Latest publications

GitLab 19.0 introduces SBOM-based dependency scanning for vulnerability protection
GitLab released a new dependency scanning feature that not only searches for known vulnerabilities in packages, but shows which ones are actually used in the code and how they got there.

Code Protection Without YAML: How GitLab Scales Scanning
GitLab 19.0 enables security scanning for all projects with one click through centralized configuration profiles, without manual file setup.

Claude Opus 4.8 in GitLab: Precision in Complex Multi-Step Tasks
Anthropic released Opus 4.8 for autonomous agents on complex projects in GitLab Duo. Now supports instruction updates mid-session without cache reloads.

GitLab раскрыла, почему AI-кодерам нужен контекст платформы, а не просто код
AI-кодеры из демо не учитывают issues, pipelines и security policies платформы — и это создаёт баги после коммита. GitLab показала, как структурированный контекст делает агентов надёжными.

GitLab Expanded Support for Open-Source Models for Closed Networks
GitLab 19.0 added four new open-source models for teams with strict data residency requirements. Models include Mistral Devstral, GLM-5.1, Kimi-K2.6, and MiniMax-M2.7 for on-premises deployment.

GitLab Automates Full Merge Request Lifecycle with Developer Flow
GitLab introduced Developer Flow — an AI agent that now manages the entire merge request process: from analyzing reviewer feedback to resolving conflicts and final merge.

Codex and GitLab: From Code to Production in Three Steps
GitLab demonstrated how the AI agent Codex can write code in the terminal, but delivering it to production is a job for the entire platform. Three scenarios from local bug fixes to merge requests.

GitLab Duo CLI: managing AI agents in CI/CD pipelines
When an AI agent runs in CI/CD without human approval, built-in control systems are needed. GitLab addresses this at the platform level with governance controls.