Pull requests not being automatically analysed

Hi folks,

My organization (Powertools for AWS · GitHub) has been using SonarCloud with great success up until recently. We noticed that Sonar has stopped analysing pull requests that don’t originated from our repos, this seems to be a change of behaviour that started within about 3 weeks ago.

Examples:

Weirdly enough, we can see that SonarCloud still does these checks on other repositories (Fix NuGet credential provider using wrong role by vchikoti1998 · Pull Request #4646 · aws/aws-toolkit-jetbrains · GitHub from two days ago)

We’d like to understand the behaviour change – one of our main reasons for picking SonarCloud was it was an approved tool for SAST by OpenSSF (scorecard/docs/checks.md at main · ossf/scorecard · GitHub) but without the check on Pull Requests from external contributors, the use of the tool is some what limited for us.

Kind regars
Simon

Related: Cloud analysis of github stopped working - #4 by Colin