Skip to main content
GitLab

GitLab

Repository scanning, merge request analysis, and CI/CD security for GitLab.

Available now Code & DevOps Included, no add-on fee
How a finding becomes an issue
finding.severityscoped label
Critical severity::critical
High severity::high
Medium severity::medium
Low severity::low
Info severity::info
Every issue also carries security, and can be raised confidential so the detail is not public on a shared instance.
what it does

GitLab, wired to your findings

Connect your GitLab repositories for comprehensive security scanning. Analyze code for vulnerabilities, detect exposed secrets, audit dependencies, and create GitLab issues directly from findings — for both GitLab.com and self-hosted GitLab instances.

  • Repository-level security scanning across all projects
  • Secret detection across repository history
  • Dependency vulnerability analysis via manifest files
  • Merge request security analysis before approval
  • Auto-create GitLab issues from findings with full details
  • Support for GitLab.com and self-hosted GitLab instances
setup

Connected in 3 steps

No engineering time on our side and none on yours. Most teams have this running before their coffee goes cold.

01

Generate GitLab Token

Create a personal access token in GitLab with api and read_repository scopes.

02

Add to Lorikeet Security

Paste the token into Workspace > Marketplace > GitLab and choose which projects to scan.

03

Configure & Test

Pick scan types and target branches, then run a test scan to verify the connection.

What you will need
Instance URL gitlab.com or your self-hosted instance
Access token PAT with api scope
Project ID Numeric ID or full path
Confidential Raise issues confidential by default
in practice

How teams run it

Pre-Merge Security

Scan merge requests for vulnerabilities and secrets before they reach your main branch.

Self-Hosted Pipelines

Connect on-prem GitLab instances behind your firewall for compliant security scanning.

Issue Workflow

Push findings to GitLab Issues so security work lives alongside feature development.

Put GitLab on your findings

Every integration is included with your workspace — there is no add-on fee and no per-seat charge. Connect it from the dashboard, or talk to us first if you want it scoped into an engagement.

Lory waving

Hi, I'm Lory! Need help finding the right service? Click to chat!