🚓 New Scanner implementation request
Is your feature request related to a problem
As a secureCodeBox user I would like to use semgrep for static application security testing.
Describe the solution you'd like
Integrate semgrep as a SAST scanner. Provide how-tos and parser.
Describe alternatives you've considered
Snyk Code
Additional context
Steps to implement a new scanner
Hint: A general guide how to implement a new SCB scanner is documented here
🚓 New Scanner implementation request
Is your feature request related to a problem
As a secureCodeBox user I would like to use semgrep for static application security testing.
Describe the solution you'd like
Integrate semgrep as a SAST scanner. Provide how-tos and parser.
Describe alternatives you've considered
Snyk Code
Additional context
Steps to implement a new scanner
Hint: A general guide how to implement a new SCB scanner is documented here
README.gotmpland give a brief overview of the scanner and its configuration options.scan-type.yamlparse-definition.yamlcascading-rules.yamllike documented hereDockerfilefor the scanner if there is no existing one publicly available on dockerHubscan.yamlandfinding.yamlfiles in the example folder