\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eMPL v1.11.1 updates pytz version range to include 2025 releases.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.0.2 -- 2025-06-30\u003c/h2\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ca href=\"https://pypi.org/project/aws-cryptographic-material-providers/\"\u003eMPL\u003c/a\u003e versions to include v1.11.0. (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/763\"\u003e#763\u003c/a\u003e)\u003c/p\u003e\n\u003cp\u003eMPL v1.11.0 contains performance improvements for the hierarchical keyring and\nextends the range of supported \u003ccode\u003ecryptography\u003c/code\u003e versions.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.0.1 -- 2025-03-27\u003c/h2\u003e\n\u003ch2\u003eFixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003efix: Improve header serialization (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/747\"\u003e#747\u003c/a\u003e)\u003c/p\u003e\n\u003cp\u003eESDK-Python \u0026lt;4.0.1 would truncate non-ASCII key provider IDs it wrote to message headers.\nIf a Raw or Custom MasterKeyProvider or Keyring supplied a non-ASCII key provider ID / key namespace,\nESDK-Python would truncate the the key provider ID it wrote to the message's header.\nThe message can be decrypted by replacing the truncated provider ID with the expected provider ID in decryption code.\nContact AWS for any questions about this approach.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003edeps: Extend supported \u003ca href=\"https://pypi.org/project/aws-cryptographic-material-providers/\"\u003eMPL\u003c/a\u003e versions to include v1.10.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.0.0 -- 2024-11-13\u003c/h2\u003e\n\u003ch2\u003eFeatures\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd support for constructs from the \u003ca href=\"https://github.com/aws/aws-cryptographic-material-providers-library\"\u003eAWS Cryptographic Material Providers Library (MPL)\u003c/a\u003e.\nThe MPL contains new constructs for encrypting and decrypting your data.\nWe highly recommend installing the MPL. See \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/tree/master?tab=readme-ov-file#installation\"\u003eInstalling\u003c/a\u003e for instructions.\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eBreaking Changes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eThe MPL introduces the Required Encryption Context Cryptographic Materials Manager\n(\u0026quot;required EC CMM\u0026quot;) as a new construct for protecting your data.\nOn encrypt, the required EC CMM will use specific configured\nencryption context key-value pairs to calculate the message signature,\nbut will not store those pairs in the ESDK message.\nOn decrypt, decryptors must supply these same pairs that were used when encrypting the message.\nAll messages that have been encrypted with versions of the ESDK \u0026lt;4.0.0 are forward compatible with this change.\nHowever, messages that are constructed with the required EC CMM are not backward compatible with ESDK \u0026lt;4.0.0,\nas no version of ESDK \u0026lt;4.0.0 supports reading messages encrypted with the required EC CMM.\nA message that is encrypted with the required EC CMM from the MPL must be decrypted with a CMM from the MPL.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eFixes\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/blob/master/CHANGELOG.rst\"\u003eaws-encryption-sdk's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e4.0.3 -- 2025-09-03\u003c/h1\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ccode\u003eMPL\u003c/code\u003e_ versions to include v1.11.1\n\u003ccode\u003e[#770](https://github.com/aws/aws-encryption-sdk-python/issues/770) \u0026lt;https://github.com/aws/aws-encryption-sdk-python/pull/770\u0026gt;\u003c/code\u003e_\u003c/p\u003e\n\u003cp\u003eMPL v1.11.1 updates pytz version range to include 2025 releases.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.0.2 -- 2025-06-30\u003c/h1\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ccode\u003eMPL\u003c/code\u003e_ versions to include v1.11.0\n\u003ccode\u003e[#763](https://github.com/aws/aws-encryption-sdk-python/issues/763) \u0026lt;https://github.com/aws/aws-encryption-sdk-python/pull/763\u0026gt;\u003c/code\u003e_\u003c/p\u003e\n\u003cp\u003eMPL v1.11.0 contains performance improvements for the hierarchical keyring and\nextends the range of supported \u003ccode\u003ecryptography\u003c/code\u003e versions.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.0.1 -- 2025-03-26\u003c/h1\u003e\n\u003ch2\u003eFixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003efix: Improve header serialization\n\u003ccode\u003e[#747](https://github.com/aws/aws-encryption-sdk-python/issues/747) \u0026lt;https://github.com/aws/aws-encryption-sdk-python/pull/747\u0026gt;\u003c/code\u003e_\u003c/p\u003e\n\u003cp\u003eESDK-Python \u0026lt;4.0.1 would truncate non-ASCII key provider IDs it wrote to message headers.