# GitLab introduces early-access checks to block risky build dependencies

_Published Tuesday, October 6, 2026 at 8:07 AM EDT · Security · Latest · Tier 2 — Notable_

![GitLab introduces early-access checks to block risky build dependencies — Primary](https://res.cloudinary.com/about-gitlab-com/image/upload/v1791198675/kmajkudog4fj3xc6qfyb.png)

GitLab introduced Dependency Firewall in early access for GitLab.com and Self-Managed customers on Premium or Ultimate plans. The company says the tool checks software packages against security and compliance policies before they enter a build, including dependencies selected by AI coding agents.

Teams can start in warn mode, which records policy matches while allowing builds to continue, then switch to block mode to stop pipelines. Designated users or tokens can make logged bypasses. Policies inherit from parent groups, with the strictest overlapping rule applying. Command-line checks let developers test whether a package would pass before adding it.

## Sources

- [GitLab](https://about.gitlab.com/blog/transcend-dependency-firewall/)

---
Canonical: https://techandbusiness.org/newswire/kRbFalMG2w5-kxjZxb66x9
Published: 2026-10-06T12:07:08.268Z
Story chronology: 2026-10-06T00:00:00.000Z
Retrieved: 2026-10-06T14:21:52.151Z
Publisher: Tech & Business (techandbusiness.org)
