Does SonarCloud scan for following malicious code?

Does SonarCloud scan for following:
• Deliberate Information and Data Leakage
• Time Bombs
• Rootkits
• Hardcoded Cryptographic Constants and Credentials
• Backdoor threats

I looked around the document but don’t have much information for these specific topic.

Hey there.

Both the Code Security page on and should help you understand what rules (and domains) are available for the specific languages you’re interested in.

1 Like

This topic was automatically closed 7 days after the last reply. New replies are no longer allowed.