Semgrep
Fast, open-source static analysis for finding bugs and security issues.
Semgrep ships consistent engine hardening with an Intel Mac Homebrew deprecation.
◆Recent moves
- 6d ago
Semgrep v1.176.0 drops Intel Mac Homebrew support
Dropping Intel Mac Homebrew support marks a platform deprecation users on older hardware will notice. It fits Semgrep's broader infrastructure modernization trajectory — clearing legacy support obligations to concentrate CI on Apple Silicon and Linux environments.
View source ↗ - 12d ago
Release v1.175.0
Compiler upgrade from OCaml 5.3 to 5.4 with no user-visible behavior change — pure internal infrastructure. End users see nothing different.
View source ↗ - 18d ago
Release v1.174.0
Diff scans now surface which dependency source files changed since the merge base, giving teams clearer supply chain change attribution. Partial scans also skip ecosystems outside the active ruleset, reducing unnecessary dependency resolution overhead on large monorepos.
View source ↗ - 25d ago
Release v1.173.0
A dense release that fixes several correctness issues: metavariable-regex duplicate findings, Rust grouped use-import name resolution, MCP mode scan failures on multibyte UTF-8 files. The parallel scan performance improvement on musl systems and improved signal-on-crash diagnostics round out a release focused on production reliability.
View source ↗ - 1mo ago
Release v1.172.0
OpenTofu .tofu extension support lets Terraform-targeted rulesets cover OpenTofu projects with no configuration change. OCaml compiler GC pacing and codegen bug fixes address rare nondeterministic crashes. The git contributor window expanding to 90 days reflects a usage policy update on the commercial side.
View source ↗ - 1mo ago
Release v1.171.0
An earlier release that shares the OpenTofu and OCaml GC fixes later carried in v1.172.0 — likely a backport or overlapping release branch. No unique features relative to v1.172.0.
View source ↗