dependabot[bot]
2bcf90584c
Bump faker from 26.3.0 to 37.1.0
...
Bumps [faker](https://github.com/joke2k/faker ) from 26.3.0 to 37.1.0.
- [Release notes](https://github.com/joke2k/faker/releases )
- [Changelog](https://github.com/joke2k/faker/blob/master/CHANGELOG.md )
- [Commits](https://github.com/joke2k/faker/compare/v26.3.0...v37.1.0 )
---
updated-dependencies:
- dependency-name: faker
dependency-version: 37.1.0
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-05-01 14:13:12 +00:00
Alex Janousek
d1c105447a
Merge pull request #1679 from GSA/dependabot/pip/alembic-1.15.2
...
Bump alembic from 1.13.2 to 1.15.2
2025-05-01 10:11:05 -04:00
dependabot[bot]
cba7a712db
Bump alembic from 1.13.2 to 1.15.2
...
Bumps [alembic](https://github.com/sqlalchemy/alembic ) from 1.13.2 to 1.15.2.
- [Release notes](https://github.com/sqlalchemy/alembic/releases )
- [Changelog](https://github.com/sqlalchemy/alembic/blob/main/CHANGES )
- [Commits](https://github.com/sqlalchemy/alembic/commits )
---
updated-dependencies:
- dependency-name: alembic
dependency-version: 1.15.2
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-05-01 14:03:09 +00:00
Alex Janousek
739a08e203
Merge pull request #1680 from GSA/dependabot/pip/setuptools-80.1.0
...
Bump setuptools from 75.9.1 to 80.1.0
2025-05-01 10:01:05 -04:00
dependabot[bot]
eb76f2cee8
Bump setuptools from 75.9.1 to 80.1.0
...
Bumps [setuptools](https://github.com/pypa/setuptools ) from 75.9.1 to 80.1.0.
- [Release notes](https://github.com/pypa/setuptools/releases )
- [Changelog](https://github.com/pypa/setuptools/blob/main/NEWS.rst )
- [Commits](https://github.com/pypa/setuptools/compare/v75.9.1...v80.1.0 )
---
updated-dependencies:
- dependency-name: setuptools
dependency-version: 80.1.0
dependency-type: direct:development
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-04-30 21:15:51 +00:00
Andrew Shumway
9113062d98
Merge pull request #1674 from GSA/dependabot/pip/celery-5.5.2
...
Bump celery from 5.4.0 to 5.5.2
2025-04-30 10:51:46 -06:00
dependabot[bot]
6ef23b70a6
Bump celery from 5.4.0 to 5.5.2
...
Bumps [celery](https://github.com/celery/celery ) from 5.4.0 to 5.5.2.
- [Release notes](https://github.com/celery/celery/releases )
- [Changelog](https://github.com/celery/celery/blob/main/Changelog.rst )
- [Commits](https://github.com/celery/celery/compare/v5.4.0...v5.5.2 )
---
updated-dependencies:
- dependency-name: celery
dependency-version: 5.5.2
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-04-30 16:40:49 +00:00
Andrew Shumway
0ce6c6b263
Merge pull request #1675 from GSA/dependabot/pip/phonenumbers-9.0.4
...
Bump phonenumbers from 8.13.55 to 9.0.4
2025-04-30 10:38:29 -06:00
Cliff Hill
f1df78b4ba
Merge pull request #1677 from GSA/update-rotate-creds-runbook
...
Expand the credential/secret rotation runbook
2025-04-29 12:39:29 -04:00
Carlo Costino
debb14d216
Updated Login.gov section
...
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov >
2025-04-28 17:15:08 -04:00
Carlo Costino
01b9ea451a
Expand the credential/secret rotation runbook
...
This changeset adds a bunch of new information on how to manage environment variables and credentials in our application.
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov >
2025-04-28 17:01:59 -04:00
Beverly Nguyen
1242c524a5
Merge pull request #1676 from GSA/add-daily-scan-runbook
...
