GitLab OAuth callback
GitLab OAuth callback handler
Authentication: personal access token. The spec defines an api_key security
scheme — send an Authorization: ApiKey <your-personal-access-token> header
(value format: ApiKey <your key>). A session_cookie scheme (connect.sid)
exists for browser sessions. Operations in this spec declare security: [], an
artifact of the upstream spec generator — authentication is still enforced by the
server.
Query parameters
| Name | Type | Required | Description |
|---|---|---|---|
code | string | No | Authorization code from GitLab |
state | string | No | OAuth state parameter for CSRF protection |
gitlab_instance_url | string | No | GitLab instance URL (for self-hosted instances) |