What is GitLab?
With GitLab, Security is built into the CI pipeline, out of the box. Every code commit is automatically scanned for security vulnerabilities in your code and its dependencies. Actionable results are delivered to the developer in their native workflow for rapid remediation.
Company Details
Need Assistance?
We're here to help you with understanding our reports and the data inside to help you make decisions.
Get AssistanceGitLab Ratings
Real user data aggregated to summarize the product performance and customer experience.
Download the entire Product Scorecard
to access more information on GitLab.
Product scores listed below represent current data. This may be different from data contained in reports and awards, which express data as of their publication date.
91 Likeliness to Recommend
98 Plan to Renew
90 Satisfaction of Cost Relative to Value
Emotional Footprint Overview
Product scores listed below represent current data. This may be different from data contained in reports and awards, which express data as of their publication date.
+98 Net Emotional Footprint
The emotional sentiment held by end users of the software based on their experience with the vendor. Responses are captured on an eight-point scale.
How much do users love GitLab?
Pros
- Helps Innovate
- Reliable
- Performance Enhancing
- Client Friendly Policies
How to read the Emotional Footprint
The Net Emotional Footprint measures high-level user sentiment towards particular product offerings. It aggregates emotional response ratings for various dimensions of the vendor-client relationship and product effectiveness, creating a powerful indicator of overall user feeling toward the vendor and product.
While purchasing decisions shouldn't be based on emotion, it's valuable to know what kind of emotional response the vendor you're considering elicits from their users.
Footprint
Negative
Neutral
Positive
Feature Ratings
SDLC Integration
Vulnerability Scanning
Container Security Testing
Risk Scoring
Integrated Development Environment (IDE) plug-in
Policy Engine and Enforcements
Dynamic Application Security Testing (DAST)
False Positive Remediation
Static Application Security Testing (SAST)
Interactive Application Security Testing (IAST)
Software Composition Analysis (SCA)
Vendor Capability Ratings
Business Value Created
Ease of Data Integration
Product Strategy and Rate of Improvement
Ease of Implementation
Vendor Support
Breadth of Features
Availability and Quality of Training
Quality of Features
Ease of IT Administration
Ease of Customization
Usability and Intuitiveness
GitLab Reviews
Mary W.
- Role: Information Technology
- Industry: Technology
- Involvement: End User of Application
Submitted Feb 2026
Confident deployment with secure code
Likeliness to Recommend
What differentiates GitLab from other similar products?
GitLab unifies application security testing directly with the CI/CD pipeline. Unlike standalone security tools, it integrates into the same workflow used for development and deployment. This unified approach reduces friction, ensures security is part of DevOps from the start, and provides actionable reports within the same interface.
What is your favorite aspect of this product?
The major significant side of GitLab for application security testing is its seamless integration into the DevOps workflow. I don’t need to switch between tools or environments to identify vulnerabilities, as everything is built into the CI/CD pipeline. The dashboards and merge request alerts make it easy to track and prioritize vulnerabilities.
What do you dislike most about this product?
GitLab’s application security testing is well-integrated and effectively supports maintaining secure development workflows.
What recommendations would you give to someone considering this product?
One should utilize its automated security scans, merge request alerts, and dashboards to identify and fix vulnerabilities early, ensuring faster and safer software delivery.
Pros
- Reliable
- Unique Features
- Effective Service
- Inspires Innovation
Arpita S.
- Role: Information Technology
- Industry: Other
- Involvement: End User of Application
Submitted Feb 2026
Built in App security testing.
Likeliness to Recommend
What differentiates GitLab from other similar products?
GitLab includes security scanning, dependency checks and vulnerability detection by default. It's reassuring to catch issues early without relying heavily on extra tools.
What is your favorite aspect of this product?
I realy appreciate is that security checks run alongside development not as an afterthought. Seeing vulnerabilities or dependency issues directly in merge request helps catch problems early without slowing me down.
What do you dislike most about this product?
The downside is performance particularly on self hosted instances. Large pipelines, heavy logs or many concurrent jobs can slow things down unless the infrastructure is well sized and maintained.
What recommendations would you give to someone considering this product?
GitLab is strong because it builds security scans right into your development workflow. You get things like SAST, DAST dependency scanning and container scanning as part of your CI/CD pipeline so you find issues early without adding separate tools.
Pros
- Helps Innovate
- Continually Improving Product
- Enables Productivity
- Saves Time
Chiesa B.
- Role: Information Technology
- Industry: Insurance
- Involvement: End User of Application
Submitted Mar 2025
Gitlab has helped balance efficiency with security
Likeliness to Recommend
What differentiates GitLab from other similar products?
Gitlab offers the most complete software development and operations lifecycle of any Git repository I have had experience using. This is as a result of how it seamlessly connects important code version control provisions with software planning, end to end security / compliance and even AI assisted deployment. The aforementioned has saved my team a lot of time and made our repository management and code deployment workflow a lot more fluid, automated and efficient.
What is your favorite aspect of this product?
The very vibrant nature of Gitlab's active user community has been helpful to me, whenever I have had technical issues with using Gitlab. Another very exciting aspect of my Gitlab experience is its built-in security scanning tools, which helps to manage potential security vulnerability in our code and processes as we build, and even helps to simulate the potential activity of hackers in our finished software product, through fuzz testing, DAST and container scanning.
What do you dislike most about this product?
Gitlab's support team is not fast enough with its responses from my experiences. The major work around for me , has been to rely on support resources provided by the Gitlab user community, across the world on various web forums. Asides this, I have found Gitlab to be resource intensive , and because of the avalanche of features it possesses, . setting up Gitlab's CI/CD ( continuous integration and continuous delivery ) is always a cumbersome process, as a result of its reliance on the YAML syntax referencing for its configuration protocol.
What recommendations would you give to someone considering this product?
I always advice teams to avoid self-hosting Gitlab because of the level of technical expertise and resources needed to maintain a self-hosted Gitlab option.
Pros
- Reliable
- Performance Enhancing
- Enables Productivity
- Unique Features