Skip to content

Commit f0b8c2d

Browse files
authored
Fix Dependabot alerts for guardrails (#1977)
Signed-off-by: ZePan110 <ze.pan@intel.com>
1 parent 7abf7f4 commit f0b8c2d

File tree

12 files changed

+401
-422
lines changed

12 files changed

+401
-422
lines changed

comps/guardrails/src/bias_detection/requirements.in

Lines changed: 6 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -3,14 +3,19 @@ docarray[full]
33
fastapi
44
httpx
55
huggingface_hub
6-
langchain-community
6+
langchain-core>=0.3.81
7+
langchain-community>=0.3.27
78
langchain-huggingface
9+
langchain-text-splitters>=0.3.9
810
opentelemetry-api
911
opentelemetry-exporter-otlp
1012
opentelemetry-sdk
13+
pillow>=11.3.0
1114
prometheus-fastapi-instrumentator
1215
pyyaml
1316
requests
1417
shortuuid
18+
starlette>=0.49.1
1519
transformers
20+
urllib3>=2.6.0
1621
uvicorn

comps/guardrails/src/factuality_alignment/requirements.in

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -5,9 +5,11 @@ huggingface_hub
55
opentelemetry-api
66
opentelemetry-exporter-otlp
77
opentelemetry-sdk
8-
Pillow
8+
pillow>=11.3.0
99
predictionguard
1010
prometheus-fastapi-instrumentator
1111
shortuuid
12+
starlette>=0.49.1
1213
transformers
14+
urllib3>=2.6.0
1315
uvicorn
Lines changed: 61 additions & 66 deletions
Original file line numberDiff line numberDiff line change
@@ -1,209 +1,204 @@
11
# This file was autogenerated by uv via the following command:
2-
# uv pip compile ./comps/guardrails/src/factuality_alignment/requirements.in --universal -o ./comps/guardrails/src/factuality_alignment/requirements.txt
2+
# uv pip compile --python=/usr/local/bin/python3.11 ./comps/guardrails/src/factuality_alignment/requirements.in --universal -o ./comps/guardrails/src/factuality_alignment/requirements.txt
33
aiohappyeyeballs==2.6.1
44
# via aiohttp
5-
aiohttp==3.12.13
5+
aiohttp==3.13.2
66
# via -r ./comps/guardrails/src/factuality_alignment/requirements.in
7-
aiosignal==1.3.2
7+
aiosignal==1.4.0
88
# via aiohttp
9+
annotated-doc==0.0.4
10+
# via fastapi
911
annotated-types==0.7.0
1012
# via pydantic
11-
anyio==4.9.0
13+
anyio==4.12.0
1214
# via starlette
13-
async-timeout==5.0.1 ; python_full_version < '3.11'
15+
attrs==25.4.0
1416
# via aiohttp
15-
attrs==25.3.0
16-
# via aiohttp
17-
certifi==2025.6.15
17+
certifi==2025.11.12
1818
# via requests
19-
charset-normalizer==3.4.2
19+
charset-normalizer==3.4.4
2020
# via requests
21-
click==8.2.1
21+
click==8.3.1
2222
# via uvicorn
2323
colorama==0.4.6 ; sys_platform == 'win32'
2424
# via
2525
# click
2626
# tqdm
2727
docarray==0.41.0
2828
# via -r ./comps/guardrails/src/factuality_alignment/requirements.in
29-
exceptiongroup==1.3.0 ; python_full_version < '3.11'
30-
# via anyio
31-
fastapi==0.115.13
29+
fastapi==0.127.0
3230
# via -r ./comps/guardrails/src/factuality_alignment/requirements.in
33-
filelock==3.18.0
31+
filelock==3.20.1
3432
# via
3533
# huggingface-hub
3634
# transformers
37-
frozenlist==1.7.0
35+
frozenlist==1.8.0
3836
# via
3937
# aiohttp
4038
# aiosignal
41-
fsspec==2025.5.1
39+
fsspec==2025.12.0
4240
# via huggingface-hub
43-
googleapis-common-protos==1.70.0
41+
googleapis-common-protos==1.72.0
4442
# via
4543
