which, of course, doesn't exist. The idea would be to act like
--yes
but only if there are no deletions or replacements.
• are there any plans to add this sort of functionality?
• has anyone come up with something that does this short of dumping preview/etc output and glorified
grep
ing it?
e
echoing-dinner-19531
05/20/2025, 7:55 AM
I think the idea has come up before but I can't find any issue tracking it with a quick search. You could raise one, I think it would probably be ok to add, we've wanted to add something to replace --expect-no-changes for a while (because that makes the change and then errors), so maybe a new set of flags for disallowing certain operations would make sense.
l
little-cartoon-10569
05/20/2025, 9:43 PM
Is it possible? Adding stuff can be "dangerous", so how could Pulumi tell? If I add an NACL rule that denies all traffic, then prod goes down...
b
breezy-judge-31680
05/21/2025, 3:36 PM
True, true.
A better name wouldn't include 'dangerous', but perhaps something meaning 'new things only, no changes to existing things nor deletions'
l
little-cartoon-10569
05/21/2025, 9:53 PM
I think the correct tool for this task is
pulumi preview
, especially when it's run by your build pipeline as part of your PR.
No matter how you like to participate in developer communities, Pulumi wants to meet you there. If you want to meet other Pulumi users to share use-cases and best practices, contribute code or documentation, see us at an event, or just tell a story about something cool you did with Pulumi, you are part of our community.