Gitlab Api Token

Description

The source code repository contains sensitive information: GitLab API Token

Weakness:

009 - Sensitive information in source code

Category: Information Collection

Detection Strategy

    Matches GitLab API Token patterns in source code and configuration files

Vulnerable code example

GITLAB_TRIGGER_TOKEN=glptt-abcdefghijklmnopqrstabcdefghijklmnopqrst
CI_JOB_TRIGGER: glptt-ABCDEFGHIJKLMNOPQRSTABCDEFGHIJKLMNOPQRST
trigger_token: glptt-AbCdEfGhIj0123456789AbCdEfGhIj0123456789