security-semgrep
CommunitySecure your code with SAST analysis.
Authorkobogithub
Version1.0.0
Installs0
System Documentation
What problem does it solve?
This Skill addresses the critical need for early detection of security vulnerabilities in code, preventing potential breaches and data loss by identifying insecure coding patterns before they reach production.
Core Features & Use Cases
- Static Application Security Testing (SAST): Utilizes Semgrep to scan code for security flaws.
- Framework Support: Specifically tailored rules for FastAPI, Astro, and Supabase client interactions.
- Custom Rule Creation: Enables defining project-specific security checks.
- CI/CD Integration: Provides examples for seamless integration into GitHub Actions workflows.
- Use Case: Automatically scan a new pull request for common vulnerabilities like SQL injection in FastAPI endpoints or hardcoded secrets in Supabase client configurations, failing the build if critical issues are found.
Quick Start
Run a basic Semgrep scan with auto-detected rules on the current project directory.
Dependency Matrix
Required Modules
None requiredComponents
references
💻 Claude Code Installation
Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.
Please help me install this Skill: Name: security-semgrep Download link: https://github.com/kobogithub/knowledge/archive/main.zip#security-semgrep Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
Agent Skills Search Helper
Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.