step-security/Official SonarQube Scan
Scan your code with SonarQube Server and Cloud to detect issues in 30+ languages. (Formerly SonarQube and SonarCloud)
View on GitHubTrust Signals
- Scorecard Score
- not yet scored
- Maintenance Recency
- Stale
- License
- None
Inputs
| name | description | required | default |
|---|---|---|---|
| args | Additional arguments to the Sonar Scanner CLI | no | "" |
| projectBaseDir | Set the sonar.projectBaseDir analysis property | no | . |
| scannerVersion | Version of the Sonar Scanner CLI to use | no | 8.1.0.6389 |
| scannerBinariesUrl | URL to download the Sonar Scanner CLI binaries from | no | https://binaries.sonarsource.com/Distribution/sonar-scanner-cli |
| skipSignatureVerification | Skip GPG signature verification (not recommended for security) | no | false |
| scannerBinariesAuthHeader | Authorization header value to use when downloading the SonarScanner CLI binaries (e.g. 'Bearer mytoken' or 'Basic base64creds'). Use this when scannerBinariesUrl points to a private server that requires authentication. | no | "" |
Outputs
no outputs