What's new in GitLab 18.0

May 15, 2025
Past release

AI integrated natively with Premium and Ultimate, while automated code reviews and proactive vulnerability protection strengthen enterprise DevSecOps.

CEO Corner: Intelligent DevSecOps Takes Center Stage

GitLab Duo Agent Platform, a DevSecOps orchestration platform for humans and AI agents, leverages agentic AI for collaboration across the software development lifecycle.

Read CEO's blog

AI-native capabilities meet enterprise security

GitLab 18.0 integrates Duo natively with Premium and Ultimate tiers, enables automatic code reviews at scale, and introduces proactive vulnerability remediation for GitLab Dedicated customers. These advancements demonstrate GitLab's commitment to making AI assistance pervasive across the development lifecycle while strengthening enterprise security posture.

GitLab Duo is now integrated natively with Premium and Ultimate subscriptions, making AI assistance available throughout your development workflow. Teams can:

  • Access Code Suggestions, Chat, and other Duo features without separate add-on purchases.

  • Enable AI assistance for all Premium and Ultimate users across your organization.

  • Leverage comprehensive AI capabilities from planning through deployment.

  • Scale AI adoption based on team needs and workflow requirements.

Configure GitLab Duo Code Review to run automatically on all merge requests by updating project merge request settings. This automation ensures:

  • All code receives an initial review consistently across your codebase.

  • Code quality improvements happen without manual review requests.

  • Review standards apply uniformly to every contribution.

  • Senior engineers can focus on architectural decisions while initial reviews happen automatically.

Get more context-aware feedback from GitLab Duo Code Review by analyzing additional signals from your codebase and development patterns. Developers receive:

  • Feedback aligned with their specific coding standards and team conventions.

  • Code review comments that understand project architecture for more relevant suggestions.

  • Actionable recommendations based on your established development patterns.

GitLab Dedicated instances are remedied for critical vulnerabilities before public disclosure through Internal Releases. This capability provides:

  • Protection for development environments before vulnerabilities become publicly known.

  • Automatic remediation through emergency maintenance procedures with no customer action required.

  • Proactive security posture that meets regulated industry and enterprise compliance requirements.