| 
                             Attribute 
                         | 
                        
                             Essential 
                         | 
                        
                             Advanced 
                         | 
                        
                             GitLab 
                         | 
                    
| 
                             Focus 
                         | 
                        |||
| 
                             Extras 
                         | 
                        
                             None 
                         | 
                        
                             None 
                         | 
                        |
| 
                             Employees 
                         | 
                        |||
| 
                             Reputation 
                         | 
                        
                             Same 
                         | 
                        ||
| 
                             Followers 
                         | 
                        
                             Same 
                         | 
                        ||
| 
                             Research Firms 
                         | 
                        
                             None 
                         | 
                        
                             None 
                         | 
                        |
| 
                             Founded 
                         | 
                        2001 | ||
| 
                             Funding 
                         | 
                        
                             Bootstrapped 
                         | 
                        
                             Same 
                         | 
                        
                             $413.5M USD in 7 rounds from 5 investors (8
                                    acquisitions) 
                         | 
                    
| 
                             Revenue 
                         | 
                        |||
| 
                             CVE 
                         | 
                        
                             907 CVEs reported to MITRE 
                         | 
                    ||
| 
                             Compliance 
                         | 
                        
                             SOC 2 Type
                                        II and SOC
                                    3 
                         | 
                        ||
| 
                             Documentation 
                         | 
                        |||
| 
                             Visits 
                         | 
                        |||
| 
                             Authority 
                         | 
                        |||
| 
                             Distribution 
                         | 
                        
                             Same 
                         | 
                        ||
| Marketplaces | AWS, Azure and GCP | ||
| 
                             Freemium 
                         | 
                        
                             No 
                         | 
                        
                             No 
                         | 
                        
                             Yes (Code
                                security not included) 
                         | 
                    
| 
                             Free trial 
                         | 
                        
                             60-day
                                    free trial and PoV 
                         | 
                    ||
| 
                             Demo 
                         | 
                        |||
| 
                             Pricing 
                         | 
                        |||
| 
                             Pricing drivers 
                         | 
                        
| 
                                 Attribute 
                             | 
                            
                                 Essential 
                             | 
                            
                                 Advanced 
                             | 
                            
                                 GitLab 
                             | 
                        
| 
                                 
                                    PTaaS
                                 
                             | 
                            
                                 No 
                             | 
                            
                                 No 
                             | 
                        |
| 
                                 Reverse engineering 
                             | 
                            
                                 No 
                             | 
                            Yes | No | 
| 
                                 Secure code review 
                             | 
                            
                                 No 
                             | 
                            
                                 No 
                                 | 
                        |
| 
                                 Pivoting 
                             | 
                            
                                 No 
                             | 
                            
                                 No 
                             | 
                        |
| 
                                 Exploitation 
                             | 
                            
                                 No 
                             | 
                            
                                 No 
                             | 
                        |
| 
                                 Zero-day vulnerabilities
                                 
                             | 
                            
                                 None 
                             | 
                            
                                 Continuous zero-day vulnerability
                                            research 
                             | 
                            
                                 None 
                             | 
                        
| 
                                 SLA 
                             | 
                            Response | ||
| 
                                 Accreditations 
                             | 
                            |||
| 
                                 Hacker certifications 
                             | 
                            
                                 Not applicable 
                                 | 
                            
                                 Not applicable 
                                 | 
                        |
| 
                                 Type of contract 
                             | 
                            
                                 Employee 
                             | 
                            
                                 Same 
                             | 
                            |
| 
                                 Standards 
                             | 
                            
                                 Some requirements from 65
                                        standards, 15 in common and 50
                                            additional 
                             | 
                            
                                 All requirements from the same
                                    standards 
                             | 
                            |
| 
                                 Detection method 
                                 | 
                            |||
| 
                                 Remediation 
                             | 
                            
                                 5, 4 in common and 1 additional
                                 
                             | 
                            
                                 Same, plus 1 
                             | 
                            
                                 5, 4 in common and 1 additional
                                 
                             | 
                        
| 
                                 Outputs 
                             | 
                            
                                 5, 4 in common and 1 additional 
                                 | 
                            
                                 Same, plus 2 
                             | 
                            
                                 6, 4 in common and 2 additional
                                 
                             | 
                        
| 
                             Attribute 
                         | 
                        Essential | 
                             Advanced 
                         | 
                        
