Semgrep

Semgrep

Static analysis at ludicrous speed.

About Semgrep

Semgrep is a highly-configurable SAST tool that looks for recurring patterns in the syntax tree. It can either run locally using Docker or be integrated into the CI/CD pipeline with Github Actions.

Results are delivered as JSON files, allowing you to pipe the results into other tools, like jq in order to manipulate them.

Tags:

#Github#open source#Docker
Previous Tool Next Tool