Pin dependencies - #743
Conversation
|
252a194 to
4105338
Compare
📋 Pre-commit Output LogGenerated on Thu Aug 20 02:40:06 UTC 2026 |
📋 Pre-commit Output LogGenerated on Thu Aug 20 02:40:09 UTC 2026 |
📋 Pre-commit Output LogGenerated on Thu Aug 20 02:40:09 UTC 2026 |
📋 Pre-commit Output LogGenerated on Thu Aug 20 02:40:12 UTC 2026 |
📋 Pre-commit Output LogGenerated on Thu Aug 20 02:40:15 UTC 2026 |
📋 Pre-commit Output LogGenerated on Thu Aug 20 02:40:28 UTC 2026 |
📋 Pre-commit Output LogGenerated on Thu Aug 20 02:41:13 UTC 2026 |
📖 Terraform Plan (infra/resources/product/dev-ar) - successShow Plan # module.container_app_product_ms.azurerm_container_app.container_app will be updated in-place
~ resource "azurerm_container_app" "container_app" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-product-ms-ca"
name = "selc-d-product-ms-ca"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (10 unchanged attributes hidden)
~ template {
# (6 unchanged attributes hidden)
~ container {
~ image = "ghcr.io/pagopa/selfcare-product-ms:sha-1c7ec8b" -> "ghcr.io/pagopa/selfcare-product-ms:sha-$(git r"
name = "selc-d-product-ms"
# (5 unchanged attributes hidden)
# (17 unchanged blocks hidden)
}
# (1 unchanged block hidden)
}
# (8 unchanged blocks hidden)
}
Plan: 0 to add, 1 to change, 0 to destroy. |
📖 Terraform Plan (infra/resources/product-cdc/dev-ar) - successShow Plan # module.container_app_product_cdc.azurerm_container_app.container_app will be updated in-place
~ resource "azurerm_container_app" "container_app" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-product-cdc-ca"
name = "selc-d-product-cdc-ca"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (10 unchanged attributes hidden)
~ template {
# (6 unchanged attributes hidden)
~ container {
~ image = "ghcr.io/pagopa/selfcare-product-cdc:sha-1c7ec8b" -> "ghcr.io/pagopa/selfcare-product-cdc:sha-$(git r"
name = "selc-d-product-cdc"
# (5 unchanged attributes hidden)
# (14 unchanged blocks hidden)
}
# (1 unchanged block hidden)
}
# (6 unchanged blocks hidden)
}
Plan: 0 to add, 1 to change, 0 to destroy. |
📖 Terraform Plan (infra/resources/user-ms/dev-pnpg) - successShow Plan # module.container_app_user_ms.azurerm_container_app.container_app will be updated in-place
~ resource "azurerm_container_app" "container_app" {
id = "subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-rg/providers/Microsoft.App/containerApps/selc-d-pnpg-user-ms-ca"
name = "selc-d-pnpg-user-ms-ca"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (10 unchanged attributes hidden)
~ template {
# (6 unchanged attributes hidden)
~ container {
~ image = "ghcr.io/pagopa/selfcare-user-ms:sha-3d8e49a" -> "ghcr.io/pagopa/selfcare-user-ms:sha-$(git r"
name = "selc-d-pnpg-user-ms"
# (5 unchanged attributes hidden)
# (26 unchanged blocks hidden)
}
# (1 unchanged block hidden)
}
# (8 unchanged blocks hidden)
}
Plan: 0 to add, 1 to change, 0 to destroy. |
📖 Terraform Plan (infra/resources/user-cdc/dev-ar) - successShow Plan # module.container_app_user_cdc.azurerm_container_app.container_app will be updated in-place
~ resource "azurerm_container_app" "container_app" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-user-cdc-ca"
name = "selc-d-user-cdc-ca"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (10 unchanged attributes hidden)
~ template {
# (6 unchanged attributes hidden)
~ container {
~ image = "ghcr.io/pagopa/selfcare-user-cdc:sha-9069e0e" -> "ghcr.io/pagopa/selfcare-user-cdc:sha-$(git r"
name = "selc-d-user-cdc"
# (5 unchanged attributes hidden)
# (26 unchanged blocks hidden)
}
# (1 unchanged block hidden)
}
# (6 unchanged blocks hidden)
}
Plan: 0 to add, 1 to change, 0 to destroy. |
📖 Terraform Plan (infra/resources/user-group-ms/dev-ar) - successShow Plan # module.container_app_user_group_ms.azurerm_container_app.container_app will be updated in-place
~ resource "azurerm_container_app" "container_app" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-user-group-ca"
name = "selc-d-user-group-ca"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (10 unchanged attributes hidden)
~ template {
# (6 unchanged attributes hidden)
~ container {
~ image = "ghcr.io/pagopa/selfcare-user-group-ms:sha-9069e0e" -> "ghcr.io/pagopa/selfcare-user-group-ms:sha-$(git r"
name = "selc-d-user-group"
# (5 unchanged attributes hidden)
# (10 unchanged blocks hidden)
}
# (1 unchanged block hidden)
}
# (5 unchanged blocks hidden)
}
Plan: 0 to add, 1 to change, 0 to destroy. |
📖 Terraform Plan (infra/resources/institution-send-mail-scheduler/dev-ar) - successShow Plan # module.container_app_job_institution_send_mail_scheduler.azurerm_container_app_job.container_app_job will be updated in-place
~ resource "azurerm_container_app_job" "container_app_job" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/jobs/selc-d-inst-send-mail-job"
name = "selc-d-inst-send-mail-job"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (8 unchanged attributes hidden)
~ template {
~ container {
~ image = "ghcr.io/pagopa/selfcare-institution-send-mail-scheduler:sha-9069e0e" -> "ghcr.io/pagopa/selfcare-institution-send-mail-scheduler:sha-$(git rev-parse --short 0fabf621382f0dea3c3f5be7197dbe858f157585)"
name = "selc-d-inst-send-mail"
# (5 unchanged attributes hidden)
# (20 unchanged blocks hidden)
}
}
# (6 unchanged blocks hidden)
}
Plan: 0 to add, 1 to change, 0 to destroy. |
