Skip to main content

GitLab CI/CD Job Token

Description

General

  • Documentation: https://docs.gitlab.com/ci/jobs/ci_job_token/
  • Summary: GitLab is an open-source code hosting website that provides issue tracking, continuous integration and deployment pipeline. This detector identifies GitLab CI/CD Job tokens used to authenticate with certain GitLab features from running jobs.

Revoke the secret

GitLab CI/CD Job tokens are short-lived tokens, valid only while the job is running. After the job finishes, the token access is automatically revoked.

Details for GitLab CI/CD Job Token

  • Family: token

  • Category: version_control_platform

  • Company: GitLab

  • High recall: True

  • Validity check available: True

  • Analyzer available: False

  • Revoker available: False

  • On-premise instances exist: False

  • Only valid secrets raise an alert: False

  • Occurrences found for one million commits: 0.062

  • Prefixed: True