AI Security Working Group
The charter of this working group is to drive AI Security across GitLab components.
Attributes
| Property | Value |
|---|---|
| Date Created | June 12, 2025 |
| End Date | ~Feb 25, 2026 |
| Slack | #wg_ai_security (internal) |
| Google Doc | Working Group Agenda (internal) |
| Epic | Main Project Epic (internal) |
| Handbook Page | AI Security Working Group |
Context
The introduction of the Duo Agent Platform moves from separate GitLab Duo product features to a dedicated platform for AI at GitLab.
Secure development of GitLab Duo features becomes more critical for the business as we launch the Duo Agent Platform. We can expect to see rapid iteration of this platform and should leverage industry best practices and make features secure by default.
This working group will include a community of team members from Engineering and Security whom strive to make security simple for users and contributors alike.
Scope
The scope of this group includes the following GitLab components:
Exit Criteria
- Best practices for implementing AI prompts are documented in our Contributor documentation.
- Proof-of-concepts are executed and recorded to understand what AI security tooling could offer SaaS, Dedicated, and Self-Managed customers.
- Our CI/CD pipeline will trigger code review of merge requests and provide actionable advice for contributors.
- Our CI/CD pipeline will block merge requests that do not meet secure development standards we establish for our AI offerings.
- Automated scripts are established to setup local working environment and help in testing AI features on the various AI projects.
Roles and Responsibilities
See the git history of this page to find the team members who were previously involved in this project.
Last modified September 1, 2026: docs: remove AI security working group page (
c4b6c41c)