\nIf a Raw or Custom MasterKeyProvider or Keyring supplied a non-ASCII key provider ID / key namespace,\nESDK-Python would truncate the the key provider ID it wrote to the message's header.\nThe message can be decrypted by replacing the truncated provider ID with the expected provider ID in decryption code.\nContact AWS for any questions about this approach.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003edeps: Extend supported \u003ccode\u003eMPL\u003c/code\u003e_ versions to include v1.10.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.0.0 -- 2024-10-29\u003c/h1\u003e\n\u003ch2\u003eFeatures\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eAdd support for constructs from the \u003ccode\u003eAWS Cryptographic Material Providers Library (MPL) \u0026lt;https://github.com/aws/aws-cryptographic-material-providers-library\u0026gt;\u003c/code\u003e\u003cem\u003e.\nThe MPL contains new constructs for encrypting and decrypting your data.\nWe highly recommend installing the MPL. See \u003ccode\u003eInstalling \u0026lt;https://github.com/aws/aws-encryption-sdk-python/tree/master?tab=readme-ov-file#installation\u0026gt;\u003c/code\u003e\u003c/em\u003e for instructions.\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eBreaking Changes\n^^^^^^^^^^^^^^^^\u003c/p\u003e\n\u003c!-- raw HTML omitted --\u003e\n\u003c/blockquote\u003e\n\u003cp\u003e... (truncated)\u003c/p\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/d316a1835869a27b76ff6dfe8db6897e85f6eebd\"\u003e\u003ccode\u003ed316a18\u003c/code\u003e\u003c/a\u003e chore: update CHANGELOG for v4.0.3 (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/770\"\u003e#770\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/cbfab663e94c4ed1db5211886770e1aa403a7c67\"\u003e\u003ccode\u003ecbfab66\u003c/code\u003e\u003c/a\u003e chore(CI): clean up gha and unused files (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/767\"\u003e#767\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/ee9e3f86903006f256e652a172ae493a2fbbb523\"\u003e\u003ccode\u003eee9e3f8\u003c/code\u003e\u003c/a\u003e chore: remove uploading fake artifacts during release (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/765\"\u003e#765\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/848f1714d2b5c8469cc41266f4215bb7aaefed55\"\u003e\u003ccode\u003e848f171\u003c/code\u003e\u003c/a\u003e chore: Update CHANGELOG for v4.0.2 (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/763\"\u003e#763\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/b423f5c9a8e18294e4bce6d74b0001ec5bf9d6ac\"\u003e\u003ccode\u003eb423f5c\u003c/code\u003e\u003c/a\u003e chore(CI): Use Github Actions to start CodeBuild builds (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/762\"\u003e#762\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/0dd4e16d10fc139e24908bfd0008d57680b064e9\"\u003e\u003ccode\u003e0dd4e16\u003c/code\u003e\u003c/a\u003e chore: Update SUPPORT_POLICY.rst (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/756\"\u003e#756\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/37fb387af48c0acbadecd245b32943496d8d24a2\"\u003e\u003ccode\u003e37fb387\u003c/code\u003e\u003c/a\u003e chore(deps): bump setuptools from 66.1.1 to 70.0.0 in /dev_requirements (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/712\"\u003e#712\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/18352146239976a93dfd26955b5b695e5a62ab68\"\u003e\u003ccode\u003e1835214\u003c/code\u003e\u003c/a\u003e fix: Improve header serialization (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/747\"\u003e#747\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/899af22c25fdd5d896817e40514b5ea0e1537e90\"\u003e\u003ccode\u003e899af22\u003c/code\u003e\u003c/a\u003e chore(CI): Build test vectors from source (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/724\"\u003e#724\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/8a9d97bb79076ed648ff4337b43dee1bd2ed807b\"\u003e\u003ccode\u003e8a9d97b\u003c/code\u003e\u003c/a\u003e chore: Update release policy, fix linter (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/733\"\u003e#733\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eAdditional commits viewable in \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/compare/v3.3.0...v4.0.