GitLab Scales Agentic AI Across Trusted Software Delivery Workflows
- GitLab Dedicated AI Gateway, now generally available, brings agentic AI to regulated and data-sensitive enterprises, letting them run GitLab Duo Agent Platform on GitLab Dedicated in their single tenant environment and region.
- GitLab Secrets Manager, now in limited availability as a paid add-on billed through GitLab Credits, securely stores and manages credentials used both inside and outside of CI pipelines.
- Bulk SAST False Positive Detection and Agentic SAST Vulnerability Resolution, now in beta, enables security teams to triage thousands of open vulnerabilities in a single action and get a fix ready to merge for each confirmed risk.
- Flow Creator Agent, now generally available, turns a plain language description into a complete, runnable custom flow, removing the need to learn the Flow Registry schema.
SAN FRANCISCO--(BUSINESS WIRE)-- (All Remote)--GitLab Inc., the intelligent orchestration platform for DevSecOps, today announced updates that give enterprises more control as they scale agentic software development. GitLab Dedicated customers, who already run their most sensitive software delivery workloads on GitLab, can now run GitLab Duo Agent Platform inside that same single tenant environment and region, connect their own models for inference, and keep AI-processed data inside their existing security boundary.
GitLab 19.3 also ships today with support for Secrets Manager, Flow Creator Agent, and Bulk SAST False Positive Detection and Agentic SAST Vulnerability Resolution. Every secret, whether it's used inside a pipeline or by the infrastructure outside the pipeline, now runs under the same permission model. Additionally, developers who own a process can now create custom agentic flows across the software development lifecycle, and security teams can ship ready-to-merge fixes against their backlog at scale. Together, these updates give engineering teams, process owners, and security teams the speed of agentic AI, without giving up the control they already have in place.
Dedicated AI Gateway Keeps Agentic AI Inside Trusted Boundaries
The AI Gateway for GitLab Duo Agent Platform now runs inside GitLab Dedicated single-tenant SaaS infrastructure, enabling agentic workloads to follow the same residency and isolation model as the rest of the software development lifecycle within GitLab. Regulated and residency-sensitive teams can unlock the use of agentic AI for software delivery under the same deployment model their auditors already understand.
Secrets Manager Extends Control Beyond the Pipeline
GitLab Secrets Manager is now in limited availability as a paid add-on billed through GitLab Credits for GitLab.com customers. Every CI secret is scoped to the environment, branch, and protection status of the job that needs it. Secrets Manager also now supports Kubernetes, Terraform, OpenTofu, and custom tools. Credentials live in the same platform that runs code and pipelines, so teams do not maintain a separate permission model.
Bulk SAST Remediation Helps Remove Years of Accumulated Risk in a Single Action
SAST False Positive Detection and Agentic SAST Vulnerability Resolution enable teams to clear an entire vulnerability backlog instead of one finding at a time. Teams select multiple findings in the Vulnerability Report, and GitLab returns a confidence score for each. Confirmed risks get a ready-to-merge fix, so a developer reviews and merges instead of writing the fix from scratch. This covers every SAST vulnerability in the Vulnerability Report, and GitLab continues to triage and remediate new critical and high severity findings automatically as they arrive.
Flow Creator Agent Removes the Schema Barrier to Custom Automation
Flow Creator Agent removes the need for manual schema mapping that keeps process owners from automating their work. With Flow Creator, available through Agentic Chat as a foundational agent in GitLab Duo Agent Platform, a user describes the automation in plain language and gets back a complete, runnable flow, ready to register from the AI Catalog. Every flow still runs under a scoped service account with composite identity, requiring the Maintainer role or higher to enable it.
Additional Capabilities Shipped in GitLab 19.3
GitLab Credits usage caps are now generally available, allowing organizations to set a monthly ceiling on agentic AI spend before it becomes an overage. Administrators can set a subscription level cap in the Customers Portal, along with options for a default per user cap or per user overrides through the GraphQL API.
Restricted visibility for custom agents and flows per GitLab group is now generally available, making them accessible to members across multiple projects within that group. This is in addition to per-project and public visibility options that have already been available.
Supporting Quote
- "These updates extend the speed and control enterprises need deeper into the regulated and data-sensitive segment of the enterprise market," said Manav Khurana, chief product and marketing officer at GitLab. "Every capability we shipped this month, from where an agent runs to which secret it can touch, extends that same control into the trusted software delivery workflows enterprises already depend on."
About GitLab
GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. More than 50 million registered users and approximately 50% of the Fortune 100* trust GitLab to ship better, more secure software faster.
*Fortune 500® is a registered trademark of Fortune Media IP Limited, used under license. Claim based on GitLab data. Fortune 100 refers to the top 20% ranked companies in the 2025 Fortune 500 list, published in June 2025. Fortune and Fortune Media IP Limited are not affiliated with, and do not endorse products or services of GitLab.
View source version on businesswire.com: https://www.businesswire.com/news/home/20260820228333/en/
Media Contact
GitLab
[email protected]
Source: GitLab Inc.
Serious News for Serious Traders! Try StreetInsider.com Premium Free!
You May Also Be Interested In
- KBRA Assigns A+ Rating With a Stable Outlook to Chicago O'Hare International Airport Senior Lien GARBs
- Orvera AI Featured as Up & Coming on the CMP Prism for Chatbot/Virtual Agent Showcasing Capability in Customer Contact and CX Technology
- The More Life Company Corp. Announces New U.S. Trading Symbol
Create E-mail Alert Related Categories
Business Wire, Press ReleasesSign up for StreetInsider Free!
Receive full access to all new and archived articles, unlimited portfolio tracking, e-mail alerts, custom newswires and RSS feeds - and more!



Tweet
Share