Semgrep

Run Semgrep static analysis scan on a codebase using parallel subagents. Supports two scan modes — "run all" (full ruleset coverage) and "important only" (high-confidence security vulnerabilities). Automatically detects and uses Semgrep Pro for cross-file taint analysis when available. Use when asked to scan code for vulnerabilities, run a security audit with Semgrep, find bugs, or perform static analysis. Spawns parallel workers for multi-language codebases.

backspace-shmackspace f0c4531 25.1 KB Updated

File contents

backspace-shmackspace/claude-devkit/tree/main/skills/semgrep commit f0c4531caf

Frequently asked questions

npx skillmds@latest add backspace-shmackspace/semgrep