73
/ 100
27 days ago
glama

gitlab-ci-mcp

MCP server for GitLab CI/CD — pipelines, jobs, schedules, branches, tags, merge requests and repository files. Works with any GitLab (SaaS gitlab.com or self-hosted) via python-gitlab.

Is this your MCP?

Claim it to get a verified publisher badge, a free copy of our full audit findings, and direct contact for any high-priority issues we find.

Install from

M8ven verifies MCPs across every public registry — install directly from whichever one you prefer.

// key findings
23 tools verified — handlers match their declared behaviour
15 read-only tools verified — handlers contain no write/delete/exec
No credential exfiltration, no sensitive file access, no obfuscation
Static analysis found nothing flowing your secrets to unexpected places.
Open source with a license and README
Anyone can audit the code, the license is declared, and the publisher documents what it does.
🔐
You'll be asked for 1 credential: GITLAB_TOKEN
These are read from process.env at runtime. Make sure you trust where they’ll be sent.
// required environment variables
This server reads these from process.env. You'll be asked to provide them before it can run.
🔐 secretGITLAB_TOKENyes Personal Access Token with api scope
configGITLAB_URLyes Base URL, e.g. https://gitlab.example.com
configGITLAB_PROJECT_PATHProject scoping per call — every tool accepts an optional project_path that overrides for cross-project queries.
configGITLAB_SSL_VERIFYno true (default) / false
configGITLAB_NO_PROXY_DOMAINSno Comma-separated domains to add to NO_PROXY (useful in corp networks behind a local HTTP proxy — e.g. .corp.example.com,gitlab.internal)
configNO_PROXYWorks with any GitLab — SaaS gitlab.com or self-hosted / on-prem. Designed with corporate networks in mind: configurable handling, optional SSL-verify toggle, per-project scoping via env vars.
configno_proxy
// full audit trail
The full breakdown of what we checked, the deductions that landed, the network hosts, the dependency advisories, and concrete fix guidance is available to verified publishers.
// improvement guidance — verified publishers only
We have 1 concrete improvement we can share with the publisher of this MCP. Each comes with specific guidance to raise the trust score.
// embed badge in your README
[![M8ven Score](https://m8ven.ai/badge/mcp/mshegolev-gitlab-ci-mcp-1yepus)](https://m8ven.ai/mcp/mshegolev-gitlab-ci-mcp-1yepus)
commit: 2c6c1f9b7fe9e601a0d9402123203c180673371f
code hash: b86b332246fa967aea39a1c6fe698668c48175c1532d3b6abd816f606892b538
verified: 7/4/2026, 9:17:30 AM
view raw JSON →