283 Commits

Author SHA1 Message Date
Carlo Costino
fe3c54707c Disable demo infrastructure drift check
This changeset disables the infrastructure drift check for our demo environment because we are no longer using the demo environment, and the infrastructure is in a known broken state.  More work will follow on in the future to clean things up fully.

Signed-off-by: Carlo Costino <carlo.costino@gsa.gov>
2025-10-29 10:27:59 -04:00
Kenneth Kehl
7d63d3b9d3 try again 2025-10-23 12:53:51 -07:00
Kenneth Kehl
b81fe0b246 migrate csv_upload_bucket to new provider 2025-10-23 11:35:27 -07:00
Kenneth Kehl
1af8e7ccfb start upgrading terraform provider 2025-10-23 09:50:56 -07:00
Kenneth Kehl
446565b9dd merge from main 2025-09-03 08:15:36 -07:00
Alex Janousek
7e573e1a6d Important downgrade to enable text message send again (#1953)
* Revert gevent to 25.5.1

* Add Dependabot ignore rule for gevent 25.8+

* Added dependabot rule
2025-09-02 10:26:58 -04:00
Kenneth Kehl
bdfa59830f upgrade python to 3.13.2 2025-08-28 07:26:45 -07:00
Carlo Costino
c6ae9636c2 Downgrade Python to 3.12.9 again
This changeset puts us back to Python 3.12.9 since we are still wrestling with certificate validation errors in Python 3.13 and no easy way to test things without breaking our deployment flow currently.

Signed-off-by: Carlo Costino <carlo.costino@gsa.gov>
2025-07-30 12:27:34 -04:00
Kenneth Kehl
e7cee89624 upgrade to python 3.13.2 2025-07-28 11:52:45 -07:00
alexjanousekGSA
e2c03cab93 Updated dependabot yml to remove depecrated review assignment 2025-07-21 12:03:22 -04:00
Kenneth Kehl
56e18515db upgrade to python 3.12.9 2025-06-27 07:07:32 -07:00
Kenneth Kehl
c3bc9e52ca upgrade to python 3.12.7 2025-06-26 07:16:07 -07:00
Kenneth Kehl
83068fcc0d revert python upgrade again 2025-06-25 13:36:42 -07:00
Kenneth Kehl
b3892ffb01 merge from main 2025-06-25 11:33:18 -07:00
Kenneth Kehl
c23e1a9679 upgrade to python 3.13.2 2025-06-18 13:23:51 -07:00
Kenneth Kehl
a359bdd930 fix drift 2025-06-18 10:06:16 -07:00
Kenneth Kehl
6a811c8297 merge from main 2025-06-17 10:17:04 -07:00
Kenneth Kehl
4aea4d1567 clean up 2025-06-17 07:17:04 -07:00
Kenneth Kehl
8ca8059c95 fix drift 2025-06-16 08:44:45 -07:00
Kenneth Kehl
ad3b3d97b3 lower coverage requirement temporarily 2025-06-10 10:44:57 -07:00
Kenneth Kehl
97ea02e85a manually roll python back to 3.12.2 2025-06-09 08:46:07 -07:00
Carlo Costino
ed4cbbc05b Unpin egress proxy release
This changeset unpins the egress proxy release now that we have resolved the other issues surrounding the connectivity to S3.

Signed-off-by: Carlo Costino <carlo.costino@gsa.gov>
2025-06-04 12:02:52 -04:00
Kenneth Kehl
57f98b1507 cleanup 2025-06-04 08:03:01 -07:00
Kenneth Kehl
965bb3047c update 2025-06-03 08:57:34 -07:00
Carlo Costino
8af59b1c55 Update daily checks to match PR checks
This changeset adds the same additional steps needed in our PR checks to make sure the daily checks work properly with the recent Poetry update.  It also updates our PR checks to use the latest pip-audit GitHub action.

