Imagine zero false positive SAST
Blog post from Semgrep
Semgrep has introduced Assistant Memories, a feature that allows its security platform to continuously learn from interactions such as manual triage and developer feedback, thus personalizing the static application security testing (SAST) tool to specific organizational contexts. This enhancement reduces false positives, as Memories enable the tool to store and apply contextual information about an environment, thereby improving the accuracy of triage decisions. Assistant Memories allows Semgrep to transform manual triage into a high-return-on-investment activity by permanently decreasing irrelevant alerts, with users able to preview and activate suggested memories for specific projects, rules, or vulnerability classes. The platform's accuracy is underscored by high user agreement rates, and its architecture is designed to integrate future AI model improvements, ensuring ongoing advancements in security effectiveness and reliability.