📖 Terraform Plan (infra/resources/auth/dev-ar) - successShow Plan # module.container_app_auth_ms.azurerm_container_app.container_app will be updated in-place
~ resource "azurerm_container_app" "container_app" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-auth-ms-ca"
name = "selc-d-auth-ms-ca"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (10 unchanged attributes hidden)
~ template {
# (6 unchanged attributes hidden)
~ container {
~ image = "ghcr.io/pagopa/selfcare-auth-ms:sha-1c7ec8b" -> "ghcr.io/pagopa/selfcare-auth-ms:sha-$(git r"
name = "selc-d-auth-ms"
# (5 unchanged attributes hidden)
# (33 unchanged blocks hidden)
}
# (1 unchanged block hidden)
}
# (14 unchanged blocks hidden)
}
# module.apim_api_auth.module.apim_api.azurerm_api_management_api_policy.this[0] will be updated in-place
~ resource "azurerm_api_management_api_policy" "this" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-api-v2-rg/providers/Microsoft.ApiManagement/service/selc-d-apim-v2/apis/selc-d-api-auth"
~ xml_content = <<-EOT
- <policies>
+ <policies>
- <inbound>
+ <inbound>
- <cors allow-credentials="true">
+ <cors allow-credentials="true">
- <allowed-origins>
+ <allowed-origins>
- <origin>http://localhost:3000</origin>
+ <origin>http://localhost:3000</origin>
- <origin>https://dev.selfcare.pagopa.it</origin>
+ <origin>https://dev.selfcare.pagopa.it</origin>
- <origin>https://api.dev.selfcare.pagopa.it</origin>
+ <origin>https://api.dev.selfcare.pagopa.it</origin>
- <origin>https://pnpg.dev.selfcare.pagopa.it</origin>
+ <origin>https://pnpg.dev.selfcare.pagopa.it</origin>
- <origin>https://api-pnpg.dev.selfcare.pagopa.it</origin>
+ <origin>https://api-pnpg.dev.selfcare.pagopa.it</origin>
- </allowed-origins>
+ </allowed-origins>
- <allowed-methods>
+ <allowed-methods>
- <method>GET</method>
+ <method>GET</method>
- <method>POST</method>
+ <method>POST</method>
- <method>PUT</method>
+ <method>PUT</method>
- <method>HEAD</method>
+ <method>HEAD</method>
- <method>DELETE</method>
+ <method>DELETE</method>
- <method>OPTIONS</method>
+ <method>OPTIONS</method>
- </allowed-methods>
+ </allowed-methods>
- <allowed-headers>
+ <allowed-headers>
- <header>Authorization</header>
+ <header>Authorization</header>
- <header>Content-Type</header>
+ <header>Content-Type</header>
- <header>Accept</header>
+ <header>Accept</header>
- <header>traceparent</header>
+ <header>traceparent</header>
- <header>tracestate</header>
+ <header>tracestate</header>
- </allowed-headers>
+ </allowed-headers>
- </cors>
+ </cors>
- <set-variable name="tenantId" value="@{
+ <set-variable name="tenantId" value='@{
var host = context.Request.OriginalUrl.Host;
if (string.IsNullOrWhiteSpace(host)) {
return string.Empty;
}
host = host.ToLowerInvariant();
if (host == "api.dev.selfcare.pagopa.it") {
return "AR";
}
if (host == "api-pnpg.dev.selfcare.pagopa.it") {
return "PNPG";
}
return string.Empty;
- }" />
+ }' />
- <choose>
+ <choose>
- <when condition="@((string)context.Variables["tenantId"] == string.Empty)">
+ <when condition='@((string)context.Variables["tenantId"] == string.Empty)'>
- <trace source="tenant-audit" severity="error">
+ <trace source="tenant-audit" severity="error">
- <message>@("event=tenant_request_rejected reason=unknown_host operation=" + (context.Operation == null ? "unknown" : context.Operation.Id))</message>
+ <message>@("event=tenant_request_rejected reason=unknown_host operation=" + (context.Operation == null ? "unknown" : context.Operation.Id))</message>
- </trace>
+ </trace>
- <return-response>
+ <return-response>
- <set-status code="403" reason="Forbidden" />
+ <set-status code="403" reason="Forbidden" />
- <set-header name="Content-Type" exists-action="override">
+ <set-header name="Content-Type" exists-action="override">
- <value>application/problem+json</value>
+ <value>application/problem+json</value>
- </set-header>
+ </set-header>
- <set-body>{"title":"Forbidden","status":403,"detail":"Invalid tenant context"}</set-body>
+ <set-body>{"title":"Forbidden","status":403,"detail":"Invalid tenant context"}</set-body>
- </return-response>
+ </return-response>
- </when>
+ </when>
- </choose>
+ </choose>
- <set-header name="X-Tenant-Id" exists-action="override">
+ <set-header name="X-Tenant-Id" exists-action="override">
- <value>@((string)context.Variables["tenantId"])</value>
+ <value>@((string)context.Variables["tenantId"])</value>
- </set-header>
+ </set-header>
- <base />
+ <base />
- </inbound>
+ </inbound>
- <backend>
+ <backend>
- <base />
+ <base />
- </backend>
+ </backend>
- <outbound>
+ <outbound>
- <base />
+ <base />
- </outbound>
+ </outbound>
- <on-error>
+ <on-error>
- <base />
+ <base />
- </on-error>
+ </on-error>
</policies>
EOT
# (4 unchanged attributes hidden)
}
Plan: 0 to add, 2 to change, 0 to destroy. |
📖 Terraform Plan (infra/resources/delegation-cdc/dev-ar) - successShow Plan # module.container_app_delegation_cdc.azurerm_container_app.container_app will be updated in-place
~ resource "azurerm_container_app" "container_app" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-delegation-cdc-ca"
name = "selc-d-delegation-cdc-ca"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (10 unchanged attributes hidden)
~ template {
# (6 unchanged attributes hidden)
~ container {
~ image = "ghcr.io/pagopa/selfcare-delegation-cdc:sha-9069e0e" -> "ghcr.io/pagopa/selfcare-delegation-cdc:sha-$(git r"
name = "selc-d-delegation-cdc"
