this post was submitted on 25 Jan 2025
14 points (100.0% liked)

Security

522 readers
1 users here now

A community for discussion about cybersecurity, hacking, cybersecurity news, exploits, bounties etc.

Rules :

  1. All instance-wide rules apply.
  2. Keep it totally legal.
  3. Remember the human, be civil.
  4. Be helpful, don't be rude.

Icon base by Delapouite under CC BY 3.0 with modifications to add a gradient

founded 2 years ago
MODERATORS
top 5 comments
sorted by: hot top controversial new old
[โ€“] [email protected] 1 points 6 days ago* (last edited 6 days ago)

The Article screenshot image comparing semgrep and opengrep says opengrep supports Windows, but I don't see any mention of Windows in the repo readme, website, or (rolling alpha) release.

[โ€“] [email protected] 1 points 6 days ago* (last edited 6 days ago)

The new Opengrep repo can be found here.

Not linking here ๐Ÿ‘€

Confused me

[โ€“] steventhedev 1 points 1 week ago (1 children)

Opengrep being the OSS fork of semgrep.

Not to be confused with opengrok.

[โ€“] [email protected] 2 points 6 days ago* (last edited 6 days ago)

Opengrep being the OSS fork of semgrep.

What does this mean? semgrep is LGPL.

/edit: Looks like the semgrep engine remains FOSS, while the semgrep company maintained rules list becomes paid.

[โ€“] [email protected] -3 points 1 week ago* (last edited 1 week ago)

Yeah, fuck SemGrep for not wanting to provide free software to competitors, right? After all, who needs money in this world? Businesses can run on paying their employers with hopes and dreams.

Doesn't matter if some bigger corp just takes your product, doesn't even rebrand it and starts selling it at a cheaper rate or integrated in their ecosystem. And all that without contributing back. If the company dies, that's all fine to the purists of the opensource definition by some org - "as long as they stayed true to the definition".

Regardless. I wish SemGrep and OpenGrep good luck. They're both opensource in my eyes. OpenGrep could've picked a better name though. grep is already open...

Anti Commercial-AI license