Check DNS, Urls + Redirects, Certificates and Content of your Website


 

 

A

 

Top config

 

Checked:
07.12.2022 15:23:49

 

Older results

No older results found

 

1. IP-Addresses

HostTypeIP-Addressis auth.∑ Queries∑ Timeout
sonarqube.org
A
18.193.78.1
Frankfurt am Main/Hesse/Germany (DE) - Amazon Technologies Inc.
Hostname: ec2-18-193-78-1.eu-central-1.compute.amazonaws.com
yes
1
0

AAAA

yes


www.sonarqube.org
A
18.193.78.1
Frankfurt am Main/Hesse/Germany (DE) - Amazon Technologies Inc.
Hostname: ec2-18-193-78-1.eu-central-1.compute.amazonaws.com
yes
1
0

AAAA

yes


*.sonarqube.org
A
Name Error
yes



AAAA
Name Error
yes



CNAME
Name Error
yes


 

2. DNSSEC

Zone (*)DNSSEC - Informations


Zone: (root)

(root)
1 DS RR published






DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest 4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=






Status: Valid because published






2 DNSKEY RR found






Public Key with Algorithm 8, KeyTag 18733, Flags 256






Public Key with Algorithm 8, KeyTag 20326, Flags 257 (SEP = Secure Entry Point)






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner (root), Algorithm: 8, 0 Labels, original TTL: 172800 sec, Signature-expiration: 21.12.2022, 00:00:00 +, Signature-Inception: 30.11.2022, 00:00:00 +, KeyTag 20326, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 20326 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 20326, DigestType 2 and Digest "4G1EuAuPHTmpXAsNfGXQhFjogECbvGg0VxBCN8f47I0=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: org

org
1 DS RR in the parent zone found






DS with Algorithm 8, KeyTag 26974, DigestType 2 and Digest T+3ilMU/Q4oVjEHTlInNeKhr6w2KCur/FHRcDRbh3jI=






1 RRSIG RR to validate DS RR found






RRSIG-Owner org., Algorithm: 8, 1 Labels, original TTL: 86400 sec, Signature-expiration: 20.12.2022, 05:00:00 +, Signature-Inception: 07.12.2022, 04:00:00 +, KeyTag 18733, Signer-Name: (root)






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 18733 used to validate the DS RRSet in the parent zone






3 DNSKEY RR found






Public Key with Algorithm 8, KeyTag 26974, Flags 257 (SEP = Secure Entry Point)






Public Key with Algorithm 8, KeyTag 37749, Flags 256






Public Key with Algorithm 8, KeyTag 41406, Flags 256






1 RRSIG RR to validate DNSKEY RR found






RRSIG-Owner org., Algorithm: 8, 1 Labels, original TTL: 3600 sec, Signature-expiration: 22.12.2022, 15:24:00 +, Signature-Inception: 01.12.2022, 14:24:00 +, KeyTag 26974, Signer-Name: org






Status: Good - Algorithmus 8 and DNSKEY with KeyTag 26974 used to validate the DNSKEY RRSet






Status: Valid Chain of trust. Parent-DS with Algorithm 8, KeyTag 26974, DigestType 2 and Digest "T+3ilMU/Q4oVjEHTlInNeKhr6w2KCur/FHRcDRbh3jI=" validates local Key with the same values, Key ist Secure Entry Point (SEP) of the zone



Zone: sonarqube.org

sonarqube.org
0 DS RR in the parent zone found






DS-Query in the parent zone has a valid NSEC3 RR as result with the hashed query name "pqh3d5fndmm1bf750crlrn3un4p00lp3" between the hashed NSEC3-owner "pqh2ep1p6lolc3s1655scnvunenmc8q6" and the hashed NextOwner "pqh7ak2k93h30afpqjdvl1coohrqr2m5". So the parent zone confirmes the not-existence of a DS RR.
Bitmap: NS, DS, RRSIG Validated: RRSIG-Owner pqh2ep1p6lolc3s1655scnvunenmc8q6.org., Algorithm: 8, 2 Labels, original TTL: 3600 sec, Signature-expiration: 22.12.2022, 15:24:00 +, Signature-Inception: 01.12.2022, 14:24:00 +, KeyTag 37749, Signer-Name: org






DS-Query in the parent zone sends valid NSEC3 RR with the Hash "gdtpongmpok61u9lvnipqor8lra9l4t0" as Owner. That's the Hash of "org" with the NextHashedOwnerName "gdtrea8kmj2rneqen4m2ogj26kfsukj7". So that domain name is the Closest Encloser of "sonarqube.org". Opt-Out: True.
Bitmap: NS, SOA, RRSIG, DNSKEY, NSEC3PARAM Validated: RRSIG-Owner gdtpongmpok61u9lvnipqor8lra9l4t0.org., Algorithm: 8, 2 Labels, original TTL: 3600 sec, Signature-expiration: 28.12.2022, 14:23:57 +, Signature-Inception: 07.12.2022, 13:23:57 +, KeyTag 37749, Signer-Name: org






0 DNSKEY RR found









Zone: www.sonarqube.org

www.sonarqube.org
0 DS RR in the parent zone found

 

3. Name Servers

DomainNameserverNS-IP
www.sonarqube.org
  ns1.gandi.net

sonarqube.org
  ns1.gandi.net / node-b-luxembourg1
173.246.100.2
Paris/Île-de-France/France (FR) - Gandi US Inc


 
2001:4b98:aaaa::2
Paris/Île-de-France/France (FR) - GANDI is an ICANN accredited registrar


  ns-253-a.gandi.net / node-amsterdam1
173.246.100.254
Paris/Île-de-France/France (FR) - Gandi US Inc


 
2001:4b98:aaaa::fe
Paris/Île-de-France/France (FR) - GANDI is an ICANN accredited registrar


  ns-66-c.gandi.net / node-amsterdam1
217.70.187.67
Paris/Île-de-France/France (FR) - Gandi SAS


 
2604:3400:aaac::43
Ashburn/Virginia/United States (US) - Gandi US Inc


  ns-67-b.gandi.net / node-amsterdam1
213.167.230.68
Paris/Île-de-France/France (FR) - Gandi SAS


 
2001:4b98:aaab::44
Paris/Île-de-France/France (FR) - GANDI is an ICANN accredited registrar

org
  a0.org.afilias-nst.info / app19.nrt1.hosts.meta.redstone.afilias-nst.info-1615580861


  a2.org.afilias-nst.info / FRA4


  b0.org.afilias-nst.org / app1.lax1.hosts.meta.redstone.afilias-nst.info-1633102198


  b2.org.afilias-nst.org / FRA3


  c0.org.afilias-nst.info / app32.nrt1.hosts.meta.redstone.afilias-nst.info-1615580861


  d0.org.afilias-nst.org / app11.nrt1.hosts.meta.redstone.afilias-nst.info-1615580861

 

4. SOA-Entries


Domain:org
Zone-Name:org
Primary:a0.org.afilias-nst.info
Mail:hostmaster.donuts.email
Serial:1670422304
Refresh:7200
Retry:900
Expire:1209600
TTL:3600
num Entries:6


Domain:sonarqube.org
Zone-Name:sonarqube.org
Primary:ns1.gandi.net
Mail:hostmaster.gandi.net
Serial:1670340190
Refresh:10800
Retry:3600
Expire:604800
TTL:10800
num Entries:8


Domain:www.sonarqube.org
Zone-Name:
Primary:
Mail:
Serial:
Refresh:
Retry:
Expire:
TTL:
num Entries:1


5. Screenshots

Startaddress: https://www.sonarqube.org/, address used: https://www.sonarqube.org/, Screenshot created 2022-12-07 15:27:20 +00:0

 

Mobil (412px x 732px)

 

477 milliseconds

 

Screenshot mobile - https://www.sonarqube.org/
Mobil + Landscape (732px x 412px)

 

384 milliseconds

 

Screenshot mobile landscape - https://www.sonarqube.org/
Screen (1280px x 1680px)

 

958 milliseconds

 

Screenshot Desktop - https://www.sonarqube.org/

 

Mobile- and other Chrome-Checks


widthheight
visual Viewport396732
content Size3966893

 

Good: No horizontal scrollbar. Content-size width = visual Viewport width.

 

6. Url-Checks


:

:
DomainnameHttp-StatusredirectSec.G
• http://sonarqube.org/
18.193.78.1
302
https://sonarqube.org/
Html is minified: 100.00 %
0.074
A
Date: Wed, 07 Dec 2022 14:24:57 GMT
Server: Apache
Strict-Transport-Security: max-age=63072000; preload
Location: https://sonarqube.org/
Content-Length: 206
Connection: close
Content-Type: text/html; charset=iso-8859-1

• http://www.sonarqube.org/
18.193.78.1
302
https://www.sonarqube.org/
Html is minified: 100.00 %
0.073
A
Date: Wed, 07 Dec 2022 14:24:57 GMT
Server: Apache
Strict-Transport-Security: max-age=63072000; preload
Location: https://www.sonarqube.org/
Content-Length: 210
Connection: close
Content-Type: text/html; charset=iso-8859-1

• https://sonarqube.org/
18.193.78.1
302
https://www.sonarqube.org/
Html is minified: 100.00 %
2.780
A
Date: Wed, 07 Dec 2022 14:24:57 GMT
Server: Apache
Strict-Transport-Security: max-age=63072000; preload
Location: https://www.sonarqube.org/
Content-Length: 210
Connection: close
Content-Type: text/html; charset=iso-8859-1

• https://www.sonarqube.org/
18.193.78.1
Inline-JavaScript (∑/total): 12/4999 Inline-CSS (∑/total): 3/126
200

Html is minified: 155.80 %
Other inline scripts (∑/total): 8/4999
2.750
A
Date: Wed, 07 Dec 2022 14:25:01 GMT
Server: Apache
Strict-Transport-Security: max-age=63072000; preload
Upgrade: h2,h2c
Connection: Upgrade, close
Last-Modified: Wed, 16 Nov 2022 10:33:23 GMT
Accept-Ranges: bytes
Vary: Accept-Encoding,User-Agent
Content-Encoding: gzip
Content-Security-Policy: default-src 'none'; connect-src https://sonarsource.cdn.prismic.io https://sonarsource.prismic.io https://www.google-analytics.com https://veh6ryrcr4.execute-api.eu-central-1.amazonaws.com https://stats.g.doubleclick.net https://*.visualwebsiteoptimizer.com https://app.vwo.com *.bing.com wss://*.bing.com *.google-analytics.com *.analytics.google.com *.googletagmanager.com cdn.cookielaw.org geolocation.onetrust.com; font-src 'self' data: https://fonts.gstatic.com https://app.vwo.com; frame-src https://sonarsource.prismic.io https://www.youtube.com https://app.vwo.com sdx.microsoft.com; img-src 'self' data: https://www.google-analytics.com https://stats.g.doubleclick.net https://ssl.gstatic.com https://www.gstatic.com https://googleads.g.doubleclick.net https://www.google.com https://*.visualwebsiteoptimizer.com https://app.vwo.com https://chart.googleapis.com https://wingify-assets.s3.amazonaws.com https://px.ads.linkedin.com https://px4.ads.linkedin.com https://dc.ads.linkedin.com https://snap.licdn.com https://p.adsymptotic.com *.bing.com *.microsoft.com cdn.cookielaw.org; media-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://code.jquery.com https://static.cdn.prismic.io https://www.google-analytics.com https://ssl.google-analytics.com https://www.googletagmanager.com https://tagmanager.google.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://www.google.com https://dev.visualwebsiteoptimizer.com https://app.vwo.com https://px.ads.linkedin.com https://px4.ads.linkedin.com https://dc.ads.linkedin.com https://snap.licdn.com https://p.adsymptotic.com https://bat.bing.com https://r.bing.com cdn.cookielaw.org geolocation.onetrust.com privacyportal.onetrust.com; style-src 'self' 'unsafe-inline' https://tagmanager.google.com https://fonts.googleapis.com https://www.googletagmanager.com https://app.vwo.com *.bing.com; worker-src blob:;
X-Frame-Options: DENY
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Referrer-Policy: strict-origin
Permissions-Policy: microphone=(); geolocation=(); fullscreen=(self)
Cache-Control: max-age=3600
Content-Length: 12911
Content-Type: text/html; charset=UTF-8

• http://sonarqube.org/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
18.193.78.1
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
302
https://sonarqube.org/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Html is minified: 100.00 %
Other inline scripts (∑/total): 0/0
0.046
A
Visible Content: Found The document has moved here .
Date: Wed, 07 Dec 2022 14:25:05 GMT
Server: Apache
Strict-Transport-Security: max-age=63072000; preload
Location: https://sonarqube.org/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Content-Length: 275
Connection: close
Content-Type: text/html; charset=iso-8859-1

• http://www.sonarqube.org/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
18.193.78.1
Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
302
https://www.sonarqube.org/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Html is minified: 100.00 %
Other inline scripts (∑/total): 0/0
0.054
A
Visible Content: Found The document has moved here .
Date: Wed, 07 Dec 2022 14:25:06 GMT
Server: Apache
Strict-Transport-Security: max-age=63072000; preload
Location: https://www.sonarqube.org/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Content-Length: 279
Connection: close
Content-Type: text/html; charset=iso-8859-1

• https://sonarqube.org/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de

Inline-JavaScript (∑/total): 0/0 Inline-CSS (∑/total): 0/0
302
https://www.sonarqube.org/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Html is minified: 100.00 %
Other inline scripts (∑/total): 0/0
2.730
A
Visible Content: Found The document has moved here .
Date: Wed, 07 Dec 2022 14:25:10 GMT
Server: Apache
Strict-Transport-Security: max-age=63072000; preload
Location: https://www.sonarqube.org/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
Content-Length: 279
Connection: close
Content-Type: text/html; charset=iso-8859-1

• https://www.sonarqube.org/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de

Inline-JavaScript (∑/total): 1/2907 Inline-CSS (∑/total): 1/6849
404

Html is minified: 334.02 %
Other inline scripts (∑/total): 1/2907
2.686
A
Not Found
Visible Content: 404 Page not found We can't seem to find the page you're looking for... Looks like it was eaten by the Dynasty Go back home ...bug's Dynasty took the full control! So in the end, compared to all those bugs, a 404 is not such a big deal, is it? Go back home 1947 1996 2000 2003 2016 Today First actual case of bug being found Cost - a couple of $ A moth located in the Mark II caused an error. Difficult to have it automatically detected... Ariane 5 firework Cost - $370 million A simple data conversion from 64-bit floating point value to 16-bit signed integer one led to the self-destruction of the rocket. The Millenium bug Cost - $300 billion A lot more fear than pain, but still a lot of money to spend fixing the problem. Northeast Blackout Cost - $6 billion A bug in an alarm system cascaded into collapse of the entire electric grid and deprived 55 million people of electricity during 2 days. Schiaparelli lander crash on Mars Cost - $230 million Due to a bug in the inertial measurement unit, the lander impacted the surface at 540 km/h!
Date: Wed, 07 Dec 2022 14:25:14 GMT
Server: Apache
Strict-Transport-Security: max-age=63072000; preload
Upgrade: h2,h2c
Connection: Upgrade, close
Last-Modified: Wed, 16 Nov 2022 10:33:23 GMT
Accept-Ranges: bytes
Vary: Accept-Encoding,User-Agent
Content-Encoding: gzip
Content-Security-Policy: default-src 'none'; connect-src https://sonarsource.cdn.prismic.io https://sonarsource.prismic.io https://www.google-analytics.com https://veh6ryrcr4.execute-api.eu-central-1.amazonaws.com https://stats.g.doubleclick.net https://*.visualwebsiteoptimizer.com https://app.vwo.com *.bing.com wss://*.bing.com *.google-analytics.com *.analytics.google.com *.googletagmanager.com cdn.cookielaw.org geolocation.onetrust.com; font-src 'self' data: https://fonts.gstatic.com https://app.vwo.com; frame-src https://sonarsource.prismic.io https://www.youtube.com https://app.vwo.com sdx.microsoft.com; img-src 'self' data: https://www.google-analytics.com https://stats.g.doubleclick.net https://ssl.gstatic.com https://www.gstatic.com https://googleads.g.doubleclick.net https://www.google.com https://*.visualwebsiteoptimizer.com https://app.vwo.com https://chart.googleapis.com https://wingify-assets.s3.amazonaws.com https://px.ads.linkedin.com https://px4.ads.linkedin.com https://dc.ads.linkedin.com https://snap.licdn.com https://p.adsymptotic.com *.bing.com *.microsoft.com cdn.cookielaw.org; media-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://code.jquery.com https://static.cdn.prismic.io https://www.google-analytics.com https://ssl.google-analytics.com https://www.googletagmanager.com https://tagmanager.google.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://www.google.com https://dev.visualwebsiteoptimizer.com https://app.vwo.com https://px.ads.linkedin.com https://px4.ads.linkedin.com https://dc.ads.linkedin.com https://snap.licdn.com https://p.adsymptotic.com https://bat.bing.com https://r.bing.com cdn.cookielaw.org geolocation.onetrust.com privacyportal.onetrust.com; style-src 'self' 'unsafe-inline' https://tagmanager.google.com https://fonts.googleapis.com https://www.googletagmanager.com https://app.vwo.com *.bing.com; worker-src blob:;
X-Frame-Options: DENY
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Referrer-Policy: strict-origin
Permissions-Policy: microphone=(); geolocation=(); fullscreen=(self)
Cache-Control: max-age=3600
Content-Length: 3280
Content-Type: text/html; charset=UTF-8

