# mcp-semgrep-scanner

> mcp-semgrep-scanner — archimedes-market-mcp-semgrep-scanner. Use this tool when you need to identify security vulnerabilities and secrets in your codebase, leveraging Semgrep's static analysis capabilities to detect OWASP top 10 threats and custom rule packs. It takes in git repository code and outputs detailed findings, allowing for baseline scanning to focus on newly-introduced issues. Ideal for production-grade security review workflows, this tool streamlines the security testing process.

Canonical page: https://skillsregistry.net/skills/archimedes-market-mcp-semgrep-scanner  
JSON: https://api.skillsregistry.net/v1/skills/archimedes-market-mcp-semgrep-scanner

## Description

Run Semgrep static analysis from an AI agent. OWASP top 10, secrets detection, custom rule packs. Baseline scanning to focus only on newly-introduced findings. Built for production-grade security review workflows.

## Trust

- **Trust score (0–1):** 0.65
- **Verification tier:** scanned
- **Last scanned:** 2026-09-03

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** container
- **Runtime environment:** vm
- **Category:** ai-ml
- **Updated:** 2026-09-21

## Source

- **Source listing:** [GitHub](https://github.com/archimedes-market/mcp-semgrep-scanner)

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "archimedes-market-mcp-semgrep-scanner"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/archimedes-market-mcp-semgrep-scanner` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/archimedes-market-mcp-semgrep-scanner/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
