Skip to content

Pin dependencies - #743

Open
renovate-pagopa[bot] wants to merge 1 commit into
mainfrom
renovate/pin-dependencies
Open

Pin dependencies#743
renovate-pagopa[bot] wants to merge 1 commit into
mainfrom
renovate/pin-dependencies

Conversation

@renovate-pagopa

@renovate-pagopa renovate-pagopa Bot commented Aug 10, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Type Update Change
actions/checkout action pinDigest 11d5960
actions/setup-java action pinDigest cf277c6
actions/setup-node action pinDigest a0853c2
actions/upload-artifact action pinDigest ea165f8
alpine/git stage pinDigest a299a96
azure/CLI action pinDigest 9f7ce6f
dorny/paths-filter action pinDigest 0e4a8c6
ghcr.io/pagopa/selfcare-document-ms pinDigest 605d0e2
ghcr.io/pagopa/selfcare-iam-ms pinDigest e35869b
ghcr.io/pagopa/selfcare-institution-ms pinDigest a38528f
ghcr.io/pagopa/selfcare-onboarding-ms pinDigest fdee7be
ghcr.io/pagopa/selfcare-user-group-ms pinDigest ed87caf
ghcr.io/pagopa/selfcare-user-ms pinDigest b56292c
mcr.microsoft.com/azure-storage/azurite pinDigest 76b8127
mcr.microsoft.com/devcontainers/java final pinDigest 4baccbb
pagopa/dx action pinDigest e8fea7c
pagopa/selfcare-commons action pinDigest efdc1a6

Warning

Some dependencies could not be looked up. Check the warning logs for more information.


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate.

@sonarqubecloud

Copy link
Copy Markdown

@github-actions

Copy link
Copy Markdown
📋 Pre-commit Output Log
[INFO] Initializing environment for https://github.com/pagopa/dx.
[INFO] Initializing environment for https://github.com/antonbabenko/pre-commit-terraform.
Lock Terraform Registry modules......................(no files to check)Skipped

Generated on Thu Aug 20 02:40:06 UTC 2026
Run lock_modules on folder: infra/resources/registry-proxy/dev-ar/

@github-actions

Copy link
Copy Markdown
📋 Pre-commit Output Log
[INFO] Initializing environment for https://github.com/pagopa/dx.
[INFO] Initializing environment for https://github.com/antonbabenko/pre-commit-terraform.
Lock Terraform Registry modules......................(no files to check)Skipped

Generated on Thu Aug 20 02:40:09 UTC 2026
Run lock_modules on folder: infra/resources/registry-proxy-runner/dev-ar/

@github-actions

Copy link
Copy Markdown
📋 Pre-commit Output Log
[INFO] Initializing environment for https://github.com/pagopa/dx.
[INFO] Initializing environment for https://github.com/antonbabenko/pre-commit-terraform.
Lock Terraform Registry modules......................(no files to check)Skipped

Generated on Thu Aug 20 02:40:09 UTC 2026
Run lock_modules on folder: infra/resources/user-ms/dev-ar/

@github-actions

Copy link
Copy Markdown
📋 Pre-commit Output Log
[INFO] Initializing environment for https://github.com/pagopa/dx.
[INFO] Initializing environment for https://github.com/antonbabenko/pre-commit-terraform.
Lock Terraform Registry modules......................(no files to check)Skipped

Generated on Thu Aug 20 02:40:12 UTC 2026
Run lock_modules on folder: infra/resources/dashboard-bff/dev-pnpg/

@github-actions

Copy link
Copy Markdown
📋 Pre-commit Output Log
[INFO] Initializing environment for https://github.com/pagopa/dx.
[INFO] Initializing environment for https://github.com/antonbabenko/pre-commit-terraform.
Lock Terraform Registry modules......................(no files to check)Skipped

Generated on Thu Aug 20 02:40:15 UTC 2026
Run lock_modules on folder: infra/resources/institution-ms/dev-ar/

@github-actions

Copy link
Copy Markdown
📋 Pre-commit Output Log
[INFO] Initializing environment for https://github.com/pagopa/dx.
[INFO] Initializing environment for https://github.com/antonbabenko/pre-commit-terraform.
Lock Terraform Registry modules......................(no files to check)Skipped

Generated on Thu Aug 20 02:40:28 UTC 2026
Run lock_modules on folder: infra/resources/dashboard-bff/dev-ar/

@github-actions

Copy link
Copy Markdown
📋 Pre-commit Output Log
[INFO] Initializing environment for https://github.com/pagopa/dx.
[INFO] Initializing environment for https://github.com/antonbabenko/pre-commit-terraform.
Lock Terraform Registry modules......................(no files to check)Skipped

Generated on Thu Aug 20 02:41:13 UTC 2026
Run lock_modules on folder: infra/resources/institution-ms/dev-pnpg/

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/product/dev-ar) - success

Show Plan
  # module.container_app_product_ms.azurerm_container_app.container_app will be updated in-place
  ~ resource "azurerm_container_app" "container_app" {
        id                            = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-product-ms-ca"
        name                          = "selc-d-product-ms-ca"
        tags                          = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (10 unchanged attributes hidden)

      ~ template {
            # (6 unchanged attributes hidden)

          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-product-ms:sha-1c7ec8b" -> "ghcr.io/pagopa/selfcare-product-ms:sha-$(git r"
                name              = "selc-d-product-ms"
                # (5 unchanged attributes hidden)

                # (17 unchanged blocks hidden)
            }

            # (1 unchanged block hidden)
        }

        # (8 unchanged blocks hidden)
    }

Plan: 0 to add, 1 to change, 0 to destroy.