• https://18.193.78.1/
18.193.78.1
302
https://blog.sonarsource.com/
Html is minified: 100.00 %
2.713
N
Certificate error: RemoteCertificateNameMismatch
Date: Wed, 07 Dec 2022 14:25:06 GMT
Server: Apache
Strict-Transport-Security: max-age=63072000; preload
Location: https://blog.sonarsource.com/
Content-Length: 213
Connection: close
Content-Type: text/html; charset=iso-8859-1

• https://blog.sonarsource.com/

Inline-JavaScript (∑/total): 6/1675 Inline-CSS (∑/total): 3/76984
200

Html is minified: 124.84 %
Other inline scripts (∑/total): 6/3084
2.963
I
Date: Wed, 07 Dec 2022 14:25:18 GMT
Server: Apache
Strict-Transport-Security: max-age=63072000; preload
Upgrade: h2,h2c
Connection: Upgrade, close
Last-Modified: Tue, 06 Dec 2022 13:47:59 GMT
Accept-Ranges: bytes
Vary: Accept-Encoding,User-Agent
Content-Encoding: gzip
Content-Security-Policy: default-src 'self' cdn.cookielaw.org; connect-src 'self' https://sonarnews.prismic.io https://sonarsource.cdn.prismic.io https://sonarsource.prismic.io https://www.google-analytics.com https://veh6ryrcr4.execute-api.eu-central-1.amazonaws.com/prod/blog https://*.visualwebsiteoptimizer.com https://app.vwo.com cdn.cookielaw.org; font-src 'self' data: https://fonts.gstatic.com https://app.vwo.com; frame-src 'self' https://www.youtube.com/embed/ https://sonarnews.prismic.io https://sonarsource.prismic.io https://platform.twitter.com/ https://app.vwo.com; img-src 'self' data: https://images.prismic.io https://www.google-analytics.com https://ssl.gstatic.com https://www.gstatic.com https://googleads.g.doubleclick.net https://www.google.com https://*.visualwebsiteoptimizer.com https://app.vwo.com https://prismic-io.s3.amazonaws.com/ cdn.cookielaw.org; script-src 'self' 'unsafe-eval' 'unsafe-inline' https://cdn.polyfill.io/ https://unpkg.com/prismic.io@3.5.7/dist/ https://code.jquery.com https://platform.twitter.com https://static.cdn.prismic.io https://www.google-analytics.com https://ssl.google-analytics.com https://www.googletagmanager.com https://tagmanager.google.com https://www.googleadservices.com https://www.google.com https://dev.visualwebsiteoptimizer.com https://app.vwo.com cdn.cookielaw.org geolocation.onetrust.com privacyportal.onetrust.com; style-src 'self' 'unsafe-inline' https://tagmanager.google.com https://fonts.googleapis.com https://app.vwo.com;
X-Frame-Options: DENY
X-Content-Type-Options: nosniff
X-XSS-Protection: 1; mode=block
Referrer-Policy: strict-origin
Permissions-Policy: microphone=(); geolocation=(); fullscreen=(self)
Cache-Control: max-age=3600
Transfer-Encoding: chunked
Content-Type: text/html; charset=UTF-8

 

7. Comments


1. General Results, most used to calculate the result

Aname "sonarqube.org" is domain, public suffix is ".org", top-level-domain is ".org", top-level-domain-type is "generic", tld-manager is "Public Interest Registry (PIR)", num .org-domains preloaded: 7098 (complete: 210599)
AGood: All ip addresses are public addresses
Warning: Only one ip address found: sonarqube.org has only one ip address.
Warning: Only one ip address found: www.sonarqube.org has only one ip address.
Warning: No ipv6 address found. Ipv6 is the future with a lot of new features. So every domain name should have an ipv6 address. See https://en.wikipedia.org/wiki/IPv6: sonarqube.org has no ipv6 address.
Warning: No ipv6 address found. Ipv6 is the future with a lot of new features. So every domain name should have an ipv6 address. See https://en.wikipedia.org/wiki/IPv6: www.sonarqube.org has no ipv6 address.
AGood: No asked Authoritative Name Server had a timeout
Ahttps://18.193.78.1/ 18.193.78.1
302
https://blog.sonarsource.com/
Correct redirect https to https
AGood: destination is https
AGood - only one version with Http-Status 200
AGood: one preferred version: www is preferred
AGood: No cookie sent via http.
AGood: every https has a Strict Transport Security Header
AGood: HSTS max-age is long enough, 63072000 seconds = 730 days
AGood: HSTS has preload directive
Warning: HSTS preload sent, but not in Preload-List. Never send a preload directive if you don't know what preload means. Check https://hstspreload.org/ to learn the basics about the Google-Preload list. If you send a preload directive, you should **immediately** add your domain to the HSTS preload list via https://hstspreload.org/ . If Google accepts the domain, so the status is "pending": Note that new entries are hardcoded into the Chrome source code and can take several months before they reach the stable version. So you will see this message some months. If you don't want that or if you don't understand "preload", but if you send a preload directive and if you have correct A-redirects, everybody can add your domain to that list. Then you may have problems, it's not easy to undo that. So if you don't want your domain preloaded, remove the preload directive.
HSTS-Preload-Status: unknown. Domain never included in the Preload-list. Check https://hstspreload.org/ to learn some basics about the Google-Preload-List.
AGood: All urls with http status 200/404 have a complete Content-Type header (MediaType / MediaSubType + correct charset)
Ahttp://sonarqube.org/ 18.193.78.1
302
https://sonarqube.org/
Correct redirect http - https with the same domain name
Ahttp://www.sonarqube.org/ 18.193.78.1
302
https://www.sonarqube.org/
Correct redirect http - https with the same domain name
Ihttps://blog.sonarsource.com/
200

Content problems or problems with resources included - http links, files doesn't exist, different Content-Type definitions. Check the Html-Content - Part.
Nhttps://18.193.78.1/ 18.193.78.1
302
https://blog.sonarsource.com/
Error - Certificate isn't trusted, RemoteCertificateNameMismatch
Info: Checking all ip addresses of that domain without sending the hostname only one certificate found. Checking all ip addresses and sending the hostname only one certificate found. Both certificates are different. So that domain requires Server Name Indication (SNI), so the server is able to select the correct certificate.: Domain sonarqube.org, 1 ip addresses.
Info: Checking all ip addresses of that domain without sending the hostname only one certificate found. Checking all ip addresses and sending the hostname only one certificate found. Both certificates are different. So that domain requires Server Name Indication (SNI), so the server is able to select the correct certificate.: Domain www.sonarqube.org, 1 ip addresses.
BNo _mta-sts TXT record found (mta-sts: Mail Transfer Agent Strict Transport Security - see RFC 8461). Read the result of server-daten.de (Url-Checks, Comments, Connections and DomainServiceRecords) to see a complete definition. Domainname: _mta-sts.sonarqube.org

2. Header-Checks

Awww.sonarqube.org 18.193.78.1
Content-Security-Policy
Ok: Header without syntax errors found: default-src 'none'; connect-src https://sonarsource.cdn.prismic.io https://sonarsource.prismic.io https://www.google-analytics.com https://veh6ryrcr4.execute-api.eu-central-1.amazonaws.com https://stats.g.doubleclick.net https://*.visualwebsiteoptimizer.com https://app.vwo.com *.bing.com wss://*.bing.com *.google-analytics.com *.analytics.google.com *.googletagmanager.com cdn.cookielaw.org geolocation.onetrust.com; font-src 'self' data: https://fonts.gstatic.com https://app.vwo.com; frame-src https://sonarsource.prismic.io https://www.youtube.com https://app.vwo.com sdx.microsoft.com; img-src 'self' data: https://www.google-analytics.com https://stats.g.doubleclick.net https://ssl.gstatic.com https://www.gstatic.com https://googleads.g.doubleclick.net https://www.google.com https://*.visualwebsiteoptimizer.com https://app.vwo.com https://chart.googleapis.com https://wingify-assets.s3.amazonaws.com https://px.ads.linkedin.com https://px4.ads.linkedin.com https://dc.ads.linkedin.com https://snap.licdn.com https://p.adsymptotic.com *.bing.com *.microsoft.com cdn.cookielaw.org; media-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://code.jquery.com https://static.cdn.prismic.io https://www.google-analytics.com https://ssl.google-analytics.com https://www.googletagmanager.com https://tagmanager.google.com https://www.googleadservices.com https://googleads.g.doubleclick.net https://www.google.com https://dev.visualwebsiteoptimizer.com https://app.vwo.com https://px.ads.linkedin.com https://px4.ads.linkedin.com https://dc.ads.linkedin.com https://snap.licdn.com https://p.adsymptotic.com https://bat.bing.com https://r.bing.com cdn.cookielaw.org geolocation.onetrust.com privacyportal.onetrust.com; style-src 'self' 'unsafe-inline' https://tagmanager.google.com https://fonts.googleapis.com https://www.googletagmanager.com https://app.vwo.com *.bing.com; worker-src blob:;
A

Good: default-src directive only with 'none' or 'self', additional sources are blocked.
A

Good: default-src without 'unsafe-inline' or 'unsave-eval'.
E

Bad: No form-action directive found. Use one to limit the form - action - destinations. form-action is a navigation-directive, so default-src isn't used.
E

Bad: No frame-ancestors directive found. Use one to limit the pages allowed to use this page in frame / iframe / object / embed / applet. frame-ancestors is a navigation-directive, so default-src isn't used.
E

Bad: No base-uri directive found. Use one to limit the URLs which can be used in a document's <base> element. Because it's a document directive, default-src isn't used, so an own directive is required.
A

Good: No object-src found, but the default-src used as fallback is defined and restricted.
F

Critical: script-src with 'unsafe-inline' or 'unsafe-eval' and without a nonce found. That's dangerous, don't use it. If you really need one of these unsafe directives, add a nonce.
A

Good: script-src without * and a scheme found.
A

Good: script-src without data: schema found. Why is this important? The data: schema allows hidden code injection. Insert <script src='data:application/javascript;base64,YWxlcnQoJ1hTUycpOw=='></script> in your page and see what happens.
A

Good: frame-src without data: defined or frame-src missing and the default-src used as fallback not allows the data: schema. That blocks hidden code injection. Insert <iframe src="data:text/html;charset=utf-8;base64,PCFET0NUWVBFIGh0bWw+PGh0bWw+PGJvZHk+PHA+YmVmb3JlPHNjcmlwdCB0eXBlPSJ0ZXh0L2phdmFzY3JpcHQiPmFsZXJ0KCdYU1MnKTwvc2NyaXB0PjxwPmFmdGVyPC9ib2R5PjwvaHRtbD4="></iframe> in your page and see what happens.
A
X-Content-Type-Options
Ok: Header without syntax errors found: nosniff
A
Referrer-Policy
Ok: Header without syntax errors found: strict-origin
F
Permissions-Policy
Critical: Header with syntax errors found: microphone=(); geolocation=(); fullscreen=(self)
E

Critical: Unknown Header-Element found microphone=(); geolocation=(); fullscreen=(self)
E

Critical: Unknown Header-Element found (); geolocation
A
X-Frame-Options
Ok: Header without syntax errors found: DENY
B

Info: Header is deprecated. May not longer work in modern browsers. DENY. Better solution: Use a Content-Security-Policy Header with a frame-ancestors directive. DENY - use 'none', SAMEORIGIN - use 'self'. If you want to allow some domains to frame your page, add these urls.
A
X-Xss-Protection
Ok: Header without syntax errors found: 1; mode=block
B

Info: Header is deprecated. May not longer work in modern browsers. 1; mode=block

3. DNS- and NameServer - Checks

AInfo:: 13 Root-climbing DNS Queries required to find all IPv4- and IPv6-Addresses of 4 Name Servers.
AInfo:: 13 Queries complete, 13 with IPv6, 0 with IPv4.
AGood: All DNS Queries done via IPv6.
Ok (4 - 8):: An average of 3.3 queries per domain name server required to find all ip addresses of all name servers.
AInfo:: 4 different Name Servers found: ns1.gandi.net, ns-253-a.gandi.net, ns-66-c.gandi.net, ns-67-b.gandi.net, 3 Name Servers included in Delegation: ns-253-a.gandi.net, ns-66-c.gandi.net, ns-67-b.gandi.net, 3 Name Servers included in 1 Zone definitions: ns-253-a.gandi.net, ns-66-c.gandi.net, ns-67-b.gandi.net, 1 Name Servers listed in SOA.Primary: ns1.gandi.net.
AGood: Only one SOA.Primary Name Server found.: ns1.gandi.net.
Error: SOA.Primary Name Server not included in the delegation set.: ns1.gandi.net.
AGood: Consistency between delegation and zone. The set of NS records served by the authoritative name servers must match those proposed for the delegation in the parent zone. Ordered list of name servers: ns-253-a.gandi.net, ns-66-c.gandi.net, ns-67-b.gandi.net
AGood: All Name Server Domain Names have a Public Suffix.
AGood: All Name Server Domain Names ending with a Public Suffix have minimal one IPv4- or IPv6 address.
AGood: All Name Server ip addresses are public.
AGood: Minimal 2 different name servers (public suffix and public ip address) found: 4 different Name Servers found
AGood: All name servers have ipv4- and ipv6-addresses.: 4 different Name Servers found
Warning: All Name Servers have the same Top Level Domain / Public Suffix. If there is a problem with that Top Level Domain, your domain may be affected. Better: Use Name Servers with different top level domains.: 4 Name Servers, 1 Top Level Domain: net
Warning: All Name Servers have the same domain name. If there is a problem with that domain name (or with the name servers of that domain name), your domain may be affected. Better: Use Name Servers with different domain names / different top level domains.: Only one domain name used: gandi.net
AGood: Name servers with different Country locations found: 4 Name Servers, 2 Countries: FR, US
AInfo: Ipv4-Subnet-list: 4 Name Servers, 3 different subnets (first Byte): 173., 213., 217., 3 different subnets (first two Bytes): 173.246., 213.167., 217.70., 3 different subnets (first three Bytes): 173.246.100., 213.167.230., 217.70.187.
AGood: Name Server IPv4-addresses from different subnet found:
AInfo: IPv6-Subnet-list: 4 Name Servers with IPv6, 2 different subnets (first block): 2001:, 2604:, 2 different subnets (first two blocks): 2001:4b98:, 2604:3400:, 3 different subnets (first three blocks): 2001:4b98:aaaa:, 2001:4b98:aaab:, 2604:3400:aaac:, 3 different subnets (first four blocks): 2001:4b98:aaaa:0000:, 2001:4b98:aaab:0000:, 2604:3400:aaac:0000:
AGood: Name Server IPv6 addresses from different subnets found.
AGood: Nameserver supports TCP connections: 8 good Nameserver
AGood: Nameserver supports Echo Capitalization: 8 good Nameserver
AGood: Nameserver supports EDNS with max. 512 Byte Udp payload, message is smaller: 8 good Nameserver
AGood: Nameserver has passed 10 EDNS-Checks (OP100, FLAGS, V1, V1OP100, V1FLAGS, DNSSEC, V1DNSSEC, NSID, COOKIE, CLIENTSUBNET): 8 good Nameserver
Nameserver doesn't pass all EDNS-Checks: ns1.gandi.net: OP100: no result. FLAGS: no result. V1: no result. V1OP100: no result. V1FLAGS: no result. DNSSEC: no result. V1DNSSEC: no result. NSID: no result. COOKIE: no result. CLIENTSUBNET: no result.
AGood: All SOA have the same Serial Number
AGood: CAA entries found, creating certificate is limited: amazon.com is allowed to create certificates
AGood: CAA entries found, creating certificate is limited: amazonaws.com is allowed to create certificates
AGood: CAA entries found, creating certificate is limited: amazontrust.com is allowed to create certificates
AGood: CAA entries found, creating certificate is limited: awstrust.com is allowed to create certificates
AGood: CAA entries found, creating certificate is limited: letsencrypt.org is allowed to create certificates
AGood: CAA entries found, creating certificate is limited: pki.goog is allowed to create certificates
AGood: CAA entries found, creating certificate is limited: sectigo.com is allowed to create certificates
AGood: CAA entries found, creating certificate is limited: amazon.com is allowed to create wildcard-certificates
AGood: CAA entries found, creating certificate is limited: amazonaws.com is allowed to create wildcard-certificates
AGood: CAA entries found, creating certificate is limited: amazontrust.com is allowed to create wildcard-certificates
AGood: CAA entries found, creating certificate is limited: awstrust.com is allowed to create wildcard-certificates
AGood: CAA entries found, creating certificate is limited: sectigo.com is allowed to create wildcard-certificates

