Engineering organizations (50 to 50,000+) wanting one DevSecOps vendor instead of GitHub plus separate CI/CD, security scanning, and registry vendors. Particularly strong for regulated industries running GitLab Self-Managed on-prem.
Small teams that just need a repo (GitHub or Gitea simpler and cheaper), Atlassian-anchored shops (Bitbucket native to Jira/Confluence), or ethical-tech buyers wanting non-profit governance (Codeberg better).
Is GitLab a trustworthy vendor?
- 2021-10-14GitLab IPOs on NASDAQ as GTLBPublic-company status added audited financial transparency; sustained product investment through 2026.
- 2023-04-03Tier reshuffle raised Premium and moved features to UltimateCustomer pushback on Reddit and HN; some buyers reported switching to GitHub.
- 2024-02-15GitLab Duo Code Suggestions launchedAI code suggestions GA; closes some of the Copilot gap inside GitLab.
- 2024-05-22Duo AI Pricing controversy (per-seat add-on)Customers expected Duo bundled in Premium or Ultimate; per-seat add-on drew complaints in user forums.
What 1,320 reviews actually say
Synthesized from G2, Capterra, Reddit, Trustpilot. Patterns >15% prevalence shown.
Praise patterns
- All-in-one DevSecOps consolidation (single vendor)87% →
- Self-managed on-prem deployment for regulated industries71% →
- Built-in security scanning at Ultimate64% ↑
- Compliance frameworks and audit events47% →
Complaint patterns
- Duo AI is a separate per-seat add-on51% ↑
- 2023 tier reshuffle raised Premium41% ↓
- UI complexity for repo-only buyers38% →
- Self-managed operational burden31% →
What buyers actually pay
287 anonymized deal disclosures · last updated 2026-05-01
| Company size | Median annual |
|---|---|
| 10 to 50 engineers (Premium) | $348 |
| 50 to 500 engineers (Premium) | $348 |
| 500+ engineers (Ultimate) | $1,188 |
Auto-verified certifications
Editorial: Strengths
- All-in-one DevSecOps: repo, CI/CD, registry, SAST, DAST, secret scanning, Duo AI
- Single vendor TCO advantage versus GitHub + add-ons + third-party security
- Strong self-managed (on-prem) deployment option for regulated industries
- Public company (NASDAQ:GTLB) with audited financials and roadmap transparency
- Open-core model with permissive Community Edition
- Built-in compliance frameworks and audit events at Premium and Ultimate
- Mature merge request workflow and code review
Editorial: Weaknesses
- Duo AI is a separate per-seat add-on; not bundled in any tier
- 2023 tier reshuffle raised Premium and moved features behind Ultimate
- Self-managed installations require non-trivial operational investment
- Smaller marketplace and third-party integration ecosystem than GitHub
- AI Pricing controversy in 2024 (Duo per-seat add-on) drew customer pushback
- UI complexity reported by single-feature buyers wanting only repo
Key features & integrations
- +Git hosting with unlimited repos (SaaS) or self-managed
- +Merge requests with code review and approval rules
- +Built-in GitLab CI/CD with runners (SaaS and self-managed)
- +Container Registry, Package Registry, Helm Chart Registry
- +Built-in security scanning (SAST, DAST, secret, dependency, container)
- +GitLab Duo AI (code suggestions, chat, vulnerability explanation)
- +Compliance frameworks and audit events (Premium/Ultimate)
- +Self-managed deployment for on-prem / air-gap
- +SAML SSO, SCIM, granular role-based access
- +Value Stream Management and DORA metrics
Read our full ranking of Code Repository / Version Control
GitLab ranks #2 in our editorial review of 10 code repository / version control platforms. The deep-dive covers methodology, comparison tables, decision matrix, migration scoring, and FAQs.
Read the full rankingClosest alternatives in Code Repository / Version Control
Contribute your verified deal price
Pricing in B2B software is opaque because vendors want it that way. Verified buyer prices fix that, anonymously. Share what you actually paid for GitLab; we’ll add it to the verified pricing dataset on this page (with company size band only, no identifying details).
Submit anonymously