Edit:
As discussed privately , kindly let us know, if adding add digicert to CAA records helps
https://github.com/Azure/static-web-apps/issues/202#issuecomment-845512377 "So we believe the problem is caused by the presence of CAA records in your custom domain's parent domain, which prevents the SWA platform from provisioning a certificate. For example, if you are trying to add yoursite.mydomain.com to the SWA and you have incompatible CAA records at mydomain.com (the parent domain), we will be unable to issue a certificate and the overall custom domain add process will fail.
You can either
remove these CAA records, or
add a new CAA record to enable our certificate provider, DigiCert, to issue certificates for your domain. this would be of the form mydomain.com CAA 0 issue "digicert.com"
After the record changes propagate, you should be able to try again.
--
Apologies for any inconvenience with this issue. For additional info about the resources, I have reached out to you privately.