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/product-cdc/dev-ar) - success

Show Plan
  # module.container_app_product_cdc.azurerm_container_app.container_app will be updated in-place
  ~ resource "azurerm_container_app" "container_app" {
        id                            = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-product-cdc-ca"
        name                          = "selc-d-product-cdc-ca"
        tags                          = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (10 unchanged attributes hidden)

      ~ template {
            # (6 unchanged attributes hidden)

          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-product-cdc:sha-1c7ec8b" -> "ghcr.io/pagopa/selfcare-product-cdc:sha-$(git r"
                name              = "selc-d-product-cdc"
                # (5 unchanged attributes hidden)

                # (14 unchanged blocks hidden)
            }

            # (1 unchanged block hidden)
        }

        # (6 unchanged blocks hidden)
    }

Plan: 0 to add, 1 to change, 0 to destroy.

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/user-ms/dev-pnpg) - success

Show Plan
  # module.container_app_user_ms.azurerm_container_app.container_app will be updated in-place
  ~ resource "azurerm_container_app" "container_app" {
        id                            = "subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-rg/providers/Microsoft.App/containerApps/selc-d-pnpg-user-ms-ca"
        name                          = "selc-d-pnpg-user-ms-ca"
        tags                          = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (10 unchanged attributes hidden)

      ~ template {
            # (6 unchanged attributes hidden)

          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-user-ms:sha-3d8e49a" -> "ghcr.io/pagopa/selfcare-user-ms:sha-$(git r"
                name              = "selc-d-pnpg-user-ms"
                # (5 unchanged attributes hidden)

                # (26 unchanged blocks hidden)
            }

            # (1 unchanged block hidden)
        }

        # (8 unchanged blocks hidden)
    }

Plan: 0 to add, 1 to change, 0 to destroy.

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/user-cdc/dev-ar) - success

Show Plan
  # module.container_app_user_cdc.azurerm_container_app.container_app will be updated in-place
  ~ resource "azurerm_container_app" "container_app" {
        id                            = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-user-cdc-ca"
        name                          = "selc-d-user-cdc-ca"
        tags                          = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (10 unchanged attributes hidden)

      ~ template {
            # (6 unchanged attributes hidden)

          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-user-cdc:sha-9069e0e" -> "ghcr.io/pagopa/selfcare-user-cdc:sha-$(git r"
                name              = "selc-d-user-cdc"
                # (5 unchanged attributes hidden)

                # (26 unchanged blocks hidden)
            }

            # (1 unchanged block hidden)
        }

        # (6 unchanged blocks hidden)
    }

Plan: 0 to add, 1 to change, 0 to destroy.

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/user-group-ms/dev-ar) - success

Show Plan
  # module.container_app_user_group_ms.azurerm_container_app.container_app will be updated in-place
  ~ resource "azurerm_container_app" "container_app" {
        id                            = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-user-group-ca"
        name                          = "selc-d-user-group-ca"
        tags                          = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (10 unchanged attributes hidden)

      ~ template {
            # (6 unchanged attributes hidden)

          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-user-group-ms:sha-9069e0e" -> "ghcr.io/pagopa/selfcare-user-group-ms:sha-$(git r"
                name              = "selc-d-user-group"
                # (5 unchanged attributes hidden)

                # (10 unchanged blocks hidden)
            }

            # (1 unchanged block hidden)
        }

        # (5 unchanged blocks hidden)
    }

Plan: 0 to add, 1 to change, 0 to destroy.

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/institution-send-mail-scheduler/dev-ar) - success

Show Plan
  # module.container_app_job_institution_send_mail_scheduler.azurerm_container_app_job.container_app_job will be updated in-place
  ~ resource "azurerm_container_app_job" "container_app_job" {
        id                           = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/jobs/selc-d-inst-send-mail-job"
        name                         = "selc-d-inst-send-mail-job"
        tags                         = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (8 unchanged attributes hidden)

      ~ template {
          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-institution-send-mail-scheduler:sha-9069e0e" -> "ghcr.io/pagopa/selfcare-institution-send-mail-scheduler:sha-$(git rev-parse --short 0fabf621382f0dea3c3f5be7197dbe858f157585)"
                name              = "selc-d-inst-send-mail"
                # (5 unchanged attributes hidden)

                # (20 unchanged blocks hidden)
            }
        }

        # (6 unchanged blocks hidden)
    }

Plan: 0 to add, 1 to change, 0 to destroy.

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/auth/dev-ar) - success

Show Plan
  # module.container_app_auth_ms.azurerm_container_app.container_app will be updated in-place
  ~ resource "azurerm_container_app" "container_app" {
        id                            = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-auth-ms-ca"
        name                          = "selc-d-auth-ms-ca"
        tags                          = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (10 unchanged attributes hidden)

      ~ template {
            # (6 unchanged attributes hidden)

          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-auth-ms:sha-1c7ec8b" -> "ghcr.io/pagopa/selfcare-auth-ms:sha-$(git r"
                name              = "selc-d-auth-ms"
                # (5 unchanged attributes hidden)