# opentelemetry-exporter-otlp-proto-grpc
4644
# opentelemetry-exporter-otlp-proto-http
47-
grpcio==1.73.0
45+
grpcio==1.76.0
4846
# via opentelemetry-exporter-otlp-proto-grpc
4947
h11==0.16.0
5048
# via uvicorn
51-
hf-xet==1.1.4 ; platform_machine == 'aarch64' or platform_machine == 'amd64' or platform_machine == 'arm64' or platform_machine == 'x86_64'
49+
hf-xet==1.2.0 ; platform_machine == 'aarch64' or platform_machine == 'amd64' or platform_machine == 'arm64' or platform_machine == 'x86_64'
5250
# via huggingface-hub
53-
huggingface-hub==0.33.0
51+
huggingface-hub==0.36.0
5452
# via
5553
# -r ./comps/guardrails/src/factuality_alignment/requirements.in
5654
# tokenizers
5755
# transformers
58-
idna==3.10
56+
idna==3.11
5957
# via
6058
# anyio
6159
# requests
6260
# yarl
63-
importlib-metadata==8.7.0
61+
importlib-metadata==8.7.1
6462
# via opentelemetry-api
65-
markdown-it-py==3.0.0
63+
markdown-it-py==4.0.0
6664
# via rich
6765
mdurl==0.1.2
6866
# via markdown-it-py
69-
multidict==6.5.0
67+
multidict==6.7.0
7068
# via
7169
# aiohttp
7270
# yarl
7371
mypy-extensions==1.1.0
7472
# via typing-inspect
75-
numpy==2.2.6 ; python_full_version < '3.11'
76-
# via
77-
# docarray
78-
# transformers
79-
numpy==2.3.0 ; python_full_version >= '3.11'
73+
numpy==2.4.0
8074
# via
8175
# docarray
8276
# transformers
83-
opentelemetry-api==1.34.1
77+
opentelemetry-api==1.39.1
8478
# via
8579
# -r ./comps/guardrails/src/factuality_alignment/requirements.in
8680
# opentelemetry-exporter-otlp-proto-grpc
8781
# opentelemetry-exporter-otlp-proto-http
8882
# opentelemetry-sdk
8983
# opentelemetry-semantic-conventions
90-
opentelemetry-exporter-otlp==1.34.1
84+
opentelemetry-exporter-otlp==1.39.1
9185
# via -r ./comps/guardrails/src/factuality_alignment/requirements.in
92-
opentelemetry-exporter-otlp-proto-common==1.34.1
86+
opentelemetry-exporter-otlp-proto-common==1.39.1
9387
# via
9488
# opentelemetry-exporter-otlp-proto-grpc
9589
# opentelemetry-exporter-otlp-proto-http
96-
opentelemetry-exporter-otlp-proto-grpc==1.34.1
90+
opentelemetry-exporter-otlp-proto-grpc==1.39.1
9791
# via opentelemetry-exporter-otlp
98-
opentelemetry-exporter-otlp-proto-http==1.34.1
92+
opentelemetry-exporter-otlp-proto-http==1.39.1
9993
# via opentelemetry-exporter-otlp
100-
opentelemetry-proto==1.34.1
94+
opentelemetry-proto==1.39.1
10195
# via
10296
# opentelemetry-exporter-otlp-proto-common
10397
# opentelemetry-exporter-otlp-proto-grpc
10498
# opentelemetry-exporter-otlp-proto-http
105-
opentelemetry-sdk==1.34.1
99+
opentelemetry-sdk==1.39.1
106100
# via
107101
# -r ./comps/guardrails/src/factuality_alignment/requirements.in
108102
# opentelemetry-exporter-otlp-proto-grpc
109103
# opentelemetry-exporter-otlp-proto-http
110-
opentelemetry-semantic-conventions==0.55b1
104+
opentelemetry-semantic-conventions==0.60b1
111105
# via opentelemetry-sdk
112-
orjson==3.10.18
106+
orjson==3.11.5
113107
# via docarray
114108
packaging==25.0
115109
# via
116110
# huggingface-hub
117111
# transformers
118-
pillow==11.2.1
112+
pillow==12.0.0
119113
# via -r ./comps/guardrails/src/factuality_alignment/requirements.in
120-
predictionguard==2.8.2
114+
predictionguard==2.9.2 ; python_full_version < '3.12'
121115