# (5 unchanged attributes hidden)
# (14 unchanged blocks hidden)
}
# (1 unchanged block hidden)
}
# (4 unchanged blocks hidden)
}
Plan: 0 to add, 1 to change, 0 to destroy. |
📖 Terraform Plan (infra/resources/external-api/dev-ar) - successShow Plan # module.container_app_registry_proxy_ms.azurerm_container_app.container_app will be updated in-place
~ resource "azurerm_container_app" "container_app" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-ext-api-backend-ca"
name = "selc-d-ext-api-backend-ca"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (10 unchanged attributes hidden)
~ template {
# (6 unchanged attributes hidden)
~ container {
~ image = "ghcr.io/pagopa/selfcare-external-api-ms:sha-c38bb75" -> "ghcr.io/pagopa/selfcare-external-api-ms:sha-$(git r"
name = "selc-d-ext-api-backend"
# (5 unchanged attributes hidden)
~ env {
name = "MS_ONBOARDING_URL"
~ value = "http://selc-d-onboarding-ms-ca" -> "https://selc-d-onboarding-ms-ca.whitemoss-eb7ef327.westeurope.azurecontainerapps.io"
# (1 unchanged attribute hidden)
}
~ env {
name = "MS_CORE_URL"
~ value = "http://selc-d-institution-ms-ca" -> "https://selc-d-institution-ms-ca.whitemoss-eb7ef327.westeurope.azurecontainerapps.io"
# (1 unchanged attribute hidden)
}
~ env {
name = "USERVICE_PARTY_REGISTRY_PROXY_URL"
~ value = "http://selc-d-party-reg-proxy-ca" -> "https://selc-d-party-reg-proxy-ca.whitemoss-eb7ef327.westeurope.azurecontainerapps.io"
# (1 unchanged attribute hidden)
}
~ env {
name = "USERVICE_PARTY_PROCESS_URL"
~ value = "http://selc-d-institution-ms-ca" -> "https://selc-d-institution-ms-ca.whitemoss-eb7ef327.westeurope.azurecontainerapps.io"
# (1 unchanged attribute hidden)
}
~ env {
name = "USERVICE_PARTY_MANAGEMENT_URL"
~ value = "http://selc-d-institution-ms-ca" -> "https://selc-d-institution-ms-ca.whitemoss-eb7ef327.westeurope.azurecontainerapps.io"
# (1 unchanged attribute hidden)
}
~ env {
name = "SELFCARE_USER_URL"
~ value = "http://selc-d-user-ms-ca" -> "https://selc-d-user-ms-ca.whitemoss-eb7ef327.westeurope.azurecontainerapps.io"
# (1 unchanged attribute hidden)
}
~ env {
name = "MS_DOCUMENT_URL"
~ value = "http://selc-d-document-ms-ca" -> "https://selc-d-document-ms-ca.whitemoss-eb7ef327.westeurope.azurecontainerapps.io"
# (1 unchanged attribute hidden)
}
# (17 unchanged blocks hidden)
}
# (1 unchanged block hidden)
}
# (7 unchanged blocks hidden)
}
Plan: 0 to add, 1 to change, 0 to destroy. |
📖 Terraform Plan (infra/resources/document-ms/dev-ar) - successShow Plan # module.container_app_document_ms.azurerm_container_app.container_app will be updated in-place
~ resource "azurerm_container_app" "container_app" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-document-ms-ca"
name = "selc-d-document-ms-ca"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (10 unchanged attributes hidden)
~ template {
# (6 unchanged attributes hidden)
~ container {
~ image = "ghcr.io/pagopa/selfcare-document-ms:sha-9f82cab" -> "ghcr.io/pagopa/selfcare-document-ms:sha-$(git r"
name = "selc-d-document-ms"
# (5 unchanged attributes hidden)
# (19 unchanged blocks hidden)
}
# (1 unchanged block hidden)
}
# (7 unchanged blocks hidden)
}
Plan: 0 to add, 1 to change, 0 to destroy. |
|
Warning
|
| Severity | ID | File | Line | Title |
|---|---|---|---|---|
| HIGH | AVD-DX-0001 | infra/bootstrap/_modules/github_repository_environment/main.tf |
L53 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/_modules/github_repository_environment/main.tf |
L53 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/_modules/github_repository_environment/main.tf |
L53 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/_modules/github_repository_environment/main.tf |
L53 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/_modules/github_repository_environment/main.tf |
L53 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/_modules/github_repository_environment/main.tf |
L53 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/_modules/github_repository_environment/main.tf |
L53 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/_modules/github_repository_environment/main.tf |
L53 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/_modules/github_repository_environment/main.tf |
L53 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/dev-ar/data.tf |
L25 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/dev-ar/data.tf |
L20 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/dev-ar/data.tf |
L35 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/dev-ar/data.tf |
L30 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/dev-ar/data.tf |
L11 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/prod-ar/data.tf |
L25 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/prod-ar/data.tf |
L20 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/prod-ar/data.tf |
L35 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/prod-ar/data.tf |
L30 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/prod-ar/data.tf |
L11 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/uat-ar/data.tf |
L25 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/uat-ar/data.tf |
L20 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/uat-ar/data.tf |
L35 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/uat-ar/data.tf |
L30 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/bootstrap/uat-ar/data.tf |
L11 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/cert/_modules/cert/data.tf |