4. Content- and Performance-critical Checks

AGood: All checks /.well-known/acme-challenge/random-filename without redirects answer with the expected http status 404 - Not Found. Creating a Letsencrypt certificate via http-01 challenge should work. If it doesn't work: Check your vHost configuration (apachectl -S, httpd -S, nginx -T). Every combination of port and ServerName / ServerAlias (Apache) or Server (Nginx) must be unique. Merge duplicated entries in one vHost. If you use an IIS, extensionless files must be allowed in the /.well-known/acme-challenge subdirectory. Create a web.config in that directory. Content: <configuration><system.webServer><staticContent><mimeMap fileExtension="." mimeType="text/plain" /></staticContent></system.webServer></configuration>. If you have a redirect http ⇒ https, that's ok, Letsencrypt follows such redirects to port 80 / 443 (same or other server). There must be a certificate. But the certificate may be expired, self signed or with a not matching domain name. Checking the validation file Letsencrypt ignores such certificate errors. Trouble creating a certificate? Use https://community.letsencrypt.org/ to ask.
AGood: Every https result with status 200 and greater 1024 Bytes is compressed (gzip, deflate, br checked).
https://www.sonarqube.org/ 18.193.78.1
200

Warning: Https + http status 200 + Inline CSS / JavaScript found. Don't use inline CSS / JavaScript. These are compiled and re-used ressources, save these with a long Cache-Control max-age - header.
https://blog.sonarsource.com/
200

Warning: Https + http status 200 + Inline CSS / JavaScript found. Don't use inline CSS / JavaScript. These are compiled and re-used ressources, save these with a long Cache-Control max-age - header.
https://www.sonarqube.org/ 18.193.78.1
200

Warning: Https result with status 200 found, Html-Content is too big. Should be max. 110 %. May contain inline CSS / JavaScript, too much comments or white space. Re-used ressources - create files with a long Cache-Control max-age header. Remove comments and white space.
https://blog.sonarsource.com/
200

Warning: Https result with status 200 found, Html-Content is too big. Should be max. 110 %. May contain inline CSS / JavaScript, too much comments or white space. Re-used ressources - create files with a long Cache-Control max-age header. Remove comments and white space.
AGood: Every https connection via port 443 supports the http/2 protocol via ALPN.
AGood: Some script Elements (type text/javascript) with a src-Attribute have a defer / async - Attribute. So loading and executing these JavaScripts doesn't block parsing and rendering the Html-Output.
https://www.sonarqube.org/ 18.193.78.1
200

Critical: Some script Elements (type text/javascript) with a src-Attribute don't have a defer / async - Attribute. Loading and executing these JavaScripts blocks parsing and rendering the Html-Output. That's bad if your site is large or the connection is slow / mobile usage. Use "async" if the js file has only functions (so nothing is executed after parsing the file) or is independend. Use "defer" if the order of the scripts is important. All "defer" scripts are executed before the DOMContentLoaded event is fired. Check https://developer.mozilla.org/en-US/docs/Web/HTML/Element/script to see some details.: 4 script elements without defer/async.
https://blog.sonarsource.com/
200

Critical: Some script Elements (type text/javascript) with a src-Attribute don't have a defer / async - Attribute. Loading and executing these JavaScripts blocks parsing and rendering the Html-Output. That's bad if your site is large or the connection is slow / mobile usage. Use "async" if the js file has only functions (so nothing is executed after parsing the file) or is independend. Use "defer" if the order of the scripts is important. All "defer" scripts are executed before the DOMContentLoaded event is fired. Check https://developer.mozilla.org/en-US/docs/Web/HTML/Element/script to see some details.: 3 script elements without defer/async.
AGood: All CSS / JavaScript files are sent compressed (gzip, deflate, br checked). That reduces the content of the files. 7 external CSS / JavaScript files found
AGood: All images with internal compression not compressed. Some Images (.png, .jpg, .jpeg, .webp, .gif) are already compressed, so an additional compression isn't helpful. 20 images (type image/png, image/jpg) found without additional GZip. Not required because these images are already compressed
Warning: CSS / JavaScript files with a missing or too short Cache-Control header found. Browsers should cache and re-use these files. 10 external CSS / JavaScript files without Cache-Control-Header, 0 with Cache-Control, but no max-age, 6 with Cache-Control max-age too short (minimum 7 days), 0 with Cache-Control long enough, 16 complete.
Warning: Images with a missing or too short Cache-Control header found. Browsers should cache and re-use these files. 213 image files without Cache-Control-Header, 0 with Cache-Control, but no max-age, 60 with Cache-Control max-age too short (minimum 7 days), 0 with Cache-Control long enough, 273 complete.
AGood: All checked attribute values are enclosed in quotation marks (" or ').
AGood: Some img-elements have a valid alt-attribute.: 244 img-elements found, 167 img-elements with correct alt-attributes (defined, not an empty value).
Wrong: img-elements without alt-attribute or empty alt-attribute found. The alt-attribute ("alternative") is required and should describe the img. So Screenreader and search engines are able to use these informations.: 77 img-elements without alt-attribute, 0 img-elements with empty alt-attribute found.
AGood: Domainname is not on the "Specially Designated Nationals And Blocked Persons List" (SDN). That's an US-list of individuals and companies owned or controlled by, or acting for or on behalf of, targeted countries. It also lists individuals, groups, and entities, such as terrorists and narcotics traffickers designated under programs that are not country-specific. Collectively, such individuals and companies are called "Specially Designated Nationals" or "SDNs." Their assets are blocked and U.S. persons are generally prohibited from dealing with them. So if a domain name is on that list, it's impossible to create a Letsencrypt certificate with that domain name. Check the list manual - https://www.treasury.gov/resource-center/sanctions/sdn-list/pages/default.aspx
http://sonarqube.org/ 18.193.78.1
302

Warning: HSTS header sent via http has no effect
http://www.sonarqube.org/ 18.193.78.1
302

Warning: HSTS header sent via http has no effect
https://www.sonarqube.org/.well-known/acme-challenge/check-your-website-dot-server-daten-dot-de
404
2.686 seconds
Warning: 404 needs more then one second
ADuration: 218456 milliseconds, 218.456 seconds

 

8. Connections

DomainIPPortCert.ProtocolKeyExchangeStrengthCipherStrengthHashAlgorithmOCSP stapling
Domain/KeyExchangeIP/StrengthPort/CipherCert./StrengthProtocol/HashAlgorithmOCSP stapling
sonarqube.org
18.193.78.1
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
supported
ok
sonarqube.org
18.193.78.1
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - duplicate certificates

1CN=*.sonarqube.org


2CN=Gandi Standard SSL CA 2, O=Gandi, L=Paris, C=FR, ST=Paris


3CN=*.sonarqube.org


www.sonarqube.org
18.193.78.1
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
supported
ok

www.sonarqube.org
18.193.78.1
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
supported
ok
http/2 via ALPN supported 
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
SNI required
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - duplicate certificates

1CN=*.sonarqube.org


2CN=Gandi Standard SSL CA 2, O=Gandi, L=Paris, C=FR, ST=Paris


3CN=*.sonarqube.org


sonarqube.org
sonarqube.org
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
supported
ok

sonarqube.org
sonarqube.org
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - duplicate certificates

1CN=*.sonarqube.org


2CN=Gandi Standard SSL CA 2, O=Gandi, L=Paris, C=FR, ST=Paris


3CN=*.sonarqube.org


www.sonarqube.org
www.sonarqube.org
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
supported
ok

www.sonarqube.org
www.sonarqube.org
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - duplicate certificates

1CN=*.sonarqube.org


2CN=Gandi Standard SSL CA 2, O=Gandi, L=Paris, C=FR, ST=Paris


3CN=*.sonarqube.org


18.193.78.1
18.193.78.1
443
name does not match
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
supported
ok

18.193.78.1
18.193.78.1
443
name does not match
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
supported
ok
http/2 via ALPN supported 
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Cert sent without SNI
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - incomplete

1CN=*.sonarsource.com


2CN=Gandi Standard SSL CA 2, O=Gandi, L=Paris, C=FR, ST=Paris


blog.sonarsource.com
blog.sonarsource.com
443
ok
Tls12
ECDH Ephermal
255
Aes128
128
Sha256
supported
ok

blog.sonarsource.com
blog.sonarsource.com
443
ok
Tls12

ECDH Ephermal
255
Aes128
128
Sha256
supported
ok
http/2 via ALPN supported 
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
http/2 via ALPN supported
Tls.1.2
no Tls.1.1
no Tls.1.0
no Ssl3
no Ssl2
Chain - incomplete

1CN=*.sonarsource.com


2CN=Gandi Standard SSL CA 2, O=Gandi, L=Paris, C=FR, ST=Paris

 

9. Certificates

1.
1.
CN=*.sonarqube.org
29.11.2021
29.12.2022
1300 days expired
*.sonarqube.org, sonarqube.org - 2 entries
1.
1.
CN=*.sonarqube.org
29.11.2021

29.12.2022
1300 days expired


*.sonarqube.org, sonarqube.org - 2 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:5920C26D5366BB667BDEAD103AA0C24C
Thumbprint:9C8C804C4883B1D3D71D75F990CCA47D952912C9
SHA256 / Certificate:7L1hcMmEcBjRf+ubgu/I2YHsyOkUNxyw5WDOP0H3paw=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):6ae40a34a7247d836cbc553ec9733b574dae44858dac1db851eb01671c108ac9
SHA256 hex / Subject Public Key Information (SPKI):6ae40a34a7247d836cbc553ec9733b574dae44858dac1db851eb01671c108ac9 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.usertrust.com
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




2.
CN=*.sonarqube.org
29.11.2021
29.12.2022
1300 days expired
*.sonarqube.org, sonarqube.org - 2 entries

2.
CN=*.sonarqube.org
29.11.2021

29.12.2022
1300 days expired


*.sonarqube.org, sonarqube.org - 2 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:5920C26D5366BB667BDEAD103AA0C24C
Thumbprint:9C8C804C4883B1D3D71D75F990CCA47D952912C9
SHA256 / Certificate:7L1hcMmEcBjRf+ubgu/I2YHsyOkUNxyw5WDOP0H3paw=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):6ae40a34a7247d836cbc553ec9733b574dae44858dac1db851eb01671c108ac9
SHA256 hex / Subject Public Key Information (SPKI):6ae40a34a7247d836cbc553ec9733b574dae44858dac1db851eb01671c108ac9 (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.usertrust.com
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




3.
CN=Gandi Standard SSL CA 2, O=Gandi, L=Paris, S=Paris, C=FR
12.09.2014
12.09.2024
677 days expired


3.
CN=Gandi Standard SSL CA 2, O=Gandi, L=Paris, S=Paris, C=FR
12.09.2014

12.09.2024
677 days expired




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:05E4DC3B9438AB3B8597CBA6A19850E3
Thumbprint:247106A405B288A46E70A0262717162D0903E734
SHA256 / Certificate:ufIWQyNjjc4LkiGLQ8QcGysmljiTKdsZ9c961Jtcs3I=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):586264c988f1d5031d31ed14aa5c8e297b7274f0d5ae4eec9767d5fa7366d6be
SHA256 hex / Subject Public Key Information (SPKI):586264c988f1d5031d31ed14aa5c8e297b7274f0d5ae4eec9767d5fa7366d6be
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.usertrust.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




4.
CN=Gandi Standard SSL CA 2, O=Gandi, L=Paris, S=Paris, C=FR
12.09.2014
12.09.2024
677 days expired


4.
CN=Gandi Standard SSL CA 2, O=Gandi, L=Paris, S=Paris, C=FR
12.09.2014

12.09.2024
677 days expired




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:05E4DC3B9438AB3B8597CBA6A19850E3
Thumbprint:247106A405B288A46E70A0262717162D0903E734
SHA256 / Certificate:ufIWQyNjjc4LkiGLQ8QcGysmljiTKdsZ9c961Jtcs3I=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):586264c988f1d5031d31ed14aa5c8e297b7274f0d5ae4eec9767d5fa7366d6be
SHA256 hex / Subject Public Key Information (SPKI):586264c988f1d5031d31ed14aa5c8e297b7274f0d5ae4eec9767d5fa7366d6be
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.usertrust.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




5.
CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, S=New Jersey, C=US
01.02.2010
19.01.2038
expires in 4200 days


5.
CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, S=New Jersey, C=US
01.02.2010

19.01.2038
expires in 4200 days




KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:01FD6D30FCA3CA51A81BBC640E35032D
Thumbprint:2B8F1B57330DBBA2D07A6C51F70EE90DDAB9AD8E
SHA256 / Certificate:55PJsC/YqhPiHDEiisywgRlkO3SciYlksXRtRsPUy9I=
SHA256 hex / Cert (DANE * 0 1):e793c9b02fd8aa13e21c31228accb08119643b749c898964b1746d46c3d4cbd2
SHA256 hex / PublicKey (DANE * 1 1):c784333d20bcd742b9fdc3236f4e509b8937070e73067e254dd3bf9c45bf4dde
SHA256 hex / Subject Public Key Information (SPKI):c784333d20bcd742b9fdc3236f4e509b8937070e73067e254dd3bf9c45bf4dde
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:





6.
CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, S=New Jersey, C=US
12.03.2019
01.01.2029
expires in 895 days


6.
CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, S=New Jersey, C=US
12.03.2019

01.01.2029
expires in 895 days




KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:3972443AF922B751D7D36C10DD313595
Thumbprint:D89E3BD43D5D909B47A18977AA9D5CE36CEE184C
SHA256 / Certificate:aLnHYSGaWx8BMXhEdGZdthu9sQngDwXKn3QkTuX19Ss=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):c784333d20bcd742b9fdc3236f4e509b8937070e73067e254dd3bf9c45bf4dde
SHA256 hex / Subject Public Key Information (SPKI):c784333d20bcd742b9fdc3236f4e509b8937070e73067e254dd3bf9c45bf4dde
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://ocsp.comodoca.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




7.
CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, S=Greater Manchester, C=GB
01.01.2004
01.01.2029
expires in 895 days


7.
CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, S=Greater Manchester, C=GB
01.01.2004

01.01.2029
expires in 895 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA-1 with RSA Encryption
Serial Number:01
Thumbprint:D1EB23A46D17D68FD92564C2F1F1601764D8E349
SHA256 / Certificate:16eg+11+JzHXcelITrze9x1fDD4KKUh4K8g+4OppnvQ=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):bd153ed7b0434f6886b17bce8bbe84ed340c7132d702a8f4fa318f756ecbd6f3
SHA256 hex / Subject Public Key Information (SPKI):bd153ed7b0434f6886b17bce8bbe84ed340c7132d702a8f4fa318f756ecbd6f3
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




2.
1.
CN=*.sonarsource.com
11.03.2022
09.04.2023
1199 days expired
*.sonarsource.com, sonarsource.com - 2 entries
2.
1.
CN=*.sonarsource.com
11.03.2022

09.04.2023
1199 days expired


*.sonarsource.com, sonarsource.com - 2 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:00B9EE7C64CF45DE60068C6713877B0C68
Thumbprint:4BD74EC94CD7ED29E44720A99685C308912E65E1
SHA256 / Certificate:kRSdfmecCt+S3Q8BWXxAM7WehXCKCLYS8NvXk0bI5fk=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):890e85f0bd6f633b22289fb8eae8d4df8032c784b6e25ca14ab6101dae9b339b
SHA256 hex / Subject Public Key Information (SPKI):890e85f0bd6f633b22289fb8eae8d4df8032c784b6e25ca14ab6101dae9b339b (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.usertrust.com
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




2.
CN=*.sonarsource.com
11.03.2022
09.04.2023
1199 days expired
*.sonarsource.com, sonarsource.com - 2 entries

2.
CN=*.sonarsource.com
11.03.2022

09.04.2023
1199 days expired


*.sonarsource.com, sonarsource.com - 2 entries

KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA256 With RSA-Encryption
Serial Number:00B9EE7C64CF45DE60068C6713877B0C68
Thumbprint:4BD74EC94CD7ED29E44720A99685C308912E65E1
SHA256 / Certificate:kRSdfmecCt+S3Q8BWXxAM7WehXCKCLYS8NvXk0bI5fk=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):890e85f0bd6f633b22289fb8eae8d4df8032c784b6e25ca14ab6101dae9b339b
SHA256 hex / Subject Public Key Information (SPKI):890e85f0bd6f633b22289fb8eae8d4df8032c784b6e25ca14ab6101dae9b339b (is buggy, ignore the result)
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.usertrust.com
OCSP - must staple:no
Certificate Transparency:yes
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




