Prerequisites
- A Semgrep account
- Claude Code installed (
claudecommand)
For Windows machines: Windows Subsystem for Linux (WSL) is required. Native Windows is unsupported.
Set up Guardian
1
Install the plugin
Install the Guardian plugin from the Claude Marketplace:
2
Sign in to Semgrep
Start a new Claude Code session:You are prompted to log in to Semgrep through your browser. This is a one-time login; Semgrep refreshes access tokens automatically, so you rarely need to sign in again.
Next steps
- Claude Code setup for the local plugin option and more detail
- Rules and configuration for which rules Guardian scans with
- Authentication for credential details and how to switch accounts
- Deploy across your organization for fleet-wide rollout