Looks cool. The scope this asks for in GitLab is too much (everything):
This application will be able to:
Access the authenticated user's API
Grants complete read/write access to the API, including all groups and projects, the container registry, and the package registry.