Socket for GitLab
Whenever a new dependency is added in a pull request, Socket analyzes the package's behavior and security risk.

Socket is the easiest security product you’ve ever installed! ✨
Set up your API token in the Socket dashboard
In GitLab, create a new variable for your GitLab token
Test your pipeline and Socket will automatically begin analyzing your projects and keep them secure
Why use Socket for GitLab
Socket creates a project health report for your project. Uploads your package.json or package-lock.json
Run Socket in your CI/CD pipeline to create branches and deploy requests. Socket will create a report for you to review
Socket allows you look up supply chain risks for given version of a package in the ecosystem registry
We help security teams work more efficiently
Get actionable alerts for the supply chain risks that matter. Socket highlights risky dependencies directly within the developer workflow.