                # (33 unchanged blocks hidden)
            }

            # (1 unchanged block hidden)
        }

        # (14 unchanged blocks hidden)
    }

  # module.apim_api_auth.module.apim_api.azurerm_api_management_api_policy.this[0] will be updated in-place
  ~ resource "azurerm_api_management_api_policy" "this" {
        id                  = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-api-v2-rg/providers/Microsoft.ApiManagement/service/selc-d-apim-v2/apis/selc-d-api-auth"
      ~ xml_content         = <<-EOT
          - <policies>
          + <policies>
          - 	<inbound>
          +     <inbound>
          - 		<cors allow-credentials="true">
          +         <cors allow-credentials="true">
          - 			<allowed-origins>
          +             <allowed-origins>
          - 				<origin>http://localhost:3000</origin>
          +                 <origin>http://localhost:3000</origin>
          - 				<origin>https://dev.selfcare.pagopa.it</origin>
          +                 <origin>https://dev.selfcare.pagopa.it</origin>
          - 				<origin>https://api.dev.selfcare.pagopa.it</origin>
          +                 <origin>https://api.dev.selfcare.pagopa.it</origin>
          - 				<origin>https://pnpg.dev.selfcare.pagopa.it</origin>
          +                 <origin>https://pnpg.dev.selfcare.pagopa.it</origin>
          - 				<origin>https://api-pnpg.dev.selfcare.pagopa.it</origin>
          +                 <origin>https://api-pnpg.dev.selfcare.pagopa.it</origin>
          - 			</allowed-origins>
          +             </allowed-origins>
          - 			<allowed-methods>
          +             <allowed-methods>
          - 				<method>GET</method>
          +                 <method>GET</method>
          - 				<method>POST</method>
          +                 <method>POST</method>
          - 				<method>PUT</method>
          +                 <method>PUT</method>
          - 				<method>HEAD</method>
          +                 <method>HEAD</method>
          - 				<method>DELETE</method>
          +                 <method>DELETE</method>
          - 				<method>OPTIONS</method>
          +                 <method>OPTIONS</method>
          - 			</allowed-methods>
          +             </allowed-methods>
          - 			<allowed-headers>
          +             <allowed-headers>
          - 				<header>Authorization</header>
          +                 <header>Authorization</header>
          - 				<header>Content-Type</header>
          +                 <header>Content-Type</header>
          - 				<header>Accept</header>
          +                 <header>Accept</header>
          - 				<header>traceparent</header>
          +                 <header>traceparent</header>
          - 				<header>tracestate</header>
          +                 <header>tracestate</header>
          - 			</allowed-headers>
          +             </allowed-headers>
          - 		</cors>
          +         </cors>
          - 		<set-variable name="tenantId" value="@{
          +         <set-variable name="tenantId" value='@{
                        var host = context.Request.OriginalUrl.Host;
                        if (string.IsNullOrWhiteSpace(host)) {
                            return string.Empty;
                        }
                        host = host.ToLowerInvariant();
                        if (host == "api.dev.selfcare.pagopa.it") {
                            return "AR";
                        }
                        if (host == "api-pnpg.dev.selfcare.pagopa.it") {
                            return "PNPG";
                        }
                        return string.Empty;
          -         }" />
          +         }' />
          - 		<choose>
          +         <choose>
          - 			<when condition="@((string)context.Variables["tenantId"] == string.Empty)">
          +             <when condition='@((string)context.Variables["tenantId"] == string.Empty)'>
          - 				<trace source="tenant-audit" severity="error">
          +                 <trace source="tenant-audit" severity="error">
          - 					<message>@("event=tenant_request_rejected reason=unknown_host operation=" + (context.Operation == null ? "unknown" : context.Operation.Id))</message>
          +                     <message>@("event=tenant_request_rejected reason=unknown_host operation=" + (context.Operation == null ? "unknown" : context.Operation.Id))</message>
          - 				</trace>
          +                 </trace>
          - 				<return-response>
          +                 <return-response>
          - 					<set-status code="403" reason="Forbidden" />
          +                     <set-status code="403" reason="Forbidden" />
          - 					<set-header name="Content-Type" exists-action="override">
          +                     <set-header name="Content-Type" exists-action="override">
          - 						<value>application/problem+json</value>
          +                         <value>application/problem+json</value>
          - 					</set-header>
          +                     </set-header>
          - 					<set-body>{"title":"Forbidden","status":403,"detail":"Invalid tenant context"}</set-body>
          +                     <set-body>{"title":"Forbidden","status":403,"detail":"Invalid tenant context"}</set-body>
          - 				</return-response>
          +                 </return-response>
          - 			</when>
          +             </when>
          - 		</choose>
          +         </choose>
          - 		<set-header name="X-Tenant-Id" exists-action="override">
          +         <set-header name="X-Tenant-Id" exists-action="override">
          - 			<value>@((string)context.Variables["tenantId"])</value>
          +             <value>@((string)context.Variables["tenantId"])</value>
          - 		</set-header>
          +         </set-header>
          - 		<base />
          +         <base />
          - 	</inbound>
          +     </inbound>
          - 	<backend>
          +     <backend>
          - 		<base />
          +         <base />
          - 	</backend>
          +     </backend>
          - 	<outbound>
          +     <outbound>
          - 		<base />
          +         <base />
          - 	</outbound>
          +     </outbound>
          - 	<on-error>
          +     <on-error>
          - 		<base />
          +         <base />
          - 	</on-error>
          +     </on-error>
            </policies>
        EOT
        # (4 unchanged attributes hidden)
    }

Plan: 0 to add, 2 to change, 0 to destroy.

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/delegation-cdc/dev-ar) - success

Show Plan
  # module.container_app_delegation_cdc.azurerm_container_app.container_app will be updated in-place
  ~ resource "azurerm_container_app" "container_app" {
        id                            = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-delegation-cdc-ca"
        name                          = "selc-d-delegation-cdc-ca"
        tags                          = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (10 unchanged attributes hidden)

      ~ template {
            # (6 unchanged attributes hidden)

          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-delegation-cdc:sha-9069e0e" -> "ghcr.io/pagopa/selfcare-delegation-cdc:sha-$(git r"
                name              = "selc-d-delegation-cdc"
                # (5 unchanged attributes hidden)

                # (14 unchanged blocks hidden)
            }

            # (1 unchanged block hidden)
        }

        # (4 unchanged blocks hidden)
    }

Plan: 0 to add, 1 to change, 0 to destroy.