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=aws-encryption-sdk\u0026package-manager=uv\u0026previous-version=3.3.0\u0026new-version=4.0.3)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot merge` will merge this PR after your CI passes on it\n- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it\n- `@dependabot cancel merge` will cancel a previously requested merge and block automerging\n- `@dependabot reopen` will reopen this PR if it is closed\n- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/jerny-stoiclane/uv-dependabot-wtf/pull/3","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/jerny-stoiclane%2Fuv-dependabot-wtf/issues/3","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/3/packages"}},{"old_version":"4.0.0","new_version":"4.0.3","update_type":"patch","path":null,"pr_created_at":"2025-09-13T12:11:48.000Z","version_change":"4.0.0 → 4.0.3","issue":{"uuid":"2825215480","node_id":"PR_kwDOEZqEkM6oZV34","number":1033,"state":"open","title":"Bump aws-encryption-sdk from 4.0.0 to 4.0.3","user":"dependabot[bot]","labels":["dependencies","python:uv"],"assignees":[],"locked":false,"comments_count":0,"pull_request":true,"closed_at":null,"author_association":"CONTRIBUTOR","state_reason":null,"created_at":"2025-09-13T12:11:48.000Z","updated_at":"2025-09-13T12:11:49.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"Bump","packages":[{"name":"aws-encryption-sdk","old_version":"4.0.0","new_version":"4.0.3","repository_url":"https://github.com/aws/aws-encryption-sdk-python"}],"path":null,"ecosystem":"pip"},"body":"Bumps [aws-encryption-sdk](https://github.com/aws/aws-encryption-sdk-python) from 4.0.0 to 4.0.3.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/releases\"\u003eaws-encryption-sdk's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.0.3 -- 2025-09-03\u003c/h2\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ca href=\"https://github.com/aws/aws-cryptographic-material-providers-library\"\u003eMPL\u003c/a\u003e versions to include v1.11.1 \u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/pull/770\"\u003eaws/aws-encryption-sdk-python#770\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eMPL v1.11.1 updates pytz version range to include 2025 releases.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.0.2 -- 2025-06-30\u003c/h2\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ca href=\"https://pypi.org/project/aws-cryptographic-material-providers/\"\u003eMPL\u003c/a\u003e versions to include v1.11.0. (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/763\"\u003e#763\u003c/a\u003e)\u003c/p\u003e\n\u003cp\u003eMPL v1.11.0 contains performance improvements for the hierarchical keyring and\nextends the range of supported \u003ccode\u003ecryptography\u003c/code\u003e versions.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003e4.0.1 -- 2025-03-27\u003c/h2\u003e\n\u003ch2\u003eFixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003efix: Improve header serialization (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/747\"\u003e#747\u003c/a\u003e)\u003c/p\u003e\n\u003cp\u003eESDK-Python \u0026lt;4.0.1 would truncate non-ASCII key provider IDs it wrote to message headers.\nIf a Raw or Custom MasterKeyProvider or Keyring supplied a non-ASCII key provider ID / key namespace,\nESDK-Python would truncate the the key provider ID it wrote to the message's header.\nThe message can be decrypted by replacing the truncated provider ID with the expected provider ID in decryption code.\nContact AWS for any questions about this approach.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003edeps: Extend supported \u003ca href=\"https://pypi.org/project/aws-cryptographic-material-providers/\"\u003eMPL\u003c/a\u003e versions to include v1.10.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/blob/master/CHANGELOG.rst\"\u003eaws-encryption-sdk's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e4.0.3 -- 2025-09-03\u003c/h1\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ccode\u003eMPL\u003c/code\u003e_ versions to include v1.11.1\n\u003ccode\u003e[#770](https://github.com/aws/aws-encryption-sdk-python/issues/770) \u0026lt;https://github.com/aws/aws-encryption-sdk-python/pull/770\u0026gt;\u003c/code\u003e_\u003c/p\u003e\n\u003cp\u003eMPL v1.11.1 updates pytz version range to include 2025 releases.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.0.2 -- 2025-06-30\u003c/h1\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ccode\u003eMPL\u003c/code\u003e_ versions to include v1.11.0\n\u003ccode\u003e[#763](https://github.com/aws/aws-encryption-sdk-python/issues/763) \u0026lt;https://github.com/aws/aws-encryption-sdk-python/pull/763\u0026gt;\u003c/code\u003e_\u003c/p\u003e\n\u003cp\u003eMPL v1.11.0 contains performance improvements for the hierarchical keyring and\nextends the range of supported \u003ccode\u003ecryptography\u003c/code\u003e versions.