3.
CN=Gandi Standard SSL CA 2, O=Gandi, L=Paris, S=Paris, C=FR
12.09.2014
12.09.2024
677 days expired


3.
CN=Gandi Standard SSL CA 2, O=Gandi, L=Paris, S=Paris, C=FR
12.09.2014

12.09.2024
677 days expired




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:05E4DC3B9438AB3B8597CBA6A19850E3
Thumbprint:247106A405B288A46E70A0262717162D0903E734
SHA256 / Certificate:ufIWQyNjjc4LkiGLQ8QcGysmljiTKdsZ9c961Jtcs3I=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):586264c988f1d5031d31ed14aa5c8e297b7274f0d5ae4eec9767d5fa7366d6be
SHA256 hex / Subject Public Key Information (SPKI):586264c988f1d5031d31ed14aa5c8e297b7274f0d5ae4eec9767d5fa7366d6be
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.usertrust.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




4.
CN=Gandi Standard SSL CA 2, O=Gandi, L=Paris, S=Paris, C=FR
12.09.2014
12.09.2024
677 days expired


4.
CN=Gandi Standard SSL CA 2, O=Gandi, L=Paris, S=Paris, C=FR
12.09.2014

12.09.2024
677 days expired




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:05E4DC3B9438AB3B8597CBA6A19850E3
Thumbprint:247106A405B288A46E70A0262717162D0903E734
SHA256 / Certificate:ufIWQyNjjc4LkiGLQ8QcGysmljiTKdsZ9c961Jtcs3I=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):586264c988f1d5031d31ed14aa5c8e297b7274f0d5ae4eec9767d5fa7366d6be
SHA256 hex / Subject Public Key Information (SPKI):586264c988f1d5031d31ed14aa5c8e297b7274f0d5ae4eec9767d5fa7366d6be
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Check unknown. No result 404 / 200
OCSP - Url:http://ocsp.usertrust.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:Serverauthentifizierung (1.3.6.1.5.5.7.3.1), Clientauthentifizierung (1.3.6.1.5.5.7.3.2)




5.
CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, S=New Jersey, C=US
01.02.2010
19.01.2038
expires in 4200 days


5.
CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, S=New Jersey, C=US
01.02.2010

19.01.2038
expires in 4200 days




KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:01FD6D30FCA3CA51A81BBC640E35032D
Thumbprint:2B8F1B57330DBBA2D07A6C51F70EE90DDAB9AD8E
SHA256 / Certificate:55PJsC/YqhPiHDEiisywgRlkO3SciYlksXRtRsPUy9I=
SHA256 hex / Cert (DANE * 0 1):e793c9b02fd8aa13e21c31228accb08119643b749c898964b1746d46c3d4cbd2
SHA256 hex / PublicKey (DANE * 1 1):c784333d20bcd742b9fdc3236f4e509b8937070e73067e254dd3bf9c45bf4dde
SHA256 hex / Subject Public Key Information (SPKI):c784333d20bcd742b9fdc3236f4e509b8937070e73067e254dd3bf9c45bf4dde
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:





6.
CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, S=New Jersey, C=US
12.03.2019
01.01.2029
expires in 895 days


6.
CN=USERTrust RSA Certification Authority, O=The USERTRUST Network, L=Jersey City, S=New Jersey, C=US
12.03.2019

01.01.2029
expires in 895 days




KeyalgorithmRSA encryption (4096 bit)
Signatur:SHA384 With RSA Encryption
Serial Number:3972443AF922B751D7D36C10DD313595
Thumbprint:D89E3BD43D5D909B47A18977AA9D5CE36CEE184C
SHA256 / Certificate:aLnHYSGaWx8BMXhEdGZdthu9sQngDwXKn3QkTuX19Ss=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):c784333d20bcd742b9fdc3236f4e509b8937070e73067e254dd3bf9c45bf4dde
SHA256 hex / Subject Public Key Information (SPKI):c784333d20bcd742b9fdc3236f4e509b8937070e73067e254dd3bf9c45bf4dde
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:http://ocsp.comodoca.com
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




7.
CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, S=Greater Manchester, C=GB
01.01.2004
01.01.2029
expires in 895 days


7.
CN=AAA Certificate Services, O=Comodo CA Limited, L=Salford, S=Greater Manchester, C=GB
01.01.2004

01.01.2029
expires in 895 days




KeyalgorithmRSA encryption (2048 bit)
Signatur:SHA-1 with RSA Encryption
Serial Number:01
Thumbprint:D1EB23A46D17D68FD92564C2F1F1601764D8E349
SHA256 / Certificate:16eg+11+JzHXcelITrze9x1fDD4KKUh4K8g+4OppnvQ=
SHA256 hex / Cert (DANE * 0 1):e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA256 hex / PublicKey (DANE * 1 1):bd153ed7b0434f6886b17bce8bbe84ed340c7132d702a8f4fa318f756ecbd6f3
SHA256 hex / Subject Public Key Information (SPKI):bd153ed7b0434f6886b17bce8bbe84ed340c7132d702a8f4fa318f756ecbd6f3
SPKI checked via https://v1.pwnedkeys.com/spki-hash:Good: Key isn't compromised
OCSP - Url:
OCSP - must staple:no
Certificate Transparency:no
Enhanced Key Usage:




 

10. Last Certificates - Certificate Transparency Log Check

1. Source CertSpotter - active certificates (one check per day)

Small Code Update - wait one minute

 

2. Source crt.sh - old and new certificates, sometimes very slow - only certificates with "not after" > of the last months are listed

Small Code Update - wait one minute

 

11. Html-Content - Entries

Summary


Subresource Integrity (SRI)
DomainnameHtmlElementrel/property∑ size∑ problems∑ int.∑ ext.∑ Origin poss.∑ SRI ParseErrors∑ SRI valid∑ SRI missing
https://www.sonarqube.org/
18.193.78.1
a

94

0


0
0
0


iframe

1

0


0
0
0


img

31
159,394 Bytes
0
41
0
0
0
0


link
stylesheet
2
44,041 Bytes
0
1
1
1
0
0
-1

link
other
3
5,908 Bytes
0
2
0
0
0
0


meta
twitter
3
17,210 Bytes
0
1
0
0
0
0


meta
og
5
30,121 Bytes
0
2
0
0
0
0


meta
other
5

0


0
0
0


script

4
88,348 Bytes
0
3
1
0
0
0

https://blog.sonarsource.com/
a

514

0


0
0
0


form

3

0


0
0
0


iframe

1

0


0
0
0


img

176

0


0
0
0


link
other
12

0


0
0
0


meta
og
8

0


0
0
0


meta
twitter
4

0


0
0
0


meta
other
6

0


0
0
0


picture

18

9


0
0
0


script

9

0


0
0
0


style

8

0


0
0
0

 

Details (currently limited to 500 rows - some problems with spam users)

DomainnameHtml-Elementname/equiv/ property/relhref/src/contentHttpStatusmsgStatus
https://www.sonarqube.org/
18.193.78.1
a




2
ok















a

/


3
ok















a

/about/


1
ok















a

/atlassian-bitbucket-integration/


3
ok















a

/community/


2
ok















a

/cookie-policy/


1
ok















a

/developer-edition/


1
ok















a

/downloads/


7
ok















a

/downloads/license/


1
ok















a

/enterprise-edition/


1
ok















a

/features/clean-as-you-code/


3
ok















a

/features/clean-code/


1
ok















a

/features/deployment


2
ok















a

/features/deployment/


1
ok















a

/features/elevate-your-game/


3
ok















a

/features/enhance-your-workflow/


4
ok















a

/features/maintainability


2
ok















a

/features/multi-languages/


4
ok















a

/features/multi-languages/c/


1
ok















a

/features/multi-languages/cloudformation/


1
ok















a

/features/multi-languages/cpp/


1
ok















a

/features/multi-languages/csharp/


1
ok















a

/features/multi-languages/java/


1
ok















a

/features/multi-languages/javascript/


1
ok















a

/features/multi-languages/kotlin/


1
ok















a

/features/multi-languages/php/


1
ok















a

/features/multi-languages/python/


1
ok















a

/features/multi-languages/terraform/


1
ok















a

/features/multi-languages/typescript/


1
ok















a

/features/multi-languages/vb/


1
ok















a

/features/quality-gate/


4
ok















a

/features/security/


4
ok















a

/features/security/owasp/


2
ok















a

/github-integration/


3
ok















a

/gitlab-integration/


3
ok















a

/logos/


1
ok















a

/microsoft-azure-devops-integration/


3
ok















a

/privacy/


1
ok















a

/roadmap/


1
ok















a

/sonarlint/


2
ok















a

/whats-new/


2
ok















a

http://www.sonarsource.com


1
ok















a

https://blog.sonarsource.com/


1
ok















a

https://blog.sonarsource.com/crafting-regexes-to-avoid-stack-overflows


1
ok















a

https://blog.sonarsource.com/in-2008-sonarsource-upended-the-static-analysis-market


1
ok















a

https://blog.sonarsource.com/sonarqube-lts-89-upgrade


1
ok















a

https://community.sonarsource.com/


1
ok















a

https://docs.sonarqube.org/latest/


3
ok















a

https://docs.sonarqube.org/latest/setup/get-started-2-minutes/


1
ok















a

https://github.com/SonarSource/sonarqube


2
ok















a

https://twitter.com/sonarqube


1
ok















a

https://www.sonarsource.com/plans-and-pricing/data-center/


1
ok















iframe
src
https://www.googletagmanager.com/ns.html?id=GTM-56DR48M


1
ok















img
src
/assets/logo_white-2c5ede933137d4cd08aee2e089d2800011796bd01f11ec32e280289e9985b713.svg
200

1
ok
alt: SonarQubeimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 2285 Bytes








img
src
/assets/logo-31ad3115b1b4b120f3d1efd63e6b13ac9f1f89437f0cf6881cc4d8b5603a52b4.svg
200

2
ok
alt: SonarQubeimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 2282 Bytes








img
src
/features/multi-languages/index/c.svg
200

1
ok
alt: Cimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
230 Bytes








img
src
/features/multi-languages/index/cloudformation.svg
200

1
ok
alt: CloudFormationimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 480 Bytes








img
src
/features/multi-languages/index/cplus.svg
200

1
ok
alt: C and C++ (in Developer Edition and above)image/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 567 Bytes








img
src
/features/multi-languages/index/csharp.svg
200

1
ok
alt: C#image/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 515 Bytes








img
src
/features/multi-languages/index/java.svg
200

1
ok
alt: Javaimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 1103 Bytes








img
src
/features/multi-languages/index/javascript.svg
200

1
ok
alt: JavaScriptimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
458 Bytes








img
src
/features/multi-languages/index/kotlin.svg
200

1
ok
alt: Kotlinimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 7683 Bytes








img
src
/features/multi-languages/index/php.svg
200

1
ok
alt: PHPimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
474 Bytes








img
src
/features/multi-languages/index/python.svg
200

1
ok
alt: Compatible with Pythonimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 9572 Bytes








img
src
/features/multi-languages/index/terraform.svg
200

1
ok
alt: Terraformimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
252 Bytes








img
src
/features/multi-languages/index/typescript.svg
200

1
ok
alt: TypeScriptimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 1068 Bytes








img
src
/features/multi-languages/index/vb.svg
200

1
ok
alt: VBimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
512 Bytes








img
src
index/bug.svg
200

1
ok
alt: Release Quality Codeimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 941 Bytes








img
src
index/debt.svg
200

1
ok
alt: Technical Debtimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 1134 Bytes








img
src
index/enhance.svg
200

1
ok
alt: Enhance your CI/CD integrationimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
465 Bytes








img
src
index/external.svg
200

1
ok
alt: external linkimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
448 Bytes








img
src
index/git-flow.svg
200

1
ok
alt: Code Reviewingimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
410 Bytes








img
src
index/security.svg
200

1
ok
alt: Application Securityimage/svg+xml
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 827 Bytes








img
src
index/appveyor.png
200

1
ok
alt: AppVeyorimage/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 2625 Bytes







srcset
index/appveyor@2x.png 2x


1
ok







index/appveyor@2x.png 2x
200

1
ok
image/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 4962 Bytes






img
src
index/azure.png
200

2
ok
alt: Azure DevOpsimage/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 1630 Bytes







srcset
index/azure@2x.png 2x


2
ok







index/azure@2x.png 2x
200

2
ok
image/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 3051 Bytes






img
src
index/bamboo.png
200

1
ok
alt: Bambooimage/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 2356 Bytes







srcset
index/bamboo@2x.png 2x


1
ok







index/bamboo@2x.png 2x
200

1
ok
image/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 5831 Bytes






img
src
index/bitbucket.png
200

1
ok
alt: Bitbucketimage/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 1724 Bytes







srcset
index/bitbucket@2x.png 2x


1
ok







index/bitbucket@2x.png 2x
200

1
ok
image/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 4318 Bytes






img
src
index/github.png
200

1
ok
alt: Githubimage/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 2276 Bytes







srcset
index/github@2x.png 2x


1
ok







index/github@2x.png 2x
200

1
ok
image/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 4233 Bytes






img
src
index/gitlab.png
200

1
ok
alt: GitLabimage/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 1725 Bytes







srcset
index/gitlab@2x.png 2x


1
ok







index/gitlab@2x.png 2x
200

1
ok
image/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 3506 Bytes






img
src
index/hero-image.png
200

1
ok
alt: SonarQube detects coding issues during code review, and lets you track overall health of your codebaseimage/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 103424 Bytes







srcset
index/hero-image@2x.png 2x


1
ok







index/hero-image@2x.png 2x
200

1
ok
image/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 251621 Bytes






img
src
index/jenkins.png
200

1
ok
alt: Jenkinsimage/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 5202 Bytes







srcset
index/jenkins@2x.png 2x


1
ok







index/jenkins@2x.png 2x
200

1
ok
image/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 12878 Bytes






img
src
index/team-city.png
200

1
ok
alt: Team Cityimage/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 2814 Bytes







srcset
index/team-city@2x.png 2x


1
ok







index/team-city@2x.png 2x
200

1
ok
image/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 6127 Bytes






link
apple-touch-icon-precomposed
/favicon-152.png
200

1
ok
image/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 4601 Bytes








link
canonical
https://www.sonarqube.org/


1
ok















link
shortcut icon
/favicon.ico
200

1
ok
image/vnd.microsoft.icon
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 1307 Bytes








link
stylesheet
/assets/main-a81ff4b1d98f1817724ad4b11c446d61ef5ff3e042e8e47a22a2d9bc45760b93.css
200

1
ok
text/css
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
Compression required: 44041 Bytes






local SRI possible, possible hash-values:

 

sha256-qB/0sdmPGBdyStSxHERtYe9f8+BC6OR6IqLZvEV2C5M=
sha384-R1mUwxQyDcDCDkfEGC0glRXhahP6CopxEOpf+HzvzTP+htTCxWwRIeMPDNk8egyE
sha512-nV8qN1lSlbdhY9yDA/hSLSKshc/vaE8QjTG22LHVN8CnKyfudYwfrKipODSjjJO/S4B3oZ/sy0i+UX6xuO+MhA==

 

<link rel="stylesheet" href="/assets/main-a81ff4b1d98f1817724ad4b11c446d61ef5ff3e042e8e47a22a2d9bc45760b93.css" crossorigin="anonymous" integrity="sha256-qB/0sdmPGBdyStSxHERtYe9f8+BC6OR6IqLZvEV2C5M=" />


Content loaded via url("...")

