Semgrep Employees

No people found yet for this company.

Semgrep Company Information

Semgrep, founded in 2017, offers a comprehensive suite of security products designed to enhance software security and reliability. The company’s offerings include Semgrep Code, a Static Application Security Testing (SAST) solution that identifies and resolves code issues; Semgrep Supply Chain, which focuses on detecting and addressing reachable dependency vulnerabilities; and Semgrep Secrets, which uses semantic analysis to find and fix hardcoded secrets. Additionally, Semgrep Assistant provides AI-powered triage and code fix recommendations, while the Semgrep AppSec Platform automates, manages, and enforces security across organizations. The Semgrep Pro Engine employs advanced dataflow analysis to deliver more accurate results with fewer false positives and supports interfile and interprocedural analysis for enterprise languages such as Apex. Semgrep also features a Registry for community and Semgrep-written rules, a Playground for interactive rule writing and sharing, and Semgrep Academy, which offers free courses on application security and secure coding. The company supports over 30 languages and technologies, integrates with popular CI/CD tools like GitHub, GitLab, and CircleCI, and provides a free tier for up to 10 contributors for its AppSec Platform, Code, and Supply Chain products. Semgrep’s Pro rules are high-confidence rules crafted by the Semgrep Security Research team. The Supply Chain product includes Dependency Search and License Compliance features and helps prioritize the 2% of dependency vulnerabilities that are actually reachable in code. Semgrep’s secrets detection combines semantic analysis, entropy analysis, and validation. The company’s median CI scan time is 10 seconds. Semgrep also offers a Community Slack group for user interaction and various support options for paying customers, including private Slack channels and email support. Semgrep has raised $53M in Series C funding and is utilized by companies such as Figma, Dropbox, Slack, and Snowflake. The company’s mission is to profoundly improve software security and reliability.

report flag Report inaccurate information
report flag Report inaccurate information

Companies similar to Semgrep

DeepSource, a B2B company specializing in engineering, product, and design, offers tools for continuous source code analysis to identify and fix security, performance, and other issues before deployment.

Greptile, a B2B company based in San Francisco, specializes in helping developers navigate and understand GitHub repositories through an interactive platform.

People indexed
Unlock exclusive insights

Sign up to reveal more information.

loader Sign up for free