semgrep
PyPI v1.159.010,520,610 weekly downloads · 27 Dependencies
Source data as of:
Summary
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
Install
pip install semgrep
- EcosystemPyPI
- Version1.159.0
- Weekly downloads10,520,610
- License—
- Dependencies27
- Last release2026-04-10
- First published2020-05-06
Registry values
Reproduced verbatim from the official registry, with the source named on each value.
Description
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
Registry-supplied description, cleaned to plain text. Source: PyPI (Python Package Index).
Derived indices (computation method published)
Quanteta-computed from the registry values below. This is a derived index, not a measured registry metric. See the formula on the Data & Sources page.
Q-Vitality Quanteta
68.7 / 100
Maintenance activity index (release cadence + download level).
Q-Trust Quanteta
7.3 / 100
Adoption / stability index (community size + download stability + age).
Q-Risk Quanteta
43.8 / 100
Dependency-surface index. Higher = more risk factors detected.