Is there dependency check in sonarcloud?

Is there dependency check in sonarcloud (not sonarqube)? For instance of 3rd party libraries used?

Hi,

Welcome to the community!

Sorry, but there’s not. We do SAST (among other things), not SCA.

 
HTH,
Ann

Hi Ann,

thanks for your reply.

BR Michael

Hello from the future!

We recently announced SonarQube Advanced Security, which will include SCA capabilities. While it’s not available yet, we expect general availability for SonarQube Server in May 2025, and SonarQube Cloud Enterprise shortly after.

Please see this announcement for more details.