Open source
Greprules is an open-source SAST rule ecosystem sponsored by Provally. The project separates inspectable rule workflows from hosted service operations.
Project scope
- Agent plugins, CLI-facing workflows, rule schemas, and manifests are intended to be inspectable by the community.
- greprules.io is sponsored and operated by Provally, with Provally maintainers stewarding the initial release.
- Hosted operations such as production abuse prevention, moderation operations, and deployment controls are run by Provally.
- External maintainers can be added through sustained, high-quality contributions to rules, schemas, tooling, documentation, or registry infrastructure.