In KubeSphere DevOps a credential is a Kubernetes Secret carrying specific labels and annotations, which is synced to Jenkins for pipeline use. The skill lists the credential types, including SSH keys, basic username and password, secret text and kubeconfig, which is noted as limited to v1.1.x, along with the key names each secret must contain. Typical uses are Git repository access, deployment credentials such as kubeconfig or a registry, external service tokens, troubleshooting access problems and moving credentials between DevOps projects.
The most prominent warning is that the Secret type must start with credential.devops.kubesphere.io, such as the basic-auth, ssh-auth, secret-text or kubeconfig variants. A Secret of type Opaque is ignored by the credential controller, leaving sync status stuck at pending, Jenkins unable to find the credential and pipeline builds failing with a CredentialId could not be found error. REST endpoints under the devops.kubesphere.io v1alpha3 API cover list, create, get, update and delete.