Found 69 repositories(showing 30)
semgrep
This project is deprecated. Use https://github.com/returntocorp/semgrep instead
mrnfrancesco
Ricerca che mostra come scrivere regole per SemGrep per cercare SQL Injection nei plugin di Wordpress che usano action AJAX
j3ssie
Github Action Example with Semgrep SAST
JNZader
AI-powered multi-agent code review — SaaS, GitHub Action & CLI. 12+ static analysis tools (Semgrep, Trivy, Gitleaks, PMD, Biome, Ruff...), health scoring, SARIF export.
g-wilson
reviewdog action for semgrep - lightweight static analysis for many languages with rules that look like source code.
MetaMask
GitHub Action to run Semgrep with custom rules. Results are uploaded to GitHub's Code Scanning API
secdim
Example repository to show how to integrate Semgrep with SecDim Sandbox via Github Action
drew2a
GitHub Action for converting Semgrep JSON reports into PR annotations
r7kamura
Custom action to run Semgrep and output results in GitHub Annotations format.
0xmarziehlabs
Enterprise-style DevSecOps CI/CD pipeline demo using GitHub Actions, Semgrep, CodeQL, TruffleHog, pip-audit, and pre-commit.
Paulinhx
Security-First CI/CD Pipeline: Automated static and infrastructure security checks using Terraform, Checkov, OPA, Semgrep, Trivy, and GitHub Actions.
navhits
This repository holds a sample Flask API that is deployable to Deta.sh and is configured for Semgrep scans with Github Actions
splinterlabs
CI/CD security toolkit: reusable GitHub Actions workflows (Gitleaks, Semgrep, Trivy, Nuclei), deep scan orchestrator, findings tracker with regression detection, and AI-aware custom rules
franciskonikkara
Built SOC 2/ISO 27001–aligned CI/CD pipeline with GitHub Actions, Semgrep, Trivy, and Gitleaks, enforcing SAST, secrets, and container security gates with SIEM-ready audit evidence.
advaitsangle
Python project showcasing a DevSecOps pipeline with GitHub Actions. Integrates Semgrep, Gitleaks, and pip-audit to scan commits for insecure code, secrets, and vulnerable dependencies, with branch protection to block merges on high-severity findings.
Secure CI/CD pipeline implementing DevSecOps practices using GitHub Actions. Includes SAST with Semgrep, DAST with OWASP ZAP, and secret scanning via GitLeaks. Uses Docker, Kubernetes, ArgoCD, and Sealed Secrets for secure, GitOps-based deployment across staging and production environments. Ask ChatGPT
eteryko
Run tests for semgrep-rules repositories
mfocuz
testing semgrep action
actions-marketplace-validations
No description available
tsigouris007
A custom Semgrep action to use in your GitHub workflows
Pishone
No description available
devops-looplava
No description available
andyrphillips
No description available
actions-marketplace-validations
No description available
tsigouris007
Github action to use Semgrep and Reviewdog together with some nice features
l1uk
Github Action Example with Semgrep SAST
a-yohan
No description available
ianlintner
No description available
kyorohiro
No description available
actions-marketplace-validations
No description available