Opengrep
Opengrep is a community-driven, fully open-source static analysis engine for code security, forked from Semgrep to ensure advanced security tooling remains accessible to everyone.
At a Glance
- Software Developers
- Application Security Teams
- DevSecOps Engineers
- Cybersecurity Vendors
AI Tools by Opengrep
(1)Opengrep
Open Source SAST Engine
Discussions
No discussions yet
Be the first to start a discussion about Opengrep
Latest News
Security Rivals Unite to Launch 'Opengrep' Following Semgrep License Changes
Everything You Need to Know About Opengrep
Opengrep v1.28.0 Released with Enhanced PHP 8.4 and C# 14 Support
Major Milestone: Intra-file cross-function taint analysis now live in Opengrep
Products & Services
An ultra-fast static analysis command-line tool for searching code patterns using semantic grep, supporting over 30 languages.
The core static analysis engine forked from Semgrep OSS, providing inter-procedural and cross-file analysis capabilities.
Market Position
Opengrep positions itself as the truly open alternative to Semgrep, offering 'pro-only' features for free and ensuring development is driven by community merit rather than corporate interests.
Leadership
Founders
Willem Delbare
Founder & CEO at Aikido Security; previously Founder & CTO at Teamleader.
Nir Valtman
Founder & CEO at Arnica; previously VP, Head of Product & Engineering Security at Finastra.
Ali Mesdaq
Founder & CTO at Amplify Security; previously Director of Engineering at Snyk and F5 Networks.
Varun Badhwar
Founder & CEO at Endor Labs; previously SVP & GM at Palo Alto Networks (Prisma Cloud) and Founder/CEO of RedLock.
Executive Team
Willem Delbare
Consortium Founder / Representative (Aikido Security)
Co-founder of the Opengrep consortium; Founder of Aikido Security.
Yoann Padioleau
Lead Maintainer / Developer
Original author of sgrep (precursor to Semgrep) and core contributor to Opengrep.
Founding Story
Opengrep was started in January 2025 as a response to Semgrep's decision to move critical features of its open-source engine behind a commercial license. A consortium of security vendors joined forces to maintain and advance the open-source core.
Business Model
Revenue Model
Open Source / Community Funded. The project is supported by a consortium of security vendors who contribute developer resources and infrastructure.
Pricing Tiers
Full access to all engine features, including taint analysis and inter-procedural scanning.
Target Markets
- Software Developers
- Application Security Teams
- DevSecOps Engineers
- Cybersecurity Vendors
- Static Application Security Testing (SAST)
- Code pattern searching
- Vulnerability discovery and fixing
- Enforcing coding standards
- Aikido Security
- Endor Labs
- Arnica
- Amplify Security