Michael Roy
429b573d46
Update utils.py
...
Fix CodeQL alerts #1 and #2 : Secure exception handling in get_sentry and get_quiz 33,115
2025-06-02 09:51:12 -03:00
Michael Roy
04d3d48a50
Merge pull request #97 from Team-Deep-Impact/dependabot/pip/backend/pydantic-2.11.5
...
Bump pydantic from 2.9.2 to 2.11.5 in /backend
2025-06-02 09:44:42 -03:00
dependabot[bot]
8e9a760f6b
Bump pydantic from 2.9.2 to 2.11.5 in /backend
...
Bumps [pydantic](https://github.com/pydantic/pydantic ) from 2.9.2 to 2.11.5.
- [Release notes](https://github.com/pydantic/pydantic/releases )
- [Changelog](https://github.com/pydantic/pydantic/blob/main/HISTORY.md )
- [Commits](https://github.com/pydantic/pydantic/compare/v2.9.2...v2.11.5 )
---
updated-dependencies:
- dependency-name: pydantic
dependency-version: 2.11.5
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-06-02 12:44:08 +00:00
Michael Roy
a7d7bc322a
Merge pull request #99 from Team-Deep-Impact/dependabot/pip/backend/djangorestframework-3.16.0
...
Bump djangorestframework from 3.15.2 to 3.16.0 in /backend
2025-06-02 09:44:06 -03:00
Michael Roy
e97f78e1af
Merge pull request #98 from Team-Deep-Impact/dependabot/pip/backend/botocore-1.38.27
...
Bump botocore from 1.37.13 to 1.38.27 in /backend
2025-06-02 09:43:41 -03:00
dependabot[bot]
a7f714c5d6
Bump djangorestframework from 3.15.2 to 3.16.0 in /backend
...
Bumps [djangorestframework](https://github.com/encode/django-rest-framework ) from 3.15.2 to 3.16.0.
- [Release notes](https://github.com/encode/django-rest-framework/releases )
- [Commits](https://github.com/encode/django-rest-framework/compare/3.15.2...3.16.0 )
---
updated-dependencies:
- dependency-name: djangorestframework
dependency-version: 3.16.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-06-02 12:43:37 +00:00
dependabot[bot]
9e1505b747
Bump botocore from 1.37.13 to 1.38.27 in /backend
...
Bumps [botocore](https://github.com/boto/botocore ) from 1.37.13 to 1.38.27.
- [Commits](https://github.com/boto/botocore/compare/1.37.13...1.38.27 )
---
updated-dependencies:
- dependency-name: botocore
dependency-version: 1.38.27
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-06-02 12:43:23 +00:00
Michael Roy
6fec355676
Merge pull request #96 from Team-Deep-Impact/dependabot/pip/backend/django-cors-headers-4.7.0
...
Bump django-cors-headers from 4.6.0 to 4.7.0 in /backend
2025-06-02 09:42:43 -03:00
Michael Roy
4295e00ecf
Merge pull request #95 from Team-Deep-Impact/dependabot/pip/backend/pydantic-core-2.34.1
...
Bump pydantic-core from 2.23.4 to 2.34.1 in /backend
2025-06-02 09:42:24 -03:00
Michael Roy
0e872117b6
Merge pull request #94 from Team-Deep-Impact/dependabot/pip/backend/boto3-1.38.27
...
Bump boto3 from 1.37.13 to 1.38.27 in /backend
2025-06-02 09:42:04 -03:00
dependabot[bot]
234d30a2fd
Bump boto3 from 1.37.13 to 1.38.27 in /backend
...
Bumps [boto3](https://github.com/boto/boto3 ) from 1.37.13 to 1.38.27.
- [Release notes](https://github.com/boto/boto3/releases )
- [Commits](https://github.com/boto/boto3/compare/1.37.13...1.38.27 )
---
updated-dependencies:
- dependency-name: boto3
dependency-version: 1.38.27
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-06-02 12:41:48 +00:00
Michael Roy
89024e7525
Merge pull request #93 from Team-Deep-Impact/dependabot/pip/backend/cyclonedx-python-lib-10.0.1
...
Bump cyclonedx-python-lib from 9.1.0 to 10.0.1 in /backend
2025-06-02 09:41:43 -03:00
Michael Roy
8f23c03555
Merge pull request #92 from Team-Deep-Impact/dependabot/pip/backend/httpx-0.28.1
...
