If you receive a 404 error from the Semgrep Web API, and you are sure the deployment, API endpoint, and other details are correct, you may be trying to use a token that does not have the Web API scope assigned. Semgrep AppSec Platform supports two primary token scopes: Agent (CI) and Web API. See Token scopes for details of their permissions. Tokens with only the Agent (CI) scope can connect scans with the platform to request rules, send findings, and post PR/MR comments, but they cannot use the Web API. They are intended for use locally or in CI.Documentation Index
Fetch the complete documentation index at: https://docs.semgrep.dev/llms.txt
Use this file to discover all available pages before exploring further.
Add scopes to a token
You must be anadmin to perform this operation. Member users cannot access tokens in the Semgrep AppSec Platform.
Log in to Semgrep AppSec Platform and navigate to Settings > Tokens.