Skip to content

FY26Q2 Stage Lead planning issue: Application Security Testing

Issue description

This issue outlines the themes that will be the focus of the Application Security Testing stage lead during Q2 of FY226.

Themes

Restructure introductory content on application security testing

  • Short description: Edit introductory content on application security testing so that users/customers can get started efficiently and effectively.
  • Reasoning: Without guidance on getting started with AST customers are worse off than before. With AST being a core Ultimate feature, user frustration risks customers switching to a lower tier or moving to a competitor.
  • Note: Issues marked 🔵 were carried over from FY26Q1.
Issue Group(s) Status Effort Priority Details
Edit docs page - Application security (gitlab-org/gitlab#497274 - closed) groupstatic analysis Complete Medium Medium Target milestone 18.1.
Completed in 18.2.
Led by: @rdickenson
Docs: Move content outside scope of an overview (gitlab-org/gitlab#525635 - closed) 🔵 groupstatic analysis Complete Medium Medium Target milestone 18.0 Led by: @rdickenson

Improve content structure

Relocate content into a more appropriate structure.

Issue Group(s) Status Effort Priority Details
Move DAST site and scanner profile docs (gitlab-org/gitlab#505588 - closed) groupdynamic analysis Complete Low Low Target milestone 18.1.
Completed 18.1
Led by: Technical Writer (@phillipwells)
Phase 3 - Add additional content to match docs ... (gitlab-org/gitlab#515887 - closed) All groups Complete Medium Medium Completed in 18.2 (Target milestone 18.1) Led by: @phillipwells @rdickenson

Tutorials

  • Short description: Create tutorials for secret detection features.
  • Reasoning: We have published tutorials for several secret detection features, but not yet one for one of the most-used features - pipeline secret detection.
  • Note: Consider adding links to new tutorial content to the top-level tutorial pages at https://docs.gitlab.com/ee/tutorials/.
Issue Group(s) Status Effort Priority Details
Docs: Create tutorial on pipeline secret detection (gitlab-org/gitlab#526749 - closed) groupsecret detection 🚧 In progress Medium Medium Target milestone is 18.3. Led by: Technical Writer (@phillipwells )

Legend:

  • : Waiting for <...>. technical writer, or PM input, or Engineering input
  • 🚧 : In progress
  • : Complete
  • 🏋🏽 : Stretch goal (add next to any item that is aspirational this quarter)

Retrospective

After the quarter is complete, create discussion threads with the following titles. Use these discussion threads for self-reflection and to note feedback from others about how the quarter went.

## 👍 What went well?
## 👎 What didn't go as well?
## 📈 What could be improved for next time?

Ongoing tasks

Manage TW-DRI assignments for all milestones:

Secure issue board

Specific TW milestone planning issues:

  • 18.0. Release date: 2025-05-15
  • 18.1. Release date: 2025-06-19
  • 18.2. Release date: 2025-07-17

References

Edited by Russell Dickenson