Semgrep’s cover photo
Semgrep

Semgrep

Software Development

San Francisco, California 18,160 followers

Semgrep is the leader in code security for builders, helping teams catch and fix real security issues before they ship.

About us

Semgrep is the leader in code security for builders. Teams catch, flag, and fix real issues before they ship, powered by security that learns as you build. Built for builders and trusted by security, the platform unifies SAST, SCA, and secrets scanning, embedding protection directly into the development workflow so security begins where code is written and lives where developers work. Semgrep combines deterministic static analysis with AI reasoning to power detection, triage, and remediation. This approach helps teams uncover real vulnerabilities, prioritize reachable risks, and fix issues faster. Customers report up to 80% fewer false positives across Code and Supply Chain, with 95% of findings validated by security reviewers across more than 6 million results. Founded in San Francisco, Semgrep is backed by Menlo Ventures, Felicis Ventures, Lightspeed Venture Partners, Redpoint Ventures, and Sequoia Capital. It is recognized by Gartner in Application Security Testing and trusted by leading organizations, including Snowflake, Dropbox, and Figma. Learn more at semgrep.dev.

Website
https://semgrep.dev
Industry
Software Development
Company size
201-500 employees
Headquarters
San Francisco, California
Type
Privately Held
Founded
2017

Locations

Employees at Semgrep

Updates

  • View organization page for Semgrep

    18,160 followers

    In case you missed it, last week we hosted our first virtual keynote, Semgrep Secure 2026: Code Security Rebuilt for the AI Era. 🌀 We introduced a multimodal AppSec engine that combines deterministic analysis with LLM reasoning to eliminate false positives and uncover deeper, context-aware vulnerabilities. It’s not AI layered on top, it’s AppSec rebuilt for how code is written today.  Check out the recording👇

  • You can write a Semgrep rule to catch hardcoded JWT secrets in under 2 minutes. To run it against your code: semgrep scan --config jwt-rule.yml ./src This catches every instance where a developer passed a string literal as the signing key instead of pulling from an env variable or secret manager, pretty handy!

    • No alternative text description for this image
  • Last week, the team headed to Utah for the Après Cyber Slopes Summit and to Seattle for BSides.🚀 Huge thanks to everyone who stopped by our table at the Après Cyber Slopes Summit to say hello, to those who joined us at SPIN Seattle to kick off BSides with Formal and to everyone who came to see Kurt Boberg and Max vonBlankenburg speak in Seattle. We’re incredibly grateful to be part of this community and for the chance to connect with so many folks in person. Curious where we’re headed next? Visit our events page: https://lnkd.in/g6YufSqa

    • No alternative text description for this image
    • No alternative text description for this image
    • No alternative text description for this image
  • Semgrep Code is designed to move security at the speed of development through four key stages: 1️⃣ Unified Detection: Combines SAST with AI to catch everything from classic SQLi to complex business-logic flaws. 2️⃣ Noise Reduction: Semgrep Assistant filters out 20% of false positives on day one by understanding your code's context. 3️⃣ Developer Remediation: Shifts security left with AI-generated fixes and step-by-step instructions directly in the PR. 4️⃣ Organizational Memory: Learns from your triage decisions so you never have to review the same issue twice. Stop chasing noise and start scaling your security program. Learn more about Semgrep Code👇 https://lnkd.in/gvR_C2XM

    • No alternative text description for this image
  • We are excited to share that The WOMEN IN SECURITY Documentary, directed by Yvette Freeman, will premiere at RSAC in San Francisco this year, and Semgrep is honored to be a sponsor. This powerful film highlights the women redefining leadership, innovation, and impact across the cybersecurity industry. Join us for an evening of storytelling, community, and inspiration. 📆Tuesday, March 24 & Wednesday, March 25 🕜 4:00 – 6:00 pm 📍AMC Metreon 16 | San Francisco Register to attend👇 https://lnkd.in/gXr_QB4n

Similar pages

Browse jobs

Funding

Semgrep 4 total rounds

Last Round

Series D

US$ 100.0M

See more info on crunchbase