Skip to content

Technical Discovery: replace mobsf with semgrep analyzer

Proposal

mobsf uses libsast for sast and libsast uses semgrep. Can we use our semgrep analyzer to execute the same SAST checks that mobsf covers?

Note: Verify licensing of upstream project.

Edited by Connor Gilbert