Bump httpx from 0.27.2 to 0.28.1 in /backend
2025-06-02 09:41:04 -03:00
Michael Roy
ecac96cdf9
Merge pull request #91 from Team-Deep-Impact/dependabot/pip/backend/s3transfer-0.13.0
...
Bump s3transfer from 0.11.4 to 0.13.0 in /backend
2025-06-02 09:40:32 -03:00
Michael Roy
5a6012f004
Merge pull request #90 from Team-Deep-Impact/dependabot/pip/backend/charset-normalizer-3.4.2
...
Bump charset-normalizer from 3.4.1 to 3.4.2 in /backend
2025-06-02 09:39:45 -03:00
dependabot[bot]
f19cb3c352
Bump django-cors-headers from 4.6.0 to 4.7.0 in /backend
...
Bumps [django-cors-headers](https://github.com/adamchainz/django-cors-headers ) from 4.6.0 to 4.7.0.
- [Changelog](https://github.com/adamchainz/django-cors-headers/blob/main/CHANGELOG.rst )
- [Commits](https://github.com/adamchainz/django-cors-headers/compare/4.6.0...4.7.0 )
---
updated-dependencies:
- dependency-name: django-cors-headers
dependency-version: 4.7.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-06-02 01:59:21 +00:00
dependabot[bot]
7169e0bdf1
Bump pydantic-core from 2.23.4 to 2.34.1 in /backend
...
Bumps [pydantic-core](https://github.com/pydantic/pydantic-core ) from 2.23.4 to 2.34.1.
- [Release notes](https://github.com/pydantic/pydantic-core/releases )
- [Commits](https://github.com/pydantic/pydantic-core/compare/v2.23.4...v2.34.1 )
---
updated-dependencies:
- dependency-name: pydantic-core
dependency-version: 2.34.1
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-06-02 01:59:19 +00:00
dependabot[bot]
2274dc715d
Bump cyclonedx-python-lib from 9.1.0 to 10.0.1 in /backend
...
Bumps [cyclonedx-python-lib](https://github.com/CycloneDX/cyclonedx-python-lib ) from 9.1.0 to 10.0.1.
- [Release notes](https://github.com/CycloneDX/cyclonedx-python-lib/releases )
- [Changelog](https://github.com/CycloneDX/cyclonedx-python-lib/blob/main/CHANGELOG.md )
- [Commits](https://github.com/CycloneDX/cyclonedx-python-lib/compare/v9.1.0...v10.0.1 )
---
updated-dependencies:
- dependency-name: cyclonedx-python-lib
dependency-version: 10.0.1
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-06-02 01:59:09 +00:00
dependabot[bot]
fe1cd174bd
Bump httpx from 0.27.2 to 0.28.1 in /backend
...
Bumps [httpx](https://github.com/encode/httpx ) from 0.27.2 to 0.28.1.
- [Release notes](https://github.com/encode/httpx/releases )
- [Changelog](https://github.com/encode/httpx/blob/master/CHANGELOG.md )
- [Commits](https://github.com/encode/httpx/compare/0.27.2...0.28.1 )
---
updated-dependencies:
- dependency-name: httpx
dependency-version: 0.28.1
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-06-02 01:59:05 +00:00
dependabot[bot]
6c3cdbf477
Bump s3transfer from 0.11.4 to 0.13.0 in /backend
...
Bumps [s3transfer](https://github.com/boto/s3transfer ) from 0.11.4 to 0.13.0.
- [Changelog](https://github.com/boto/s3transfer/blob/develop/CHANGELOG.rst )
- [Commits](https://github.com/boto/s3transfer/compare/0.11.4...0.13.0 )
---
updated-dependencies:
- dependency-name: s3transfer
dependency-version: 0.13.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-06-02 01:59:02 +00:00
dependabot[bot]
bacefc4159
Bump charset-normalizer from 3.4.1 to 3.4.2 in /backend
...
Bumps [charset-normalizer](https://github.com/jawah/charset_normalizer ) from 3.4.1 to 3.4.2.
- [Release notes](https://github.com/jawah/charset_normalizer/releases )
- [Changelog](https://github.com/jawah/charset_normalizer/blob/master/CHANGELOG.md )
- [Commits](https://github.com/jawah/charset_normalizer/compare/3.4.1...3.4.2 )
---
updated-dependencies:
- dependency-name: charset-normalizer
dependency-version: 3.4.2
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-06-02 01:58:59 +00:00
its-michaelroy
a3cf89927a
Updated security
2025-06-01 22:57:05 -03:00
Michael Roy
f2e05df54c
Merge pull request #89 from Team-Deep-Impact/dependabot/npm_and_yarn/frontend/npm_and_yarn-0a2d80f9c7
...
