Skip to content

{ACR} Mask refresh token in test_acr_create_normal_check_health#33426

Open
isra-fel wants to merge 2 commits into
devfrom
isra-fel-patch-3
Open

{ACR} Mask refresh token in test_acr_create_normal_check_health#33426
isra-fel wants to merge 2 commits into
devfrom
isra-fel-patch-3

Conversation

@isra-fel
Copy link
Copy Markdown
Member

Obscured sensitive refresh token in test recording.

Related command

Description

Testing Guide

History Notes

[Component Name 1] BREAKING CHANGE: az command a: Make some customer-facing breaking change
[Component Name 2] az command b: Add some customer-facing feature


This checklist is used to make sure that common guidelines for a pull request are followed.

Obscured sensitive refresh token in test recording.
Copilot AI review requested due to automatic review settings May 22, 2026 07:33
@azure-client-tools-bot-prd
Copy link
Copy Markdown

azure-client-tools-bot-prd Bot commented May 22, 2026

️✔️AzureCLI-FullTest
️✔️acr
️✔️latest
️✔️3.12
️✔️3.13
️✔️acs
️✔️latest
️✔️3.12
️✔️3.13
️✔️advisor
️✔️latest
️✔️3.12
️✔️3.13
️✔️ams
️✔️latest
️✔️3.12
️✔️3.13
️✔️apim
️✔️latest
️✔️3.12
️✔️3.13
️✔️appconfig
️✔️latest
️✔️3.12
️✔️3.13
️✔️appservice
️✔️latest
️✔️3.12
️✔️3.13
️✔️aro
️✔️latest
️✔️3.12
️✔️3.13
️✔️backup
️✔️latest
️✔️3.12
️✔️3.13
️✔️batch
️✔️latest
️✔️3.12
️✔️3.13
️✔️batchai
️✔️latest
️✔️3.12
️✔️3.13
️✔️billing
️✔️latest
️✔️3.12
️✔️3.13
️✔️botservice
️✔️latest
️✔️3.12
️✔️3.13
️✔️cdn
️✔️latest
️✔️3.12
️✔️3.13
️✔️cloud
️✔️latest
️✔️3.12
️✔️3.13
️✔️cognitiveservices
️✔️latest
️✔️3.12
️✔️3.13
️✔️compute_recommender
️✔️latest
️✔️3.12
️✔️3.13
️✔️computefleet
️✔️latest
️✔️3.12
️✔️3.13
️✔️config
️✔️latest
️✔️3.12
️✔️3.13
️✔️configure
️✔️latest
️✔️3.12
️✔️3.13
️✔️consumption
️✔️latest
️✔️3.12
️✔️3.13
️✔️container
️✔️latest
️✔️3.12
️✔️3.13
️✔️containerapp
️✔️latest
️✔️3.12
️✔️3.13
️✔️core
️✔️latest
️✔️3.12
️✔️3.13
️✔️cosmosdb
️✔️latest
️✔️3.12
️✔️3.13
️✔️databoxedge
️✔️latest
️✔️3.12
️✔️3.13
️✔️dls
️✔️latest
️✔️3.12
️✔️3.13
️✔️dms
️✔️latest
️✔️3.12
️✔️3.13
️✔️eventgrid
️✔️latest
️✔️3.12
️✔️3.13
️✔️eventhubs
️✔️latest
️✔️3.12
️✔️3.13
️✔️feedback
️✔️latest
️✔️3.12
️✔️3.13
️✔️find
️✔️latest
️✔️3.12
️✔️3.13
️✔️hdinsight
️✔️latest
️✔️3.12
️✔️3.13
️✔️identity
️✔️latest
️✔️3.12
️✔️3.13
️✔️iot
️✔️latest
️✔️3.12
️✔️3.13
️✔️keyvault
️✔️latest
️✔️3.12
️✔️3.13
️✔️lab
️✔️latest
️✔️3.12
️✔️3.13
️✔️managedservices
️✔️latest
️✔️3.12
️✔️3.13
️✔️maps
️✔️latest
️✔️3.12
️✔️3.13
️✔️marketplaceordering
️✔️latest
️✔️3.12
️✔️3.13
️✔️monitor
️✔️latest
️✔️3.12
️✔️3.13
️✔️mysql
️✔️latest
️✔️3.12
️✔️3.13
️✔️netappfiles
️✔️latest
️✔️3.12
️✔️3.13
️✔️network
️✔️latest
️✔️3.12
️✔️3.13
️✔️policyinsights
️✔️latest
️✔️3.12
️✔️3.13
️✔️postgresql
️✔️latest
️✔️3.12
️✔️3.13
️✔️privatedns
️✔️latest
️✔️3.12
️✔️3.13
️✔️profile
️✔️latest
️✔️3.12
️✔️3.13
️✔️rdbms
️✔️latest
️✔️3.12
️✔️3.13
️✔️redis
️✔️latest
️✔️3.12
️✔️3.13
️✔️relay
️✔️latest
️✔️3.12
️✔️3.13
️✔️resource
️✔️latest
️✔️3.12
️✔️3.13
️✔️role
️✔️latest
️✔️3.12
️✔️3.13
️✔️search
️✔️latest
️✔️3.12
️✔️3.13
️✔️security
️✔️latest
️✔️3.12
️✔️3.13
️✔️servicebus
️✔️latest
️✔️3.12
️✔️3.13
️✔️serviceconnector
️✔️latest
️✔️3.12
️✔️3.13
️✔️servicefabric
️✔️latest
️✔️3.12
️✔️3.13
️✔️signalr
️✔️latest
️✔️3.12
️✔️3.13
️✔️sql
️✔️latest
️✔️3.12
️✔️3.13
️✔️sqlvm
️✔️latest
️✔️3.12
️✔️3.13
️✔️storage
️✔️latest
️✔️3.12
️✔️3.13
️✔️synapse
️✔️latest
️✔️3.12
️✔️3.13
️✔️telemetry
️✔️latest
️✔️3.12
️✔️3.13
️✔️util
️✔️latest
️✔️3.12
️✔️3.13
️✔️vm
️✔️latest
️✔️3.12
️✔️3.13

