diff --git a/backend_api_python/requirements-dev.txt b/backend_api_python/requirements-dev.txt index a322b7323..d5a2e19d5 100644 --- a/backend_api_python/requirements-dev.txt +++ b/backend_api_python/requirements-dev.txt @@ -3,4 +3,4 @@ pip-audit>=2.10.1,<3 pytest>=9.1.1,<10 pytest-cov>=7.1.0,<8 pytest-timeout>=2.4.0,<3 -ruff>=0.16.0,<0.17 +ruff>=0.16.2,<0.17 diff --git a/backend_api_python/requirements.txt b/backend_api_python/requirements.txt index 10a28cf4e..89943a5e6 100644 --- a/backend_api_python/requirements.txt +++ b/backend_api_python/requirements.txt @@ -14,12 +14,12 @@ TA-Lib==0.7.1 exchange-calendars>=4.13.2,<5 requests>=2.34.2 websocket-client>=1.9.0,<2 -litellm>=1.93.0,<1.94 +litellm>=1.96.0,<1.97 # ccxt 4.5.73 pins certifi==2026.6.17. Keep the direct floor # aligned with the exchange client until ccxt relaxes its constraint. -certifi>=2026.6.17 +certifi>=2026.7.22 PySocks>=1.7.1 -akshare>=1.18.80 +akshare>=1.18.84 # GHSA-752w-5fwx-jx9f (crit header); 2.12.0+ PyJWT>=2.13.0,<3 python-dotenv>=1.2.2 @@ -36,14 +36,14 @@ prometheus-client>=0.26.0,<1 # Redis cache (optional but recommended for multi-worker setups). # Celery 5.6 / Kombu 5.6 currently require redis-py <6.5. This client remains # compatible with the Redis 8 server used by the production stack. -redis>=6.4.0,<6.5 +redis>=8.1.0,<8.2 # Durable background jobs and periodic maintenance celery[redis]>=5.6.3,<6 # Production WSGI server gunicorn>=26.0.0 # OpenAPI generation (flask-smorest) flask-smorest>=0.47.0,<0.48 -marshmallow>=4.3.0,<5 +marshmallow>=4.3.1,<5 PyYAML>=6.0.3 # Server-side PDF export for AI analysis reports # GHSA-fp3f-mc75-235c / GHSA-fwg2-594c-jp42 (unbounded PDF resource use); 6.15.0+ @@ -58,4 +58,4 @@ ib_insync>=0.9.86 # tavily-python>=0.3.0 # SerpAPI - Google/Bing search scraper (free 100 requests/month) # google-search-results>=2.4.0 -alpaca-py>=0.43.5 +alpaca-py>=0.44.0