Semgrep

Connect Sola and Semgrep to get security insights

Overview

The Semgrep integration connects data from your Semgrep account to your Sola workspace, making it easy to search and find answers to your specific use cases.

With the Semgrep integration, you can:

  • Gain visibility into code security findings from SAST scans and supply chain vulnerabilities, including severity, triage state, and CWE/OWASP classifications.

  • Track exposed secrets and credentials found in code, including secret type, validation state, and source location.

  • Review policy configuration and rule enforcement modes across your Semgrep deployment.

  • Analyze scan history and third-party dependency inventory across your repositories.

Set up Semgrep data source integration with Sola

Go to Integrations > Data Sources > click New data source > select Semgrep.

The Sola wizard will take you through the steps.

To connect Semgrep, you'll need a Semgrep account with admin permissions.

This method uses a Semgrep API token to securely grant Sola read-only access to your Semgrep organization data.

Last updated

Was this helpful?