L7 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/cert/_modules/cert/data.tf |
L7 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/cert/_modules/cert/data.tf |
L7 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/cert/_modules/cert/data.tf |
L7 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/cert/_modules/cert/data.tf |
L7 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/cert/_modules/cert/data.tf |
L7 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L35 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L35 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L35 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L45 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L45 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L45 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L55 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L55 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L55 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L40 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L40 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L40 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L71 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L71 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L71 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L50 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L50 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L50 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L60 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L60 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L60 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L76 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L76 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/apim/data.tf |
L76 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/data/azure_key_vault_items/main.tf |
L11 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/data/azure_key_vault_items/main.tf |
L11 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/data/azure_key_vault_items/main.tf |
L11 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/data/azure_key_vault_items/main.tf |
L22 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/data/azure_key_vault_items/main.tf |
L16 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/data/azure_key_vault_items/main.tf |
L28 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/data/azure_key_vault_items/main.tf |
L28 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/data/azure_key_vault_items/main.tf |
L28 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/data/docker_credentials/main.tf |
L6 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/data/docker_credentials/main.tf |
L1 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L26 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L26 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L26 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L26 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L26 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L26 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L31 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L31 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L31 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L31 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L31 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L31 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L36 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L36 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L36 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L36 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L36 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L36 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L41 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L41 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L41 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L41 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L41 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L41 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L159 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L159 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L159 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L159 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L159 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L159 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L92 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L92 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L92 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L92 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L92 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L92 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L117 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L117 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L117 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L117 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L117 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L117 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L164 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L164 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L164 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L164 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L164 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/key_vault/main.tf |
