Skip to content
Back to skills

Gitlab Skill

ASecurity

Use when designing or validating GitLab CI/CD and automatic release lifecycles, inspecting pipeline and job state read-only, composing non-interactive merge-request commands, or setting up protected refs and release credentials. Also covers reusable components and inputs, GitLab Functions, gitlab-ci-local, glab command composition, and GitLab Flavored Markdown. For pipeline execution or retry requests, provide inspection and command drafting while leaving execution to the operator.

  • 67 stars
  • 0 votes
  • 0 copies
  • 2 views
  • Added September 12, 2026
devopsrustexpresstestinggitapici/cdsecuritydocumentation

Works with

  • cli
  • api

Security analysis

A100/100

Pro scans all 15 files and shows the line behind each finding

Scanned September 23, 2026

npx -y skills add Jamie-BitFlight/claude_skills --skill gitlab-skill --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Gitlab Skill?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Gitlab Skill
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/jamie-bitflight-gitlab-skill/badge)](https://www.skillsdirectory.com/skills/jamie-bitflight-gitlab-skill)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: gitlab-skill
description: Use when designing or validating GitLab CI/CD and automatic release lifecycles, inspecting pipeline and job state read-only, composing non-interactive merge-request commands, or setting up protected refs and release credentials. Also covers reusable components and inputs, GitLab Functions, gitlab-ci-local, glab command composition, and GitLab Flavored Markdown. For pipeline execution or retry requests, provide inspection and command drafting while leaving execution to the operator.
---

# GitLab CI/CD and GLFM

Load each reference whose trigger matches the task:

- [Pipeline Configuration](./references/pipeline-optimization.md) - Load for include merge order, `extends`, `needs`, `parallel:matrix`, or compile-time expressions.
- [CI/CD Components and Inputs](./references/ci-cd-components-and-inputs.md) - Load for component structure, testing, Catalog publication, version selection, consumption, component inputs, or pipeline inputs.
- [GitLab Functions Core](./references/gitlab-functions.md) - Load for Function packages, definitions, job invocation, inputs, outputs, runtime expressions, environment, or composition.
- [GitLab Functions OCI](./references/gitlab-functions-oci.md) - Load only for OCI/file-system loading, OCI build/publication, registry authentication, or Function image tags.
- [Obsolete Functions Migration](./references/gitlab-functions-steps-migration.md) - Load only when interpreting or migrating existing CI/CD Steps, `step.yml`, `step:`, `step_dir`, or `job.<variable>` syntax.
- [Security and Deprecations](./references/security-and-deprecations.md) - Load when reviewing untrusted includes/components, handling credentials, pinning dependencies, or modernizing deprecated CI syntax.
- [GitLab CI Local](./references/gitlab-ci-local-guide.md) - Load for local executors, input validation, include caching, `--skip-input-validation`, or `--fetch-includes`.
- [GitLab Flavored Markdown](./references/glfm-syntax.md) - Load for documented GLFM syntax and rendering constraints.
- [glab CLI](./references/glab-cli.md) - Load for existing-ref CI Lint or before composing `glab` API, repository, CI inspection, merge-request, token, or variable commands, especially on self-managed hosts.
- [Automatic Tags and Releases](./references/automatic-tag-and-release.md) - Load for automatic release intake, no-release or release branches, replaceable adapters, release-tag routing, composition, or universal checkpoint reporting; follow its conditional pointers for selected tools, destinations, and credentials.
- [Release Live Evidence](./references/release-live-evidence.md) - Load only when the user requests live proof, sandbox IDs, observed failures, or evidence classification for the release lifecycle.

For uncovered CI/CD subjects, consult the [official GitLab CI/CD documentation](https://docs.gitlab.com/ci/). For uncovered GLFM subjects, consult the [official GitLab Flavored Markdown documentation](https://docs.gitlab.com/user/markdown/). The existing-ref glab inspection branch is this skill's CI Lint operational authority.

Files in this skill

  • .sync-gitlab-docs.lock107 B
  • SKILL.md32.5 KB
  • references/.gitignore12 B
  • references/ci-steps/examples.md8.5 KB
  • references/ci-steps/index.md3.8 KB
  • references/ci-steps/step-runner-architecture.md8.7 KB
  • references/ci-steps/steps-overview.md10.1 KB
  • references/common-patterns.md10.6 KB
  • references/gitlab-ci-local-guide.md13.3 KB
  • references/glfm-syntax.md9.7 KB
  • references/pipeline-optimization.md10.7 KB
  • scripts/get_gitlab_context.py3.1 KB
  • scripts/gitlab_context.py8.3 KB
  • scripts/sync_gitlab_docs.py25.8 KB
  • scripts/validate_glfm.py5.6 KB

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…