Signed-off-by: Carlo Costino <carlo.costino@gsa.gov>
2025-06-02 09:23:02 -04:00
Carlo Costino
cf4deb083b Remove extra vulnerability from our ignore list
This changeset fixes an oversight where a vulnerability got added back to our ignore list.

Signed-off-by: Carlo Costino <carlo.costino@gsa.gov>
2025-05-30 16:28:03 -04:00
Kenneth Kehl
fb3bf6d9b1 okay upgrade to 3.13.2 now to stay in sync with admin 2025-05-30 12:35:27 -07:00
Kenneth Kehl
f7f92dd1f4 try python 3.13.3 2025-05-30 11:20:56 -07:00
Kenneth Kehl
ad17ddc23f try upgrading to python 3.13.1 2025-05-30 11:09:10 -07:00
Kenneth Kehl
72289ace08 python upgrade 2025-05-30 10:49:42 -07:00
Kenneth Kehl
3b5f11932f ugh secrets 2025-05-29 10:15:58 -07:00
Kenneth Kehl
59af82b0a4 merge from main 2025-05-29 08:05:46 -07:00
Carlo Costino
55e24a611a Updated pip-audit ignore-vulns
This changeset updates the PYSEC notices to ignore to due versions that either cannot be fixed or are false positives.  Specifically, this changeset removes previously ignored vulnerability reports and adds PYSEC-2023-312 to the list because it is a false positive and refers to Redis itself, not the Python Redis client (see https://github.com/pypa/advisory-database/issues/237 for details).

Signed-off-by: Carlo Costino <carlo.costino@gsa.gov>
2025-05-28 17:43:50 -04:00
Kenneth Kehl
1287be143c filter requirements text 2025-05-28 08:57:49 -07:00
Kenneth Kehl
976027d52f filter requirements text 2025-05-28 08:54:59 -07:00
Kenneth Kehl
bf9f01e526 filter requirements text 2025-05-28 08:40:17 -07:00
Kenneth Kehl
ca5b0b2230 filter requirements text 2025-05-28 08:33:55 -07:00
Kenneth Kehl
3c02ad92bb filter requirements text 2025-05-28 08:29:31 -07:00
Kenneth Kehl
87d29de41d filter requirements text 2025-05-28 08:16:38 -07:00
Kenneth Kehl
ebbb894245 upgrade poetry 2025-05-27 14:24:42 -07:00
Kenneth Kehl
22a0d9e287 upgrade poetry 2025-05-27 14:14:44 -07:00
alexjanousekGSA
0b0c0bdcd5 Updated dependabot assignee 2025-05-20 09:52:09 -04:00
Carlo Costino
d38ada100f Pin egress proxy release
This changeset pins the egress proxy to a previous release to help troubleshoot a potential issue with the underlying Caddy server update.

Signed-off-by: Carlo Costino <carlo.costino@gsa.gov>
2025-05-12 12:46:38 -04:00
Carlo Costino
a9c23db227 Pin virtualenv to a compatible version
This changeset addresses a conflict we had with an update to virtualenv that is preventing our project build steps from working.

Note that this is a temporary fix of sorts until we can get poetry fully updated along with a few other dependencies.

Signed-off-by: Carlo Costino <carlo.costino@gsa.gov>
2025-05-06 10:02:42 -04:00
Kenneth Kehl
c6df1ace1b fix static scan warnings 2025-04-01 09:26:22 -07:00
Kenneth Kehl
14f955ce97 add remaining vars 2025-03-21 09:37:14 -07:00
Kenneth Kehl
e535934d60 add remaining vars 2025-03-21 07:19:27 -07:00
Kenneth Kehl
dee0f7dc2d ugh revert and fix 2025-03-20 13:48:25 -07:00
Kenneth Kehl
73e40b91cb ugh revert and fix 2025-03-20 13:04:01 -07:00
Kenneth Kehl
361bde5480 ugh revert and fix 2025-03-20 12:27:14 -07:00