SonarQube
Connect SonarQube to bring its results into BestDefense. Once connected and mapped, SonarQube findings power the Code Quality product, so you can review code-quality issues alongside the rest of your security posture.
Connect SonarQube
Section titled “Connect SonarQube”- Go to Integrations and open the SonarQube card.
- Enter your SonarQube URL and an API token. (SonarQube connects with a token — there’s no OAuth flow.)
- Save the connection. The card shows Connected.
The token needs read access to the projects you plan to map. Use a token scoped to those projects.
Map projects to repositories
Section titled “Map projects to repositories”Connecting grants access; mapping tells BestDefense which results belong where. After connecting, map your SonarQube projects to your repositories so code-quality issues line up with the right codebase.
Next steps
Section titled “Next steps”- Review your results: Code Quality.
- File code-quality issues into your tracker: Jira.