From e9d86ce2d4188f40ba9bcbed01da73bf9f684615 Mon Sep 17 00:00:00 2001 From: kdmukai <934746+kdmukai@users.noreply.github.com> Date: Wed, 19 Aug 2026 18:40:37 -0500 Subject: [PATCH] Align requirements.txt pins with what SeedSigner OS ships SeedSigner OS installs these dependencies as buildroot packages with their own pinned, hash-verified versions -- requirements.txt only governs dev and desktop environments. Two entries had drifted from what actually runs on devices, so dev setups were exercising different code than the hardware. The OS versions are definitive. qrcode moves from 7.3.1 to 8.0 to match buildroot's python-qrcode. The major bump is safe for us: everything helpers/qr.py touches (QRCode, ERROR_CORRECT_L, StyledPilImage, the module drawers) works unchanged under 8.0, and devices have been running it all along. urtypes moves from PyPI 1.0.1 to a commit pin of selfcustody/urtypes v0.1.0, the tag the OS builds from GitHub. This is a downgrade -- dev environments were ahead of the hardware, not behind it. PyPI only publishes 1.0.0 and 1.0.1, so matching the OS exactly requires a git pin, in the same style as the existing pyzbar entry. embit and Pillow already matched, and the pyzbar commit pin is already identical to the OS's v0.1.9-ss tag, so those are unchanged. --- requirements.txt | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/requirements.txt b/requirements.txt index 7334b127..7961b342 100644 --- a/requirements.txt +++ b/requirements.txt @@ -1,5 +1,5 @@ embit==0.8.0 Pillow==10.3.0 pyzbar @ git+https://github.com/seedsigner/pyzbar.git@c3c237821c6a20b17953efe59b90df0b514a1c03 -qrcode==7.3.1 -urtypes==1.0.1 +qrcode==8.0 +urtypes @ git+https://github.com/selfcustody/urtypes.git@7fb280eab3b3563dfc57d2733b0bf5cbc0a96a6a