L164 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/monitor/main.tf |
L76 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/monitor/main.tf |
L76 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/monitor/main.tf |
L76 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/monitor/main.tf |
L81 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/monitor/main.tf |
L81 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/monitor/main.tf |
L81 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/monitor/main.tf |
L96 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/monitor/main.tf |
L96 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/monitor/main.tf |
L96 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/monitor/main.tf |
L86 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/monitor/main.tf |
L86 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/monitor/main.tf |
L86 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/monitor/main.tf |
L91 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/monitor/main.tf |
L91 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/monitor/main.tf |
L91 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/spid_testenv/spid-testenv.tf |
L14 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/spid_testenv/spid-testenv.tf |
L14 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/spid_testenv/spid-testenv.tf |
L9 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/_modules/spid_testenv/spid-testenv.tf |
L9 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/dev-pnpg/app.tf |
L33 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/prod-pnpg/app.tf |
L24 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/uat-ar/commons.tf |
L541 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/core/uat-pnpg/app.tf |
L33 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/apim.tf |
L1679 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/apim.tf |
L1679 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/apim.tf |
L1679 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/apim.tf |
L1684 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/apim.tf |
L1684 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/apim.tf |
L1684 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/apim.tf |
L1689 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/apim.tf |
L1689 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/apim.tf |
L1689 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L35 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L35 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L35 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L45 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L45 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L45 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L55 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L55 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L55 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L40 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L40 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L40 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L71 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L71 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L71 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L50 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L50 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L50 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L60 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L60 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L60 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L76 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L76 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/apim_external_api/data.tf |
L76 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/dapr/data.tf |
L17 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/dapr/data.tf |
L17 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/dapr/data.tf |
L17 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/functions/function.tf |
L87 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/functions/function.tf |
L87 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/functions/function.tf |
L87 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/functions/function.tf |
L87 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/functions/function.tf |
L87 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/functions/function.tf |
L87 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/namirial_sws/data.tf |
L15 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/namirial_sws/data.tf |
L15 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/namirial_sws/data.tf |
L15 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/namirial_sws/data.tf |
L10 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/namirial_sws/data.tf |
L10 | Terraform must not read Key Vault secrets via data source |
| HIGH | AVD-DX-0001 | infra/resources/_modules/namirial_sws/data.tf |
L10 | Terraform must not read Key Vault secrets via data source |
📋 Pre-commit Output LogGenerated on Thu Aug 20 02:45:27 UTC 2026 |
