
This patch bumps bandit allowed version to >=1.6.0,<1.7.0 in order to avoid the errors detailed here https://github.com/PyCQA/bandit/pull/393 Change-Id: I9235560667f664643007b8ca0be1707eab4126ad Signed-off-by: Moisés Guimarães de Medeiros <moguimar@redhat.com>
32 lines
922 B
Plaintext
32 lines
922 B
Plaintext
# The order of packages is significant, because pip processes them in the order
|
|
# of appearance. Changing the order has an impact on the overall integration
|
|
# process, which may cause wedges in the gate later.
|
|
|
|
# Hacking already pins down pep8, pyflakes and flake8
|
|
hacking>=3.0.1,<3.1.0 # Apache-2.0
|
|
|
|
fixtures>=3.0.0 # Apache-2.0/BSD
|
|
stestr>=2.0.0 # Apache-2.0
|
|
testscenarios>=0.4 # Apache-2.0/BSD
|
|
testtools>=2.2.0 # MIT
|
|
oslotest>=3.2.0 # Apache-2.0
|
|
pifpaf>=2.2.0 # Apache-2.0
|
|
|
|
# for test_impl_kafka
|
|
confluent-kafka>=0.11.6 # Apache-2.0
|
|
|
|
# when we can require tox>= 1.4, this can go into tox.ini:
|
|
# [testenv:cover]
|
|
# deps = {[testenv]deps} coverage
|
|
coverage!=4.4,>=4.0 # Apache-2.0
|
|
|
|
# AMQP 1.0 support depends on the Qpid Proton AMQP 1.0
|
|
# development libraries.
|
|
pyngus>=2.2.0 # Apache-2.0
|
|
|
|
# Bandit security code scanner
|
|
bandit>=1.6.0,<1.7.0 # Apache-2.0
|
|
|
|
eventlet!=0.18.3,!=0.20.1,>=0.18.2 # MIT
|
|
greenlet>=0.4.10 # MIT
|