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/external-api/dev-ar) - success

Show Plan
  # module.container_app_registry_proxy_ms.azurerm_container_app.container_app will be updated in-place
  ~ resource "azurerm_container_app" "container_app" {
        id                            = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-ext-api-backend-ca"
        name                          = "selc-d-ext-api-backend-ca"
        tags                          = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (10 unchanged attributes hidden)

      ~ template {
            # (6 unchanged attributes hidden)

          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-external-api-ms:sha-c38bb75" -> "ghcr.io/pagopa/selfcare-external-api-ms:sha-$(git r"
                name              = "selc-d-ext-api-backend"
                # (5 unchanged attributes hidden)

              ~ env {
                    name        = "MS_ONBOARDING_URL"
                  ~ value       = "http://selc-d-onboarding-ms-ca" -> "https://selc-d-onboarding-ms-ca.whitemoss-eb7ef327.westeurope.azurecontainerapps.io"
                    # (1 unchanged attribute hidden)
                }
              ~ env {
                    name        = "MS_CORE_URL"
                  ~ value       = "http://selc-d-institution-ms-ca" -> "https://selc-d-institution-ms-ca.whitemoss-eb7ef327.westeurope.azurecontainerapps.io"
                    # (1 unchanged attribute hidden)
                }
              ~ env {
                    name        = "USERVICE_PARTY_REGISTRY_PROXY_URL"
                  ~ value       = "http://selc-d-party-reg-proxy-ca" -> "https://selc-d-party-reg-proxy-ca.whitemoss-eb7ef327.westeurope.azurecontainerapps.io"
                    # (1 unchanged attribute hidden)
                }
              ~ env {
                    name        = "USERVICE_PARTY_PROCESS_URL"
                  ~ value       = "http://selc-d-institution-ms-ca" -> "https://selc-d-institution-ms-ca.whitemoss-eb7ef327.westeurope.azurecontainerapps.io"
                    # (1 unchanged attribute hidden)
                }
              ~ env {
                    name        = "USERVICE_PARTY_MANAGEMENT_URL"
                  ~ value       = "http://selc-d-institution-ms-ca" -> "https://selc-d-institution-ms-ca.whitemoss-eb7ef327.westeurope.azurecontainerapps.io"
                    # (1 unchanged attribute hidden)
                }
              ~ env {
                    name        = "SELFCARE_USER_URL"
                  ~ value       = "http://selc-d-user-ms-ca" -> "https://selc-d-user-ms-ca.whitemoss-eb7ef327.westeurope.azurecontainerapps.io"
                    # (1 unchanged attribute hidden)
                }
              ~ env {
                    name        = "MS_DOCUMENT_URL"
                  ~ value       = "http://selc-d-document-ms-ca" -> "https://selc-d-document-ms-ca.whitemoss-eb7ef327.westeurope.azurecontainerapps.io"
                    # (1 unchanged attribute hidden)
                }

                # (17 unchanged blocks hidden)
            }

            # (1 unchanged block hidden)
        }

        # (7 unchanged blocks hidden)
    }

Plan: 0 to add, 1 to change, 0 to destroy.

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/document-ms/dev-ar) - success

Show Plan
  # module.container_app_document_ms.azurerm_container_app.container_app will be updated in-place
  ~ resource "azurerm_container_app" "container_app" {
        id                            = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-document-ms-ca"
        name                          = "selc-d-document-ms-ca"
        tags                          = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (10 unchanged attributes hidden)

      ~ template {
            # (6 unchanged attributes hidden)

          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-document-ms:sha-9f82cab" -> "ghcr.io/pagopa/selfcare-document-ms:sha-$(git r"
                name              = "selc-d-document-ms"
                # (5 unchanged attributes hidden)

                # (19 unchanged blocks hidden)
            }

            # (1 unchanged block hidden)
        }

        # (7 unchanged blocks hidden)
    }

Plan: 0 to add, 1 to change, 0 to destroy.

@github-actions

Copy link
Copy Markdown

Warning

⚠️ Trivy detected forbidden Terraform patterns

The following findings must be resolved before this check becomes enforced.

