-
Update file permissions.md 0 of 1 checklist item completed
- Merged
- 18
- Approved
updated -
Clarify how deploy keys and user accounts interact 0 of 1 checklist item completed
- Merged
- 11
- Approved
updated -
Add guidance on prefixing tokens 0 of 1 checklist item completed
- Merged
- 11
- Approved
updated -
Bump the expiry, update thanks, and describe format of security.txt 3 of 4 checklist items completed
- Merged
- 5
- Approved
updated -
Allow administrators to provide public security contact information 12 of 12 checklist items completed!138259 16.7Category:Compliance Management GitLab Free GitLab Premium GitLab Ultimate ProdSecEngMetricPending Technical Writing backend database database-testing-automation databasereviewed devopsgovern direction documentation frontend groupcompliance pipeline:mr-approved releasedcandidate sectionsec security teamProduct Security Engineering typefeature workflowpost-deploy-db-production
- Merged
- 70
- Approved
updated -
Add a prefix to deploy tokens 5 of 5 checklist items completed!138438 16.7Category:Continuous Delivery ProdSecEngMetricDefense in Depth Technical Writing backend devopsdeploy documentation featureenhancement frontend groupenvironments pipeline:mr-approved releasedcandidate sectioncd security security-backlogneeds-input teamProduct Security Engineering twfinished typefeature workflowpost-deploy-db-production
- Merged
- 36
- Approved
updated -
Update security contact and vulnerability disclosure info 1 of 1 checklist item completed
- Merged
- 5
- Approved
updated -
Clarify that Group and SCIM APIs don't use the internal API auth header 0 of 1 checklist item completed
- Merged
- 8
- Approved
updated -
Add a prefix to SCIM tokens behind a feature flag 3 of 4 checklist items completed!139737 16.8GitLab Premium GitLab Ultimate ProdSecEngMetricDefense in Depth Technical Writing backend devopsgovern direction documentation feature flag frontend groupauthentication pipeline:mr-approved releasedcandidate sectionsec security teamProduct Security Engineering typefeature workflowpost-deploy-db-production
- Merged
- 33
- Approved
updated -
!140159 16.8CI job token Category:Secrets Management ProdSecEngMetricDefense in Depth backend devopsverify documentation feature flag feature flagexists featureaddition frontend grouppipeline security pipeline:mr-approved releasedcandidate sectionci security teamProduct Security Engineering typefeature workflowpost-deploy-db-production
- Merged
- 25
- Approved
updated -
Add token prefix tables 1 of 1 checklist item completed
- Merged
- 14
- Approved
updated -
Proxy asset URLs with protocol but no slashes 1 of 1 checklist item completed
- Merged
- 9
- Approved
updated -
Remove CSP values that were added for removed GKE feature 1 of 1 checklist item completed
- Merged
- 10
- Approved
updated -
Update security section for improved clarity and organization 0 of 1 checklist item completed
- Merged
- 26
updated -
Adding version example to Upgrade Docs 3 of 15 checklist items completed
- Merged
- 7
updated -
Add note that footnotes cannot be collapsed in a collapsible section 3 of 15 checklist items completed
- Merged
- 8
- Approved
updated -
- Merged
- 4
- Approved
updated -
- Merged
- 12
- Approved
updated