
Our security researcher takes a look at Gitpod and finds some access tokens under the carpet.

We held a public, ask me anything with our Red Team. Here’s what people asked.

How does product security work differ from pen testing and hacking all the things?

Faster releases, more open source code, and developers unlikely to have formal security training = at risk software apps. The solution? A security champions program.

From triage to containers and secrets storage, we took a look at the most vulnerable areas across thousands of hosted projects on GitLab.com. Here's what you need to know.

Keep your DAST job within timeout limits and fine-tune job configurations for better results

Our AppSec team built and ran a CTF, and now it's available for you to play at home.
All fields required
Find out which plan works best for your team
Learn about pricingLearn about what GitLab can do for your team
Talk to an expert