Original Post: Unlocking advanced security for all: Semgrep’s latest update
Semgrep announced the launch of new features in its suite:
- Semgrep Supply Chain is now free for teams with up to 10 contributors, reducing false positives in dependency scans. Existing users must toggle it on in settings.
- Semgrep Code’s Pro features are now available for free for the same contributor limit. These features include advanced scanning and Pro rules.
- Zero-config Scanning for GitHub.com is in private beta, easing Semgrep integration with no CI/CD configuration files needed.
- Turbo-charged Semgrep Playground provides instant scan results with every keystroke by utilizing JavaScript and WebAssembly.
- Expanded language support includes Go with the Pro Engine and Kotlin with the OSS Engine, plus 100+ new rules.
- Enhanced policy management through a new Policies UI for easier configuration of Semgrep rules.
- Upcoming features include Dependency Search and License Compliance for Semgrep Supply Chain and a new Semgrep VS Code Extension launching soon for real-time code and supply chain scans.
For more details and to try these features, users can sign up and toggle settings as needed.
Go here to read the Original Post