Prerequisites
To run Semgrep Code’s AI-powered detection, you must have Semgrep Multimodal enabled for your organization.INFOAI-powered detection runs on Semgrep Managed Scan infrastructure. Even if your other scans run in your own CI environment, Semgrep clones your repository into the Managed Scan environment to perform AI-powered detection.
Enable or disable AI-powered detection
This feature is enabled by default for all Semgrep Multimodal users. To enable or disable AI-powered detection in Semgrep AppSec Platform, go to Settings > Code and then toggle AI-powered scanning on or off.Scan with AI-powered detection
1
Log in to Semgrep AppSec Platform.
2
In the navigation bar, click on Projects.
1
Choose the projects by selecting the checkboxes next to their names. This enables the Run a new scan drop-down menu.
2
Click Run a new scan > AI-powered detection.
3
A dialog appears that displays the number of projects that were selected for scanning. Click Scan to begin.
- If you would like Semgrep to automatically perform an AI scan on these projects every week, select Enable weekly scans. Weekly AI scans require that you have added the projects to Semgrep Managed Scans; look for the
managed-scantag in the Projects section of the Semgrep AppSec Platform.
1
Click Details for your project of interest. On the project’s Details page, click Run a new scan and choose AI-powered detection.
2
In the dialog, enter the name of the branch you want to scan.
View findings
Findings generated by AI-powered detection scans are part of Semgrep Code findings and are listed on the Code page. You can use the filters icon to filter for AI-powered scan findings. The findings card indicates whether a finding was detected by an AI-powered scan or a Rule-based scan.Add additional context to AI-powered detection scans
INFOOnly Admins can upload context documents to Semgrep projects.
1
Log in to Semgrep AppSec Platform.
2
In the navigation bar, go to Rules & Policies > Memories.
3
Go to the Documents tab and click Add document.
4
Drag the document to the File upload box or click Choose a file to select and upload your context document.Optionally: Add a Description of the document. This information will be used as additional context for AI-powered detection scans.