semgrep - Semgrep Static Security Scanner
Run parallel Semgrep static analysis scans to detect security vulnerabilities and bugs in codebases
Tags
Updated: 2026-06-30Capabilities
Typical Inputs
Typical Outputs
What this skill does
- detect languages
- check Pro availability
- resolve output directory
- select scan mode
- present scan plan
- get user approval
- spawn scan tasks
- merge scan results
- generate SARIF files
- report findings
Inputs
- codebase directory
- scan mode
- output directory
Outputs
- SARIF report files
- JSON scan results
- scan summary report
- task completion status
Requirements
- Semgrep CLI installed
- Task subagent support
- AskUserQuestion tool
- Bash tool
- Read tool
- Glob tool
