From c7114cde20c9e96bbba51e64fb6cce9d56398e69 Mon Sep 17 00:00:00 2001 From: Josh Cederstrom Date: Mon, 13 Jul 2026 15:55:29 -0700 Subject: [PATCH 1/2] fix: Pin rosetta-soil package to protect from breaking changes introduced in recent releases --- pyproject.toml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/pyproject.toml b/pyproject.toml index bb2597b..6c72e83 100644 --- a/pyproject.toml +++ b/pyproject.toml @@ -26,7 +26,7 @@ dependencies = [ "PyWavelets>=1.8.0", "rasterio>=1.4.0", "requests>=2.32.3", - "rosetta-soil>=0.1.2", + "rosetta-soil>=0.1.2,<0.3", "scikit-learn>=1.7.0", "scipy>=1.14.0", "shapely>=2.0.7", From 7f8665061e556421d0b3383a8fe38ab7a2925095 Mon Sep 17 00:00:00 2001 From: Josh Cederstrom Date: Tue, 14 Jul 2026 13:10:17 -0700 Subject: [PATCH 2/2] chore: Update CHANGELONG.md --- README.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/README.md b/README.md index fbbfffb..2a8d783 100644 --- a/README.md +++ b/README.md @@ -16,7 +16,7 @@ PytRIBS uses semantic versioning. Currently, we are in the initial development p this package SHOULD NOT be considered stable. ## Version 0.7.4 (07/10/2026) -This release fixes NLDAS-2 downloads failing with `403 Forbidden` errors from the Giovanni timeseries API. +This release fixes NLDAS-2 downloads failing with `403 Forbidden` errors from the Giovanni timeseries API and pins the rosetta-soil dependency to prevent breaking changes in newer versions. #### Changed * Replaced the Giovanni `/signin` token retrieval in `get_nldas_point` with the NASA-recommended Earthdata Login (EDL) token workflow via `earthaccess`. The `/signin` endpoint is an undocumented interface whose response format changed on NASA's end, breaking authentication and causing download requests to return `403 Forbidden`. The EDL token workflow follows NASA's official Giovanni API tutorial and should be robust to future changes.