From 78087a23c7f6d91c36f10bdac146ddc3ccb92196 Mon Sep 17 00:00:00 2001 From: monoxgas Date: Tue, 29 Sep 2026 10:52:54 -0600 Subject: [PATCH] fix(attack-surface-management): relax pyOpenSSL in the bbot MCP script mcp/bbot.py declares its own PEP 723 dependencies and is launched with `uv run`, so it resolves in its own environment. #158 relaxed pyOpenSSL in the manifest but missed this script, which still pinned pyOpenSSL~=25.3.0 and therefore cryptography<47. Allow pyOpenSSL 26.x here too. Bump to 2.0.3. Co-Authored-By: Claude Opus 5.5 (1M context) --- capabilities/attack-surface-management/capability.yaml | 2 +- capabilities/attack-surface-management/mcp/bbot.py | 2 +- capabilities/attack-surface-management/pyproject.toml | 2 +- 3 files changed, 3 insertions(+), 3 deletions(-) diff --git a/capabilities/attack-surface-management/capability.yaml b/capabilities/attack-surface-management/capability.yaml index d25eda82..1e757eba 100644 --- a/capabilities/attack-surface-management/capability.yaml +++ b/capabilities/attack-surface-management/capability.yaml @@ -1,6 +1,6 @@ schema: 1 name: attack-surface-management -version: "2.0.2" +version: "2.0.3" description: > External attack surface management with BBOT reconnaissance scanning, Neo4j graph database analysis, Shodan internet intelligence, and diff --git a/capabilities/attack-surface-management/mcp/bbot.py b/capabilities/attack-surface-management/mcp/bbot.py index 7b8ab231..6e51cd04 100644 --- a/capabilities/attack-surface-management/mcp/bbot.py +++ b/capabilities/attack-surface-management/mcp/bbot.py @@ -9,7 +9,7 @@ # "bbot", # "aiosqlite>=0.21.0", # "extractous~=0.3.0", -# "pyOpenSSL~=25.3.0", +# "pyOpenSSL>=25.3.0,<27", # ] # /// """BBOT reconnaissance and Neo4j graph query tools exposed as an MCP server. diff --git a/capabilities/attack-surface-management/pyproject.toml b/capabilities/attack-surface-management/pyproject.toml index 8e91962b..d12e547a 100644 --- a/capabilities/attack-surface-management/pyproject.toml +++ b/capabilities/attack-surface-management/pyproject.toml @@ -1,6 +1,6 @@ [project] name = "attack-surface-management" -version = "2.0.2" +version = "2.0.3" requires-python = ">=3.10" dependencies = [ "badsecrets~=0.13.47",