Severity ID File Line Title
HIGH AVD-DX-0001 infra/bootstrap/_modules/github_repository_environment/main.tf L53 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/_modules/github_repository_environment/main.tf L53 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/_modules/github_repository_environment/main.tf L53 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/_modules/github_repository_environment/main.tf L53 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/_modules/github_repository_environment/main.tf L53 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/_modules/github_repository_environment/main.tf L53 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/_modules/github_repository_environment/main.tf L53 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/_modules/github_repository_environment/main.tf L53 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/_modules/github_repository_environment/main.tf L53 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/dev-ar/data.tf L25 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/dev-ar/data.tf L20 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/dev-ar/data.tf L35 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/dev-ar/data.tf L30 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/dev-ar/data.tf L11 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/prod-ar/data.tf L25 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/prod-ar/data.tf L20 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/prod-ar/data.tf L35 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/prod-ar/data.tf L30 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/prod-ar/data.tf L11 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/uat-ar/data.tf L25 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/uat-ar/data.tf L20 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/uat-ar/data.tf L35 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/uat-ar/data.tf L30 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/bootstrap/uat-ar/data.tf L11 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/cert/_modules/cert/data.tf L7 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/cert/_modules/cert/data.tf L7 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/cert/_modules/cert/data.tf L7 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/cert/_modules/cert/data.tf L7 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/cert/_modules/cert/data.tf L7 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/cert/_modules/cert/data.tf L7 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L35 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L35 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L35 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L45 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L45 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L45 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L55 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L55 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L55 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L40 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L40 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L40 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L71 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L71 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L71 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L50 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L50 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L50 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L60 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L60 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L60 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L76 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L76 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/apim/data.tf L76 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/data/azure_key_vault_items/main.tf L11 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/data/azure_key_vault_items/main.tf L11 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/data/azure_key_vault_items/main.tf L11 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/data/azure_key_vault_items/main.tf L22 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/data/azure_key_vault_items/main.tf L16 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/data/azure_key_vault_items/main.tf L28 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/data/azure_key_vault_items/main.tf L28 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/data/azure_key_vault_items/main.tf L28 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/data/docker_credentials/main.tf L6 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/data/docker_credentials/main.tf L1 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L26 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L26 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L26 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L26 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L26 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L26 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L31 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L31 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L31 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L31 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L31 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L31 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L36 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L36 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L36 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L36 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L36 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L36 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L41 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L41 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L41 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L41 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L41 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L41 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L159 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L159 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L159 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L159 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L159 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L159 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L92 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L92 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L92 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L92 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L92 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L92 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L117 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L117 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L117 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L117 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L117 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L117 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L164 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L164 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L164 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L164 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L164 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/key_vault/main.tf L164 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/monitor/main.tf L76 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/monitor/main.tf L76 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/monitor/main.tf L76 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/monitor/main.tf L81 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/monitor/main.tf L81 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/monitor/main.tf L81 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/monitor/main.tf L96 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/monitor/main.tf L96 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/monitor/main.tf L96 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/monitor/main.tf L86 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/monitor/main.tf L86 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/monitor/main.tf L86 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/monitor/main.tf L91 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/monitor/main.tf L91 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/monitor/main.tf L91 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/spid_testenv/spid-testenv.tf L14 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/spid_testenv/spid-testenv.tf L14 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/spid_testenv/spid-testenv.tf L9 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/_modules/spid_testenv/spid-testenv.tf L9 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/dev-pnpg/app.tf L33 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/prod-pnpg/app.tf L24 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/uat-ar/commons.tf L541 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/core/uat-pnpg/app.tf L33 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/apim.tf L1679 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/apim.tf L1679 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/apim.tf L1679 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/apim.tf L1684 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/apim.tf L1684 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/apim.tf L1684 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/apim.tf L1689 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/apim.tf L1689 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/apim.tf L1689 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L35 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L35 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L35 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L45 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L45 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L45 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L55 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L55 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L55 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L40 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L40 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L40 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L71 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L71 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L71 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L50 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L50 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L50 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L60 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L60 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L60 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L76 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L76 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/apim_external_api/data.tf L76 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/dapr/data.tf L17 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/dapr/data.tf L17 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/dapr/data.tf L17 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/functions/function.tf L87 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/functions/function.tf L87 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/functions/function.tf L87 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/functions/function.tf L87 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/functions/function.tf L87 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/functions/function.tf L87 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/namirial_sws/data.tf L15 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/namirial_sws/data.tf L15 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/namirial_sws/data.tf L15 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/namirial_sws/data.tf L10 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/namirial_sws/data.tf L10 Terraform must not read Key Vault secrets via data source
HIGH AVD-DX-0001 infra/resources/_modules/namirial_sws/data.tf L10 Terraform must not read Key Vault secrets via data source

@github-actions

Copy link
Copy Markdown
📋 Pre-commit Output Log
[INFO] Initializing environment for https://github.com/pagopa/dx.
[INFO] Initializing environment for https://github.com/antonbabenko/pre-commit-terraform.
Lock Terraform Registry modules......................(no files to check)Skipped

Generated on Thu Aug 20 02:45:27 UTC 2026
Run lock_modules on folder: infra/resources/user-group-ms/dev-pnpg/

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/user-cdc/dev-pnpg) - success

Show Plan
  # module.container_app_user_cdc.azurerm_container_app.container_app will be updated in-place
  ~ resource "azurerm_container_app" "container_app" {
        id                            = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-rg/providers/Microsoft.App/containerApps/selc-d-pnpg-user-cdc-ca"
        name                          = "selc-d-pnpg-user-cdc-ca"
        tags                          = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (10 unchanged attributes hidden)

      ~ template {
            # (6 unchanged attributes hidden)

          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-user-cdc:sha-9069e0e" -> "ghcr.io/pagopa/selfcare-user-cdc:sha-$(git r"
                name              = "selc-d-pnpg-user-cdc"
                # (5 unchanged attributes hidden)

                # (12 unchanged blocks hidden)
            }

            # (1 unchanged block hidden)
        }

        # (4 unchanged blocks hidden)
    }

Plan: 0 to add, 1 to change, 0 to destroy.

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/user-ms/dev-ar) - success

Show Plan
  # module.container_app_user_ms.azurerm_container_app.container_app will be updated in-place
  ~ resource "azurerm_container_app" "container_app" {
        id                            = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-user-ms-ca"
        name                          = "selc-d-user-ms-ca"
        tags                          = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (10 unchanged attributes hidden)

      ~ template {
            # (6 unchanged attributes hidden)

          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-user-ms:sha-437c1a8" -> "ghcr.io/pagopa/selfcare-user-ms:sha-$(git r"
                name              = "selc-d-user-ms"
                # (5 unchanged attributes hidden)

              - env {
                  - name        = "USER_MS_WEBHOOK_TOPIC" -> null
                  - value       = "SC-Users" -> null
                    # (1 unchanged attribute hidden)
                }

                # (32 unchanged blocks hidden)
            }

            # (1 unchanged block hidden)
        }

        # (8 unchanged blocks hidden)
    }

Plan: 0 to add, 1 to change, 0 to destroy.

