Hello SonarQube ,
Because we need a support for kotlin language I come accros slang and kotlin-plugin projects. It looks very interesing but I am missing more documentation and some future plans for slang and kotlin.
If I am not wrong, this plugin uses own slang parser (which is not language dependent ) + imports reports from detekt.
I wonder if slang AST tree is suitable to detect language dependent issues such as SQL injection or it is meant mostly for “language independent issuses”.