Files
aitbc/apps/plugin-service/pyproject.toml
aitbc bfcc8e3663
Some checks failed
Cross-Node Transaction Testing / transaction-test (push) Successful in 7s
Deploy to Testnet / deploy-testnet (push) Has started running
Multi-Node Stress Testing / stress-test (push) Has been cancelled
Node Failover Simulation / failover-test (push) Has been cancelled
Integration Tests / test-service-integration (push) Successful in 1m39s
Security Scanning / security-scan (push) Has been cancelled
security: update vulnerable dependencies in Python services
- Update FastAPI to >=0.115.6 across services (fixes starlette vulnerabilities)
- Update httpx to >=0.28.1 across services
- Update pytest to >=9.0.3 (fixes tmpdir handling vulnerability)
- Update pytest-asyncio to >=1.3.0
- Update black to >=26.3.1 (fixes high severity vulnerability)

Affected services:
- api-gateway
- ai-service
- monitoring-service
- openclaw-service
- plugin-service

Addresses GitHub dependabot alerts for:
- starlette (high/medium severity DoS vulnerabilities)
- pytest (medium severity tmpdir handling)
- black (high severity vulnerability)

Note: contracts uuid vulnerability deferred due to npm dependency conflicts
2026-05-02 16:23:28 +02:00

26 lines
608 B
TOML

[tool.poetry]
name = "plugin-service"
version = "0.1.0"
description = "AITBC Plugin Service for plugin registration, marketplace, and analytics"
authors = ["AITBC Team"]
[tool.poetry.dependencies]
python = "^3.13"
fastapi = ">=0.115.6"
uvicorn = {extras = ["standard"], version = "^0.32.0"}
sqlmodel = "^0.0.37"
sqlalchemy = "^2.0.25"
pydantic = "^2.6.0"
pydantic-settings = "^2.1.0"
httpx = ">=0.28.1"
[tool.poetry.group.dev.dependencies]
pytest = ">=9.0.3"
pytest-asyncio = ">=1.3.0"
black = ">=26.3.1"
ruff = "^0.1.0"
[build-system]
requires = ["poetry-core"]
build-backend = "poetry.core.masonry.api"