@azure-client-tools-bot-prd
Copy link
Copy Markdown

Hi @isra-fel,
Since the current milestone time is less than 7 days, this pr will be reviewed in the next milestone.

@azure-client-tools-bot-prd
Copy link
Copy Markdown

azure-client-tools-bot-prd Bot commented May 22, 2026

️✔️AzureCLI-BreakingChangeTest
️✔️Non Breaking Changes

Obscured the refresh token in the test recording for security.
@yonzhan
Copy link
Copy Markdown
Collaborator

yonzhan commented May 22, 2026

Thank you for your contribution! We will review the pull request and get back to you soon.

@github-actions
Copy link
Copy Markdown

The git hooks are available for azure-cli and azure-cli-extensions repos. They could help you run required checks before creating the PR.

Please sync the latest code with latest dev branch (for azure-cli) or main branch (for azure-cli-extensions).
After that please run the following commands to enable git hooks:

pip install azdev --upgrade
azdev setup -c <your azure-cli repo path> -r <your azure-cli-extensions repo path>

@yanzhudd yanzhudd changed the title Mask refresh token in test_acr_create_normal_check_health {ACR} Mask refresh token in test_acr_create_normal_check_health May 22, 2026
Copy link
Copy Markdown
Contributor

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR updates ACR scenario test recordings to obscure a sensitive ACR /oauth2/exchange refresh_token that was previously checked into the repo.

Changes:

  • Masked the refresh_token value returned by the ACR /oauth2/exchange endpoint in two test recording YAML files.
  • Replaced the recorded token value with a placeholder string ("******").

Reviewed changes

Copilot reviewed 2 out of 2 changed files in this pull request and generated 3 comments.

