Home / Companies / Semgrep / Blog / Post Details
Content Deep Dive

Releasing Semgrep 1.0

Blog post from Semgrep

Post Details
Company
Date Published
Author
Yoann Padioleau
Word Count
1,180
Language
English
Hacker News Points
-
Summary

After nearly three years of development and over 120 releases, Semgrep has launched its 1.0 version, marking a significant milestone for the open-source project developed by r2c. Semgrep, which is used by thousands of companies globally and has surpassed 10 million Docker pulls, is celebrated for its stability and backward compatibility, allowing rules written for older versions to work with newer ones. Although it employs semantic versioning, Semgrep's approach aligns more with programming languages, ensuring backward compatibility even with major updates. The 1.0 release also transitions key features like Autofix, Generic pattern matching, and Metavariable Analysis from experimental to mature, reflecting their extensive use and positive reception. The Semgrep community has played a crucial role in its development, with significant contributions from users and developers, which have expanded its support to over 25 programming languages and earned it a substantial following. Looking ahead, r2c plans to continue enhancing Semgrep by adding new features, supporting more languages, and improving its performance, with a roadmap that includes writing new rules and potentially preparing for a 2.0 release.