📖 Terraform Plan (infra/resources/user-cdc/dev-pnpg) - successShow Plan # module.container_app_user_cdc.azurerm_container_app.container_app will be updated in-place
~ resource "azurerm_container_app" "container_app" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-rg/providers/Microsoft.App/containerApps/selc-d-pnpg-user-cdc-ca"
name = "selc-d-pnpg-user-cdc-ca"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (10 unchanged attributes hidden)
~ template {
# (6 unchanged attributes hidden)
~ container {
~ image = "ghcr.io/pagopa/selfcare-user-cdc:sha-9069e0e" -> "ghcr.io/pagopa/selfcare-user-cdc:sha-$(git r"
name = "selc-d-pnpg-user-cdc"
# (5 unchanged attributes hidden)
# (12 unchanged blocks hidden)
}
# (1 unchanged block hidden)
}
# (4 unchanged blocks hidden)
}
Plan: 0 to add, 1 to change, 0 to destroy. |
📖 Terraform Plan (infra/resources/user-ms/dev-ar) - successShow Plan # module.container_app_user_ms.azurerm_container_app.container_app will be updated in-place
~ resource "azurerm_container_app" "container_app" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-user-ms-ca"
name = "selc-d-user-ms-ca"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (10 unchanged attributes hidden)
~ template {
# (6 unchanged attributes hidden)
~ container {
~ image = "ghcr.io/pagopa/selfcare-user-ms:sha-437c1a8" -> "ghcr.io/pagopa/selfcare-user-ms:sha-$(git r"
name = "selc-d-user-ms"
# (5 unchanged attributes hidden)
- env {
- name = "USER_MS_WEBHOOK_TOPIC" -> null
- value = "SC-Users" -> null
# (1 unchanged attribute hidden)
}
# (32 unchanged blocks hidden)
}
# (1 unchanged block hidden)
}
# (8 unchanged blocks hidden)
}
Plan: 0 to add, 1 to change, 0 to destroy. |
📖 Terraform Plan (infra/resources/registry-proxy/dev-ar) - successShow Plan # module.container_app_registry_proxy_ms.azurerm_container_app.container_app will be updated in-place
~ resource "azurerm_container_app" "container_app" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-party-reg-proxy-ca"
name = "selc-d-party-reg-proxy-ca"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (10 unchanged attributes hidden)
~ template {
# (6 unchanged attributes hidden)
~ container {
~ image = "ghcr.io/pagopa/selfcare-registry-proxy-ms:sha-f5b052e" -> "ghcr.io/pagopa/selfcare-registry-proxy-ms:sha-$(git r"
name = "selc-d-party-reg-proxy"
# (5 unchanged attributes hidden)
# (61 unchanged blocks hidden)
}
# (1 unchanged block hidden)
}
# (23 unchanged blocks hidden)
}
# module.apim_api_registry_proxy.module.apim_api.azurerm_api_management_api_policy.this[0] will be updated in-place
~ resource "azurerm_api_management_api_policy" "this" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-api-v2-rg/providers/Microsoft.ApiManagement/service/selc-d-apim-v2/apis/selc-d-api-bff-proxy"
~ xml_content = <<-EOT
- <policies>
- <inbound>
- <cors allow-credentials="true">
- <allowed-origins>
- <origin>https://dev.selfcare.pagopa.it</origin>
- <origin>https://api.dev.selfcare.pagopa.it</origin>
- <origin>http://localhost:3000</origin>
- </allowed-origins>
- <allowed-methods>
- <method>GET</method>
- <method>POST</method>
- <method>PUT</method>
- <method>HEAD</method>
- <method>DELETE</method>
- <method>OPTIONS</method>
- </allowed-methods>
- <allowed-headers>
- <header>*</header>
- </allowed-headers>
- </cors>
- <base />
- </inbound>
- <backend>
- <base />
- </backend>
- <outbound>
- <base />
- </outbound>
- <on-error>
- <base />
- </on-error>
+ <policies>
+ <inbound>
+ <cors allow-credentials="true">
+ <allowed-origins>
+ <origin>http://localhost:3000</origin>
+ <origin>https://dev.selfcare.pagopa.it</origin>
+ <origin>https://api.dev.selfcare.pagopa.it</origin>
+ <origin>https://pnpg.dev.selfcare.pagopa.it</origin>
+ <origin>https://api-pnpg.dev.selfcare.pagopa.it</origin>
+ </allowed-origins>
+ <allowed-methods>
+ <method>GET</method>
+ <method>POST</method>
+ <method>PUT</method>
+ <method>HEAD</method>
+ <method>DELETE</method>
+ <method>OPTIONS</method>
+ </allowed-methods>
+ <allowed-headers>
+ <header>*</header>
+ </allowed-headers>
+ </cors>
+ <set-header name="X-Tenant-Id" exists-action="delete" />
+ <base />
+ </inbound>
+ <backend>
+ <base />
+ </backend>
+ <outbound>
+ <base />
+ </outbound>
+ <on-error>
+ <base />
+ </on-error>
</policies>
EOT
# (4 unchanged attributes hidden)
}
Plan: 0 to add, 2 to change, 0 to destroy.
Warning: Redundant ignore_changes element
on ../../_modules/ai_search_ipa/ipa.tf line 37, in resource "restapi_object" "ipa_institution_index":
37: resource "restapi_object" "ipa_institution_index" {
Adding an attribute name to ignore_changes tells Terraform to ignore future
changes to the argument in configuration after the object has been created,
retaining the value originally configured.
The attribute api_data is decided by the provider alone and therefore there
can be no configured value to compare with. Including this attribute in
ignore_changes has no effect. Remove the attribute from ignore_changes to
quiet this warning.
(and 9 more similar warnings elsewhere) |
📖 Terraform Plan (infra/resources/iam/dev-ar) - successShow Plan # module.container_app_iam_ms.azurerm_container_app.container_app will be updated in-place
~ resource "azurerm_container_app" "container_app" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-iam-ms-ca"
name = "selc-d-iam-ms-ca"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (10 unchanged attributes hidden)
~ template {
# (6 unchanged attributes hidden)
~ container {
