Home / Companies / Semgrep / Blog / Post Details
Content Deep Dive

Introducing Semgrep for GitLab

Blog post from Semgrep

Post Details
Company
Date Published
Author
Bence Nagy
Word Count
730
Company Posts That Month
4
Language
English
Hacker News Points
-
Post removed?
No
Summary

Semgrep has integrated with GitLab, offering two main pathways for use: GitLab SAST and Semgrep CI. In GitLab SAST, Semgrep now serves as the default analyzer for JavaScript, Python, and TypeScript, replacing Bandit and ESLint, and allowing for simplified custom rule development with language-agnostic scanning. Through Semgrep CI, GitLab users can incorporate Semgrep into their CI/CD workflows to leverage over 1,000 community-driven rules and create custom rules with Semgrep’s intuitive syntax. Semgrep scan results appear in merge request discussions, facilitating integration into existing developer workflows, and optimizing performance by enabling faster scans through merge request triggers. GitLab is transitioning more of its SAST analyzers to Semgrep and aims to expand support to additional languages while contributing to the Semgrep open-source project and rule registry.

Trends Found in this Post
Trend Post Mentions Total Month Mentions Posts Companies MoM
Secrets Management 4 583 52 29 +30%
Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.