File Description
src/azure-cli/azure/cli/command_modules/acr/tests/latest/recordings/test_acr_login_expose_token.yaml Masks the /oauth2/exchange refresh_token in the recorded response body.
src/azure-cli/azure/cli/command_modules/acr/tests/latest/recordings/test_acr_create_normal_check_health.yaml Masks the /oauth2/exchange refresh_token in the recorded response body.

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

Comment on lines 309 to 313
uri: https://clireg000002.azurecr.io/oauth2/exchange
response:
body:
string: '{"refresh_token":"eyJhbGciOiJSUzI1NiIsInR5cCI6IkpXVCIsImtpZCI6IkxHSEY6Q0NLNDpDVVRaOlQzWUc6UFc2Mjo1UEFaOjJST086TjNZVTpOUUVaOkdXWDU6VDRZUjpVR0JXIn0.eyJqdGkiOiI2NzJjMjFiMS1iOTU2LTQ5MTQtOGNmYS04NjY0NDIyZDY5NWQiLCJzdWIiOiJjbGFya3BvcnRlckBtaWNyb3NvZnQuY29tIiwibmJmIjoxNzc2ODAzNTA2LCJleHAiOjE3NzY4MTUyMDYsImlhdCI6MTc3NjgwMzUwNiwiaXNzIjoiQXp1cmUgQ29udGFpbmVyIFJlZ2lzdHJ5IiwiYXVkIjoiY2xpcmVnczU2cHFhNzR1NWt4czIuYXp1cmVjci5pbyIsInZlcnNpb24iOiIxLjAiLCJyaWQiOiJiZGMzMmM0NzhkYjI0M2JlYjhkYmNjY2YzZWE3ZmNiZSIsImdyYW50X3R5cGUiOiJyZWZyZXNoX3Rva2VuIiwiYXBwaWQiOiIwNGIwNzc5NS04ZGRiLTQ2MWEtYmJlZS0wMmY5ZTFiZjdiNDYiLCJ0ZW5hbnQiOiI3MmY5ODhiZi04NmYxLTQxYWYtOTFhYi0yZDdjZDAxMWRiNDciLCJwZXJtaXNzaW9ucyI6eyJhY3Rpb25zIjpbInJlYWQiLCJ3cml0ZSIsImRlbGV0ZSIsIm1ldGFkYXRhL3JlYWQiLCJtZXRhZGF0YS93cml0ZSIsImRlbGV0ZWQvcmVhZCIsImRlbGV0ZWQvcmVzdG9yZS9hY3Rpb24iXX0sInJvbGVzIjpbXX0.Ym2bVIlurUAYN5mrdiFT3VqQfpfZQqajiLF9H0Jf9kOljAyiCEaBeNNUCied_fA7hhMlXdXUhhlbmQlBEbNLCiDcGFrbgUvsqm8cqUyOPWIRJYKryI3f0iw-l9ngm4yBZg1QLdNqYaR84MYcAO0hjIqCXAS1BVBhysXR75jhpAS1sIetpu9ugKY6rG-AgpgZbCmFYS1O4tgfooiXxNZ4NH0rOLN57vqTIZJghRwIPZ5HiE3TiCRB6ndKSqezDpgf1-3_hYzB8ovTz8w_3_aJDWWjY3x9t854uRZCsk1w3H-F6z1S-COTpuOgZL3NSw30d-LlH5Oy4iNKwnbuArzVLg"}'
string: '{"refresh_token":"******"}'
headers:
Comment on lines 311 to 315
uri: https://clitestrbac000002.azurecr.io/oauth2/exchange
response:
body:
