GitLab 19.0 Brings AI Workflows, Secrets Management, and On-Premises Model Support

www.news4hackers.com-gitlab-19-0-brings-ai-workflows-secrets-management-and-on-premises-model-support-gitlab-19-0-brings-ai-workflows-secrets-management-and-on-premises-model-support

Expanded Secrets Management and AI Workflows Boost Secure Code Delivery in GitLab 19.0

The latest release of GitLab, version 19.0, has been designed to tackle the pressing issue of securing code delivery in high-paced engineering environments. By integrating advanced AI workflows and enhanced secrets management, the platform aims to bridge the gap between code creation and deployment while maintaining regulatory compliance.

The advent of Artificial Intelligence (AI) has dramatically increased the speed of code development; however, its implementation has not come without significant challenges. The introduction of AI has created a paradoxical situation where the underlying workflows for securing credentials, reviewing changes, enforcing pipeline standards, and managing AI in regulated environments have not evolved at the same pace. This has led to a situation where teams struggle to balance speed and control when deploying AI-driven code.

Main Features of GitLab 19.0:

  • GitLab Secrets Manager

  • Now available in public beta for Premium and Ultimate users, GitLab Secrets Manager stores sensitive information within the same platform that hosts code and pipelines. Access control and audit logging utilize the existing group and project structure, eliminating the need for a separate permission model.

    “This feature allows teams to keep track of every job that utilizes a compromised credential, linking it to the originating pipeline without requiring log correlation across multiple systems.”
  • Developer Flow

  • GitLab 19.0 extends Developer Flow across the entire merge request lifecycle, enabling teams to address reviewer feedback, resolve conflicts, and implement features at any stage. This includes two new capabilities: a Resolve with Duo button that evaluates both branches, commits a proposed fix, and leaves a summary comment for the next reviewer, and one-click rebase-and-merge for teams using semi-linear or fast-forward merge methods.

    “This enables teams to work more efficiently and effectively, reducing the time spent on code review and deployment.”
  • Components Analytics

  • This feature provides platform engineering teams with visibility into which CI/CD catalog components are running across their organization and which versions are in use. Data resides in GitLab’s unified platform, allowing teams to see and act on it without switching tools.

    “This gives teams the insights needed to optimize their CI/CD pipelines and ensure they are using the most up-to-date components.”
  • GitLab Duo Agent Platform Self-Hosted

  • This feature supports teams in air-gapped or regulated environments by adding four new open-source models: Mistral Devstral 2 123B, GLM-5.1, Kimi-K2.6, and MiniMax-M2.7. These models were evaluated against GitLab Duo Agent Platform task requirements, ensuring they meet multi-step tool usage, code generation quality, and reasoning across large code differences.

    “This addresses the needs of teams working in highly restricted environments, providing them with a reliable and secure way to manage their code deployment.”
  • Strengthening Software Supply Chain Visibility

  • GitLab 19.0 adds security capabilities that give teams more control over governing what ships and who can access the platform. Dependency scanning with a software bill of materials (SBOM) produces an auditable inventory of third-party components matched against GitLab security advisories.

    “This helps teams identify potential security vulnerabilities and take proactive measures to mitigate them.”



About Author

en_USEnglish