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/registry-proxy/dev-ar) - success

Show Plan
  # module.container_app_registry_proxy_ms.azurerm_container_app.container_app will be updated in-place
  ~ resource "azurerm_container_app" "container_app" {
        id                            = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-party-reg-proxy-ca"
        name                          = "selc-d-party-reg-proxy-ca"
        tags                          = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (10 unchanged attributes hidden)

      ~ template {
            # (6 unchanged attributes hidden)

          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-registry-proxy-ms:sha-f5b052e" -> "ghcr.io/pagopa/selfcare-registry-proxy-ms:sha-$(git r"
                name              = "selc-d-party-reg-proxy"
                # (5 unchanged attributes hidden)

                # (61 unchanged blocks hidden)
            }

            # (1 unchanged block hidden)
        }

        # (23 unchanged blocks hidden)
    }

  # module.apim_api_registry_proxy.module.apim_api.azurerm_api_management_api_policy.this[0] will be updated in-place
  ~ resource "azurerm_api_management_api_policy" "this" {
        id                  = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-api-v2-rg/providers/Microsoft.ApiManagement/service/selc-d-apim-v2/apis/selc-d-api-bff-proxy"
      ~ xml_content         = <<-EOT
          - <policies>
          - 	<inbound>
          - 		<cors allow-credentials="true">
          - 			<allowed-origins>
          - 				<origin>https://dev.selfcare.pagopa.it</origin>
          - 				<origin>https://api.dev.selfcare.pagopa.it</origin>
          - 				<origin>http://localhost:3000</origin>
          - 			</allowed-origins>
          - 			<allowed-methods>
          - 				<method>GET</method>
          - 				<method>POST</method>
          - 				<method>PUT</method>
          - 				<method>HEAD</method>
          - 				<method>DELETE</method>
          - 				<method>OPTIONS</method>
          - 			</allowed-methods>
          - 			<allowed-headers>
          - 				<header>*</header>
          - 			</allowed-headers>
          - 		</cors>
          - 		<base />
          - 	</inbound>
          - 	<backend>
          - 		<base />
          - 	</backend>
          - 	<outbound>
          - 		<base />
          - 	</outbound>
          - 	<on-error>
          - 		<base />
          - 	</on-error>
          + <policies>
          +     <inbound>
          +         <cors allow-credentials="true">
          +             <allowed-origins>
          +                 <origin>http://localhost:3000</origin>
          +                 <origin>https://dev.selfcare.pagopa.it</origin>
          +                 <origin>https://api.dev.selfcare.pagopa.it</origin>
          +                 <origin>https://pnpg.dev.selfcare.pagopa.it</origin>
          +                 <origin>https://api-pnpg.dev.selfcare.pagopa.it</origin>
          +             </allowed-origins>
          +             <allowed-methods>
          +                 <method>GET</method>
          +                 <method>POST</method>
          +                 <method>PUT</method>
          +                 <method>HEAD</method>
          +                 <method>DELETE</method>
          +                 <method>OPTIONS</method>
          +             </allowed-methods>
          +             <allowed-headers>
          +                 <header>*</header>
          +             </allowed-headers>
          +         </cors>
          +         <set-header name="X-Tenant-Id" exists-action="delete" />
          +         <base />
          +     </inbound>
          +     <backend>
          +         <base />
          +     </backend>
          +     <outbound>
          +         <base />
          +     </outbound>
          +     <on-error>
          +         <base />
          +     </on-error>
            </policies>
        EOT
        # (4 unchanged attributes hidden)
    }

Plan: 0 to add, 2 to change, 0 to destroy.

Warning: Redundant ignore_changes element

  on ../../_modules/ai_search_ipa/ipa.tf line 37, in resource "restapi_object" "ipa_institution_index":
  37: resource "restapi_object" "ipa_institution_index" {

Adding an attribute name to ignore_changes tells Terraform to ignore future
changes to the argument in configuration after the object has been created,
retaining the value originally configured.

The attribute api_data is decided by the provider alone and therefore there
can be no configured value to compare with. Including this attribute in
ignore_changes has no effect. Remove the attribute from ignore_changes to
quiet this warning.

(and 9 more similar warnings elsewhere)

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/iam/dev-ar) - success

Show Plan
  # module.container_app_iam_ms.azurerm_container_app.container_app will be updated in-place
  ~ resource "azurerm_container_app" "container_app" {
        id                            = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-iam-ms-ca"
        name                          = "selc-d-iam-ms-ca"
        tags                          = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (10 unchanged attributes hidden)

      ~ template {
            # (6 unchanged attributes hidden)

          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-iam-ms:sha-7937310" -> "ghcr.io/pagopa/selfcare-iam-ms:sha-$(git r"
                name              = "selc-d-iam-ms"
                # (5 unchanged attributes hidden)

                # (15 unchanged blocks hidden)
            }

            # (1 unchanged block hidden)
        }

        # (7 unchanged blocks hidden)
    }

  # module.apim_api.module.apim_api.azurerm_api_management_api.this will be updated in-place
  ~ resource "azurerm_api_management_api" "this" {
      + description           = "IAM API"
        id                    = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-api-v2-rg/providers/Microsoft.ApiManagement/service/selc-d-apim-v2/apis/selc-d-api-iam;rev=1"
        name                  = "selc-d-api-iam"
        # (16 unchanged attributes hidden)

        # (2 unchanged blocks hidden)
    }

Plan: 0 to add, 2 to change, 0 to destroy.

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/user-group-cdc/dev-ar) - success

Show Plan
  # module.container_app_user_group_cdc.azurerm_container_app.container_app will be updated in-place
  ~ resource "azurerm_container_app" "container_app" {
        id                            = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-user-group-cdc-ca"
        name                          = "selc-d-user-group-cdc-ca"
        tags                          = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (10 unchanged attributes hidden)

      ~ template {
            # (6 unchanged attributes hidden)

          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-user-group-cdc:sha-9069e0e" -> "ghcr.io/pagopa/selfcare-user-group-cdc:sha-$(git r"
                name              = "selc-d-user-group-cdc"
                # (5 unchanged attributes hidden)

                # (14 unchanged blocks hidden)
            }

            # (1 unchanged block hidden)
        }

        # (4 unchanged blocks hidden)
    }

Plan: 0 to add, 1 to change, 0 to destroy.