# via -r ./comps/guardrails/src/factuality_alignment/requirements.in
122-
prometheus-client==0.22.1
116+
predictionguard==2.10.0 ; python_full_version >= '3.12'
117+
# via -r ./comps/guardrails/src/factuality_alignment/requirements.in
118+
prometheus-client==0.23.1
123119
# via prometheus-fastapi-instrumentator
124120
prometheus-fastapi-instrumentator==7.1.0
125121
# via -r ./comps/guardrails/src/factuality_alignment/requirements.in
126-
propcache==0.3.2
122+
propcache==0.4.1
127123
# via
128124
# aiohttp
129125
# yarl
130-
protobuf==5.29.5
126+
protobuf==6.33.2
131127
# via
132128
# googleapis-common-protos
133129
# opentelemetry-proto
134-
pydantic==2.11.7
130+
pydantic==2.12.5
135131
# via
136132
# docarray
137133
# fastapi
138-
pydantic-core==2.33.2
134+
pydantic-core==2.41.5
139135
# via pydantic
140-
pygments==2.19.1
136+
pygments==2.19.2
141137
# via rich
142-
pyyaml==6.0.2
138+
pyyaml==6.0.3
143139
# via
144140
# huggingface-hub
145141
# transformers
146-
regex==2024.11.6
142+
regex==2025.11.3
147143
# via transformers
148-
requests==2.32.4
144+
requests==2.32.5
149145
# via
150146
# huggingface-hub
151147
# opentelemetry-exporter-otlp-proto-http
152148
# predictionguard
153149
# transformers
154-
rich==14.0.0
150+
rich==14.2.0
155151
# via docarray
156-
safetensors==0.5.3
152+
safetensors==0.7.0
157153
# via transformers
158154
shortuuid==1.0.13
159155
# via -r ./comps/guardrails/src/factuality_alignment/requirements.in
160-
sniffio==1.3.1
161-
# via anyio
162-
starlette==0.46.2
156+
starlette==0.50.0
163157
# via
158+
# -r ./comps/guardrails/src/factuality_alignment/requirements.in
164159
# fastapi
165160
# prometheus-fastapi-instrumentator
166161
tabulate==0.9.0
167162
# via predictionguard
168-
tokenizers==0.21.1
163+
tokenizers==0.22.1
169164
# via transformers
170165
tqdm==4.67.1
171166
# via
172167
# huggingface-hub
173168
# transformers
174-
transformers==4.52.4
169+
transformers==4.57.3
175170
# via -r ./comps/guardrails/src/factuality_alignment/requirements.in
176-
types-requests==2.32.4.20250611
171+
types-requests==2.32.4.20250913
177172
# via docarray
178-
typing-extensions==4.14.0
173+
typing-extensions==4.15.0
179174
# via
175+
# aiosignal
180176
# anyio
181-
# exceptiongroup
182177
# fastapi
178+
# grpcio
183179
# huggingface-hub
184-
# multidict
185180
# opentelemetry-api
186181
# opentelemetry-exporter-otlp-proto-grpc
187182
# opentelemetry-exporter-otlp-proto-http
188183
# opentelemetry-sdk
189184
# opentelemetry-semantic-conventions
190185
# pydantic
191186
# pydantic-core
192-
# rich
187+
# starlette
193188
# typing-inspect
194189
# typing-inspection
195-
# uvicorn
196190
typing-inspect==0.9.0
197191
# via docarray
198-
typing-inspection==0.4.1
192+
typing-inspection==0.4.2
199193
# via pydantic
200-
urllib3==2.4.0
194+
urllib3==2.6.2
201195
# via
196+
# -r ./comps/guardrails/src/factuality_alignment/requirements.in
202197
# requests
203198
# types-requests
204-
uvicorn==0.34.3
199+
uvicorn==0.40.0
205200
# via -r ./comps/guardrails/src/factuality_alignment/requirements.in
206-
yarl==1.20.1
201+
yarl==1.22.0
207202
# via aiohttp
208203
zipp==3.23.0
209204
# via importlib-metadata

0 commit comments

Comments
 (0)