semgrep

SkillSecurity

Lets your agent scan code for security flaws using Semgrep rules across many languages.

Available today. Use it from your connected AI after setup.

Add ahel to your AI once: Claude, ChatGPT, Cursor, Claude Code or Codex. Then ask it to use this.

Then ask your AI: use the semgrep skill

About this skill

🛡⚔️AI-Powered Penetration Testing Framework with automated vulnerability scanning, multi-agent system, and compliance reporting🛡⚔️

What this skill tells your AI

The instructions your AI receives, as published by shadd0wtaka/zen-ai-pentest in skills/tool-semgrep/SKILL.md and read by ahel’s review.

Semgrep Integration - Static Analysis for Code Security for Zen-AI-Pentest

Category: scanning — Security Code & Container Scanning

Overview

Semgrep Integration - Static Analysis for Code Security for Zen-AI-Pentest

This module provides a comprehensive Semgrep wrapper with:

  • Custom rule support
  • OWASP/CWE coverage
  • Multiple language support
  • CI/CD integration
  • Rule configuration
  • JSON output parsing
  • Finding categorization
  • False positive handling

Author: Zen-AI-Pentest Team License: MIT

Usage in Zen-Ai-Pentest

# Auto-registered in tool_registry under "scanning"
result = await tool_orchestrator.execute("semgrep_integration", target="example.com")

CLI Equivalent

semgrep --help

Agent Integration

  • CLI: deep-recon --tool semgrep_integration --target example.com
  • Agent persona: auto-selected from category scanning
  • MCP: zen-agents_agent_run agent_type=scanning tool=semgrep_integration
  • API: POST /tools/execute with {"tool_name": "semgrep_integration", "target": "example.com"}

Signals

GitHub stars
469
Forks
81
Last commit
Sep 2026
Advanced
Item type
skill
Key
tool-semgrep
Source
github.com/shadd0wtaka/zen-ai-pentest