home/categories/code-quality/trailofbits-skills-plugins-testing-handbook-skills-skills-semgrep-skill-md
code-qualitytesting-security
semgrep
Semgrep is a fast static analysis tool for finding bugs and enforcing code standards. Use when scanning code for security issues or integrating into CI/CD pipelines.
maintainer
trailofbits
更新於 1/19/2026
星標
1466
分支
113
quick start
Installation and usage
Semgrep is a fast static analysis tool for finding bugs and enforcing code standards. Use when scanning code for security issues or integrating into CI/CD pipelines.
安裝
$ install --globalskills.sh
使用
安裝後,您可以通過在終端運行以下命令來使用此技能:
skills use semgrep