Home / Companies / Postman / Blog / Post Details
Content Deep Dive

How we’re protecting your Postman API keys in GitLab

Blog post from Postman

Post Details
Company
Date Published
Author
Suhas Gaikwad
Word Count
268
Company Posts That Month
11
Language
English
Hacker News Points
-
Post removed?
No
Summary

A new integration between Postman and GitLab Secret Detection has been announced, aimed at protecting Postman API keys in public GitLab repositories. When a Postman API key is accidentally committed to a public repository on GitLab.com, the Secret Detection service scans for secrets like these and notifies both GitLab and Postman. In turn, Postman sends an email alert to the user, advising them to delete the compromised key and generate a new one to secure their data. This feature is available to all Postman users and is currently operational in GitLab Ultimate projects that have enabled Secret Detection. Users are encouraged to verify their email addresses with Postman to ensure they receive critical security alerts, and they can visit the Postman Trust Center for additional information on organizational security measures.

Trends Found in this Post

No tracked trend matches for this post yet.

Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.