By semgrep
Scans agent-generated code for security vulnerabilities using Semgrep, running automated checks during code edits and write operations to catch issues before they reach production.
Installation instructions:
Start a Claude Code instance by running:
claude
Add the Semgrep marketplace by running the following command in Claude:
/plugin marketplace add semgrep/guardian
Install the plugin from the marketplace:
/plugin install semgrep@semgrep-marketplace
Tell claude to load the plugin:
/reload-plugins
Ask claude to login to semgrep, using the guardian mcp
login to semgrep
This should call into the MCP, but if claude is having trouble,
call /clear to restart claude, or exit and reopen claude manually.
Admin access level
Server config contains admin-level keywords
Executes bash commands
Hook triggers when Bash tool is used
Based on adoption, maintenance, documentation, and repository signals. Not a security audit or endorsement.
Modifies files
Hook triggers on file write and edit operations
Modifies files
Hook triggers on file write and edit operations
Own this plugin?
Verify ownership to unlock analytics, metadata editing, and a verified badge. GitHub access is read-only (username + org membership).
Sign in to claimOwn this plugin?
Verify ownership to unlock analytics, metadata editing, and a verified badge. GitHub access is read-only (username + org membership).
Sign in to claimnpx claudepluginhub lgerard314/global-marketplace --plugin semgrepHarness-native ECC operator layer - 67 agents, 271 skills, 92 legacy command shims, reusable hooks, rules, selective install profiles, and production-ready workflows for Claude Code, Codex, OpenCode, Cursor, and related agent harnesses