Connect Semgrep
Use this guide to import Semgrep application-security findings into Cracken.
Prerequisites
- Access to Semgrep organization settings
- Permission to create integration credentials
- A Cracken realm where you can configure data integrations
Prepare the credential
Create dedicated Semgrep integration credentials with access to:
- Agent (CI)
- Web API
Record the generated Client Key and Secret Key. The credentials can read findings for the Semgrep organization in which they were created.
Connect Semgrep
- Open Integration Center → Data Integrations.
- On the Semgrep card, click Install.
- Enter the Client Key and Secret Key.
- Click Test Connection, then Save & Connect.
Cracken can list Semgrep findings and filter them by severity and state.
Sources
Next steps
- Data Integrations — Review how connected security data flows into Cracken.
- Cybergraph — See how Cracken uses imported application data.