
4/16/2025 · GitLab
What this post added
This post details the rotation of the GPG key used to sign GitLab Omnibus Linux packages. It explains the purpose of the key for ensuring package integrity, distinguishes it from repository metadata signing keys, and provides instructions for users who validate GPG signatures to update their key. It also specifies the new key fingerprint and provides a URL to download the new key.