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/registry-proxy-runner/dev-ar) - success

Show Plan
  # module.container_app.azurerm_container_app_job.container_app_job will be updated in-place
  ~ resource "azurerm_container_app_job" "container_app_job" {
        id                           = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/jobs/selc-d-reg-proxy-runner-job"
        name                         = "selc-d-reg-proxy-runner-job"
        tags                         = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (8 unchanged attributes hidden)

      ~ template {
          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-registry-proxy-runner-ms:sha-1e8d997" -> "ghcr.io/pagopa/selfcare-registry-proxy-runner-ms:sha-$(git rev-parse --short 0fabf621382f0dea3c3f5be7197dbe858f157585)"
                name              = "selc-d-reg-proxy-runner"
                # (5 unchanged attributes hidden)

                # (7 unchanged blocks hidden)
            }
        }

        # (4 unchanged blocks hidden)
    }

Plan: 0 to add, 1 to change, 0 to destroy.

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/institution-ms/dev-pnpg) - success

Show Plan
  # module.container_app_institution_ms_pnpg.azurerm_container_app.container_app will be updated in-place
  ~ resource "azurerm_container_app" "container_app" {
        id                            = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-rg/providers/Microsoft.App/containerApps/selc-d-pnpg-institution-ms-ca"
        name                          = "selc-d-pnpg-institution-ms-ca"
        tags                          = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (10 unchanged attributes hidden)

      ~ template {
            # (6 unchanged attributes hidden)

          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-institution-ms:sha-04e9e34" -> "ghcr.io/pagopa/selfcare-institution-ms:sha-$(git r"
                name              = "selc-d-pnpg-institution-ms"
                # (5 unchanged attributes hidden)

                # (38 unchanged blocks hidden)
            }

            # (1 unchanged block hidden)
        }

        # (11 unchanged blocks hidden)
    }

Plan: 0 to add, 1 to change, 0 to destroy.

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/dashboard-bff/dev-pnpg) - success

Show Plan
  # module.container_app_dashboard_bff_pnpg.azurerm_container_app.container_app will be updated in-place
  ~ resource "azurerm_container_app" "container_app" {
        id                            = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-rg/providers/Microsoft.App/containerApps/selc-d-pnpg-dashboard-backend-ca"
        name                          = "selc-d-pnpg-dashboard-backend-ca"
        tags                          = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (10 unchanged attributes hidden)

      ~ template {
            # (6 unchanged attributes hidden)

          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-dashboard-backend:sha-9069e0e" -> "ghcr.io/pagopa/selfcare-dashboard-backend:sha-$(git r"
                name              = "selc-d-pnpg-dashboard-backend"
                # (5 unchanged attributes hidden)

                # (39 unchanged blocks hidden)
            }

            # (1 unchanged block hidden)
        }

        # (8 unchanged blocks hidden)
    }

  # module.apim_api_bff_dashboard_pnpg.module.apim_api.azurerm_api_management_api_policy.this[0] will be updated in-place
  ~ resource "azurerm_api_management_api_policy" "this" {
        id                  = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-api-v2-rg/providers/Microsoft.ApiManagement/service/selc-d-apim-v2/apis/selc-d-pnpg-api-bff-dashboard"
      ~ xml_content         = <<-EOT
          - <policies>
          - 	<inbound>
          - 		<cors allow-credentials="true">
          - 			<allowed-origins>
          - 				<origin>https://pnpg.dev.selfcare.pagopa.it</origin>
          - 				<origin>https://api-pnpg.dev.selfcare.pagopa.it</origin>
          - 				<origin>http://localhost:3000</origin>
          - 			</allowed-origins>
          - 			<allowed-methods>
          - 				<method>GET</method>
          - 				<method>POST</method>
          - 				<method>PUT</method>
          - 				<method>HEAD</method>
          - 				<method>DELETE</method>
          - 				<method>OPTIONS</method>
          - 			</allowed-methods>
          - 			<allowed-headers>
          - 				<header>*</header>
          - 			</allowed-headers>
          - 		</cors>
          - 		<base />
          - 	</inbound>
          - 	<backend>
          - 		<base />
          - 	</backend>
          - 	<outbound>
          - 		<base />
          - 	</outbound>
          - 	<on-error>
          - 		<base />
          - 	</on-error>
          + <policies>
          +     <inbound>
          +         <cors allow-credentials="true">
          +             <allowed-origins>
          +                 <origin>http://localhost:3000</origin>
          +                 <origin>https://dev.selfcare.pagopa.it</origin>
          +                 <origin>https://api.dev.selfcare.pagopa.it</origin>
          +                 <origin>https://pnpg.dev.selfcare.pagopa.it</origin>
          +                 <origin>https://api-pnpg.dev.selfcare.pagopa.it</origin>
          +             </allowed-origins>
          +             <allowed-methods>
          +                 <method>GET</method>
          +                 <method>POST</method>
          +                 <method>PUT</method>
          +                 <method>HEAD</method>
          +                 <method>DELETE</method>
          +                 <method>OPTIONS</method>
          +             </allowed-methods>
          +             <allowed-headers>
          +                 <header>*</header>
          +             </allowed-headers>
          +         </cors>
          +         <set-header name="X-Tenant-Id" exists-action="delete" />
          +         <base />
          +     </inbound>
          +     <backend>
          +         <base />
          +     </backend>
          +     <outbound>
          +         <base />
          +     </outbound>
          +     <on-error>
          +         <base />
          +     </on-error>
            </policies>
        EOT
        # (3 unchanged attributes hidden)
    }

Plan: 0 to add, 2 to change, 0 to destroy.

