fastapi>=0.115 uvicorn[standard]>=0.32 httpx>=0.27 python-dotenv>=1.0 itsdangerous>=2.2 pydantic>=2.9 anthropic>=0.39 google-generativeai>=0.8 openai>=1.50 PyYAML>=6.0 bcrypt>=4.2 # Transitive-dependency security floors (Patchwatch #37/#38/#39/#40). # tqdm and idna arrive transitively; these floor-pins force resolution to # the patched versions so the deployed environment clears the advisories. # tqdm>=4.66.3 covers GHSA-r7q7-xcjw-qx8q, GHSA-g7vv-2v7x-gj9p, PYSEC-2017-74. # idna>=3.15 covers GHSA-65pc-fj4g-8rjx (CVE-2024-3651 bypass). tqdm>=4.66.3 idna>=3.15