Skip to main content

Connect Semgrep

Use this guide to import Semgrep application-security findings into Cracken.

Prerequisites

  • Access to Semgrep organization settings
  • Permission to create integration credentials
  • A Cracken realm where you can configure data integrations

Prepare the credential

Create dedicated Semgrep integration credentials with access to:

  • Agent (CI)
  • Web API

Record the generated Client Key and Secret Key. The credentials can read findings for the Semgrep organization in which they were created.

Connect Semgrep

  1. Open Integration Center → Data Integrations.
  2. On the Semgrep card, click Install.
  3. Enter the Client Key and Secret Key.
  4. Click Test Connection, then Save & Connect.

Cracken can list Semgrep findings and filter them by severity and state.

Sources

Next steps

  • Data Integrations — Review how connected security data flows into Cracken.
  • Cybergraph — See how Cracken uses imported application data.