Make new users confirm email
DETAILS: Tier: Free, Premium, Ultimate Offering: Self-managed, GitLab Dedicated
GitLab can be configured to require confirmation of a user's email address when the user signs up. When this setting is enabled, the user is unable to sign in until they confirm their email address.
- On the left sidebar, at the bottom, select Admin area.
- Select Settings > General.
- Expand Sign-up restrictions and look for the Email confirmation settings options.
Confirmation token expiry
By default, a user can confirm their account within 24 hours after the confirmation email was sent. After 24 hours, the confirmation token becomes invalid.
Automatically delete unconfirmed users
DETAILS: Tier: Premium, Ultimate Offering: Self-managed, GitLab Dedicated
When email confirmation is turned on, administrators can enable the setting to automatically delete unconfirmed users.