~ image = "ghcr.io/pagopa/selfcare-iam-ms:sha-7937310" -> "ghcr.io/pagopa/selfcare-iam-ms:sha-$(git r"
name = "selc-d-iam-ms"
# (5 unchanged attributes hidden)
# (15 unchanged blocks hidden)
}
# (1 unchanged block hidden)
}
# (7 unchanged blocks hidden)
}
# module.apim_api.module.apim_api.azurerm_api_management_api.this will be updated in-place
~ resource "azurerm_api_management_api" "this" {
+ description = "IAM API"
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-api-v2-rg/providers/Microsoft.ApiManagement/service/selc-d-apim-v2/apis/selc-d-api-iam;rev=1"
name = "selc-d-api-iam"
# (16 unchanged attributes hidden)
# (2 unchanged blocks hidden)
}
Plan: 0 to add, 2 to change, 0 to destroy. |
📖 Terraform Plan (infra/resources/user-group-cdc/dev-ar) - successShow Plan # module.container_app_user_group_cdc.azurerm_container_app.container_app will be updated in-place
~ resource "azurerm_container_app" "container_app" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-user-group-cdc-ca"
name = "selc-d-user-group-cdc-ca"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (10 unchanged attributes hidden)
~ template {
# (6 unchanged attributes hidden)
~ container {
~ image = "ghcr.io/pagopa/selfcare-user-group-cdc:sha-9069e0e" -> "ghcr.io/pagopa/selfcare-user-group-cdc:sha-$(git r"
name = "selc-d-user-group-cdc"
# (5 unchanged attributes hidden)
# (14 unchanged blocks hidden)
}
# (1 unchanged block hidden)
}
# (4 unchanged blocks hidden)
}
Plan: 0 to add, 1 to change, 0 to destroy. |
📖 Terraform Plan (infra/resources/registry-proxy-runner/dev-ar) - successShow Plan # module.container_app.azurerm_container_app_job.container_app_job will be updated in-place
~ resource "azurerm_container_app_job" "container_app_job" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/jobs/selc-d-reg-proxy-runner-job"
name = "selc-d-reg-proxy-runner-job"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (8 unchanged attributes hidden)
~ template {
~ container {
~ image = "ghcr.io/pagopa/selfcare-registry-proxy-runner-ms:sha-1e8d997" -> "ghcr.io/pagopa/selfcare-registry-proxy-runner-ms:sha-$(git rev-parse --short 0fabf621382f0dea3c3f5be7197dbe858f157585)"
name = "selc-d-reg-proxy-runner"
# (5 unchanged attributes hidden)
# (7 unchanged blocks hidden)
}
}
# (4 unchanged blocks hidden)
}
Plan: 0 to add, 1 to change, 0 to destroy. |
📖 Terraform Plan (infra/resources/institution-ms/dev-pnpg) - successShow Plan # module.container_app_institution_ms_pnpg.azurerm_container_app.container_app will be updated in-place
~ resource "azurerm_container_app" "container_app" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-rg/providers/Microsoft.App/containerApps/selc-d-pnpg-institution-ms-ca"
name = "selc-d-pnpg-institution-ms-ca"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (10 unchanged attributes hidden)
~ template {
# (6 unchanged attributes hidden)
~ container {
~ image = "ghcr.io/pagopa/selfcare-institution-ms:sha-04e9e34" -> "ghcr.io/pagopa/selfcare-institution-ms:sha-$(git r"
name = "selc-d-pnpg-institution-ms"
# (5 unchanged attributes hidden)
# (38 unchanged blocks hidden)
}
# (1 unchanged block hidden)
}
# (11 unchanged blocks hidden)
}
Plan: 0 to add, 1 to change, 0 to destroy. |
📖 Terraform Plan (infra/resources/dashboard-bff/dev-pnpg) - successShow Plan # module.container_app_dashboard_bff_pnpg.azurerm_container_app.container_app will be updated in-place
~ resource "azurerm_container_app" "container_app" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-rg/providers/Microsoft.App/containerApps/selc-d-pnpg-dashboard-backend-ca"
name = "selc-d-pnpg-dashboard-backend-ca"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (10 unchanged attributes hidden)
~ template {
# (6 unchanged attributes hidden)
~ container {
~ image = "ghcr.io/pagopa/selfcare-dashboard-backend:sha-9069e0e" -> "ghcr.io/pagopa/selfcare-dashboard-backend:sha-$(git r"
name = "selc-d-pnpg-dashboard-backend"
# (5 unchanged attributes hidden)
# (39 unchanged blocks hidden)
}
# (1 unchanged block hidden)
}
# (8 unchanged blocks hidden)
}
# module.apim_api_bff_dashboard_pnpg.module.apim_api.azurerm_api_management_api_policy.this[0] will be updated in-place
~ resource "azurerm_api_management_api_policy" "this" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-api-v2-rg/providers/Microsoft.ApiManagement/service/selc-d-apim-v2/apis/selc-d-pnpg-api-bff-dashboard"
~ xml_content = <<-EOT
- <policies>
- <inbound>
- <cors allow-credentials="true">
- <allowed-origins>
- <origin>https://pnpg.dev.selfcare.pagopa.it</origin>
- <origin>https://api-pnpg.dev.selfcare.pagopa.it</origin>
- <origin>http://localhost:3000</origin>
- </allowed-origins>
- <allowed-methods>
- <method>GET</method>
- <method>POST</method>
- <method>PUT</method>
- <method>HEAD</method>
- <method>DELETE</method>
- <method>OPTIONS</method>
- </allowed-methods>
- <allowed-headers>
- <header>*</header>
- </allowed-headers>
- </cors>
- <base />
- </inbound>
- <backend>
- <base />
- </backend>
- <outbound>
- <base />
- </outbound>
- <on-error>
- <base />
- </on-error>
+ <policies>
+ <inbound>
+ <cors allow-credentials="true">
+ <allowed-origins>
+ <origin>http://localhost:3000</origin>
+ <origin>https://dev.selfcare.pagopa.it</origin>
+ <origin>https://api.dev.selfcare.pagopa.it</origin>
+ <origin>https://pnpg.dev.selfcare.pagopa.it</origin>
+ <origin>https://api-pnpg.dev.selfcare.pagopa.it</origin>
