dependency scanning
AssessTechniques
Checking third-party packages for known or emerging security risks.
Why it's here
Placed in Assess: 2 article(s) of evidence from 2 source(s), led by product launches, with 2 in the last 30 days. Confidence 38%.
Evidence (2)
- 5The New Stack·7/30/2026researchLinting is not enough for agentic development
The article argues that AI agents increase development speed, but teams need broader verification than linting to ensure correctness, security, and reliability. It recommends combining local checks with control-flow and data-flow analysis, dependency and secret scanning, and workflow review to keep agent-generated code safe and maintainable.
- 6InfoQ·7/21/2026product_launchGitLab 19.2 adds AI agents for security review and remediation
GitLab has released version 19.2 of its DevSecOps platform with agentic automation aimed at security and review work created by growing AI-assisted code output. The update brings Dependency Scanning Auto-Remediation, Security Review Flow, GitLab Duo CLI, and Custom Flows into beta or out of beta.