- Your language or package ecosystem is not supported.
- Your source code manager is not supported.
- You have not granted Semgrep Read and write access to your repository. See Grant read and write access.
- Your project depends on packages in a private registry that Semgrep cannot authenticate to. A single unresolvable package suppresses Upgrade guidance for all findings in that manifest or lockfile, including findings on public packages. See Why Upgrade guidance may not appear when your project uses private packages and Connect a private registry to Semgrep.
- Your findings do not have safe versions to upgrade to yet.
- You have no findings within the supported scope of this feature.
Semgrep Supply Chain (SSC)
Semgrep is not displaying Upgrade guidance or Autofix functionality
If you cannot see any Breaking changes or Safe to upgrade badges or findings, this may be due to the following reasons:
Was this page helpful?