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch1\u003e4.0.1 -- 2025-03-26\u003c/h1\u003e\n\u003ch2\u003eFixes\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003efix: Improve header serialization\n\u003ccode\u003e[#747](https://github.com/aws/aws-encryption-sdk-python/issues/747) \u0026lt;https://github.com/aws/aws-encryption-sdk-python/pull/747\u0026gt;\u003c/code\u003e_\u003c/p\u003e\n\u003cp\u003eESDK-Python \u0026lt;4.0.1 would truncate non-ASCII key provider IDs it wrote to message headers.\nIf a Raw or Custom MasterKeyProvider or Keyring supplied a non-ASCII key provider ID / key namespace,\nESDK-Python would truncate the the key provider ID it wrote to the message's header.\nThe message can be decrypted by replacing the truncated provider ID with the expected provider ID in decryption code.\nContact AWS for any questions about this approach.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003edeps: Extend supported \u003ccode\u003eMPL\u003c/code\u003e_ versions to include v1.10.0\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/d316a1835869a27b76ff6dfe8db6897e85f6eebd\"\u003e\u003ccode\u003ed316a18\u003c/code\u003e\u003c/a\u003e chore: update CHANGELOG for v4.0.3 (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/770\"\u003e#770\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/cbfab663e94c4ed1db5211886770e1aa403a7c67\"\u003e\u003ccode\u003ecbfab66\u003c/code\u003e\u003c/a\u003e chore(CI): clean up gha and unused files (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/767\"\u003e#767\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/ee9e3f86903006f256e652a172ae493a2fbbb523\"\u003e\u003ccode\u003eee9e3f8\u003c/code\u003e\u003c/a\u003e chore: remove uploading fake artifacts during release (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/765\"\u003e#765\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/848f1714d2b5c8469cc41266f4215bb7aaefed55\"\u003e\u003ccode\u003e848f171\u003c/code\u003e\u003c/a\u003e chore: Update CHANGELOG for v4.0.2 (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/763\"\u003e#763\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/b423f5c9a8e18294e4bce6d74b0001ec5bf9d6ac\"\u003e\u003ccode\u003eb423f5c\u003c/code\u003e\u003c/a\u003e chore(CI): Use Github Actions to start CodeBuild builds (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/762\"\u003e#762\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/0dd4e16d10fc139e24908bfd0008d57680b064e9\"\u003e\u003ccode\u003e0dd4e16\u003c/code\u003e\u003c/a\u003e chore: Update SUPPORT_POLICY.rst (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/756\"\u003e#756\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/37fb387af48c0acbadecd245b32943496d8d24a2\"\u003e\u003ccode\u003e37fb387\u003c/code\u003e\u003c/a\u003e chore(deps): bump setuptools from 66.1.1 to 70.0.0 in /dev_requirements (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/712\"\u003e#712\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/18352146239976a93dfd26955b5b695e5a62ab68\"\u003e\u003ccode\u003e1835214\u003c/code\u003e\u003c/a\u003e fix: Improve header serialization (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/747\"\u003e#747\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/899af22c25fdd5d896817e40514b5ea0e1537e90\"\u003e\u003ccode\u003e899af22\u003c/code\u003e\u003c/a\u003e chore(CI): Build test vectors from source (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/724\"\u003e#724\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/8a9d97bb79076ed648ff4337b43dee1bd2ed807b\"\u003e\u003ccode\u003e8a9d97b\u003c/code\u003e\u003c/a\u003e chore: Update release policy, fix linter (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/733\"\u003e#733\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/compare/v4.0.0...v4.0.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=aws-encryption-sdk\u0026package-manager=uv\u0026previous-version=4.0.0\u0026new-version=4.0.3)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot merge` will merge this PR after your CI passes on it\n- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it\n- `@dependabot cancel merge` will cancel a previously requested merge and block automerging\n- `@dependabot reopen` will reopen this PR if it is closed\n- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/aiarena/aiarena-web/pull/1033","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/aiarena%2Faiarena-web/issues/1033","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/1033/packages"}},{"old_version":"4.0.2","new_version":"4.0.3","update_type":"patch","path":null,"pr_created_at":"2025-09-04T03:43:13.000Z","version_change":"4.0.2 → 4.0.3","issue":{"uuid":"3382018266","node_id":"PR_kwDODTo4k86mxF6e","number":7305,"state":"open","title":"chore(deps): bump aws-encryption-sdk from 4.0.2 to 