All activity
![Brendon Go](https://ph-avatars.imgix.net/2544423/84b51cb1-f21e-4889-b8de-0174f319af04.jpeg?auto=compress&codec=mozjpeg&cs=strip&auto=format&w=48&h=48&fit=crop&frame=1)
Semgrep Supply Chain helps you fix the security issues caused by your dependencies, but without flooding you with alerts. It scans your dependencies *and* your code, to determine when you're actually at risk because of a third party vulnerability.
![Semgrep Supply Chain](https://ph-files.imgix.net/006e2a60-8d1d-46f9-bfc5-ecda249acae2.jpeg?auto=compress&codec=mozjpeg&cs=strip&auto=format&w=48&h=48&fit=crop&frame=1)
Semgrep Supply Chain
It's time to ignore 98% of dependency alerts
![Brendon Go](https://ph-avatars.imgix.net/2544423/84b51cb1-f21e-4889-b8de-0174f319af04.jpeg?auto=compress&codec=mozjpeg&cs=strip&auto=format&w=48&h=48&fit=crop&frame=1)
A fast, open-source, code analysis tool that excels at expressing code standards — without complicated queries. Rules look just like code; no more wrestling with regexes. Includes 900+ rules and SaaS infra for use in your editor, at commit-time, or in CI.
![Semgrep](https://ph-files.imgix.net/3767b5fe-37b0-4d36-a058-6cd1af5502a7.png?auto=compress&codec=mozjpeg&cs=strip&auto=format&w=48&h=48&fit=crop&frame=1)
Semgrep
Find bugs and enforce code standards