 

../../features/maintainability/index/rules-background.png1
../../fonts/flexslider-icon.eot1
../../fonts/flexslider-icon.eot?#iefix1
../../fonts/flexslider-icon.svg#flexslider-icon1
../../fonts/flexslider-icon.ttf1
../../fonts/flexslider-icon.woff1
/features/multi-languages/index/left_arrow.svg1
/features/multi-languages/index/right_arrow.svg1
/fonts/Roboto-Black.woff1
/fonts/Roboto-Black.woff21
/fonts/Roboto-Bold.woff1
/fonts/Roboto-Bold.woff21
/fonts/Roboto-BoldItalic.woff1
/fonts/Roboto-BoldItalic.woff21
/fonts/Roboto-Light.woff1
/fonts/Roboto-Light.woff21
/fonts/Roboto-LightItalic.woff1
/fonts/Roboto-LightItalic.woff21
/fonts/Roboto-Medium.woff1
/fonts/Roboto-Medium.woff21
/fonts/Roboto-Regular.woff1
/fonts/Roboto-Regular.woff21
/images/lightbox/close.png1
/images/lightbox/loading.gif1
/images/lightbox/next.png1
/images/lightbox/prev.png1
/images/ui/arrow-black.svg1
/images/ui/arrows.svg1
/images/ui/arrows-dark.svg4
/images/ui/check.svg1
/images/ui/cross.svg1
/images/ui/download.svg1
/images/ui/external.svg1
/images/ui/new-styles/check-valid500.svg1
/images/ui/new-styles/cross-error500.svg1
/images/ui/search-white.svg3
/index/bg-bottom.svg1
/index/bg-top.svg1
/sonarqube-8-9-lts/index/banner-lts-8-9@2x.png1
data:image/gif;base64,R0lGODlhAQABAPAAAP///wAAACH5BAEAAAAALAAAAAABAAEAAAICRAEAOw==1

link
stylesheet
https://fonts.googleapis.com/css2?family=Fira+Code:wght@300;400;500&display=swap
200

1
ok
text/css; charset=utf-8
X-Content-Type-Options nosniff found





227 Bytes






Server-Header Access-Control-Allow-Origin: *
Cross-Origin Resource Sharing (CORS) supported

missing crossorigin=anonymous|use-credentials and integrity - attribute, possible hash-values:

 

sha256-E45jMOyS+Ieg0YBaLxO1Q9ONgybZCV+Afw7VV7noADM=
sha384-e56ZtvMDfT8/hWUdH+4kViVXE0iQlYvVkoUeWlEAlW2f6PKaosGmfTfRGrScyUrF
sha512-wdIG+NyQfk89WVQY2lFiBJEjme2g8hw2Ddu81ZGz8RicS9wcyJ8HRmPJnLuU6GYDYThyhJd+4C1JoJiPSJwEBA==

 

<link rel="stylesheet" href="https://fonts.googleapis.com/css2?family=Fira+Code:wght@300;400;500&display=swap" crossorigin="anonymous" integrity="sha256-E45jMOyS+Ieg0YBaLxO1Q9ONgybZCV+Afw7VV7noADM=" />


Content loaded via url("...")

 

https://fonts.gstatic.com/s/firacode/v21/uU9eCBsR6Z2vfE9aq3bL0fxyUs4tcw4W_A9sFVc.ttf1
https://fonts.gstatic.com/s/firacode/v21/uU9eCBsR6Z2vfE9aq3bL0fxyUs4tcw4W_D1sFVc.ttf1
https://fonts.gstatic.com/s/firacode/v21/uU9eCBsR6Z2vfE9aq3bL0fxyUs4tcw4W_GNsFVc.ttf1

meta
og:description
Catch bugs and vulnerabilities in your app, with thousands of automated Static Code Analysis rules.


1
ok















meta
og:image
https://www.sonarqube.org/index/sq-homepage-og-image.png
200

1
ok
image/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 17210 Bytes








meta
og:title
Code Quality and Code Security | SonarQube


1
ok















meta
og:type
website


1
ok















meta
og:url
https://www.sonarqube.org/
200

1
ok
text/html; charset=UTF-8
X-Content-Type-Options nosniff found





12911 Bytes








meta
Content-Type
text/html; charset=UTF-8


1
ok















meta
X-UA-Compatible
IE=edge


1
ok















meta
description
Catch bugs and vulnerabilities in your app, with thousands of automated Static Code Analysis rules.


1
ok















meta
robots
index, follow


1
ok















meta
twitter:card
summary_large_image


1
ok















meta
twitter:image
https://www.sonarqube.org/index/sq-homepage-og-image.png
200

1
ok
image/png
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
No Compression - 17210 Bytes








meta
twitter:site
@sonarqube


1
ok















meta
viewport
width=device-width, initial-scale=1.0, maximum-scale=1.0, user-scalable=0


1
ok















script
src
//static.cdn.prismic.io/prismic.min.js
200

1
ok
Missing defer / async attribute. application/javascript
missing X-Content-Type-Options nosniff





No Cache-Control - header
Compression required: 9583 Bytes






Server-Header Access-Control-Allow-Origin: not found
Cross-Origin Resource Sharing (CORS) not supported



script
src
/assets/capture-lead-source.bundle-aea850515d3866955973a4035a0fade8469e57a807ac148c99bca25966d1792d.js
200

1
ok
Missing defer / async attribute. application/javascript
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
Compression required: 45585 Bytes






local SRI possible, possible hash-values:

 

sha256-rqhQUV04ZpVZc6QDWg+t6EaeV6gHrBSMmbyiWWbReS0=
sha384-Kn9MCFV6n5BPlibeBo52m61/L9w8gLmki/ojqHh6lB9sABoDYQoejm088jlsIbl0
sha512-478zZHcAl0WRC6BO6XahHJOksEJlpvOSuDVsc9JdwtTD2Re6UFH1bIDO+6BO2j39NESfvH9nhpMcMEkyJerqPQ==

 

<script src="/assets/capture-lead-source.bundle-aea850515d3866955973a4035a0fade8469e57a807ac148c99bca25966d1792d.js" crossorigin="anonymous" integrity="sha256-rqhQUV04ZpVZc6QDWg+t6EaeV6gHrBSMmbyiWWbReS0=" />



script
src
/assets/hello-bar.bundle-023c6ec3d349d4d841bfa14bbfde3576450124b19201a7c22d6dbe2e12dc8d71.js
200

1
ok
Missing defer / async attribute. application/javascript
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
Compression required: 73133 Bytes






local SRI possible, possible hash-values:

 

sha256-Ajxuw9NJ1NhBv6FLv941dkUBJLGSAafCLW2+LhLcjXE=
sha384-ltq/0ThmZxWvx9ClE0qj3NNGPn3jys4aXvXlxznchpsHPLJsUr3PHsNZfCmhwY8B
sha512-bJV4/LjJL8uC/MFxP0vrboh/dcv7F54f7YRQ5lwO0q7rr8RM4flQFb5Xsk+EZn4VcpHaCVLCwuOlPjB2e2rKaA==

 

<script src="/assets/hello-bar.bundle-023c6ec3d349d4d841bfa14bbfde3576450124b19201a7c22d6dbe2e12dc8d71.js" crossorigin="anonymous" integrity="sha256-Ajxuw9NJ1NhBv6FLv941dkUBJLGSAafCLW2+LhLcjXE=" />



script
src
/assets/subscribeNewsForm.bundle-8787f6fe7a883f75c15eb6a67a153699105e97292fc0c2c1bcde1f1756f81154.js
200

1
ok
Missing defer / async attribute. application/javascript
X-Content-Type-Options nosniff found





Cache-Control: max-age=3600 - max-age too short.
Compression required: 42763 Bytes






local SRI possible, possible hash-values:

 

sha256-h4f2/nqIP3XBXramehU2mRBelykvwMLBvN4fF1b4EVQ=
sha384-iU7Fvx2BrQ348sFCuspuhuHvwioJMtXlDxLkSqOl3fY2R6A5zru9Ae7W0XwG4eFi
sha512-YCzQDTxhPW8sesciFIDYyGSZzRFNfkg8DOcJmANDSB3JIgjX5clq1Mc7S8iTZ+s1OUXHZkZNstiS0ehw/l6Wgw==

 

<script src="/assets/subscribeNewsForm.bundle-8787f6fe7a883f75c15eb6a67a153699105e97292fc0c2c1bcde1f1756f81154.js" crossorigin="anonymous" integrity="sha256-h4f2/nqIP3XBXramehU2mRBelykvwMLBvN4fF1b4EVQ=" />


https://blog.sonarsource.com/

a

/


1
ok















a

/10-unknown-security-pitfalls-for-python/


1
ok















a

/12090/


1
ok















a

/2009-is-over-what-is-coming-up-in-2010-for-sonar/


1
ok















a

/5-puzzling-javascript-bugs/


1
ok















a

/5-things-to-consider-in-performance-comparisons/


1
ok















a

/5-years-and-counting-sonarsource-has-a-lot-to-celebrate/


1
ok















a

/6.6-in-screenshots/


1
ok















a

/a-c-and-cpp-tour-of-sonarlint-for-vs-code/


1
ok















a

/accelerate-products-development-at-sonarsource/


1
ok















a

/access-control-management-in-sonar/


1
ok















a

/add-ci-build-stability-to-your-sonar-dashboard/


1
ok















a

/already-158-checkstyle-and-pmd-rules-deprecated-by-sonarqube-java-rules/


1
ok















a

/alternative-way-to-configure-c-and-cpp-analysis/


1
ok















a

/analyzing-objective-c-the-world-of-os-x-and-ios-within-your-grasp/


1
ok















a

/a-new-addition-to-the-sonar-team/


1
ok















a

/a-new-hudson-plugin-for-a-closer-integration-with-sonar/


1
ok















a

/announcing-sonarqube-integration-with-msbuild-and-team-build/


1
ok















a

/apache-kylin-command-injection-vulnerability/


1
ok















a

/at-long-last-sonarqube-is-a-true-polyglot/


1
ok















a

/back-from-citcon-europe-2008-in-amsterdam/


1
ok















a

/bad-code-costs-more-than-just-your-money/


1
ok















a

/balsamiq-mockups-to-design-the-future-of-sonar/


1
ok















a

/beyond-the-rules-of-three-five-and-zero/


1
ok















a

/beyond-the-tool-sonar-is-a-platform-to-manage-code-quality/


1
ok















a

/bitbucket-cloud-code-insights-announcement/


1
ok















a

/bitbucket-path-traversal-to-rce/


1
ok















a

/bits-from-hexacon-2022/


1
ok















a

/blackhat-usa-2022/


1
ok















a

/blazing-a-trail-on-the-sast-road-less-traveled-by/


1
ok















a

/blitzjs-prototype-pollution/


1
ok















a

/breaking-into-your-internal-network/


1
ok















a

/breaking-the-sonarqube-analysis-with-jenkins-pipelines/


1
ok















a

/bridging-internal-and-external-quality-with-sonar/


1
ok















a

/bring-a-new-dimension-to-sonar-with-the-views-plugin/


1
ok















a

/broken-pipelines-for-everyone/


1
ok















a

/bug-fix-release-142/


1
ok















a

/bugs-and-vulnerabilities-are-1st-class-citizens-in-sonarqube-quality-model-along-with-code-smells/


1
ok















a

/cachet-code-execution-via-laravel-configuration-injection/


1
ok















a

/call-for-papers-is-open-for-geneva-sonarqube-conference/


1
ok















a

/ccobjective-c-dark-past-bright-future/


1
ok















a

/celebrating-sonarcloud-first-anniversary/


1
ok















a

/changing-our-pricing-model-to-boost-adoption/


1
ok















a

/checkmk-rce-chain-1/


1
ok















a

/checkmk-rce-chain-2/


1
ok















a

/checkmk-rce-chain-3/


1
ok















a

/civicrm-code-execution-vulnerability-chain-explained/


1
ok















a

/clean_coding-quality_profile_quality_gate_guidance/


1
ok















a

/clean-as-you-code/


1
ok















a

/cobol-is-alive/


1
ok















a

/codehaus-ben-thank-you-and-good-bye/


1
ok















a

/code-security-advent-calendar-2020/


1
ok















a

/code-security-advent-calendar-2021/


1
ok















a

/code-security-advent-calendar-2022/


2
ok















a

/code-security-now-theres-a-tool-for-developers/


1
ok















a

/code-vulnerabilities-in-nsa-application-revealed/


1
ok















a

/codoforum-4.8.7-critical-code-vulnerabilities-explained/


1
ok















a

/cognitive-complexity-because-testability-understandability/


1
ok















a

/complex-drupal-pop-chain/


1
ok















a

/consultants-we-need-you/


1
ok















a

/continuous-improvement-for-python-security/


1
ok















a

/continuous-inspection-practice-emerges-with-sonar/


1
ok















a

/cpp_analysis_improved/


1
ok















a

/crafting-regexes-to-avoid-stack-overflows/


1
ok















a

/create-a-plugin-to-compute-custom-metrics-in-sonar/


1
ok















a

/cubecart-admin-authentication-bypass/


1
ok















a

/customizing-sonar-to-fit-your-needs/


1
ok















a

/detect-c-buffer-overflows-in-most-posix-functions/


1
ok















a

/detect-dead-code-and-calls-to-deprecated-methods-with-sonar-squid/


1
ok















a

/detecting-type-issues-in-javascript/


1
ok















a

/developing-an-application-can-be-a-complicated-task/


1
ok















a

/dev-led-sast-takeaway/


1
ok















a

/differentials-but-wait-theres-more/


1
ok















a

/differential-services-in-sonar-for-a-complete-support-of-continuous-inspection/


1
ok















a

/differentials-four-ways-to-see-whats-changed/


1
ok















a

/disclosing-information-with-a-side-channel-in-django/


1
ok















a

/discover-sonarclouds-new-project-experience/


1
ok















a

/discussing-cyclomatic-complexity/


1
ok















a

/does-sonar-scale-well/


1
ok















a

/doing-more-with-less-in-uncertain-times/


1
ok















a

/dotcms515-sqli-to-rce/


1
ok















a

/do-you-care-about-your-code-track-code-coverage-on-new-code-right-now/


1
ok















a

/driveby-rce-exploit-pimcore/


1
ok















a

/ducks-make-it-look-easy-too/


1
ok















a

/easy-analysis-of-visual-studio-solutions-with-the-sonarqube-scanner-for-msbuild/


