Our company uses SonarCloud and our company requires OWASP Top 10 coverage. I see some brief information regarding the coverage support ([OWASP Top 10 Security Vulnerability Coverage with SonarQube, SonarCloud & SonarLint]) but I would like to know how to enable this feature on SonarCloud.
Hey there.
While SonarCloud currently lacks Security Reports, it still includes OWASP Top 10 related rules. You can search for these under Rules or Issues and filter for Security Category > Owasp Top 10 [Year]
1 Like
Hey @hiro-mpac
We recently launched SonarCloud Enterprise, which includes support for Security Reports!