Hi Team, do we have automatic analysis of gitlab projects after onboarding to sonarcloud. we are looking to detect at least “secret” quickly without asking developer “to integrate project in pipeline by following steps on SonarCloud UI”. How can we do that ?
Hi,
Unfortunately, automatic analysis is (currently) only available for GitHub projects. ![]()
Ann
Hi,
Since your organization is presumably bound to GitLab, I guess that’s being shown in error. Thanks for letting us know. I’ll flag this for the team.
Ann
thanks ! but do we know by when automatic analysis for GITLAB projects will be available ? OR is there any way we can do it using API ?
Hi,
I believe we’ll be looking at that this year, but unfortunately I don’t have any details to share.
Ann
thanks ! i need urgent help ! we want to detect secerts / token from all GITLAB projects without installing sensors for each project CI/CD pipeline. how can we achevie this quickly using either SonarQube Server (Free version) or SonarQube Cloud (we already have paid version) , either using API or directly via UI configuration.
H,
This is a different question, and we try to keep it to one topic per thread. Otherwise it can get messy, fast. The quick answer is to check out our Secrets CLI. If you want to follow up on that, please create a new thread.
Ann
