Semgrep
Connect Sola and Semgrep to get security insights
Overview
The Semgrep integration connects data from your Semgrep account to your Sola workspace, making it easy to search and find answers to your specific use cases.
With the Semgrep integration, you can:
Gain visibility into code security findings from SAST scans and supply chain vulnerabilities, including severity, triage state, and CWE/OWASP classifications.
Track exposed secrets and credentials found in code, including secret type, validation state, and source location.
Review policy configuration and rule enforcement modes across your Semgrep deployment.
Analyze scan history and third-party dependency inventory across your repositories.
Your data can only be retrieved, never modified.
Once connected, your data is securely stored, and access is restricted to retrieving configurations and metadata only. Authentication methods ensure secure delegation of permissions while maintaining data integrity.
Set up Semgrep data source integration with Sola
Go to Integrations > Data Sources > click New data source > select Semgrep.
The Sola wizard will take you through the steps.
To connect Semgrep, you'll need a Semgrep account with admin permissions.
This method uses a Semgrep API token to securely grant Sola read-only access to your Semgrep organization data.
Last updated
Was this helpful?