1
ok















a

/eating-the-dog-food/


1
ok















a

/eating-the-dog-food-in-public/


1
ok















a

/eat-your-own-dog-food-or-risk-falling-behind/


1
ok















a

/eclipse-checkstyle-sonar-an-emerging-source-code-management-solution/


1
ok















a

/eclipse-sonar-plugin-0-1-in-screenshots/


1
ok















a

/ecmascript-2015-with-great-power-comes-great-responsibility/


1
ok















a

/effective-code-review-with-sonar/


1
ok















a

/elfinder-case-study-of-web-file-manager-vulnerabilities/


1
ok















a

/end-of-java-5-support-at-runtime-for-sonar-platform/


1
ok















a

/etherpad-code-execution-vulnerabilities/


1
ok















a

/europython2022-blog/


1
ok















a

/everythings-a-component/


1
ok















a

/executable_lines/


1
ok















a

/exploiting-hibernate-injections/


1
ok















a

/false-positives-our-enemies-but-maybe-your-friends/


1
ok















a

/fight-back-design-erosion-by-breaking-cycles-with-sonar/


1
ok















a

/first-release-of-11-beta/


1
ok















a

/five-sonarcloud-features-for-developers-that-want-clean/


1
ok















a

/for-secure-code-maintainability-matters/


1
ok















a

/from-community-post-to-a-new-feature-a-brief-history/


1
ok















a

/fully-automated-promotion-pipelines-with-sonarqube-and-artifactory/


1
ok















a

/geneva-sonarqube-conference-sept-23-24/


1
ok















a

/ghost-admin-takeover/


1
ok















a

/github-pull-request-analysis-helps-fix-the-leak/


1
ok















a

/gocd-pre-auth-pipeline-takeover/


1
ok















a

/gocd-vulnerability-chain/


1
ok















a

/grav-cms-code-execution-vulnerabilities/


1
ok















a

/hack-the-stack-with-localstack/


1
ok















a

/happy-day-of-the-programmer/


1
ok















a

/horde-webmail-account-takeover-via-email/


1
ok















a

/horde-webmail-rce-via-email/


1
ok















a

/how-clean-code-practices-help-retain-development-talent/


1
ok















a

/how-productboard-helps-us-prioritize-features/


1
ok















a

/how-to-measure-wtfs-in-sonar/


1
ok















a

/hudson-sonar-plugin-10-to-industrialize-the-ultimate-build-system/


1
ok















a

/iac_code_quality/


1
ok















a

/import-issues-of-your-favorite-linters-in-sonarcloud/


1
ok















a

/in-2008-sonarsource-upended-the-static-analysis-market/


1
ok















a

/in-depth-linting-of-your-typescript-while-coding/


1
ok















a

/integrate-sonarcloud-with-vsts-to-boost-code-quality/


1
ok















a

/intellij-idea-sonar-plugin-0-1-in-screenshots/


1
ok















a

/interviewing-with-sonarsource/


1
ok















a

/interview-with-a-sonarsource-developer/


1
ok















a

/is-80-of-code-coverage-any-good/


1
ok















a

/javascript-plugin-finds-tricky-bugs-thanks-to-execution-flow/


1
ok















a

/jean-louis-letouzey-on-sqale-quality-model/


1
ok















a

/jolt-awards-2009-sonar-is-a-productivity-winner/


1
ok















a

/joomla-privilege-escalation-via-sql-injection/


1
ok















a

/joomla-takeover-in-20-seconds-with-ldap-injection-cve-2017-14596/


1
ok















a

/kill-the-noise-to-change-gear-in-our-code-analyzers/


1
ok















a

/knowing-better-sonar-users/


1
ok















a

/kubecon_2022_event_summary/


1
ok















a

/language-plugins-rock-sonarqube-life/


1
ok















a

/lay-a-strong-foundation-with-secure-c-and-cpp-utilities/


1
ok















a

/lesser-spotted-react-mistakes-hooked-on-a-feeling/


1
ok















a

/lesser-spotted-react-mistakes-zombie-methods/


1
ok















a

/limesurvey-persistent-xss-to-code-execution/


1
ok















a

/looking-back-at-2010-accomplishments-on-sonar-platform/


1
ok















a

/looking-back-at-2011-sonar-platform-accomplishments/


1
ok















a

/looking-back-at-2012-sonar-platform-accomplishments/


1
ok















a

/looking-back-at-2013-sonarqube-ecosystem-accomplishments/


1
ok















a

/magento-rce-via-xss/


1
ok















a

/mainstream-noun-the-principal-or-dominant-course-tendency-or-trend/


1
ok















a

/manage-duplicated-code-with-sonar/


1
ok















a

/managing-cyclomatic-complexity-to-increase-maintainability/


1
ok















a

/maven-site-sonar-or-both-of-them/


1
ok















a

/measures-at-your-service/


1
ok















a

/meet-the-new-project-experience/


1
ok















a

/misra-cpp-2008-support-is-on-its-way/


1
ok















a

/modernizing-your-code-with-cpp20/


1
ok















a

/mono-repository-support-for-bitbucket-cloud-available-for-sonarcloud/


1
ok















a

/mono-repository-support-for-github-and-azure-devops/


1
ok















a

/moodle-remote-code-execution/


1
ok















a

/more-security-rules-injected-into-python-analysis/


1
ok















a

/move-to-codehaus/


1
ok















a

/msbuild-sonarqube-runner-now-available-on-visual-studio-online/


1
ok















a

/mybb-remote-code-execution-chain/


1
ok















a

/mybb-stored-xss-to-rce/


1
ok















a

/my-consulting-journey-at-sonarsource/


1
ok















a

/nemo-public-demo-of-sonar/


1
ok















a

/net-in-sonarqube-bright-future/


1
ok















a

/new-and-refreshed-website-sonar/


1
ok















a

/new-lts-version-sums-impressive-array-of-new-features/


1
ok















a

/new-php-exploitation-technique/


1
ok















a

/nodebb-remote-code-execution-with-one-shot/


1
ok















a

/nosql-injections-in-rocket-chat/


1
ok















a

/onedev-remote-code-execution/


1
ok















a

/openemr-5-0-2-1-command-injection-vulnerability/


1
ok















a

/osclass-remote-code-execution-via-image-file/


1
ok















a

/our-journey-toward-accessibility/


1
ok















a

/oxid-esales-shop-software/


1
ok















a

/pandora-fms-742-critical-code-vulnerabilities-explained/


1
ok















a

/path-traversal-vulnerabilities-in-icinga-web/


1
ok















a

/phpbb3-phar-deserialization-to-remote-code-execution/


1
ok















a

/php-object-injection/


1
ok















a

/php-supply-chain-attack-on-composer/


1
ok















a

/php-supply-chain-attack-on-pear/


1
ok















a

/pick-your-code-coverage-tool-in-sonar-2-2/


1
ok















a

/power-of-clean-code/


1
ok















a

/pragmatic-application-security/


1
ok















a

/prestashop-remote-code-execution/


1
ok















a

/product-portals-open-we-want-your-input/


1
ok















a

/public-response-code-leaks/


1
ok















a

/put-sonar-gadgets-on-your-jira-dashboard/


1
ok















a

/putting-it-all-together-end-to-end-quality-with-sonarecosystem/


1
ok















a

/pydio-unauthenticated-remote-code-execution/


1
ok















a

/quality-gates-shall-your-projects-pass/


1
ok















a

/quality-gates-work-if-you-let-them/


1
ok















a

/quick-fix-cpp-issues-with-sonarlint/


1
ok















a

/rainloop-emails-at-risk-due-to-code-flaw/


1
ok















a

/reflections-from-pycon-us-2022/


1
ok















a

/reflections-upon-we-are-developers-2022/


1
ok















a

/regular-expressions-present-challenges/


1
ok















a

/release-102/


1
ok















a

/release-10-beta/


1
ok















a

/release-11/


1
ok















a

/release-12-with-new-layout-and-reviews/


1
ok















a

/release-13/


1
ok















a

/release-14/


1
ok















a

/remote-code-execution-in-melis-platform/


1
ok















a

/reuse-in-sonar-unit-test-reports-generated-by-other-systems/


1
ok















a

/reviewing-the-apache-sling-code-quality-using-sonar/


1
ok















a

/review-security-vulnerabilities-with-github-code-scanning/


1
ok















a

/romoting-sonar-configuration-from-staging-to-production-environment/


1
ok















a

/roundcube-command-execution-via-email/


1
ok















a

/secure-xml-processor/


1
ok















a

/secure-xml-resolver/


1
ok















a

/securing-access-to-projects-in-sonar/


1
ok















a

/securing-developer-tools-a-new-supply-chain-attack-on-php/


1
ok















a

/securing-developer-tools-argument-injection-in-vscode/


1
ok















a

/securing-developer-tools-git-integrations/


1
ok















a

/securing-developer-tools-package-managers/


1
ok















a

/security-auditors-the-cinderella-story-of-sast/


1
ok















a

/security-flaws-in-the-php-core/


1
ok















a

/security-hotspot-review/


1
ok















a

/security-hotspots-bring-a-new-approach-to-cpp-sast/


1
ok















a

/security-hotspots-maintain-engagement-in-developer-led-security/


1
ok















a

/security-implications-of-url-parsing-differentials/


1
ok















a

/setting-the-right-regex-boundaries-is-important/


1
ok















a

/shopware-php-object-instantiation-to-blind-xxe/


1
ok















a

/smartstorenet-malicious-message-leading-to-e-commerce-takeover/


1
ok















a

/sonar-10-released/


1
ok















a

/sonar-110-in-screenshots/


1
ok















a

/sonar-111-in-screenshots/


1
ok















a

/sonar-1-12-in-screenshots/


1
ok















a

/sonar-121-bug-fix-release/


1
ok















a

/sonar-13-first-release-candidate/


1
ok















a

/sonar-141-bug-fix-release/


1
ok















a

/sonar-15-in-screenshots/


1
ok















a

/sonar-16-in-screenshots/


1
ok















a

/sonar-17-in-screenshots/


1
ok















a

/sonar-18-in-screenshots/


1
ok















a

/sonar-19-in-screenshots/


1
ok















a

/sonar-2-0-at-geneva-jug/


1
ok















a

/sonar-2-0-in-screenshots/


1
ok















a

/sonar-2-10-in-screenshots/


1
ok















a

/sonar-2-11-in-screenshots/


1
ok















a

/sonar-2-12-in-screenshots/


1
ok















a

/sonar-2-13-in-screenshots/


1
ok















a

/sonar-2-14-in-screenshots/


1
ok















a

/sonar-2-1-in-screenshots/


1
ok















a

/sonar-2-2-in-screenshots/


1
ok















a

/sonar-2-3-in-screenshots/


1
ok















a

/sonar-2-4-in-screenshots/


1
ok















a

/sonar-2-5-in-screenshots/


1
ok















a

/sonar-2-6-adds-continuous-inspection-support-for-ant-community/


1
ok















a

/sonar-2-7-in-screenshots/


1
ok















a

/sonar-2-8-in-screenshots/


1
ok















a

/sonar-2-9-in-screenshots/


1
ok















a

/sonar-3-0-in-screenshots/


1
ok















a

/sonar-3-1-in-screenshots/


1
ok















a

/sonar-3-2-in-screenshots/


1
ok















a

/sonar-3-3-in-screenshots/


1
ok















a

/sonar-3-4-in-screenshots/


1
ok















a

/sonar-3-5-in-screenshots/


1
ok















a

/sonaranalyzer-for-c-the-rule-engine-you-want-to-use/


1
ok















a

/sonaranalyzer-for-java-tricky-bugs-are-running-scared/


1
ok















a

/sonar-at-citcon-2008-in-amsterdam/


1
ok















a

/sonar-at-the-haus/


1
ok















a

/sonar-at-the-lausanne-jug-software-quality-tournament/


1
ok















a

/sonar-becomes-the-sonarqube-platform/


1
ok















a

/sonarcfamily-for-cc-now-plays-with-the-big-kids/


1
ok















a

/sonarcfamily-now-supports-arm-compilers/


1
ok















a

/sonarcloud-bitbucket-pipe/


1
ok















a

/sonarcloud-facelift-step-1-a-more-modern-and-consistent-ui-is-born/


1
ok















a

/sonarcloud-finds-bugs-in-high-quality-python-projects/


1
ok















a

/sonarcloud-is-entering-sast-market/


1
ok















a

/sonarcloud-loves-your-build-pipeline/


1
ok















a

/sonarcloud-new-project-overview/


1
ok















a

/sonar-eclipse-2-0/


1
ok















a

/sonar-eclipse-2-1-in-screenshots/


1
ok















a

/sonar-ecosystem-upgrades-to-java-8/


1
ok















a

/sonar-gadgets-for-gatein-and-jira4/


1
ok















a

/sonar-has-become-a-multi-languages-platform/


1
ok















a

/sonar-in-the-cloud-cloudbees/


1
ok















a

/sonar-in-the-news/


1
ok















a

/sonar-in-the-news-10/


1
ok















a

/sonar-in-the-news-11/


1
ok















a

/sonar-in-the-news-12/


1
ok















a

/sonar-in-the-news-13/


1
ok















a

/sonar-in-the-news-14/


1
ok















a

/sonar-in-the-news-15/


1
ok















a

/sonar-in-the-news-16/


1
ok















a

/sonar-in-the-news-17/


1
ok















a

/sonar-in-the-news-18/


1
ok















a

/sonar-in-the-news-19/


1
ok















a

/sonar-in-the-news-2/


1
ok















a

/sonar-in-the-news-20/


1
ok















a

/sonar-in-the-news-21/


1
ok















a

/sonar-in-the-news-22/


1
ok















a

/sonar-in-the-news-23/


1
ok















a

/sonar-in-the-news-24/


1
ok















a

/sonar-in-the-news-25/


1
ok















a

/sonar-in-the-news-26/


1
ok















a

/sonar-in-the-news-27/


1
ok















a

/sonar-in-the-news-28/


1
ok















a

/sonar-in-the-news-29/


1
ok















a

/sonar-in-the-news-3/


1
ok















a

/sonar-in-the-news-30/


1
ok















a

/sonar-in-the-news-31/


1
ok















a

/sonar-in-the-news-32/


1
ok















a

/sonar-in-the-news-33/


1
ok















a

/sonar-in-the-news-34/


1
ok















a

/sonar-in-the-news-35/


1
ok















a

/sonar-in-the-news-36/


1
ok















a

/sonar-in-the-news-37/


1
ok















a

/sonar-in-the-news-38/


1
ok















a

/sonar-in-the-news-39/


1
ok















a

/sonar-in-the-news-4/


1
ok















a

/sonar-in-the-news-40/


1
ok















a

/sonar-in-the-news-5/


1
ok















a

/sonar-in-the-news-6/


1
ok















a

/sonar-in-the-news-7/


1
ok















a

/sonar-in-the-news-8/


1
ok















a

/sonar-in-the-news-9/


1
ok















a

/sonar-in-thoughtworks-technology-radar/


1
ok















a

/sonar-invited-by-pyxis-at-agile-2009/


1
ok















a

/sonar-is-the-featured-project-of-the-month-at-codehaus/


1
ok















a

/sonarjs-3-0/


1
ok















a

/sonar-light-the-low-calorie-mode-for-sonar/


1
ok















a

/sonarlint-2-0-is-now-available/


1
ok















a

/sonarlint-brings-sonarqube-rules-to-visualstudio/


1
ok















a

/sonarlint-cloud-secret-detection/


1
ok















a

/sonarlint-fixing-issues-before-they-exist/


1
ok















a

/sonarlint-for-visual-studio-1-2-0-brings-code-fixes-to-the-ide/


1
ok















a

/sonarlint-for-visual-studio-lets-fix-some-real-issues-in-code/


1
ok















a

/sonarlint-quick-fixes/


1
ok















a

/sonar-mythbusters/


1
ok















a

/sonar-nominated-as-finalist-in-2009-jolt-awards/


1
ok















a

/sonar-participates-to-the-valtech-days/


1
ok















a

/sonar-presented-at-xpday-france-next-week/


1
ok















a

/sonar-proposals-for-google-summer-of-code/


1
ok















a

/sonarqube-3-6-in-screenshots/


1
ok















a

/sonarqube-3-7-in-screenshots/


1
ok















a

/sonarqube-4-0-in-screenshots/


1
ok















a

/sonarqube-4-1-in-screenshots/


1
ok















a

/sonarqube-4-2-in-screenshots/


1
ok















a

/sonarqube-4-3-in-screenshots/


1
ok















a

/sonarqube-4-4-in-screenshots/


1
ok















a

/sonarqube-4-5-in-screenshots/


1
ok















a

/sonarqube-5-0-in-screenshots/


1
ok















a

/sonarqube-5-1-in-screenshots/


1
ok















a

/sonarqube-5-2-in-screenshots/


1
ok















a

/sonarqube-5-3-in-screenshots/


1
ok















a

/sonarqube-5-4-in-screenshots/


1
ok















a

/sonarqube-5-5-in-screenshots/


1
ok















a

/sonarqube-5-6-lts-in-screenshots/


1
ok















a

/sonarqube-5-x-series-it-just-keeps-getting-better-and-better/


1
ok















a

/sonarqube-6.5-in-screenshots/


1
ok















a

/sonarqube6.7inscreenshots/


1
ok















a

/sonarqube-6-0-in-screenshots/


1
ok















a

/sonarqube-6-1-in-screenshots/


1
ok















