GitLab has released version 17.10, continuing its push toward AI-integrated DevSecOps workflows.
AI-Powered Code Review
GitLab Duo Code Review now automatically reviews merge requests, providing:
- Code quality suggestions with context-aware explanations
- Security vulnerability detection during review
- Performance impact analysis for database queries and API calls
- Automatic summarization of large merge requests
Security Scanning Improvements
- Auto-DevSecOps β SAST, DAST, dependency scanning, and container scanning automatically added to new projects
- Supply Chain Security β Built-in SLSA Level 3 provenance generation for build artifacts
- Compliance Pipelines β Enforce security scanning across all projects in a group
CI/CD Catalog
The CI/CD Catalog now supports versioned, reusable pipeline components with inputs, making it easier to share standardized CI/CD configurations across teams and projects.
GitLab 17.10 is available for self-managed and GitLab.com users.