fastapi>=0.115
uvicorn[standard]>=0.32
httpx>=0.27
python-dotenv>=1.0
itsdangerous>=2.2
pydantic>=2.9
anthropic>=0.39
google-generativeai>=0.8
openai>=1.50
PyYAML>=6.0
bcrypt>=4.2

# Transitive-dependency security floors (Patchwatch #37/#38/#39/#40).
# tqdm and idna arrive transitively; these floor-pins force resolution to
# the patched versions so the deployed environment clears the advisories.
# tqdm>=4.66.3 covers GHSA-r7q7-xcjw-qx8q, GHSA-g7vv-2v7x-gj9p, PYSEC-2017-74.
# idna>=3.15 covers GHSA-65pc-fj4g-8rjx (CVE-2024-3651 bypass).
tqdm>=4.66.3
idna>=3.15
