3e06753078
Bandit 1.6.0 accidentally changed how the exclusion list option is handled and breaks our use of it. Cap to the previous version until Bandit has fixed the problem. Sphinx 2.0 no longer works on python 2.7, so we need to start capping it there as well. Change-Id: I4ee88377e7123c165434765a73f27cabec8c8177 Reference: https://github.com/PyCQA/bandit/pull/489
14 lines
503 B
Plaintext
14 lines
503 B
Plaintext
# The order of packages is significant, because pip processes them in the order
|
|
# of appearance. Changing the order has an impact on the overall integration
|
|
# process, which may cause wedges in the gate later.
|
|
hacking>=1.1.0,<1.2.0 # Apache-2.0
|
|
mock>=2.0.0 # BSD
|
|
oslotest>=3.2.0 # Apache-2.0
|
|
pifpaf>=0.10.0 # Apache-2.0
|
|
# Bandit security code scanner
|
|
bandit>=1.1.0,<1.6.0 # Apache-2.0
|
|
stestr>=2.0.0 # Apache-2.0
|
|
python-memcached>=1.56 # PSF
|
|
pymongo!=3.1,>=3.0.2 # Apache-2.0
|
|
etcd3gw>=0.2.0 # Apache-2.0
|