Add runbook for reviewing daily scans
2025-04-28 11:31:03 -07:00
Carlo Costino
4c91629ee8
Add runbook for reviewing daily scans
...
This changeset adds a new runbook to our documentation that explains how to review our daily scans for new findings.
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov >
2025-04-28 11:36:44 -04:00
dependabot[bot]
a74e5d15a4
Bump phonenumbers from 8.13.55 to 9.0.4
...
Bumps [phonenumbers](https://github.com/daviddrysdale/python-phonenumbers ) from 8.13.55 to 9.0.4.
- [Commits](https://github.com/daviddrysdale/python-phonenumbers/compare/v8.13.55...v9.0.4 )
---
updated-dependencies:
- dependency-name: phonenumbers
dependency-version: 9.0.4
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-04-25 21:06:06 +00:00
ccostino
6689214317
Merge pull request #1673 from GSA/update-dns-runbook
...
Update instructions for managing DNS and domain configuration
2025-04-25 15:25:54 -04:00
Carlo Costino
6824c45909
Fix typos and clarify a couple more things
...
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov >
2025-04-25 15:17:42 -04:00
Carlo Costino
e8214e4a01
Update instructions for managing DNS and domain configuration
...
This changeset updates our runbook for the DNS and domain management:
* Add instructions and steps for how to perform the necessary actions to add and/or remove domains
* Update links to existing resources
* Add links to additional documentation
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov >
2025-04-25 13:39:17 -04:00
Beverly Nguyen
1302c15275
Merge pull request #1669 from GSA/dependabot/pip/h11-0.16.0
...
Bump h11 from 0.14.0 to 0.16.0
2025-04-24 12:33:54 -07:00
dependabot[bot]
71bbd6a375
Bump h11 from 0.14.0 to 0.16.0
...
Bumps [h11](https://github.com/python-hyper/h11 ) from 0.14.0 to 0.16.0.
- [Commits](https://github.com/python-hyper/h11/compare/v0.14.0...v0.16.0 )
---
updated-dependencies:
- dependency-name: h11
dependency-version: 0.16.0
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-04-24 19:10:43 +00:00
Cliff Hill
2fb1e96ba2
Merge pull request #1656 from GSA/login_gov_cert
...
refreshing login.gov cert instructions
4-24-2025
2025-04-24 11:53:41 -04:00
Andrew Shumway
9f0b6b0ca1
Merge pull request #1664 from GSA/dependabot/pip/packaging-25.0
...
Bump packaging from 24.2 to 25.0
2025-04-24 09:46:03 -06:00
dependabot[bot]
7dd1751556
Bump packaging from 24.2 to 25.0
...
Bumps [packaging](https://github.com/pypa/packaging ) from 24.2 to 25.0.
- [Release notes](https://github.com/pypa/packaging/releases )
- [Changelog](https://github.com/pypa/packaging/blob/main/CHANGELOG.rst )
- [Commits](https://github.com/pypa/packaging/compare/24.2...25.0 )
---
updated-dependencies:
- dependency-name: packaging
dependency-version: '25.0'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-04-24 15:25:37 +00:00
Andrew Shumway
3ae7749d0b
Merge pull request #1663 from GSA/dependabot/pip/python-json-logger-3.3.0
...
Bump python-json-logger from 2.0.7 to 3.3.0
2025-04-24 09:23:24 -06:00
dependabot[bot]
f6cc4afab7
Bump python-json-logger from 2.0.7 to 3.3.0
...
Bumps [python-json-logger](https://github.com/nhairs/python-json-logger ) from 2.0.7 to 3.3.0.