string: '{"refresh_token":"eyJhbGciOiJSUzI1NiIsInR5cCI6IkpXVCIsImtpZCI6IkxHSEY6Q0NLNDpDVVRaOlQzWUc6UFc2Mjo1UEFaOjJST086TjNZVTpOUUVaOkdXWDU6VDRZUjpVR0JXIn0.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.RmvlTPlBgcLXCDE3fPv-z_Yy2gLbubKKHKiR6XOOe-Pmuhf2iKRLstNuMSERKNQGT3XYnSrsFz4M5Wuy1ytVADYF0_sns5_mO8cHAjNucDugeEGQximyXCFgaQnpNo6H1So2iywX32-kyzrADzB0SvBJ8sRSvJ7rPByoNKjrtHiDW6g56tAzbqONS5Ct1MTmKTYMcXSaMqJPDvDmTaG-Lzbj1W8ZrNo2OqUnzglAtFXOdEExZQfvvxoz_5Bh9vTjAxVIteVigCVCVlSAR3_o3d9t0x-9vCIlfKHC-FyE7YvpQRtlathdQLvWjc0SWWouT_tfyySw-vpgfzOuP2ghHw"}'
string: '{"refresh_token":"******"}'
headers:
Comment on lines 311 to 315
uri: https://clitestrbac000002.azurecr.io/oauth2/exchange
response:
body:
string: '{"refresh_token":"eyJhbGciOiJSUzI1NiIsInR5cCI6IkpXVCIsImtpZCI6IkxHSEY6Q0NLNDpDVVRaOlQzWUc6UFc2Mjo1UEFaOjJST086TjNZVTpOUUVaOkdXWDU6VDRZUjpVR0JXIn0.eyJqdGkiOiIwOGFmMGJlMS0xMDY3LTRmMmUtOTAyNi02NDc5MGZmMTdmYjMiLCJzdWIiOiJjbGFya3BvcnRlckBtaWNyb3NvZnQuY29tIiwibmJmIjoxNzc1MDg0NzE1LCJleHAiOjE3NzUwOTY0MTUsImlhdCI6MTc3NTA4NDcxNSwiaXNzIjoiQXp1cmUgQ29udGFpbmVyIFJlZ2lzdHJ5IiwiYXVkIjoiY2xpdGVzdHJiYWMyaDJueC5henVyZWNyLmlvIiwidmVyc2lvbiI6IjEuMCIsInJpZCI6IjMwNmQzZDg2OTBmMjQwNWFiOGEyYjY0YzI4MjljYmNkIiwiZ3JhbnRfdHlwZSI6InJlZnJlc2hfdG9rZW4iLCJhcHBpZCI6IjA0YjA3Nzk1LThkZGItNDYxYS1iYmVlLTAyZjllMWJmN2I0NiIsInRlbmFudCI6IjcyZjk4OGJmLTg2ZjEtNDFhZi05MWFiLTJkN2NkMDExZGI0NyIsInBlcm1pc3Npb25zIjp7ImFjdGlvbnMiOlsicmVhZCIsIndyaXRlIiwiZGVsZXRlIiwibWV0YWRhdGEvcmVhZCIsIm1ldGFkYXRhL3dyaXRlIiwiZGVsZXRlZC9yZWFkIiwiZGVsZXRlZC9yZXN0b3JlL2FjdGlvbiJdfSwicm9sZXMiOltdfQ.RmvlTPlBgcLXCDE3fPv-z_Yy2gLbubKKHKiR6XOOe-Pmuhf2iKRLstNuMSERKNQGT3XYnSrsFz4M5Wuy1ytVADYF0_sns5_mO8cHAjNucDugeEGQximyXCFgaQnpNo6H1So2iywX32-kyzrADzB0SvBJ8sRSvJ7rPByoNKjrtHiDW6g56tAzbqONS5Ct1MTmKTYMcXSaMqJPDvDmTaG-Lzbj1W8ZrNo2OqUnzglAtFXOdEExZQfvvxoz_5Bh9vTjAxVIteVigCVCVlSAR3_o3d9t0x-9vCIlfKHC-FyE7YvpQRtlathdQLvWjc0SWWouT_tfyySw-vpgfzOuP2ghHw"}'
string: '{"refresh_token":"******"}'
headers:
@isra-fel
Copy link
Copy Markdown
Member Author

/azp run

@azure-pipelines
Copy link
Copy Markdown

Azure Pipelines successfully started running 3 pipeline(s).

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants