• Platform
    The intelligent orchestration platform for DevSecOps
    Explore our Platform
    GitLab Duo Agent Platform
    Agentic AI for the entire software lifecycle
    Meet GitLab Duo
    Why GitLab
    See the top reasons enterprises choose GitLab
    Learn more
  • Automation
    • CI/CD
    • GitLab Duo Agent Platform
    • Source Code Management
    • Automated Software Delivery
    Security
    • Application Security Testing
    • Software Supply Chain Security
    • Software Compliance
    Measurement
    • Visibility & Measurement
    • Value Stream Management
    • Analytics & Insights
    View all Solutions
    GitLab for
    • Enterprise
    • Small Business
    • Public Sector
  • Pricing
  • Getting started
    • Install
    • Quick start guides
    • Learn
    • Product documentation
    • Best practice videos
    • Integrations
    Discover
    • Customer success stories
    • Blog
    • Remote
    Connect
    • GitLab Services
    • Community
    • Forum
    • Events
    • Partners
    View all resources
    the source promo card

    Insights for the future of software development

    • About
    • Jobs
    • Events
    • Leadership
    • Team
    • Handbook
    • Investor relations
    • Trust Center
    • AI Transparency Center
    • Newsletter
    • Press
    • Talk to sales
    • Support portal
    • Customer portal
Talk to sales
Sign in
To search repositories and projects, login to gitlab.com.
Suggestions
GitLab Duo Agent PlatformCode Suggestions (AI)CI/CDGitLab on AWSGitLab on Google CloudWhy GitLab?
Talk to sales
See how agentic AI transforms software delivery
Blog
GitLab Security Team
GitLab Security Team headshot

GitLab Security Team

Recent posts

Product

Improving OAuth ROPC security on GitLab.com

GitLab.com is improving the security of OAuth Resource Owner Password Credentials (ROPC) by requiring client authentication, effective April 8, 2025.

Security

Unmasking password attacks at GitLab

Our security team has identified an increased volume of password attacks against GitLab.com on the OAuth API endpoint since September 22, 2023. Learn more.

Security

New OpenSSL 3.0 vulnerabilities: What you need to know to find and fix them

Learn how to identify your risk for CVE-2022-3786 and CVE-2022-3602.

Stay in the know with GitLab's monthly newsletter

All fields required

Ready to get started?

See what your team could do with a unified DevSecOps Platform

Get free trial

Find out which plan works best for your team

Learn about pricing

Learn about what GitLab can do for your team

Talk to an expert
®

Footer links

Pricing

  • View plans
  • Why Premium?
  • Why Ultimate?

Contact Us

  • Contact sales
  • Support portal
  • Customer portal
  • Status
  • Terms of use
  • Privacy statement

Product

  • DevSecOps platform
  • AI-Assisted Development

Topics

  • CICD
  • GitOps
  • DevOps
  • Version Control
  • DevSecOps
  • Cloud Native
  • AI for Coding
  • Agentic AI

Solutions

  • Application Security Testing
  • Automated software delivery
  • Agile development
  • SCM
  • CICD
  • Value stream management
  • GitOps
  • Enterprise
  • Small business
  • Public sector
  • Education
  • Financial services

Resources

  • Install
  • Quick start guides
  • Learn
  • Product documentation
  • Blog
  • Customer success stories
  • Remote
  • GitLab Services
  • Community
  • Forum
  • Events
  • Partners

Company

  • About
  • Jobs
  • Leadership
  • Team
  • Handbook
  • Investor relations
  • Sustainability
  • Diversity, inclusion and belonging (DIB)
  • Trust Center
  • Newsletter
  • Press
  • Modern Slavery Transparency Statement

Git is a trademark of Software Freedom Conservancy and our use of 'GitLab' is under license

View page sourceEdit this pagePlease contribute

© 2026 GitLab Inc.