semgrep
https://github.com/returntocorp/semgrep
OCaml
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
Triage Issues!
When you volunteer to triage issues, you'll receive an email each day with a link to an open issue that needs help in this project. You'll also receive instructions on how to triage issues.
Triage Docs!
Receive a documented method or class from your favorite GitHub repos in your inbox every day. If you're really pro, receive undocumented methods or classes and supercharge your commit history.
OCaml not yet supported2 Subscribers
Add a CodeTriage badge to semgrep
Help out
- Issues
- [PHP] source not propagated through array_push shorthand in taint mode
- Cannot capture types of the content of a collection in a for range loop in Go
- Sub-expression is not matched
- semgrep scan --test not working for version 1.28.0
- Semgrep fails with exit code 2 on GitLab Merge Request if '--no-suppress-errors' is set and there are no files to scan
- Poor performance for rules parsing and scan output processing
- Go: Failing to parse Generics with type constraints
- Error while trying to build the semgrep image
- add support for Makefile
- add support for protobuf
- Docs
- OCaml not yet supported