actions-marketplace-validations/SonarQube Scan for Organizations

Scan your code with SonarQube Scanner to detect bugs, vulnerabilities and code smells in more than 25 programming languages.

View on GitHub

Trust Signals

Scorecard Score
not yet scored
Maintenance Recency
Stalelast commit Jul 19, 2020
License
MIT

Pinned Snippet

workflow.ymlSHA-pinned
uses: actions-marketplace-validations/basdp_sonarqube-action@62b08fa6738fe60a58e779ddf758a71be97631b1 # no releases — HEAD as of 2026-07-10

tags can be moved; commit SHAs can't. why a SHA?

namedescriptionrequireddefault
hostSonarQube server URLyes
projectKeyThe project's unique key. Allowed characters are: letters, numbers, -, _, . and :, with at least one non-digit.no""
organizationOrganization for SonarCloud.no""
projectNameName of the project that will be displayed on the web interface.no""
projectVersionThe project version.no""
projectBaseDirSet the sonar.projectBaseDir analysis propertyno.
loginLogin or authentication token of a SonarQube useryes
passwordPassword that goes with the sonar.login username. This should be left blank if an authentication token is being used.no

no outputs