4.0.3","user":"dependabot[bot]","labels":["dependencies","internal","size/XS","python"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":null,"author_association":"CONTRIBUTOR","state_reason":null,"created_at":"2025-09-04T03:43:13.000Z","updated_at":"2025-09-04T09:55:40.000Z","time_to_close":null,"merged_at":null,"merged_by":null,"closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"aws-encryption-sdk","old_version":"4.0.2","new_version":"4.0.3","repository_url":"https://github.com/aws/aws-encryption-sdk-python"}],"path":null,"ecosystem":"pip"},"body":"[//]: # (dependabot-start)\n⚠️  **Dependabot is rebasing this PR** ⚠️ \n\nRebasing might not happen immediately, so don't worry if this takes some time.\n\nNote: if you make any changes to this PR yourself, they will take precedence over the rebase.\n\n---\n\n[//]: # (dependabot-end)\n\nBumps [aws-encryption-sdk](https://github.com/aws/aws-encryption-sdk-python) from 4.0.2 to 4.0.3.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/releases\"\u003eaws-encryption-sdk's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.0.3 -- 2025-09-03\u003c/h2\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ca href=\"https://github.com/aws/aws-cryptographic-material-providers-library\"\u003eMPL\u003c/a\u003e versions to include v1.11.1 \u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/pull/770\"\u003eaws/aws-encryption-sdk-python#770\u003c/a\u003e\u003c/p\u003e\n\u003cp\u003eMPL v1.11.1 updates pytz version range to include 2025 releases.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/blob/master/CHANGELOG.rst\"\u003eaws-encryption-sdk's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e4.0.3 -- 2025-09-03\u003c/h1\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ccode\u003eMPL\u003c/code\u003e_ versions to include v1.11.1\n\u003ccode\u003e[#770](https://github.com/aws/aws-encryption-sdk-python/issues/770) \u0026lt;https://github.com/aws/aws-encryption-sdk-python/pull/770\u0026gt;\u003c/code\u003e_\u003c/p\u003e\n\u003cp\u003eMPL v1.11.1 updates pytz version range to include 2025 releases.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/d316a1835869a27b76ff6dfe8db6897e85f6eebd\"\u003e\u003ccode\u003ed316a18\u003c/code\u003e\u003c/a\u003e chore: update CHANGELOG for v4.0.3 (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/770\"\u003e#770\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/cbfab663e94c4ed1db5211886770e1aa403a7c67\"\u003e\u003ccode\u003ecbfab66\u003c/code\u003e\u003c/a\u003e chore(CI): clean up gha and unused files (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/767\"\u003e#767\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/compare/v4.0.2...v4.0.3\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=aws-encryption-sdk\u0026package-manager=pip\u0026previous-version=4.0.2\u0026new-version=4.0.3)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot merge` will merge this PR after your CI passes on it\n- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it\n- `@dependabot cancel merge` will cancel a previously requested merge and block automerging\n- `@dependabot reopen` will reopen this PR if it is closed\n- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/aws-powertools/powertools-lambda-python/pull/7305","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws-powertools%2Fpowertools-lambda-python/issues/7305","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/7305/packages"}},{"old_version":"4.0.1","new_version":"4.0.2","update_type":"patch","path":null,"pr_created_at":"2025-07-02T20:43:55.000Z","version_change":"4.0.1 → 4.0.2","issue":{"uuid":"2636540763","node_id":"PR_kwDODTo4k86dJmtb","number":6932,"state":"closed","title":"chore(deps): bump aws-encryption-sdk from 4.0.1 to 4.0.2","user":"dependabot[bot]","labels":["dependencies","internal","size/XS","python"],"assignees":[],"locked":false,"comments_count":1,"pull_request":true,"closed_at":"2025-07-02T22:30:58.000Z","author_association":"CONTRIBUTOR","state_reason":null,"created_at":"2025-07-02T20:43:55.000Z","updated_at":"2025-07-02T22:30:58.000Z","time_to_close":6423,"merged_at":"2025-07-02T22:30:58.000Z","merged_by":"anafalcao","closed_by":null,"dependency_metadata":{"prefix":"chore(deps)","packages":[{"name":"aws-encryption-sdk","old_version":"4.0.1","new_version":"4.0.2","repository_url":"https://github.com/aws/aws-encryption-sdk-python"}],"path":null,"ecosystem":"pip"},"body":"Bumps [aws-encryption-sdk](https://github.com/aws/aws-encryption-sdk-python) from 4.0.1 to 4.0.2.