Semgrep analyzes source code for security vulnerabilities, bugs, and code quality issues using customizable rules. It is available as a command-line tool, hosted platform, and IntelliJ IDE plugin for developers and security teams.
In the Static analysis & linters space, Semgrep takes a focused approach. It focuses on finding security vulnerabilities and code quality issues before they reach production. Semgrep is a B2B product aimed at software developers and security teams. There is a free tier. Semgrep is available on the web and the command line.
Semgrep, Inc. builds and maintains Semgrep, and it first shipped in 2024. Among its 5 catalogued features are code scanning, security rules, and custom rules.
Summary written by a language model from the project’s public pages.
What PulseGate has recorded for this listing
Closest matches by what these projects do