mirror of
https://github.com/ChuckBuilds/LEDMatrix.git
synced 2026-10-07 07:36:37 +00:00
Whole-tree audit. Every symbol was checked against core, the plugin monorepo and all eight third-party plugins in plugins.json first. - Deprecate (removal 3.10.0) plugin-facing methods nothing calls: LogoDownloader bulk download, ConfigManager backup/secret wrappers, APIHelper extras, BackgroundDataService poll API, PluginManager / PluginStateManager info readers, and a few CacheManager, FontManager, BaseOddsManager, DynamicTeamResolver methods and PluginTestCase. plugin_api_usage.py learns their receiver names; DEPRECATIONS doc regenerated. - Remove core-internal dead code: CacheMetrics, Vegas status/stats plumbing, sync "new cycle" message (followers ignore unknown types), unused operation types, test-only PluginCatalog readers, IPC to_dict and ping, _parse_form_value, CacheStrategyProtocol, ErrorAggregator callbacks, duplicate web response helpers. - Web UI: drop never-mounted json-file-manager.js, the example widget, utils/error_handler.js, four uncalled PluginAPI methods, and 29 escapeHtml shims (call window.LEDEscape directly). Public globals, BaseWidget and widget names unchanged. - Remove six one-off scripts (owner decision) and the unused markupsafe and pytest-mock pins. Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>
43 lines
1.5 KiB
Plaintext
43 lines
1.5 KiB
Plaintext
# LEDMatrix Web Interface Dependencies
|
|
# Compatible with Python 3.11, 3.12 and 3.13; CI tests 3.11 and 3.13
|
|
# Tested on Raspbian OS 12 (Bookworm) and 13 (Trixie)
|
|
|
|
# Web framework
|
|
flask>=3.1.3,<4.0.0
|
|
werkzeug>=3.1.6,<4.0.0 # Flask transitive; pinned to keep a security floor above Flask's own >=3.1.0
|
|
flask-limiter>=3.5.0,<4.0.0 # Rate limiting (prevent accidental abuse)
|
|
flask-compress>=1.14 # gzip/brotli response compression (big win for the large JS/HTML over WiFi)
|
|
jinja2>=3.1.6,<4.0.0 # Flask transitive, but imported directly (TemplateNotFound); 3.1.6 is the security floor — earlier 3.1.x has sandbox breakouts
|
|
|
|
# WebSocket support: intentionally NOT declared here. The web interface
|
|
# uses Server-Sent Events, and plugins that need Socket.IO (e.g.
|
|
# ledmatrix-music) declare it in their own requirements.txt, which the
|
|
# plugin store installs.
|
|
|
|
# Image processing
|
|
Pillow>=12.2.0,<13.0.0
|
|
|
|
# System monitoring
|
|
psutil>=6.0.0,<7.0.0
|
|
|
|
# Font rendering
|
|
freetype-py>=2.5.1,<3.0.0
|
|
|
|
# Numerical operations
|
|
# NumPy 1.24+ required for Python 3.12+ compatibility (compatible with 2.x)
|
|
numpy>=1.24.0
|
|
|
|
# HTTP requests
|
|
requests>=2.33.0,<3.0.0
|
|
|
|
# Timezone handling (must match main requirements)
|
|
pytz>=2024.2,<2027.0
|
|
|
|
# Spotify integration (must match main requirements)
|
|
spotipy>=2.25.2,<3.0.0
|
|
|
|
# Plugin-era note: timezonefinder, geopy, the google-api client stack,
|
|
# unidecode, icalevents and python-dateutil used to live here for the
|
|
# built-in weather/calendar/music displays. Those are store plugins now
|
|
# and declare their own dependencies, which the plugin store installs.
|