
7/16/2026 · Mark Settle
What this post added
Introduces Security Review Flow, a new capability within the GitLab Duo Agent Platform, which acts as an AI-powered security engineer to review code changes. It focuses on identifying logic flaws, such as broken object-level authorization, data exposure, and control flow errors, which are typically missed by signature-based scanners. The flow analyzes diffs in context, provides detailed findings with explanations and suggested fixes, and complements traditional security tools and manual reviews.