semgrep - Semgrep Security Scan
Runs static analysis scans on codebases using parallel subagents and merges SARIF output.
Tags
Updated: 2026-09-22Capabilities
Typical Inputs
Typical Outputs
What this skill does
- Detect target codebase languages
- Check Semgrep Pro availability
- Run parallel static analysis scans
- Filter vulnerability scan findings
- Merge scan SARIF reports
Inputs
- Target codebase
- Scan mode selection
- Approved scan rulesets
- Output directory path
Outputs
- Merged SARIF results file
- Raw scan output files
- Approved rulesets text file
- Scan summary report
Requirements
- Semgrep CLI
- Semgrep Pro (optional)
- Python with uv