\n\u003cdetails\u003e\n\u003csummary\u003eRelease notes\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/releases\"\u003eaws-encryption-sdk's releases\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch2\u003e4.0.2 -- 2025-06-30\u003c/h2\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ca href=\"https://pypi.org/project/aws-cryptographic-material-providers/\"\u003eMPL\u003c/a\u003e versions to include v1.11.0. (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/763\"\u003e#763\u003c/a\u003e)\u003c/p\u003e\n\u003cp\u003eMPL v1.11.0 contains performance improvements for the hierarchical keyring and\nextends the range of supported \u003ccode\u003ecryptography\u003c/code\u003e versions.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eChangelog\u003c/summary\u003e\n\u003cp\u003e\u003cem\u003eSourced from \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/blob/master/CHANGELOG.rst\"\u003eaws-encryption-sdk's changelog\u003c/a\u003e.\u003c/em\u003e\u003c/p\u003e\n\u003cblockquote\u003e\n\u003ch1\u003e4.0.2 -- 2025-06-30\u003c/h1\u003e\n\u003ch2\u003eMaintenance\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003edeps: Extend supported \u003ccode\u003eMPL\u003c/code\u003e_ versions to include v1.11.0\n\u003ccode\u003e[#763](https://github.com/aws/aws-encryption-sdk-python/issues/763) \u0026lt;https://github.com/aws/aws-encryption-sdk-python/pull/763\u0026gt;\u003c/code\u003e_\u003c/p\u003e\n\u003cp\u003eMPL v1.11.0 contains performance improvements for the hierarchical keyring and\nextends the range of supported \u003ccode\u003ecryptography\u003c/code\u003e versions.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/blockquote\u003e\n\u003c/details\u003e\n\u003cdetails\u003e\n\u003csummary\u003eCommits\u003c/summary\u003e\n\u003cul\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/ee9e3f86903006f256e652a172ae493a2fbbb523\"\u003e\u003ccode\u003eee9e3f8\u003c/code\u003e\u003c/a\u003e chore: remove uploading fake artifacts during release (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/765\"\u003e#765\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/848f1714d2b5c8469cc41266f4215bb7aaefed55\"\u003e\u003ccode\u003e848f171\u003c/code\u003e\u003c/a\u003e chore: Update CHANGELOG for v4.0.2 (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/763\"\u003e#763\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/b423f5c9a8e18294e4bce6d74b0001ec5bf9d6ac\"\u003e\u003ccode\u003eb423f5c\u003c/code\u003e\u003c/a\u003e chore(CI): Use Github Actions to start CodeBuild builds (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/762\"\u003e#762\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/0dd4e16d10fc139e24908bfd0008d57680b064e9\"\u003e\u003ccode\u003e0dd4e16\u003c/code\u003e\u003c/a\u003e chore: Update SUPPORT_POLICY.rst (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/756\"\u003e#756\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003e\u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/commit/37fb387af48c0acbadecd245b32943496d8d24a2\"\u003e\u003ccode\u003e37fb387\u003c/code\u003e\u003c/a\u003e chore(deps): bump setuptools from 66.1.1 to 70.0.0 in /dev_requirements (\u003ca href=\"https://redirect.github.com/aws/aws-encryption-sdk-python/issues/712\"\u003e#712\u003c/a\u003e)\u003c/li\u003e\n\u003cli\u003eSee full diff in \u003ca href=\"https://github.com/aws/aws-encryption-sdk-python/compare/v4.0.1...v4.0.2\"\u003ecompare view\u003c/a\u003e\u003c/li\u003e\n\u003c/ul\u003e\n\u003c/details\u003e\n\u003cbr /\u003e\n\n\n[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=aws-encryption-sdk\u0026package-manager=pip\u0026previous-version=4.0.1\u0026new-version=4.0.2)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)\n\nDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n\u003cdetails\u003e\n\u003csummary\u003eDependabot commands and options\u003c/summary\u003e\n\u003cbr /\u003e\n\nYou can trigger Dependabot actions by commenting on this PR:\n- `@dependabot rebase` will rebase this PR\n- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it\n- `@dependabot merge` will merge this PR after your CI passes on it\n- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it\n- `@dependabot cancel merge` will cancel a previously requested merge and block automerging\n- `@dependabot reopen` will reopen this PR if it is closed\n- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually\n- `@dependabot show \u003cdependency name\u003e ignore conditions` will show all of the ignore conditions of the specified dependency\n- `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)\n- `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n\u003c/details\u003e","html_url":"https://github.com/aws-powertools/powertools-lambda-python/pull/6932","url":"https://dependabot.ecosyste.ms/api/v1/hosts/GitHub/repositories/aws-powertools%2Fpowertools-lambda-python/issues/6932","packages_url":"https://dependabot.ecosyste.ms/api/v1/issues/6932/packages"}}]}