We are reaching out to inquire about the current status and prioritization of the feature request to support Azure DevOps Service Principals as an alternative to Personal Access Tokens (PATs) for SonarQube integrations.
We have seen the related roadmap item (link to card), and we understand its not currently prioritized. However, with increasing security restrictions around PATs—such as reduced validity periods and tighter access controls—this feature is becoming critical for many organizations.
Could you please share:
-
Whether this feature is being considered for upcoming releases?
-
Any recommended workarounds or best practices in the meantime?
We appreciate your continued efforts in improving SonarQube and look forward to your guidance.