mirror of
https://github.com/GSA/notifications-api.git
synced 2026-07-31 11:48:51 -04:00
itsdangerous v1 uses sha512 instead of sha1 to sign and unsign its strings. Pin to 0.24 until we figure a migration plan, since it's used in a few places (In the DB, in email tokens, and sending blobs to celery at least).
37 lines
902 B
Plaintext
37 lines
902 B
Plaintext
# Run `make freeze-requirements` to update requirements.txt
|
|
# with package version changes made in requirements-app.txt
|
|
|
|
cffi==1.11.5
|
|
celery==3.1.26.post2 # pyup: <4
|
|
docopt==0.6.2
|
|
Flask-Bcrypt==0.7.1
|
|
flask-marshmallow==0.9.0
|
|
Flask-Migrate==2.3.0
|
|
Flask-SQLAlchemy==2.3.2
|
|
Flask==1.0.2
|
|
click-datetime==0.2
|
|
eventlet==0.23.0
|
|
gunicorn==19.7.1
|
|
iso8601==0.1.12
|
|
jsonschema==2.6.0
|
|
marshmallow-sqlalchemy==0.14.1
|
|
marshmallow==2.16.0
|
|
psycopg2-binary==2.7.5
|
|
PyJWT==1.6.4
|
|
SQLAlchemy==1.2.12
|
|
|
|
notifications-python-client==5.2.0
|
|
|
|
# PaaS
|
|
awscli==1.15.82 # pyup: ignore
|
|
awscli-cwlogs>=1.4,<1.5
|
|
botocore<1.11.0 # pyup: ignore
|
|
|
|
|
|
# Putting upgrade on hold due to v1.0.0 using sha512 instead of sha1 by default
|
|
itsdangerous==0.24 # pyup: <1.0.0
|
|
|
|
git+https://github.com/alphagov/notifications-utils.git@30.5.5#egg=notifications-utils==30.5.5
|
|
|
|
git+https://github.com/alphagov/boto.git@2.43.0-patch3#egg=boto==2.43.0-patch3
|