doc/releases/19/gitlab-19-1-released/secret-false-positive-detection-with-gitlab-duo.md
Secret false positive detection with the GitLab Duo Agent Platform is now generally available.
Security teams spend significant time investigating secret detection findings that are incorrectly flagged as actual secrets. These false positives create alert fatigue, erode trust in scan results, and divert attention from genuine security risks.
When a security scan runs, GitLab Duo automatically analyzes each critical and high severity secret detection vulnerability to determine if it is a false positive. The AI assessment appears in the vulnerability report, so you have immediate context for faster and more confident triage decisions.
Key features include:
We welcome your feedback in issue 592861.