Semgrep Pro JSON Report | DefectDojo Documentation

Semgrep Pro JSON Report

Import Semgrep Pro findings in JSON format.

Sample Scan Data

Sample Semgrep Pro JSON Report scans can be found here.

Default Deduplication

By default, DefectDojo uses the match_based_id from Semgrep Pro for deduplication. If this is not available, it falls back to using a combination of:

Fields Mapped

The following fields are mapped from the Semgrep Pro JSON report:

Basic Information

Status Fields

Rich Content Fields

Component Information

Additional Fields