opengrep-bin
Open-source static code analysis engine, LGPL fork of Semgrep CE
Opengrep is an open-source static application security testing (SAST) engine, forked from Semgrep CE and kept under the LGPL-2.1 licence by a consortium of AppSec vendors (Aikido, Amplify, Endor Labs, Kodem and Orca Security) after Semgrep moved several features behind a commercial licence. It matches source code against declarative YAML rules that look like the code they search for, supporting more than thirty languages, and remains compatible with existing Semgrep rules and rulesets. Results can be emitted as plain text, JSON or SARIF for CI integration. This package installs the pre-built, self-contained upstream release binary (a single statically-linked native executable, no Python runtime required) providing the scan, test, validate, show and lsp subcommands.
homepage ↗homepage ↗ github: opengrep/opengrep
Available in
| Overlay | Newest | Ebuilds | Last activity | |
|---|---|---|---|---|
| bentoo GitHub ↗ | 1.26.0 | 1 | 22 h | details › |