GitLab Security
  • 03 Jan 2025
  • 1 Minute to read
  • Contributors
  • Dark
    Light

GitLab Security

  • Dark
    Light

Article summary

GitLab integrates a wide array of security tools directly into the development workflow, including SAST, DAST, container scanning, SCA, secret detection, and fuzz testing. This enables developers to identify and address security vulnerabilities.

Integration Method: API

Tables: Vulnerability Findings, Detection Findings

GitLab Configuration

  1. Login to your GitLab account.
  2. In the upper-right corner, click the profile photo, then click Settings.

  1. Select the access tokens status bar and generate a new personal access token


2. Under Token name, enter a name for the token.

3. Under Expiration, select an expiration for the token. Ensure that the token expiration is set to a larger number of days

4. Under scopes select api, read_api and read_user and create personal access token.



5. Copy the generated API token for later use

DataBee Configuration

  1. Login to the DataBee console, navigate to Data > Data Feeds and click the Add New Data Source button
  2. Search for Gitlab Security, select it and click on API Ingest
  3. Search for the GitLab Security option using the search bar in the Add New Data Source page.

4. Select the API Ingest option. Name the feed and enter basic contact information and click Next

5. In the feed configuration dialog, enter the following:

  • Authorization Method: Bearer Token
  • Token: Paste the API key generated earlier

6. Click Submit



Was this article helpful?

Changing your password will log you out immediately. Use the new password to log back in.
First name must have atleast 2 characters. Numbers and special characters are not allowed.
Last name must have atleast 1 characters. Numbers and special characters are not allowed.
Enter a valid email
Enter a valid password
Your profile has been successfully updated.
ESC

Eddy AI, facilitating knowledge discovery through conversational intelligence