GitLab Duo offers guardrails for Claude Code in government
GitLab argues its agent platform can keep AI coding assistants compliant while agencies are pushed to move faster.

GitLab has set out how its Duo Agent Platform can govern Anthropic's Claude Code inside government agencies, pitching itself as the control layer for teams told to adopt AI quickly without losing their audit trail.
The post describes two pressures pulling in opposite directions. The US Office of Management and Budget is urging agencies to deploy AI faster, while the Government Accountability Office wants safeguards in place before they do, and both positions are being read by the same procurement teams.
Separating the assistant from the governance
GitLab's answer is to keep the two apart. Duo Agent Platform is presented as managing the software development lifecycle regardless of which model writes the code, so an assistant such as Claude Code can be adopted without every agency rebuilding its compliance process around a single vendor's tooling. Because model choice changes far quicker than a public sector procurement cycle, that separation is the entire argument.
It is familiar ground for GitLab, which has spent years selling one platform for planning, source control, continuous integration and security rather than a bundle of separate services.
Our opinion
Pointing a coding agent at a government codebase and hoping the audit trail keeps up is not a governance strategy, so GitLab is at least aiming at the right gap. The layer between the model and the delivery pipeline is where compliance either happens or quietly does not. The cynical reading is that governing every model is also a tidy way to stay indispensable while the models themselves belong to someone else. Agencies should rehearse that claim on their own pipeline before they believe the slide deck.