Bump the npm_and_yarn group across 1 directory with 5 updates
2025-06-01 21:58:30 -03:00
Michael Roy
280bc292f0
Merge pull request #88 from Team-Deep-Impact/dependabot/pip/openai-1.82.1
...
Bump openai from 1.58.1 to 1.82.1
2025-06-01 21:55:06 -03:00
dependabot[bot]
c9239cf236
Bump openai from 1.58.1 to 1.82.1
...
Bumps [openai](https://github.com/openai/openai-python ) from 1.58.1 to 1.82.1.
- [Release notes](https://github.com/openai/openai-python/releases )
- [Changelog](https://github.com/openai/openai-python/blob/main/CHANGELOG.md )
- [Commits](https://github.com/openai/openai-python/compare/v1.58.1...v1.82.1 )
---
updated-dependencies:
- dependency-name: openai
dependency-version: 1.82.1
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-06-02 00:50:33 +00:00
Michael Roy
7d8ada9aab
Merge pull request #87 from Team-Deep-Impact/dependabot/pip/packaging-25.0
...
Bump packaging from 24.1 to 25.0
2025-06-01 21:50:06 -03:00
Michael Roy
bc2c767ca4
Merge pull request #86 from Team-Deep-Impact/dependabot/pip/urllib3-2.4.0
...
Bump urllib3 from 2.2.3 to 2.4.0
2025-06-01 21:49:28 -03:00
Michael Roy
20dda438cf
Merge pull request #85 from Team-Deep-Impact/dependabot/pip/certifi-2025.4.26
...
Bump certifi from 2024.8.30 to 2025.4.26
2025-06-01 21:49:03 -03:00
Michael Roy
e2fc56d4d7
Merge pull request #84 from Team-Deep-Impact/dependabot/pip/pydantic-core-2.34.1
...
Bump pydantic-core from 2.27.2 to 2.34.1
2025-06-01 21:48:33 -03:00
Michael Roy
ae4074408c
Merge branch 'dev' into dependabot/pip/pydantic-core-2.34.1
2025-06-01 21:47:10 -03:00
dependabot[bot]
e2b647f868
Bump the npm_and_yarn group across 1 directory with 5 updates
...
Bumps the npm_and_yarn group with 5 updates in the /frontend directory:
| Package | From | To |
| --- | --- | --- |
| [axios](https://github.com/axios/axios ) | `1.7.4` | `1.8.2` |
| [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite ) | `5.4.14` | `5.4.19` |
| [@babel/runtime](https://github.com/babel/babel/tree/HEAD/packages/babel-runtime ) | `7.24.5` | `7.27.4` |
| [esbuild](https://github.com/evanw/esbuild ) | `0.21.5` | `0.25.5` |
| [@vitejs/plugin-react](https://github.com/vitejs/vite-plugin-react/tree/HEAD/packages/plugin-react ) | `4.2.1` | `4.5.0` |
| [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite ) | `5.4.19` | `6.3.5` |
Updates `axios` from 1.7.4 to 1.8.2
- [Release notes](https://github.com/axios/axios/releases )
- [Changelog](https://github.com/axios/axios/blob/v1.x/CHANGELOG.md )
- [Commits](https://github.com/axios/axios/compare/v1.7.4...v1.8.2 )
Updates `vite` from 5.4.14 to 5.4.19
- [Release notes](https://github.com/vitejs/vite/releases )
- [Changelog](https://github.com/vitejs/vite/blob/v5.4.19/packages/vite/CHANGELOG.md )
- [Commits](https://github.com/vitejs/vite/commits/v5.4.19/packages/vite )
Updates `@babel/runtime` from 7.24.5 to 7.27.4
- [Release notes](https://github.com/babel/babel/releases )
- [Changelog](https://github.com/babel/babel/blob/main/CHANGELOG.md )
- [Commits](https://github.com/babel/babel/commits/v7.27.4/packages/babel-runtime )
Updates `esbuild` from 0.21.5 to 0.25.5
- [Release notes](https://github.com/evanw/esbuild/releases )
- [Changelog](https://github.com/evanw/esbuild/blob/main/CHANGELOG-2024.md )
- [Commits](https://github.com/evanw/esbuild/compare/v0.21.5...v0.25.5 )
Updates `@vitejs/plugin-react` from 4.2.1 to 4.5.0
- [Release notes](https://github.com/vitejs/vite-plugin-react/releases )