- [Release notes](https://github.com/nhairs/python-json-logger/releases )
- [Changelog](https://github.com/nhairs/python-json-logger/blob/main/docs/changelog.md )
- [Commits](https://github.com/nhairs/python-json-logger/compare/v2.0.7...v3.3.0 )
---
updated-dependencies:
- dependency-name: python-json-logger
dependency-version: 3.3.0
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-04-24 15:11:34 +00:00
Andrew Shumway
6325849855
Merge pull request #1662 from GSA/dependabot/pip/flask-migrate-4.1.0
...
Bump flask-migrate from 4.0.7 to 4.1.0
2025-04-24 09:09:24 -06:00
dependabot[bot]
b564a8800e
Bump flask-migrate from 4.0.7 to 4.1.0
...
Bumps [flask-migrate](https://github.com/miguelgrinberg/flask-migrate ) from 4.0.7 to 4.1.0.
- [Release notes](https://github.com/miguelgrinberg/flask-migrate/releases )
- [Changelog](https://github.com/miguelgrinberg/Flask-Migrate/blob/main/CHANGES.md )
- [Commits](https://github.com/miguelgrinberg/flask-migrate/compare/v4.0.7...v4.1.0 )
---
updated-dependencies:
- dependency-name: flask-migrate
dependency-version: 4.1.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-04-23 22:08:21 +00:00
Andrew Shumway
43247e81bb
Merge pull request #1657 from GSA/dependabot/pip/click-8.1.8
...
Bump click from 8.1.7 to 8.1.8
2025-04-23 16:06:10 -06:00
dependabot[bot]
7f2325ea5e
Bump click from 8.1.7 to 8.1.8
...
Bumps [click](https://github.com/pallets/click ) from 8.1.7 to 8.1.8.
- [Release notes](https://github.com/pallets/click/releases )
- [Changelog](https://github.com/pallets/click/blob/main/CHANGES.rst )
- [Commits](https://github.com/pallets/click/compare/8.1.7...8.1.8 )
---
updated-dependencies:
- dependency-name: click
dependency-version: 8.1.8
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-04-23 21:55:43 +00:00
Andrew Shumway
bcd18ac936
Merge pull request #1658 from GSA/dependabot/pip/moto-5.1.4
...
Bump moto from 5.1.0 to 5.1.4
2025-04-23 15:53:36 -06:00
dependabot[bot]
7fc65dd4f5
Bump moto from 5.1.0 to 5.1.4
...
Bumps [moto](https://github.com/getmoto/moto ) from 5.1.0 to 5.1.4.
- [Release notes](https://github.com/getmoto/moto/releases )
- [Changelog](https://github.com/getmoto/moto/blob/master/CHANGELOG.md )
- [Commits](https://github.com/getmoto/moto/compare/5.1.0...5.1.4 )
---
updated-dependencies:
- dependency-name: moto
dependency-version: 5.1.4
dependency-type: direct:development
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-04-23 21:39:23 +00:00
Andrew Shumway
276446c57e
Merge pull request #1659 from GSA/dependabot/pip/numpy-2.2.5
...
Bump numpy from 2.2.4 to 2.2.5
2025-04-23 15:37:08 -06:00
dependabot[bot]
bc26231164
Bump numpy from 2.2.4 to 2.2.5
...
Bumps [numpy](https://github.com/numpy/numpy ) from 2.2.4 to 2.2.5.
- [Release notes](https://github.com/numpy/numpy/releases )
- [Changelog](https://github.com/numpy/numpy/blob/main/doc/RELEASE_WALKTHROUGH.rst )
- [Commits](https://github.com/numpy/numpy/compare/v2.2.4...v2.2.5 )
---
updated-dependencies:
- dependency-name: numpy
dependency-version: 2.2.5
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-04-23 21:29:37 +00:00
Andrew Shumway
8c80f2a462
Merge pull request #1660 from GSA/dependabot/pip/eventlet-0.39.1
...
Bump eventlet from 0.36.1 to 0.39.1
2025-04-23 15:27:25 -06:00
dependabot[bot]
4ccfc82c8c
Bump eventlet from 0.36.1 to 0.39.1
...
