Gitea Actions organization secrets
Actions secrets on a Gitea organization, which every repository in it reads. We write and prune them per secret, and Gitea never returns a value.
Actions secrets on a Gitea organization, which every repository in it reads. We write and prune them per secret, and Gitea never returns a value.
Connection
| What | This provider |
|---|---|
| Vendor | Gitea |
| Key | gitea-org-actions-secrets |
| Availability | available. You can connect it today. |
| Credential we hold | gitea-token |
| Values read back | no |
| Activation | immediate |
Directions
| Direction | What it does |
|---|---|
export | We write names and values from your environment into the store. |
Gitea returns no value once it holds one, so we can write here and cannot read back.
Activation
immediate. The running app sees a new value at once.
Conflict policies
| Direction | Policies you can pick |
|---|---|
export | create_only, overwrite, overwrite_and_prune |
How syncs work says what each one does.
Connect
Paste a credential from the vendor. We seal it and never show it again.
| Field | Label | Kind | Required | What it is |
|---|---|---|---|---|
token | Access token | secret; we mask it here and seal it | yes | A personal access token with write:organization, created by an owner of the organization under Settings, Applications on your server. |
Connection fields
You set these when you connect. Every mapping on the connection shares them.
| Field | Label | Kind | Required | Advanced | What it is |
|---|---|---|---|---|---|
host | Server URL | text | yes | yes | Gitea, Codeberg or your own server. Must be reachable from the internet. Names starting with FORGEJO_ are skipped on every server, plain Gitea included. Starts at https://gitea.com. |
Mapping fields
You answer these once per environment you map.
| Field | Label | Kind | Required | Advanced | What it is |
|---|---|---|---|---|---|
org | Organization | text | yes | no | The organization name from its URL. Every repository in it reads what this sync writes. |
Required permissions
We probe for these when we verify the connection.
| Permission | Directions | Blocking | Without it |
|---|---|---|---|
read:organization | every direction | yes | Preview cannot list the organization's secrets. |
write:organization | export | yes | Export cannot write anything. |
Related
Gitea Actions organization variables
Actions variables on a Gitea organization, which every repository in it reads. We read them back in plaintext and write them per variable.
Woodpecker CI secrets
Repository secrets on your Woodpecker server. We expose new ones to push, tag, deployment and manual pipelines, never to pull requests, and Woodpecker never returns a value.