- [Changelog](https://github.com/vitejs/vite-plugin-react/blob/main/packages/plugin-react/CHANGELOG.md )
- [Commits](https://github.com/vitejs/vite-plugin-react/commits/plugin-react@4.5.0/packages/plugin-react )
Updates `vite` from 5.4.19 to 6.3.5
- [Release notes](https://github.com/vitejs/vite/releases )
- [Changelog](https://github.com/vitejs/vite/blob/v5.4.19/packages/vite/CHANGELOG.md )
- [Commits](https://github.com/vitejs/vite/commits/v5.4.19/packages/vite )
---
updated-dependencies:
- dependency-name: axios
dependency-version: 1.8.2
dependency-type: direct:production
dependency-group: npm_and_yarn
- dependency-name: vite
dependency-version: 5.4.19
dependency-type: direct:development
dependency-group: npm_and_yarn
- dependency-name: "@babel/runtime"
dependency-version: 7.27.4
dependency-type: indirect
dependency-group: npm_and_yarn
- dependency-name: esbuild
dependency-version: 0.25.5
dependency-type: indirect
dependency-group: npm_and_yarn
- dependency-name: "@vitejs/plugin-react"
dependency-version: 4.5.0
dependency-type: direct:development
dependency-group: npm_and_yarn
- dependency-name: vite
dependency-version: 6.3.5
dependency-type: direct:development
dependency-group: npm_and_yarn
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-06-02 00:45:09 +00:00
Michael Roy
0754b2312a
Merge pull request #82 from Team-Deep-Impact/dependabot/pip/backend/pip-75f0befae6
...
Bump h11 from 0.14.0 to 0.16.0 in /backend in the pip group across 1 directory
2025-06-01 21:45:08 -03:00
Michael Roy
5fb78bf47a
Merge pull request #80 from Team-Deep-Impact/dependabot/pip/click-8.1.8
...
Bump click from 8.1.7 to 8.1.8
2025-06-01 21:44:50 -03:00
Michael Roy
a409bd90b9
Merge pull request #78 from Team-Deep-Impact/dependabot/pip/whitenoise-6.9.0
...
Bump whitenoise from 6.8.2 to 6.9.0
2025-06-01 21:44:27 -03:00
Michael Roy
984b08bb54
Merge pull request #76 from Team-Deep-Impact/dependabot/pip/sqlparse-0.5.3
...
Bump sqlparse from 0.5.1 to 0.5.3
2025-06-01 21:43:56 -03:00
Michael Roy
cba0083e79
Merge pull request #75 from Team-Deep-Impact/dependabot/pip/anyio-4.9.0
...
Bump anyio from 4.7.0 to 4.9.0
2025-06-01 21:43:35 -03:00
Michael Roy
fd6a26cd32
Merge pull request #74 from Team-Deep-Impact/dependabot/pip/python-dotenv-1.1.0
...
Bump python-dotenv from 1.0.1 to 1.1.0
2025-06-01 21:43:07 -03:00
dependabot[bot]
153c4729ac
Bump packaging from 24.1 to 25.0
...
Bumps [packaging](https://github.com/pypa/packaging ) from 24.1 to 25.0.
- [Release notes](https://github.com/pypa/packaging/releases )
- [Changelog](https://github.com/pypa/packaging/blob/main/CHANGELOG.rst )
- [Commits](https://github.com/pypa/packaging/compare/24.1...25.0 )
---
updated-dependencies:
- dependency-name: packaging
dependency-version: '25.0'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-05-01 14:22:04 +00:00
dependabot[bot]
f7afda71d7
Bump urllib3 from 2.2.3 to 2.4.0
...
Bumps [urllib3](https://github.com/urllib3/urllib3 ) from 2.2.3 to 2.4.0.
- [Release notes](https://github.com/urllib3/urllib3/releases )
- [Changelog](https://github.com/urllib3/urllib3/blob/main/CHANGES.rst )
- [Commits](https://github.com/urllib3/urllib3/compare/2.2.3...2.4.0 )
---
updated-dependencies:
- dependency-name: urllib3
dependency-version: 2.4.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-05-01 14:22:01 +00:00
dependabot[bot]
f2a328ba5a
Bump certifi from 2024.8.30 to 2025.4.26
...