Bumps [eventlet](https://github.com/eventlet/eventlet ) from 0.36.1 to 0.39.1.
- [Changelog](https://github.com/eventlet/eventlet/blob/master/NEWS )
- [Commits](https://github.com/eventlet/eventlet/compare/0.36.1...0.39.1 )
---
updated-dependencies:
- dependency-name: eventlet
dependency-version: 0.39.1
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-04-22 21:28:21 +00:00
Kenneth Kehl
d99661863f
Update docs/all.md
...
Co-authored-by: ccostino <ccostino@users.noreply.github.com >
2025-04-22 07:08:02 -07:00
Cliff Hill
ebd0ed9365
Merge pull request #1634 from GSA/2401-add-in-flask-socketio-for-api-calls-rather-than-using-ajax
...
2401 add in flask socketio for api calls rather than using ajax
2025-04-21 16:33:47 -04:00
Kenneth Kehl
0a6bbe035a
refreshing login.gov cert instructions
2025-04-21 10:13:49 -07:00
Beverly Nguyen
02becbd1e5
removing run.py and unnecessary logs
2025-04-18 11:48:26 -07:00
Carlo Costino
419d6cee69
Update the flask-socketio config to play more nicely:
...
* Reverts run commands to what they previously were
* Addresses some outstanding linting/formatting
* Accounts for proper config initialization (CORS, Redis)
* Updates dependencies and pulls in latest changes from main
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov >
2025-04-16 17:43:10 -04:00
Carlo Costino
71e8f20b04
Merge branch 'main' into 2401-add-in-flask-socketio-for-api-calls-rather-than-using-ajax
2025-04-16 10:55:16 -04:00
Kenneth Kehl
db90cecd65
Merge pull request #1655 from GSA/intl_nums
...
fix default case for US numbers
2025-04-15 11:44:44 -07:00
Kenneth Kehl
e93e3f3690
cleanup
2025-04-15 11:36:09 -07:00
Kenneth Kehl
d1fab496f4
pull from main
2025-04-15 11:33:25 -07:00
Kenneth Kehl
1f4b408d1d
fix phone number check
2025-04-15 11:13:26 -07:00
Kenneth Kehl
f15d6128dc
fix default case for US numbers
2025-04-15 10:44:30 -07:00
Beverly Nguyen
3ad7a3b2fd
Merge pull request #1648 from GSA/update-makefile
...
Update Makefile to handle pre-existing git hooks
04-15-2025
2025-04-14 13:29:01 -07:00
ccostino
aea7249124
Merge pull request #1644 from GSA/dependabot/pip/numpy-2.2.4
...
Bump numpy from 2.2.3 to 2.2.4
2025-04-14 16:20:07 -04:00
Carlo Costino
bf3897729c
Create new command instead of trying to be fancy
...
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov >
2025-04-14 16:16:56 -04:00
Carlo Costino
8181eda049
Update Makefile to handle pre-existing git hooks
...
This changeset adds a bit of extra support to the bootstrap command to make sure that pre-existing git hooks do not interfere with the installation of the pre-commit git hooks.
Signed-off-by: Carlo Costino <carlo.costino@gsa.gov >
2025-04-14 15:45:03 -04:00
dependabot[bot]
e3d2e75182
Bump numpy from 2.2.3 to 2.2.4
...
Bumps [numpy](https://github.com/numpy/numpy ) from 2.2.3 to 2.2.4.
- [Release notes](https://github.com/numpy/numpy/releases )
- [Changelog](https://github.com/numpy/numpy/blob/main/doc/RELEASE_WALKTHROUGH.rst )
- [Commits](https://github.com/numpy/numpy/compare/v2.2.3...v2.2.4 )
---
updated-dependencies:
- dependency-name: numpy
dependency-version: 2.2.4
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-04-14 18:56:13 +00:00