a

/sonarqube-6-2-in-screenshots/


1
ok















a

/sonarqube-6-3-in-screenshots/


1
ok















a

/sonarqube-6-4-in-screenshots/


1
ok















a

/sonarqube-6-x-series-focused-and-efficient/


1
ok















a

/sonarqube-9.4-video/


1
ok















a

/sonarqube-9.5-video/


1
ok















a

/sonarqube9.6-video/


1
ok















a

/sonarqube-9.7-is-here/


1
ok















a

/sonarqube-alm_good-vibes/


1
ok















a

/sonarqube-embraces-the-net-ecosystem/


1
ok















a

/sonarqube-enters-the-security-realm-and-makes-a-good-first-showing/


1
ok















a

/sonarqube-in-action-the-book-interview-with-the-authors/


1
ok















a

/sonarqube-in-the-news/


1
ok















a

/sonarqube-in-the-news-2/


1
ok















a

/sonarqube-java-analyzer-the-only-rule-engine-you-need/


1
ok















a

/sonarqube-javascript-plugin-why-compete-with-jslint-and-jshint/


1
ok















a

/sonarqube-ldap-sso/


1
ok















a

/sonarqube-lts-89-extra-features/


1
ok















a

/sonarqube-lts-89-standby/


1
ok















a

/sonarqube-lts-89-upgrade/


1
ok















a

/sonarqube-supports-ecmascript-6/


1
ok















a

/sonarqube-swift-plugin-offers-mature-functionality-for-young-language/


1
ok















a

/sonarqube-user-conference-in-paris/


1
ok















a

/sonarqube-user-conference-u-s-west-santa-clara-ca/


1
ok















a

/sonar-radiator-plugin-to-keep-an-eye-on-quality-all-day-long/


1
ok















a

/sonars-analysis-performance-targets/


1
ok















a

/sonarsource-acquires-rips-technologies/


1
ok















a

/sonarsource-a-spin-off-dedicated-to-sonar-development/


1
ok















a

/sonarsource-city-tour-we-are-coming-near-you/


1
ok















a

/sonarsource-is-short-listed-for-open-innovation-awards/


1
ok















a

/sonarsource-is-taking-python-analysis-by-storm-in-2020/


1
ok















a

/sonarsource-launches-its-web-site/


1
ok















a

/sonar-sqale-1-2-in-screenshot/


1
ok















a

/sonar-streamlines-the-race-to-release/


1
ok















a

/sonar-team-now-on-twitter/


1
ok















a

/sonar-time-machine-replaying-the-past/


1
ok















a

/sonar-to-identify-security-vulnerabilities/


1
ok















a

/sonarts-a-strange-beast/


1
ok















a

/sonar-tv-a-short-video-for-every-key-feature/


1
ok















a

/sonar-tv-configuring-coding-rules/


1
ok















a

/source-code-analysis-is-not-an-end-in-itself-but-a-means-to-an-end/


1
ok















a

/sq_ee_good_vibes/


1
ok















a

/sqale-models-more-than-just-tiny-cities/


1
ok















a

/sqale-the-ultimate-quality-model-to-assess-technical-debt/


1
ok















a

/sql-injection-big-tree/


1
ok















a

/sq-sc_guidance/


1
ok















a

/squirrel-vm-sandbox-escape/


1
ok















a

/stop-planning-fix-the-leak/


1
ok















a

/sugarcrm-security-diet-multiple-vulnerabilities/


1
ok















a

/suggest-a-valuable-rule-win-a-sonarqubet-shirt/


1
ok















a

/supercharge-cpp-analysis-sonarlint-for-clion/


1
ok















a

/supp-engr-joe-ting/


1
ok















a

/supporting-analysis-of-net-core-projects/


1
ok















a

/tag/Announcement&How we work&Culture/


1
ok















a

/tag/Code Quality/


1
ok















a

/tag/Pipelines&GitHub&BitBucket&Azure DevOps&GitLab/


1
ok















a

/tag/security/


1
ok















a

/take-action-to-manage-technical-debt/


1
ok















a

/take-control-of-code-quality-with-sonarqube-pull-request/


1
ok















a

/talking-about-sonar/


1
ok















a

/tendencies-in-sonar/


1
ok















a

/the_hunting_toolbox_in_sonar/


1
ok















a

/the_next_major_version_of_javancss_is_on_its_way/


1
ok















a

/the-agenda-for-the-geneva-conference-is-available/


1
ok















a

/the-flex-plugin-for-sonar-a-further-step-toward-multi-language-support/


1
ok















a

/the-hidden-flaws-of-archives-in-java/


1
ok















a

/the-most-sexy-plugin-of-the-sonar-forge/


1
ok















a

/the-neverending-story-of-writing-a-rule-for-argument/


1
ok















a

/the-new-filters-functionality-added-in-sonar-2-2/


1
ok















a

/the-rules-have-changed/


1
ok















a

/the-rules-of-three-five-and-zero/


1
ok















a

/the-sonar-plugins-forge-is-up-and-running/


1
ok















a

/the-sonarqube-cobol-plugin-tracks-sneaky-bugs-in-conditions/


1
ok















a

/the-sonar-timeline-plugin-a-great-addition-to-timemachine-service/


1
ok















a

/the-speed-of-a-caravan-in-the-desert/


1
ok















a

/the-tweets-you-missed-in-april/


1
ok















a

/the-tweets-you-missed-in-august/


1
ok















a

/the-tweets-you-missed-in-august-2017/


1
ok















a

/the-tweets-you-missed-in-december/


1
ok















a

/the-tweets-you-missed-in-february/


1
ok















a

/the-tweets-you-missed-in-february-2018/


1
ok















a

/the-tweets-you-missed-in-january/


1
ok















a

/the-tweets-you-missed-in-january-2018/


1
ok















a

/the-tweets-you-missed-in-july/


1
ok















a

/the-tweets-you-missed-in-july-2/


1
ok















a

/the-tweets-you-missed-in-july-2018/


1
ok















a

/the-tweets-you-missed-in-june/


1
ok















a

/the-tweets-you-missed-in-june-2/


1
ok















a

/the-tweets-you-missed-in-june-2018/


1
ok















a

/the-tweets-you-missed-in-march-2018/


1
ok















a

/the-tweets-you-missed-in-may/


1
ok















a

/the-tweets-you-missed-in-november/


1
ok















a

/the-tweets-you-missed-in-november-2017/


1
ok















a

/the-tweets-you-missed-in-october/


1
ok















a

/the-tweets-you-missed-in-october-2017/


1
ok















a

/the-tweets-you-missed-in-september/


1
ok















a

/the-tweets-you-missed-in-september-2017/


1
ok















a

/the-ultimate-enterprise-java-build-solution/


1
ok















a

/three-options-for-pre-commit-analysis/


1
ok















a

/timely-accurate-feedback-on-cpp-from-sonarqube-ecosystem/


1
ok















a

/typo3-overriding-the-database/


1
ok















a

/understanding-xxe-vulnerabilities/


1
ok















a

/unit-test-execution-in-sonarqube/


1
ok















a

/use-3rd-party-plugins-at-your-own-risk/


1
ok















a

/using-differentials-to-move-the-team-in-the-right-direction/


1
ok















a

/using-quality-profiles-in-sonar/


1
ok















a

/using-the-reviews-section-on-the-project-dashboard/


1
ok















a

/vulnerability-research-highlights-2021/


1
ok















a

/walking-the-tightrope-balancing-agility-and-stability/


1
ok















a

/water-leak-changes-the-game-for-technical-debt-management/


1
ok















a

/we-are-adjusting-rules-severities/


1
ok















a

/webinar-about-sonar-3-0/


1
ok















a

/we-had-a-dream-mvn-sonarsonar/


1
ok















a

/what-about-microsoft-component-extensions-for-c/


1
ok















a

/what-does-open-source-mean-for-sonarsource/


1
ok















a

/what-is-coming-up-for-sonar-in-2011/


1
ok















a

/what-is-coming-up-for-sonar-in-2012-2/


1
ok















a

/what-is-coming-up-for-sonar-in-2013/


1
ok















a

/what-is-taint-analysis/


1
ok















a

/what-makes-checkstyle-pmd-findbugs-and-macker-complementary/


1
ok















a

/whats-coming-up-for-sonarqube-in-2014/


1
ok















a

/whats-worse-than-coding-without-tests-coding-with/


1
ok















a

/what-to-expect-from-analyzing-owasp-juiceshop/


1
ok















a

/what-tools-do-you-need/


1
ok















a

/why-mail-is-dangerous-in-php/


1
ok















a

/why-you-should-not-upgrad-to-sonar-19/


1
ok















a

/why-you-shouldnt-use-build-breaker/


1
ok















a

/winning-the-race-against-toctou-vulnerabilities/


1
ok















a

/with-great-power-comes-great-configuration/


1
ok















a

/woocommerce-csrf-to-stored-xss/


1
ok















a

/wordpress-core-unauthenticated-blind-ssrf/


1
ok















a

/wordpress-csrf-to-rce/


1
ok















a

/wordpress-design-flaw-leads-to-woocommerce-rce/


1
ok















a

/wordpress-file-delete-to-code-execution/


1
ok















a

/wordpress-hardening-bypass/


1
ok















a

/wordpress-image-remote-code-execution/


1
ok















a

/wordpress-object-injection-vulnerability/


1
ok















a

/wordpress-post-type-privilege-escalation/


1
ok















a

/wordpress-stored-xss-vulnerability/


1
ok















a

/wordpress-xxe-security-vulnerability/


1
ok















a

/youre-3-minutes-away-from-clean-java-pull-requests/


1
ok















a

/zabbix-case-study-of-unsafe-session-storage/


1
ok















a

/zimbra-mail-stealing-clear-text-credentials-via-memcache-injection/


1
ok















a

/zimbra-pre-auth-rce-via-unrar-0day/


1
ok















a

/zimbra-webmail-compromise-via-email/


1
ok















a

https://sonarcloud.io


2
ok















a

https://www.sonarlint.org/


2
ok















a

https://www.sonarqube.org/


2
ok















a

https://www.sonarsource.com


1
ok















a

https://www.sonarsource.com/company/privacy/


3
ok















a

https://www.sonarsource.com/docs/sonarsource_terms_and_conditions.pdf


1
ok















form




2
ok















form
get
/search


1
ok















iframe
src
https://www.googletagmanager.com/ns.html?id=GTM-56V34P9


1
ok















img
src
data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAABQAAAAFCAYAAABFA8wzAAAACXBIWXMAAAsTAAALEwEAmpwYAAAAwElEQVQY02NgGAggLSathyEmKq0PY38u0HT5WqBjAlM8R1pMOl1aXLpCWly6V0pUqkRKXKpVUlwyT1pMOl9STDJAWkI6BIRlxGSiJSUlNaRFpYOlxKRqQPo/FWhbfynSNPycrxX6rVhTnkFKXGqRtKR0vpSYVC3IMJDBUuJSi6UkpDrlxeUdpSWkQ+VE5LylxKXCJUQlQqXEpZKkJaRjQJaBXZen4fopTzP5Y76G5ec8HT2qBMn/UAbm//UMTCAOAGaYKx/0caVPAAAAAElFTkSuQmCC
Image:


2
ok
no alt-Attribute














img
src
data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAABQAAAAFCAYAAABFA8wzAAAACXBIWXMAABYlAAAWJQFJUiTwAAABGklEQVQY012QTSuEYRSGH1/Nq6Y0SmGhQVayIWUWVmiyUlI0ZeEfyMjHgoWP8pFBPhZiYyPpLcqazM7KD7Axm/kNRs9zXzp6Vxanzn2f03XujpPUIukcuFDt504v732qVJ2CmiS1AylJzUBGkgMiIC2pEWhLtPlp085g8qEM1On57dD35Ld1E2eBS4WwBIwDR8AusAGsJDoPrAEnkhaBTWDByI/yAaCs6zj22YmHUDwYAvbkvQGugFmgW9IHkAMmgVtgHbg3BmAhnCV8NZoq1a8wUnjygzMl3zWWAqYVdAYcA/vAFnAKDEgaTg7tSFpOZp1/QKBXn5W5kCus+v6pYhidz3gXOX3XbKEj+Vur9UD9vzIvktRgLzPgLxC7OWO/0hb5AAAAAElFTkSuQmCC
Image:


1
ok
no alt-Attribute














img
src
data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAABQAAAAGCAYAAADDl76dAAAACXBIWXMAAAsTAAALEwEAmpwYAAAA5UlEQVQY07WOvUoDQRSF18ZCQcxmcu+dc2cm7BaCfwtCQsAijVWyyaYx2Pog9gq2Kiy62PsAPoTEKOL7JGy6YBn84MBpzseJok1ZLLZW2ZTJ69d+Uc56o2o+KF4++3+kjt1JQgkD8I7caTDBwuCs3WoLEaUichjH8V7aSIOKXmac7TJzklcf6eT5ezwqZztrQiWtYHALwp2SPijrPQjvluyjtGQKwkUwIQdwpaIDEG5UdLh6W87Pp2+/22tCEAoYHNSvRORIRDpgjEWka601YFyraubZHztxfd/0qHu9zZ9+GtF/sQTbSDBvUCjKmAAAAABJRU5ErkJggg==
Image:


2
ok
no alt-Attribute














img
src
data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAABQAAAAHCAYAAAAIy204AAAACXBIWXMAAAsTAAALEwEAmpwYAAAA8klEQVQoz81QPUqDURB8YilafPHtz8z7/AIqGpEYsPUEiRcwErSUICm09QaCjVjpGdRaUZuIRJscSV5AMaVg4cDCsMzODBvCP8BMCGH2z9zKWC67eBdA+bXz6DtTIih2qbyD4QCKWwovIRhR+UBjm8IrKC6ofIXgLFnqQ3AEwSkEJxTemFn1bWhmDSqHVF4nSV0Inql8zNzVz6m8h+AFgqdJQ/VjOgeM3KJyAEN/qmHStMnIHuZRy8lc5CqVnRTTirtvQ3E4aarsFEWxQLJZxaoFoJZvEdH6+YJfYazNufd6o/dRre+Nljb282T+Vq3Vs+ATtg0wejmEaUAAAAAASUVORK5CYII=
Image:


2
ok
no alt-Attribute














img
src
data:image/png;base64,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
Image:


1
ok
no alt-Attribute














img
src
data:image/svg+xml;charset=utf-8,%3Csvg height='128' width='512' xmlns='http://www.w3.org/2000/svg' version='1.1'%3E%3C/svg%3E
Image:


1
ok
no alt-Attribute














img
src
data:image/svg+xml;charset=utf-8,%3Csvg height='50.00000000000001' width='138' xmlns='http://www.w3.org/2000/svg' version='1.1'%3E%3C/svg%3E
Image:


2
ok
no alt-Attribute














img
src
data:image/svg+xml;charset=utf-8,%3Csvg height='511.9287899860918' width='2156.7' xmlns='http://www.w3.org/2000/svg' version='1.1'%3E%3C/svg%3E
Image:


2
ok
no alt-Attribute














img
src
data:image/svg+xml;charset=utf-8,%3Csvg height='662.1235074626866' width='2144.4' xmlns='http://www.w3.org/2000/svg' version='1.1'%3E%3C/svg%3E
Image:


2
ok
no alt-Attribute














img
src
data:image/svg+xml;charset=utf-8,%3Csvg height='79' width='73' xmlns='http://www.w3.org/2000/svg' version='1.1'%3E%3C/svg%3E
Image:


1
ok
no alt-Attribute














img
src
data:image/svg+xml;charset=utf-8,%3Csvg height='80' width='504' xmlns='http://www.w3.org/2000/svg' version='1.1'%3E%3C/svg%3E
Image:


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/003185fb-84ac-48e0-a75f-c27b730d5bbe_GOcd_blogpost+followup%402x.png?auto=compress,format


1
ok
alt: An attack on a GoCD pipeline














img
src
https://images.prismic.io/sonarsource/0159d12d-680c-49b7-93e1-019400770fc5_What+I+Learned+from+SQ_blog+header_1200x627%402x.png?auto=compress,format


1
ok
alt: What I learned from using SonarQube for the first time














img
src
https://images.prismic.io/sonarsource/05529a53-c15f-4234-9be4-ad6ad769fed5_RD-137+PHP+Supply+Chain+Attack+on+PEAR%402x.png?auto=compress,format


1
ok
alt: PHP Supply Chain Attack on PEAR














img
src
https://images.prismic.io/sonarsource/073c9ca8-e741-40be-8d17-12ed2d06bba2_Five+Key+Features+of+SonarCloud_01.png?auto=compress,format


1
ok
alt: Five SonarCloud features for developer that want clean code














img
src
https://images.prismic.io/sonarsource/0823006a-4a0c-4d89-9c5a-dabaf7f709fa_blogpost+false+positives+1.png?auto=compress,format


1
ok
alt: A sheep lurks in wolf's clothing.














img
src
https://images.prismic.io/sonarsource/0a359c54-1bf6-4318-b255-5e9ffd2bba1b_RD-154+Horde+Stored+XSS%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/0a359c54-1bf6-4318-b255-5e9ffd2bba1b_RD-154+Horde+Stored+XSS%402x.png?auto=compress,format


1
ok
alt: evil attachment in email














img
src
https://images.prismic.io/sonarsource/0a438144-5457-4ad5-83a5-8c1683deffea_dotcms515-sqli-to-rce.png?auto=compress,format


1
ok
alt: dotCMS 5.1.5: Exploiting H2 SQL injection to RCE














img
src
https://images.prismic.io/sonarsource/0f0eec7e-014c-4d3b-bbf0-60e0b6e7bee0_UPPS+Django+Security+Blogpost%402x.png?auto=compress,format


1
ok
alt: 10 Unknown Security Pitfalls for Python














img
src
https://images.prismic.io/sonarsource/118df7fc-998d-46f3-a374-2821e90d555e_code_injection_moodle.png?auto=compress,format


1
ok
alt: Evil Teacher: Code Injection in Moodle














img
src
https://images.prismic.io/sonarsource/123d8703-ee2c-4518-b7de-1a176fb5b5a9_Blogpost+Cachet%402x.png?auto=compress,format


1
ok
alt: Cachet 2.4: Code Execution via Laravel Configuration Injection














img
src
https://images.prismic.io/sonarsource/137de1ae-12c6-4060-a4e2-417adafe5d43_Wordpress.png?auto=compress,format


1
ok
alt: WordPress 5.7 XXE Vulnerability














img
src
https://images.prismic.io/sonarsource/147699d7-60e3-40a1-b011-bc4c47b793aa_SC_BB_Monorep%402x.png?auto=compress,format


1
ok
alt: Monorepo support for Bitbucket Cloud in SonarCloud














img
src
https://images.prismic.io/sonarsource/19747a85-91b5-4409-883a-33e7a50e13a3_1_3+how+to+fix+XXE%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/1a134350-673f-470c-9ea5-1d28507a6d76_owasp_juice_shop%402x.png?auto=compress,format


1
ok
alt: Our JavaScript and TypeScript SAST engines filter the Vulnerabilities out of OWASP JuiceShop.














img
src
https://images.prismic.io/sonarsource/1a98294f-1687-4ba8-ba34-d49382ce8984_mybb-stored-xss.png?auto=compress,format


1
ok
alt: MyBB &lt;= 1.8.20: From Stored XSS to RCE














img
src
https://images.prismic.io/sonarsource/1aa81963-ad11-4ca7-877a-014b9bd5ec93_driveby-rce-exploit-pimcore.png?auto=compress,format


1
ok
alt: Drive By RCE Exploit in Pimcore 6.2.0














img
src
https://images.prismic.io/sonarsource/1cdc6137-0e9f-4d86-af4b-b331d7c57c27_SAST_Cinderella%402x.png?auto=compress,format


1
ok
alt: Security Auditors are the Cinderella of developer-led SAST, moving from the drudgery of triaging issues to higher-level concerns.