Bumps [certifi](https://github.com/certifi/python-certifi ) from 2024.8.30 to 2025.4.26.
- [Commits](https://github.com/certifi/python-certifi/compare/2024.08.30...2025.04.26 )
---
updated-dependencies:
- dependency-name: certifi
dependency-version: 2025.4.26
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-05-01 14:21:59 +00:00
dependabot[bot]
db9165372a
Bump pydantic-core from 2.27.2 to 2.34.1
...
Bumps [pydantic-core](https://github.com/pydantic/pydantic-core ) from 2.27.2 to 2.34.1.
- [Release notes](https://github.com/pydantic/pydantic-core/releases )
- [Commits](https://github.com/pydantic/pydantic-core/compare/v2.27.2...v2.34.1 )
---
updated-dependencies:
- dependency-name: pydantic-core
dependency-version: 2.34.1
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-05-01 14:21:53 +00:00
dependabot[bot]
e91961a6de
Bump h11 in /backend in the pip group across 1 directory
...
Bumps the pip group with 1 update in the /backend directory: [h11](https://github.com/python-hyper/h11 ).
Updates `h11` from 0.14.0 to 0.16.0
- [Commits](https://github.com/python-hyper/h11/compare/v0.14.0...v0.16.0 )
---
updated-dependencies:
- dependency-name: h11
dependency-version: 0.16.0
dependency-type: direct:production
dependency-group: pip
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-04-24 17:21:15 +00:00
dependabot[bot]
4b80dee100
Bump click from 8.1.7 to 8.1.8
...
Bumps [click](https://github.com/pallets/click ) from 8.1.7 to 8.1.8.
- [Release notes](https://github.com/pallets/click/releases )
- [Changelog](https://github.com/pallets/click/blob/main/CHANGES.rst )
- [Commits](https://github.com/pallets/click/compare/8.1.7...8.1.8 )
---
updated-dependencies:
- dependency-name: click
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-04-01 15:01:10 +00:00
dependabot[bot]
c969907ccd
Bump whitenoise from 6.8.2 to 6.9.0
...
Bumps [whitenoise](https://github.com/evansd/whitenoise ) from 6.8.2 to 6.9.0.
- [Changelog](https://github.com/evansd/whitenoise/blob/main/docs/changelog.rst )
- [Commits](https://github.com/evansd/whitenoise/compare/6.8.2...6.9.0 )
---
updated-dependencies:
- dependency-name: whitenoise
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-04-01 15:01:04 +00:00
dependabot[bot]
01939016cc
Bump sqlparse from 0.5.1 to 0.5.3
...
Bumps [sqlparse](https://github.com/andialbrecht/sqlparse ) from 0.5.1 to 0.5.3.
- [Changelog](https://github.com/andialbrecht/sqlparse/blob/master/CHANGELOG )
- [Commits](https://github.com/andialbrecht/sqlparse/compare/0.5.1...0.5.3 )
---
updated-dependencies:
- dependency-name: sqlparse
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-04-01 15:00:57 +00:00
dependabot[bot]
ff2eb0107e
Bump anyio from 4.7.0 to 4.9.0
...
Bumps [anyio](https://github.com/agronholm/anyio ) from 4.7.0 to 4.9.0.
- [Release notes](https://github.com/agronholm/anyio/releases )
- [Changelog](https://github.com/agronholm/anyio/blob/master/docs/versionhistory.rst )
- [Commits](https://github.com/agronholm/anyio/compare/4.7.0...4.9.0 )
---
updated-dependencies:
- dependency-name: anyio
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-04-01 15:00:54 +00:00
dependabot[bot]
f18540b84c
Bump python-dotenv from 1.0.1 to 1.1.0
...
Bumps [python-dotenv](https://github.com/theskumar/python-dotenv ) from 1.0.1 to 1.1.0.
- [Release notes](https://github.com/theskumar/python-dotenv/releases )
- [Changelog](https://github.com/theskumar/python-dotenv/blob/main/CHANGELOG.md )
- [Commits](https://github.com/theskumar/python-dotenv/compare/v1.0.1...v1.1.0 )
---
updated-dependencies:
- dependency-name: python-dotenv
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2025-04-01 15:00:51 +00:00