Join the waitlist to take part in the alpha.

Semgrep MCP server

Static code analysis, triggered from a conversation. Standards ships an MCP client. Semgrep connects from your workspace settings, with no code, and its tools become usable by your agents under your roles and permissions.

How to connect it

  1. 01Open the workspace settings, Integrations section.
  2. 02Add a custom server and paste the address below.
  3. 03Enter the key if the server asks for one, then confirm.
Authentication
API key

What the server exposes

The server requires a key, so its tool list is only readable once connected. It shows up in your settings on first connection.

Once connected

The Semgrep tools join the ones in your workspace. An agent can call them mid-conversation, attach what it gets to the right record, and every call goes through the audit log. Sensitive actions still require human approval.