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/institution-ms/dev-ar) - success

Show Plan
  # module.container_app_institution_ms.azurerm_container_app.container_app will be updated in-place
  ~ resource "azurerm_container_app" "container_app" {
        id                            = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-institution-ms-ca"
        name                          = "selc-d-institution-ms-ca"
        tags                          = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (10 unchanged attributes hidden)

      ~ template {
            # (6 unchanged attributes hidden)

          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-institution-ms:sha-04e9e34" -> "ghcr.io/pagopa/selfcare-institution-ms:sha-$(git r"
                name              = "selc-d-institution-ms"
                # (5 unchanged attributes hidden)

                # (42 unchanged blocks hidden)
            }

            # (1 unchanged block hidden)
        }

        # (11 unchanged blocks hidden)
    }

Plan: 0 to add, 1 to change, 0 to destroy.

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/dashboard-bff/dev-ar) - success

Show Plan
  # module.container_app_dashboard_bff.azurerm_container_app.container_app will be updated in-place
  ~ resource "azurerm_container_app" "container_app" {
        id                            = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-002-rg/providers/Microsoft.App/containerApps/selc-d-dashboard-backend-ca"
        name                          = "selc-d-dashboard-backend-ca"
        tags                          = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (10 unchanged attributes hidden)

      ~ template {
            # (6 unchanged attributes hidden)

          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-dashboard-backend:sha-9069e0e" -> "ghcr.io/pagopa/selfcare-dashboard-backend:sha-$(git r"
                name              = "selc-d-dashboard-backend"
                # (5 unchanged attributes hidden)

                # (42 unchanged blocks hidden)
            }

            # (2 unchanged blocks hidden)
        }

        # (9 unchanged blocks hidden)
    }

  # module.apim_api_bff_dashboard.module.apim_api.azurerm_api_management_api_policy.this[0] will be updated in-place
  ~ resource "azurerm_api_management_api_policy" "this" {
        id                  = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-api-v2-rg/providers/Microsoft.ApiManagement/service/selc-d-apim-v2/apis/selc-d-api-bff-dashboard"
      ~ xml_content         = <<-EOT
          - <policies>
          - 	<inbound>
          - 		<cors allow-credentials="true">
          - 			<allowed-origins>
          - 				<origin>https://dev.selfcare.pagopa.it</origin>
          - 				<origin>https://api.dev.selfcare.pagopa.it</origin>
          - 				<origin>http://localhost:3000</origin>
          - 			</allowed-origins>
          - 			<allowed-methods>
          - 				<method>GET</method>
          - 				<method>POST</method>
          - 				<method>PUT</method>
          - 				<method>HEAD</method>
          - 				<method>DELETE</method>
          - 				<method>OPTIONS</method>
          - 			</allowed-methods>
          - 			<allowed-headers>
          - 				<header>*</header>
          - 			</allowed-headers>
          - 		</cors>
          - 		<base />
          - 	</inbound>
          - 	<backend>
          - 		<base />
          - 	</backend>
          - 	<outbound>
          - 		<base />
          - 	</outbound>
          - 	<on-error>
          - 		<base />
          - 	</on-error>
          + <policies>
          +     <inbound>
          +         <cors allow-credentials="true">
          +             <allowed-origins>
          +                 <origin>http://localhost:3000</origin>
          +                 <origin>https://dev.selfcare.pagopa.it</origin>
          +                 <origin>https://api.dev.selfcare.pagopa.it</origin>
          +                 <origin>https://pnpg.dev.selfcare.pagopa.it</origin>
          +                 <origin>https://api-pnpg.dev.selfcare.pagopa.it</origin>
          +             </allowed-origins>
          +             <allowed-methods>
          +                 <method>GET</method>
          +                 <method>POST</method>
          +                 <method>PUT</method>
          +                 <method>HEAD</method>
          +                 <method>DELETE</method>
          +                 <method>OPTIONS</method>
          +             </allowed-methods>
          +             <allowed-headers>
          +                 <header>*</header>
          +             </allowed-headers>
          +         </cors>
          +         <set-header name="X-Tenant-Id" exists-action="delete" />
          +         <base />
          +     </inbound>
          +     <backend>
          +         <base />
          +     </backend>
          +     <outbound>
          +         <base />
          +     </outbound>
          +     <on-error>
          +         <base />
          +     </on-error>
            </policies>
        EOT
        # (3 unchanged attributes hidden)
    }

Plan: 0 to add, 2 to change, 0 to destroy.

@github-actions

Copy link
Copy Markdown

📖 Terraform Plan (infra/resources/user-group-ms/dev-pnpg) - success

Show Plan
  # module.container_app_user_group_ms.azurerm_container_app.container_app will be updated in-place
  ~ resource "azurerm_container_app" "container_app" {
        id                            = "/subscriptions/1ab5e788-3b98-4c63-bd05-de0c7388c853/resourceGroups/selc-d-container-app-rg/providers/Microsoft.App/containerApps/selc-d-pnpg-user-group-ca"
        name                          = "selc-d-pnpg-user-group-ca"
        tags                          = {
            "CostCenter"  = "TS310 - PAGAMENTI & SERVIZI"
            "CreatedBy"   = "Terraform"
            "Environment" = "Dev"
            "Owner"       = "Selfcare"
            "Source"      = "https://github.com/pagopa/selfcare"
        }
        # (10 unchanged attributes hidden)

      ~ template {
            # (6 unchanged attributes hidden)

          ~ container {
              ~ image             = "ghcr.io/pagopa/selfcare-user-group-ms:sha-9069e0e" -> "ghcr.io/pagopa/selfcare-user-group-ms:sha-$(git r"
                name              = "selc-d-pnpg-user-group"
                # (5 unchanged attributes hidden)

                # (10 unchanged blocks hidden)
            }

            # (1 unchanged block hidden)
        }

        # (5 unchanged blocks hidden)
    }

Plan: 0 to add, 1 to change, 0 to destroy.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants