2026
DevSecOps policy-as-code: Detecting and remediating over-privileged access tokens in SDLC tools
The article represents a Proof of Concept (PoC) for policy-as-code methodology designed to detect “Privilege Sprawl” in GitLab CI/CD environments and showed how teams can reduce their organisational exposure by 73% and get back into compliance with Least Privilege.
V. Havryliak, S. Vasylyshyn
· CSDP · 0 citations