After the initial scan, Semgrep automatically scans each repository every week.
Semgrep AppSec Platform
Why are my projects showing a status of 'Not yet started' after I enable Managed Scans?
When onboarding a large number of projects to Semgrep Managed Scans (SMS), users may notice that many of them show a ‘Not yet started’ status, even after enabling Managed Scans. This is because Semgrep doesn’t trigger scans for all projects at once. Instead, Semgrep scans the repositories over time to manage system resources effectively.
If you need immediate results for specific projects, you can manually trigger a scan:
Semgrep Managed Scans doesn't run for pull requests in GitHub merge queuesRemove users from your Semgrep AppSec Platform organization