+ </allowed-origins>
+ <allowed-methods>
+ <method>GET</method>
+ <method>POST</method>
+ <method>PUT</method>
+ <method>HEAD</method>
+ <method>DELETE</method>
+ <method>OPTIONS</method>
+ </allowed-methods>
+ <allowed-headers>
+ <header>*</header>
+ </allowed-headers>
+ </cors>
+ <set-header name="X-Tenant-Id" exists-action="delete" />
+ <base />
+ </inbound>
+ <backend>
+ <base />
+ </backend>
+ <outbound>
+ <base />
+ </outbound>
+ <on-error>
+ <base />
+ </on-error>
</policies>
EOT
# (3 unchanged attributes hidden)
}
Plan: 0 to add, 2 to change, 0 to destroy. |
📖 Terraform Plan (infra/resources/institution-ms/dev-ar) - successShow Plan # module.container_app_institution_ms.azurerm_container_app.container_app will be updated in-place
~ resource "azurerm_container_app" "container_app" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-institution-ms-ca"
name = "selc-d-institution-ms-ca"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (10 unchanged attributes hidden)
~ template {
# (6 unchanged attributes hidden)
~ container {
~ image = "ghcr.io/pagopa/selfcare-institution-ms:sha-04e9e34" -> "ghcr.io/pagopa/selfcare-institution-ms:sha-$(git r"
name = "selc-d-institution-ms"
# (5 unchanged attributes hidden)
# (42 unchanged blocks hidden)
}
# (1 unchanged block hidden)
}
# (11 unchanged blocks hidden)
}
Plan: 0 to add, 1 to change, 0 to destroy. |
📖 Terraform Plan (infra/resources/dashboard-bff/dev-ar) - successShow Plan # module.container_app_dashboard_bff.azurerm_container_app.container_app will be updated in-place
~ resource "azurerm_container_app" "container_app" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-dashboard-backend-ca"
name = "selc-d-dashboard-backend-ca"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (10 unchanged attributes hidden)
~ template {
# (6 unchanged attributes hidden)
~ container {
~ image = "ghcr.io/pagopa/selfcare-dashboard-backend:sha-9069e0e" -> "ghcr.io/pagopa/selfcare-dashboard-backend:sha-$(git r"
name = "selc-d-dashboard-backend"
# (5 unchanged attributes hidden)
# (42 unchanged blocks hidden)
}
# (2 unchanged blocks hidden)
}
# (9 unchanged blocks hidden)
}
# module.apim_api_bff_dashboard.module.apim_api.azurerm_api_management_api_policy.this[0] will be updated in-place
~ resource "azurerm_api_management_api_policy" "this" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-api-v2-rg/providers/Microsoft.ApiManagement/service/selc-d-apim-v2/apis/selc-d-api-bff-dashboard"
~ xml_content = <<-EOT
- <policies>
- <inbound>
- <cors allow-credentials="true">
- <allowed-origins>
- <origin>https://dev.selfcare.pagopa.it</origin>
- <origin>https://api.dev.selfcare.pagopa.it</origin>
- <origin>http://localhost:3000</origin>
- </allowed-origins>
- <allowed-methods>
- <method>GET</method>
- <method>POST</method>
- <method>PUT</method>
- <method>HEAD</method>
- <method>DELETE</method>
- <method>OPTIONS</method>
- </allowed-methods>
- <allowed-headers>
- <header>*</header>
- </allowed-headers>
- </cors>
- <base />
- </inbound>
- <backend>
- <base />
- </backend>
- <outbound>
- <base />
- </outbound>
- <on-error>
- <base />
- </on-error>
+ <policies>
+ <inbound>
+ <cors allow-credentials="true">
+ <allowed-origins>
+ <origin>http://localhost:3000</origin>
+ <origin>https://dev.selfcare.pagopa.it</origin>
+ <origin>https://api.dev.selfcare.pagopa.it</origin>
+ <origin>https://pnpg.dev.selfcare.pagopa.it</origin>
+ <origin>https://api-pnpg.dev.selfcare.pagopa.it</origin>
+ </allowed-origins>
+ <allowed-methods>
+ <method>GET</method>
+ <method>POST</method>
+ <method>PUT</method>
+ <method>HEAD</method>
+ <method>DELETE</method>
+ <method>OPTIONS</method>
+ </allowed-methods>
+ <allowed-headers>
+ <header>*</header>
+ </allowed-headers>
+ </cors>
+ <set-header name="X-Tenant-Id" exists-action="delete" />
+ <base />
+ </inbound>
+ <backend>
+ <base />
+ </backend>
+ <outbound>
+ <base />
+ </outbound>
+ <on-error>
+ <base />
+ </on-error>
</policies>
EOT
# (3 unchanged attributes hidden)
}
Plan: 0 to add, 2 to change, 0 to destroy. |
📖 Terraform Plan (infra/resources/user-group-ms/dev-pnpg) - successShow Plan # module.container_app_user_group_ms.azurerm_container_app.container_app will be updated in-place
~ resource "azurerm_container_app" "container_app" {
id = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-rg/providers/Microsoft.App/containerApps/selc-d-pnpg-user-group-ca"
name = "selc-d-pnpg-user-group-ca"
tags = {
"CostCenter" = "TS310 - PAGAMENTI & SERVIZI"
"CreatedBy" = "Terraform"
"Environment" = "Dev"
"Owner" = "Selfcare"
"Source" = "https://github.com/pagopa/selfcare"
}
# (10 unchanged attributes hidden)
~ template {
# (6 unchanged attributes hidden)
~ container {
~ image = "ghcr.io/pagopa/selfcare-user-group-ms:sha-9069e0e" -> "ghcr.io/pagopa/selfcare-user-group-ms:sha-$(git r"
name = "selc-d-pnpg-user-group"
# (5 unchanged attributes hidden)
# (10 unchanged blocks hidden)
}
# (1 unchanged block hidden)
}
# (5 unchanged blocks hidden)
}
Plan: 0 to add, 1 to change, 0 to destroy. |



This PR contains the following updates:
11d5960cf277c6a0853c2ea165f8a299a969f7ce6f0e4a8c6605d0e2e35869ba38528ffdee7beed87cafb56292c76b81274baccbbe8fea7cefdc1a6Warning
Some dependencies could not be looked up. Check the warning logs for more information.
Configuration
📅 Schedule: (UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR has been generated by Mend Renovate.