Admin user Personal Access token without admin credentials.

Problem to solve

Admin user token has access to all repositories, with numerous secret and sensitive projects we need to limit administrator git access to the cases when there is a need for it (support, incident, etc).

Further details

We would like to see a Personal Access Token option that only has permissions according to the normal user model. While still retaining the option to create an admin PAT.

Benefit: Allow admin users to perform daily work without exposing admin credentials.

Proposal

Add a scope under "settings -> access tokens" that has normal user scope.

What does success look like, and how can we measure that?

Success is having the ability to allow admin users to perform daily work in gitlab without needing to have a second admin account or a group admin account.

Assignee Loading
Time tracking Loading