- python-multipart: pin >=0.0.22 (arbitrary file write via non-default config) - requests: pin >=2.33.0 in litellm, langgraph, crewai integrations (insecure temp file reuse) Remaining unfixable alerts: diskcache (<=5.6.3, no patch) and Pygments (<=2.19.2, no patch).
63 lines
1.7 KiB
TOML
63 lines
1.7 KiB
TOML
[project]
|
|
name = "hindsight-crewai"
|
|
version = "0.4.19"
|
|
description = "CrewAI memory integration via Hindsight - persistent memory for AI agent crews"
|
|
readme = "README.md"
|
|
requires-python = ">=3.10"
|
|
license = { text = "MIT" }
|
|
authors = [
|
|
{ name = "Vectorize", email = "support@vectorize.io" }
|
|
]
|
|
keywords = [
|
|
"ai",
|
|
"memory",
|
|
"crewai",
|
|
"agents",
|
|
"hindsight",
|
|
]
|
|
classifiers = [
|
|
"Development Status :: 4 - Beta",
|
|
"Intended Audience :: Developers",
|
|
"License :: OSI Approved :: MIT License",
|
|
"Programming Language :: Python :: 3",
|
|
"Programming Language :: Python :: 3.10",
|
|
"Programming Language :: Python :: 3.11",
|
|
"Programming Language :: Python :: 3.12",
|
|
"Topic :: Scientific/Engineering :: Artificial Intelligence",
|
|
]
|
|
|
|
dependencies = [
|
|
"crewai>=0.86.0",
|
|
"hindsight-client>=0.4.0",
|
|
# Transitive dependency security fixes
|
|
"cryptography>=46.0.5", # Subgroup attack vulnerability fix
|
|
"pillow>=12.1.1", # Out-of-bounds write in PSD image loading fix
|
|
"pyjwt>=2.12.0", # Accepts unknown crit header extensions fix
|
|
"requests>=2.33.0", # Insecure temp file reuse in extract_zipped_paths()
|
|
]
|
|
|
|
[project.optional-dependencies]
|
|
dev = [
|
|
"pytest>=7.0.0",
|
|
"pytest-mock>=3.10.0",
|
|
]
|
|
|
|
[project.urls]
|
|
Homepage = "https://github.com/vectorize-io/hindsight"
|
|
Documentation = "https://github.com/vectorize-io/hindsight/tree/main/hindsight-integrations/crewai"
|
|
Repository = "https://github.com/vectorize-io/hindsight"
|
|
|
|
[build-system]
|
|
requires = ["hatchling"]
|
|
build-backend = "hatchling.build"
|
|
|
|
[tool.hatch.build.targets.wheel]
|
|
packages = ["hindsight_crewai"]
|
|
|
|
[tool.pytest.ini_options]
|
|
testpaths = ["tests"]
|
|
|
|
[dependency-groups]
|
|
dev = [
|
|
"pytest>=9.0.2",
|
|
]
|