{ACR} test tokens are masked#33436
Conversation
️✔️AzureCLI-FullTest
|
|
Hi @msarfraz, |
️✔️AzureCLI-BreakingChangeTest
|
|
Thank you for your contribution! We will review the pull request and get back to you soon. |
|
The git hooks are available for azure-cli and azure-cli-extensions repos. They could help you run required checks before creating the PR. Please sync the latest code with latest dev branch (for azure-cli) or main branch (for azure-cli-extensions). pip install azdev --upgrade
azdev setup -c <your azure-cli repo path> -r <your azure-cli-extensions repo path>
|
There was a problem hiding this comment.
Pull request overview
This PR sanitizes Azure Container Registry (ACR) test recordings to avoid committing sensitive OAuth token material (AAD access tokens and ACR refresh/access tokens) into the repo.
Changes:
- Masked
access_tokenvalues in recorded/oauth2/exchangerequest bodies. - Masked
refresh_tokenvalues returned from/oauth2/exchangeresponses. - Masked
refresh_tokenandaccess_tokenvalues in subsequent token-exchange request/response payloads.
Reviewed changes
Copilot reviewed 2 out of 2 changed files in this pull request and generated no comments.
| File | Description |
|---|---|
src/azure-cli/azure/cli/command_modules/acr/tests/latest/recordings/test_acr_login_expose_token.yaml |
Replaces recorded AAD access_token and ACR refresh_token with *** to prevent leaking token contents. |
src/azure-cli/azure/cli/command_modules/acr/tests/latest/recordings/test_acr_create_normal_check_health.yaml |
Replaces recorded AAD access_token, ACR refresh_token, and ACR access_token with *** across the exchange flow. |
💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.
|
/azp run |
|
Azure Pipelines successfully started running 3 pipeline(s). |
Related command
Description
Obscured sensitive refresh token in test recording.
Testing Guide
History Notes
[Component Name 1] BREAKING CHANGE:
az command a: Make some customer-facing breaking change[Component Name 2]
az command b: Add some customer-facing featureThis checklist is used to make sure that common guidelines for a pull request are followed.
The PR title and description has followed the guideline in Submitting Pull Requests.
I adhere to the Command Guidelines.
I adhere to the Error Handling Guidelines.