                             GitLab 
                         | 
                    
| 
                             ASPM 
                         | 
                        Yes | 
                             No 
                         | 
                    |
| 
                             IDE 
                         | 
                        
                             Same, plus 1
                                    functionality 
                         | 
                        ||
| 
                             CLI 
                         | 
                        |||
| 
                             CI/CD 
                         | 
                        |||
| 
                             SCA 
                         | 
                        
                             16 package
                                    managers, 15 in common and 1 additional 
                         | 
                    ||
| 
                             Reachability 
                         | 
                        
                             12 languages, 2 in common and 10 additional
                             
                         | 
                        
                             2 languages, all in common 
                             | 
                    |
| 
                             SBOM 
                         | 
                        |||
| 
                             Containers 
                         | 
                        
                             | 
                    ||
| 
                             Source SAST (languages) 
                         | 
                        
                             18, 15 in common and 3 additional 
                         | 
                        
                             Same, plus 4. 1 in common and 3 additional 
                         | 
                        |
| 
                             Source SAST (frameworks) 
                         | 
                        
                             22, 3 in common and 19 additional 
                         | 
                        
                             5 frameworks, 3 in common and 2 additional  | 
                    |
| 
                             Binary SAST 
                         | 
                        
                             1 type of
                                    binary 
                         | 
                        
                             Same,
                                plus 2 types of binaries 
                         | 
                        
                             No 
                         | 
                    
| 
                             DAST 
                         | 
                        
                             9 attack surface types, 6 in common and 3 additional  | 
                    ||
| 
                             IAST 
                         | 
                        
                             No 
                         | 
                        
                             No 
                         | 
                        
                             No 
                         | 
                    
| 
                             CSPM 
                         | 
                        Yes | 
                             No 
                         | 
                    |
| 
                             Secrets 
                         | 
                        
                             Same, plus verify other attack
                                    vectors and secrets exploitability 
                         | 
                        ||
| 
                             AI 
                         | 
                        |||
| 
                             Open source 
                             | 
                        
                             Not applicable 
                         | 
                        
                             MIT. Partially
                                equivalent to the paid version 
                         | 
                    |
| 
                             Deployment 
                         | 
                        
                             SaaS and
                                on-premises
                             
                         | 
                    ||
| Regions | |||
| 
                             
                                Status
                             
                         | 
                        |||
| 
                             Incidents 
                         | 
                        
| 
                             Attribute 
                         | 
                        
                             Essential 
                         | 
                        
                             Advanced 
                         | 
                        
                             GitLab 
                         | 
                    
| 
                             
                                SCM
                             
                         | 
                        
                             4, 1 in common and 3
                                    additional 
                         | 
                        
                             1 in common 
                         | 
                    |
| 
                             
                                Binary repositories
                             
                         | 
                        
                             None 
                         | 
                        
                             None 
                         | 
                        
                             None 
                         | 
                    
| 
                             
                                Ticketing
                             
                         | 
                        
                             3, 2 in common and 1 additional
                             
                         | 
                        
                             9, 2 in common and 7 additional  | 
                    |
| 
                             
                                ChatOps
                             
                         | 
                        None | 
                             None 
                         | 
                        |
| 
                             
                                IDE
                             
                         | 
                        
                             2, all in common 
                         | 
                        
                             15, 2 in common and 13 additional  | 
                    |
| 
                             
                                CI/CD
                             
                         | 
                        
                             20, 4 in common and 28
                                    additional 
                         | 
                        
                             4, all in common 
                             | 
                    |
| 
                             
                                SCA
                             
                         | 
                        
                             Native scanner and 8 integrations  | 
                    ||
| 
                             
                                Container
                             
                         | 
                        
                             Native scanner and 3 integrations  | 
                    ||
| 
                             SAST
                             
                         | 
                        
                             Native scanner and 5 integrations  | 
                    ||
| 
                             
                                DAST
                             
                         | 
                        
                             Native scanner and 3 integrations  | 
                    ||
| 
                             
                                IAST
                             
                         | 
                        None | 
                             None 
                         | 
                        
                             None 
                         | 
                    
| 
                             
                                Cloud
                             
                         | 
                        
                             None 
                         | 
                    ||
| 
                             
                                CSPM
                             
                         | 
                        1 | ||
| 
                             
                                Secrets
                             
                         | 
                        
                             
                                    Native scanner and 1 integration  | 
                    ||
| 
                             
                                Compliance
                             
                         | 
                        
                             None 
                         | 
                        
                             None 
                         |