Type of business | Subsidiary |
---|---|
Founded | December 2006Oxford, England | in
Headquarters | San Francisco, California, U.S. |
Founder(s) | Oege de Moor |
Key people | Oege de Moor, Pavel Avgustinov, Julian Tibble |
Industry | Software analysis |
Products | Code analysis software and services |
Parent | GitHub[1] (2019–present) |
URL | semmle |
Semmle Inc is a code-analysis platform; Semmle was acquired by GitHub (itself owned by Microsoft) on 18 September 2019 for an undisclosed amount.[2] Semmle's LGTM technology automates code review, tracks developer contributions, and flags software security issues.[2] The LGTM platform leverages the CodeQL query engine (formerly QL)[3] to perform semantic analysis on software code bases. GitHub aims to integrate Semmle technology to provide continuous vulnerability detection services.[4] In November 2019, use of CodeQL was made free for research and open source.[5] CodeQL either shares a direct pedigree with .QL (dot-que-ell), which derives from the Datalog family tree, or is an evolution of similar technology.[clarification needed]
SemmleCode is an object-oriented query language for deductive databases developed by Semmle. It is distinguished within this class by its support for recursive query.
the 'QL' product and tooling has been renamed to CodeQL ... what was previously called a 'QL snapshot' is now a CodeQL database.