Skip to main content

GitLab SCIM Token

Description

General

  • Documentation: https://docs.gitlab.com/api/scim/
  • Summary: GitLab is an open-source code hosting website that provides issue tracking, continuous integration and deployment pipeline. This detector aims at detecting SCIM tokens used for Cross-domain Identity Management to automatically create, update, and deactivate users.

Revoke the secret

To revoke a SCIM token, update or remove the Group’s SAML SSO configuration,
which forces GitLab to generate a new SCIM provisioning token.

Details for GitLab SCIM Token

  • Family: token

  • Category: version_control_platform

  • Company: GitLab

  • High recall: False

  • Validity check available: True

  • Analyzer available: False

  • Revoker available: False

  • On-premise instances exist: False

  • Only valid secrets raise an alert: False

  • Occurrences found for one million commits: very rare

  • Prefixed: False