Gitlab Personal Access Token

Description

The source code repository contains sensitive information: GitLab Personal Access Token

Weakness:

009 - Sensitive information in source code

Category: Information Collection

Detection Strategy

    Matches GitLab Personal Access Token patterns in source code and configuration files

Vulnerable code example

GITLAB_TOKEN=glpat-abcdefghijklmnopqrst
Authorization: Bearer glpat-Ab1Cd2Ef3Gh4Ij5Kl6Mn
gitlab_secret : glpat-3fZ1p5y4XWcCvMGVlfakeW86MQp1Oml3Ymg0Cw.11.1203afake