Enhance GitLab Merge Requests with Vulnerability Insights

The GitLab MR Vulnerability Widget is a Chrome extension designed to enhance the GitLab merge request experience by displaying critical and high vulnerabilities detected in container images. By integrating seamlessly into the merge request page, this tool provides valuable insights derived from container scanning reports generated during the CI/CD pipeline process. It effectively bridges the gap left by the free version of GitLab, which does not display vulnerability details directly within merge requests.

To utilize this extension, users must ensure that a container scanning job exists in their pipeline and that it produces a report artifact. Additionally, configuring a personal access token with 'read_api' scope is necessary for the extension to fetch relevant pipeline artifacts securely. The token is stored in Chrome's encrypted storage, ensuring user privacy and security. This widget is a useful tool for developers aiming to maintain secure code practices.

 0/1

App specs

Program available in other languages



User reviews about GitLab MR Vulnerability Widget

Have you tried GitLab MR Vulnerability Widget? Be the first to leave your opinion!

You may also like

Explore Apps

Latest articles

Laws concerning the use of this software vary from country to country. We do not encourage or condone the use of this program if it is in violation of these laws.
Softonic
Your review for GitLab MR Vulnerability Widget
Softonic

Score result: Clean

This file passed a comprehensive security scan using VirusTotal technology. It is safe to download.

  • Virus free
  • Spyware free
  • Malware free
  • Verified by Security Partners

    VirusTotal logo

Scan Info

Last scan
Thursday, April 17, 2025
Scan provider
VirusTotal

Softonic security commitment

GitLab MR Vulnerability Widget has been thoroughly scanned by our advanced security systems and verified by industry-leading partners. This file comes from the official developer and has passed all our security checks, showing no signs of viruses, malware, or spyware.