Connect GitLab
Use this guide to let Cracken read GitLab projects, work items, and vulnerability data.
Prerequisites
- Permission to create a GitLab personal, project, or group access token
- Membership in every project or group you want Cracken to read
- GitLab Ultimate and a completed security scan in each project whose vulnerabilities Cracken should read
- A Cracken realm where you can configure data integrations
Prepare the token and URL
Create a token with the read_api scope. The token inherits the user's or bot's project
membership, so assign at least the role required to view the target projects and their
vulnerability reports.
For GitLab.com, use https://gitlab.com as Base URL. For self-managed GitLab, use the
instance URL. Keep Verify SSL enabled. If Cracken cannot validate a self-managed certificate,
install the private certificate authority in the Cracken deployment's trust store before
connecting.
Connect GitLab
- Open Integration Center → Data Integrations.
- On the GitLab card, click Install.
- Enter the Access Token, Base URL, and Verify SSL setting.
- Click Test Connection, then Save & Connect.
Cracken can list accessible projects, issues, and merge requests. Vulnerability listing also requires GitLab Ultimate and completed security scans for the target projects.
Sources
Next steps
- Data Integrations — Review how connected security data flows into Cracken.
- Cybergraph — See how Cracken uses imported application data.