img
src
https://images.prismic.io/sonarsource/1f997a06-f12e-4064-b8dc-afeca572ce1a_C.C%2B%2BSecurityFoundation.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/21370e18-1c2b-4f87-a7ad-0ce008576fec_Power+of+Clean+Code_01.jpg?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/230ef5ab-4143-4f2e-80ce-c0bea7b5c674_Infrastructure+as+Code%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/26a71210-4bf3-455e-8303-290cbf485506_Hexacon+Wrap-Up_01.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/278a88f4-f948-4c9a-8ede-2a8c22f9a270_RD-34+Ghost+CMS+DOM+XSS%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/287ee4a6-069f-4503-a54e-a156cf80dcfc_elFinder+Blogpost+%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/299f61c3-9a8c-402f-b028-fee762c32f82_Blog+-+Retain+Your+Development+Talent%402x.jpg?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/2a09c502-a762-4b1c-8672-18ed7147a380_wordpress-image-rce.png?auto=compress,format


1
ok
alt: wordpress-remote-code-execution














img
src
https://images.prismic.io/sonarsource/2adaddc9-a4d8-41b0-a7a7-6ebb4ebcbdaf_02_java_regex_rules%402x.png?auto=compress,format


1
ok
alt: A developer tosses his laptop away in confusion over properly setting regex boundaries














img
src
https://images.prismic.io/sonarsource/2bae7cbf-e095-445c-a459-2c31cd8f5338_wp-rce.png?auto=compress,format


1
ok
alt: WordPress File Delete to Code Execution














img
src
https://images.prismic.io/sonarsource/2c457c78-f8a5-4359-9809-0f2758979118_Power+of+Clean+Code_05.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/2d7e28b7-6bc8-44dd-bf2b-e95aa3f883b3_CheckMK+RCE+Chain-03_Blog_1200x627%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/2df9eab2-5523-4d50-8985-a38f4d3bf9fc_Heartbleed_blogpost.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/2e40eedd-5238-49fb-a222-d73bfaabadbb_MIUI_blog+Header%402x.png?auto=compress,format


1
ok
alt: New SonarCloud UI














img
src
https://images.prismic.io/sonarsource/33828ad6-b471-473c-b184-1a5b978881b1_mail.gif?auto=compress,format


1
ok
alt: Why mail() is dangerous in PHP














img
src
https://images.prismic.io/sonarsource/33a27dc8-9966-4bce-aaab-1af3040c9279_MKTCOL-247+blogpost%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/35479e64-521a-475d-8547-3423ee78ec5a_RainLoop+WebMail+Stored+XSS%402x.png?auto=compress,format


1
ok
alt: Emails at Risk due to Code Flaw














img
src
https://images.prismic.io/sonarsource/38580e6b-e5af-40d9-aa33-e4623bf3b124_Remote+Code+Execution_02.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/3908f57e-cf62-47df-b408-a3590886dca9_SonarQube+Accessibility_Banner_%402x.png?auto=compress,format


1
ok
alt: Our journey toward accessibility with SonarQube














img
src
https://images.prismic.io/sonarsource/3bd121d8-10dd-4296-8027-ca31586c0eaa_RD-62+NodeBB+1.18.4+One-Shot+RCE%402x.png?auto=compress,format


1
ok
alt: NodeBB 1.18.4 - Remote Code Execution With One Shot














img
src
https://images.prismic.io/sonarsource/3c19f20f-8ce8-46a2-90f9-8038c5e16e7c_myBB_SonarSource%402x.png?auto=compress,format


1
ok
alt: MyBB Remote Code Execution














img
src
https://images.prismic.io/sonarsource/3f4e1bd4-7c0e-4746-9b44-37be5ef94233_RD-169+Package+Manager%402x.png?auto=compress,format


1
ok
alt: Securing Developer Tools: Package Managers














img
src
https://images.prismic.io/sonarsource/4104c2f2-4974-48c9-bdef-ec1fdb59b3fc_CheckMK+RCE+Chain-02_Blog_1200x627.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/41325528-f8ec-4888-840d-2f55a2c2b7b8_MKTCOL-240+compilation+database+blog+image%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/41e273ec-5dfa-453f-94c3-ba642ce8db22_wordpress-post-type-privesc.png?auto=compress,format


1
ok
alt: WordPress Privilege Escalation














img
src
https://images.prismic.io/sonarsource/422dea0b-4993-4392-aa7e-4dea5c084960_wordpress-csrf-to-rce.png?auto=compress,format


1
ok
alt: WordPress 5.1 CSRF to Remote Code Execution














img
src
https://images.prismic.io/sonarsource/44159031-304c-4d74-82f3-bca36afbd7a4_Social+Shared+Image%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/448bd0b1-07a1-4f58-a250-e53ee45e91eb_exploiting-hibernate.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/467458c0-61ba-41e5-ad9c-caf6910e9413_php.png?auto=compress,format


1
ok
alt: PHP Supply Chain Attack














img
src
https://images.prismic.io/sonarsource/472cdc6f-bde3-4837-8399-dd16ff7dfc75_Race+to+Release_01.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/47dbdc98-fe51-4551-9561-f29ed1a363d1_SugarCRM_security.png?auto=compress,format


1
ok
alt: SugarCRM Security














img
src
https://images.prismic.io/sonarsource/487055d9-4e3e-4d08-8a7b-5849ae0696fc_8.9+teaser+final%402x.png?auto=compress,format


1
ok
alt: SonarQube LTS 8.9














img
src
https://images.prismic.io/sonarsource/49dee23b-88da-4410-b3f2-e709f03f2ba4_Unauthenticated+Blind+SSRF_01.png?auto=compress,format


1
ok
alt: A WordPress instance is sending requests to servers across the world.














img
src
https://images.prismic.io/sonarsource/4b3413e9-0843-4ca7-8ad0-55f1a28e8fea_Lesser+Spotted+React+Mistakes_blog.png?auto=compress,format


1
ok
alt: Lesser spotted React mistakes. JavaScript | TypeScript. Image of code with magnifying glass highlighting a hard to spot mistake. The mistake has been highlighted by SonarLint so that it can be corrected quickly and easily.














img
src
https://images.prismic.io/sonarsource/4c650341-e335-4b58-93d8-44692f9fb87f_RD-127+Git+Shell+Integration%402x.png?auto=compress,format


1
ok
alt: Vulnerabilities in Git integrations














img
src
https://images.prismic.io/sonarsource/4e5d61e5-a8b6-4bc2-bc95-128269ea4bd1_cubecart_bypass.jpg?auto=compress,format


1
ok
alt: CubeCart Authentication Bypass














img
src
https://images.prismic.io/sonarsource/4f75ee95-00aa-4edd-9f8c-149e87a529ee_SAST_blazingtrail%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/52bc22cc-d6b3-4e25-8142-08866265032a_rips-hero-image.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/5433f035-890d-404a-b64b-628be4f0f81d_MKTCOL-220-SC-betaUI-release%402x.png?auto=compress,format


1
ok
alt: SonarCloud new UX














img
src
https://images.prismic.io/sonarsource/55a7eab2-82af-4c50-a1d9-39e948c78128_local_stack_python.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/55f11e9b-42c6-4253-947a-f80c2b381697_bitbucket611-path-traversal-to-rce.png?auto=compress,format


1
ok
alt: BitBucket Path Traversal to RCE














img
src
https://images.prismic.io/sonarsource/5640edfc-07da-4d65-9c17-dc0630171455_sonar_support_engineer.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/57bd032b-8615-46f7-beef-2548e9ebe231_EuroPython-2022_Blog-Hero%402x.jpg?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/57fb4ac4-6a48-499d-bac5-5bb7fa5eb17f_Zimbra_Blog+Header%402x.png?auto=compress,format


1
ok
alt: Zim bra server being attacked














img
src
https://images.prismic.io/sonarsource/584dd929-0e38-4230-a12a-bf8985edd87f_oxid_eshop.png?auto=compress,format


1
ok
alt: OXID eShop Takeover














img
src
https://images.prismic.io/sonarsource/590f6a1e-6a5c-40a1-8489-f02aeb389cc8_GitHub+Code+Scanning+Alert%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/59d77874-0850-4af1-b4a6-7aa8c039842c_RD-143+2021+Review+Blogpost.png?auto=compress,format


1
ok
alt: Vulnerability Research Highlights 2021














img
src
https://images.prismic.io/sonarsource/60a07d49-42a6-4a14-98f0-9f9f43450160_security_advent_calendar.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/61447a65-2a3e-4345-b10c-a3d72c6bb846_MKTCOL-242+Product+Board+Blogpost%402x.png?auto=compress,format


1
ok
alt: Many hands point and reach onto a grid of product features














img
src
https://images.prismic.io/sonarsource/654d62d7-4766-449e-ba1f-c2969b875c5e_TOCTOU_blogpost_twitter.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/7010bb42-01bb-4965-8429-8679170943a1_Grav+CMS+1.7.10+blogpost%402x.png?auto=compress,format


1
ok
alt: Code Execution Vulnerabilities in Grav CMS














img
src
https://images.prismic.io/sonarsource/707d5403-6d1c-4532-bc35-7e03c4e44177_django-vulnerability_blog-hero%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/70ba2589-455f-41cb-87a0-820e0765a379_NSA_emissary_blogpost%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/7256dcf9-9cc8-4c0c-a4d9-f51a072fe808_MKTDIGITAL-294_sonar_code_advent_2021_blogpost_socials%402x.png?auto=compress,format


1
ok
alt: Code Security Advent Calendar 2021














img
src
https://images.prismic.io/sonarsource/73a1a08a-f7a1-4e3c-a3ec-86d7a16fdde3_RD-108%402x.png?auto=compress,format


1
ok
alt: WordPress Object Injection vulnerability














img
src
https://images.prismic.io/sonarsource/76f33de6-af4a-46d6-94c0-72cbbaa55514_magento-xss-to-rce.png?auto=compress,format


1
ok
alt: Magento Remote Code Execution via XSS














img
src
https://images.prismic.io/sonarsource/77acaa7c-05cf-4519-b995-543fa5318dcf_Beyond+the+Rules_blog.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/7af8f9ee-a5fc-402f-9a18-20485c443110_3+min+away+from+clean+Java+PRs_Blog+Hero_SONARSITE-636%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/7d2a0237-0354-48e2-8991-dbbf7b46a6e7_bigtree446_blog.png?auto=compress,format


1
ok
alt: Backend SQL Injection in BigTree CMS 4.4.6














img
src
https://images.prismic.io/sonarsource/7db906ab-08e4-48cf-b1f4-f2ffbafa6f7d_Rocket.Chat+3.12.1+blog%402x.png?auto=compress,format


1
ok
alt: NoSQL Injections in Rocket.Chat














img
src
https://images.prismic.io/sonarsource/7f58ac40-ba50-44b5-878d-482f47bee6e8_pydio-rce.png?auto=compress,format


1
ok
alt: Pydio Remote Code Execution














img
src
https://images.prismic.io/sonarsource/812132b5-869f-4968-b196-cfb6854bd895_SonarLint+AWS+Secrets+Blog_MKTCOL-233_1-B%402x.png?auto=compress,format


1
ok
alt: SonarLint keeps your cloud secrets safe














img
src
https://images.prismic.io/sonarsource/82e561c6-0e6a-42e0-a51e-dddd26cd9f28_new-and-refreshed-sonar_Blog-Series_1%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/8305912b-d946-4399-8ed1-d70c4cfb1b50_Blog+Image_MKTCOL-232%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/84b5681d-f0a0-431f-b827-7e82edc46ce4_Thumbnail_A_Enterprise+Ready_SC_Blog%402x.png?auto=compress,format


1
ok
alt: SonarQube, LDAP and SSO














img
src
https://images.prismic.io/sonarsource/84c0cd1c-9e20-42c1-8228-41cbd4be507b_9.4+Blogpost%402x.png?auto=compress,format


1
ok
alt: SonarQube 9.4 is here!














img
src
https://images.prismic.io/sonarsource/851999ef-7835-4b1a-a312-70384c0a094a_typo3.png?auto=compress,format


1
ok
alt: Typo3 Code Execution














img
src
https://images.prismic.io/sonarsource/864901c0-d567-4da1-b211-b45d4b847738_SAST_referee.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/88c19140-558c-4364-bbc1-17e417959d4b_joomla_ldap_injection.png?auto=compress,format


1
ok
alt: Joomla LDAP Injection














img
src
https://images.prismic.io/sonarsource/8a4d225a-f323-4b60-b736-9104f266b984_Interview+with+a+Dev_01.png?auto=compress,format


1
ok
alt: Interview with a SonarSource Developer














img
src
https://images.prismic.io/sonarsource/8bc69cde-7db2-4eae-9dc8-ef9445e3bc20_SPRK_default_preset_name_custom+%E2%80%93+3.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/8d0b1e65-ffef-4811-a2b4-7fbf34d8a6a4_woocommerce-csrf-to-stored-xss.png?auto=compress,format


1
ok
alt: WooCommerce Security Vulnerability














img
src
https://images.prismic.io/sonarsource/8ebeac1c-c71e-46c7-862f-4df86651fc5e_RD-37+smartstoreNET+XSS%402x.png?auto=compress,format


1
ok
alt: SmartStoreNET - Malicious Message leading to E-Commerce Takeover














img
src
https://images.prismic.io/sonarsource/8f420be1-3769-452a-9fc2-c71fef771d38_osclass.png?auto=compress,format


1
ok
alt: osclass-remote-code-execution-via-image-file














img
src
https://images.prismic.io/sonarsource/92be9e22-afe0-4a95-a91d-f479e8a89281_hero+risk.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/9400fc20-8a70-424a-b1ab-6fa8bff9b8cc_Blitz-JS_Vulnerability%402x.png?auto=compress,format


1
ok
alt: Remote Code Execution via Prototype Pollution in Blitz.js














img
src
https://images.prismic.io/sonarsource/96e23424-d15c-46b0-81e2-ba6440bff29c_MKTCOL-257+Analysis+Speed%402x.png?auto=compress,format


1
ok
alt: A woman running a performance comparison tries to balance SonarQube / SonarCloud against the other tools required to equal the output














img
src
https://images.prismic.io/sonarsource/96e38dab-c577-420c-a5af-d04e534d651d_php_object_injection.png?auto=compress,format


1
ok
alt: Phar Deserialization














img
src
https://images.prismic.io/sonarsource/988b28ce-ef35-40e3-82bb-88a862eb6fc6_roundcube.png?auto=compress,format


1
ok
alt: Roundcube 1.2.2 command-execution-via-email














img
src
https://images.prismic.io/sonarsource/9c0429de-993d-47ff-8868-bc39709adbd4_Securing+Dev+Tools_06.png?auto=compress,format


1
ok
alt: A victim clicks on a malicious link exploiting a vulnerability in Visual Studio Code














img
src
https://images.prismic.io/sonarsource/9c8d0d36-05c6-4114-85cc-19263bc3230e_Zimbra+2nd+encounter%402x.png?auto=compress,format


1
ok
alt: Stealing a victim's password














img
src
https://images.prismic.io/sonarsource/9d03b792-f2b3-49dd-be0a-795b04d6b676_9.5+Blog+and+Social%402x.jpg?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/9e93909f-cac7-453e-b278-3a36b24d1d6c_Failed+Pipelines+MTKCOL-227.png?auto=compress,format


1
ok
alt: A crowd celebrates a broken pipeline














img
src
https://images.prismic.io/sonarsource/9eb7a2a1-fc7e-433d-af24-77983df2f26c_drupal-pop-chain-2.png?auto=compress,format


1
ok
alt: CTF Writeup: Complex Drupal POP Chain














img
src
https://images.prismic.io/sonarsource/9f15f887-0d41-477d-9ec0-9f4cbbbe73b2_We-Are-Developers_Blog-Header%402x.jpg?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/9fab1353-1d97-47a5-bb0d-184000db209c_Zimbra+Full+Chain.png?auto=compress,format


1
ok
alt: Webmail compromise by an unauthenticated attacker














img
src
https://images.prismic.io/sonarsource/a1691e38-7c8f-4e2e-add4-ae3675bb7489_RD-111+zabbix+use+case%402x.png?auto=compress,format


1
ok
alt: A critical vulnerability in Zabbix














img
src
https://images.prismic.io/sonarsource/a2b38076-4674-4b3f-8729-5f8df078df6c_MKTCOL-246+SL+Clion+Cpp%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/a2f8379e-0b0e-4f0f-8b7a-e08402a521bf_sonars-analysis-performance-targets_blog%402x.jpg?auto=compress,format


1
ok
alt: Sonar analysis performance targets














img
src
https://images.prismic.io/sonarsource/a4a560cd-fbd3-49b5-b9e4-a46754375f59_MKTCOL-254+Blog+hero%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/a4f60b69-48d5-4a4d-9282-d245c280324d_Vulnerability_Blog+Header.png?auto=compress,format


1
ok
alt: Securing Developer Tools: OneDev Remote Code Execution














img
src
https://images.prismic.io/sonarsource/a59828fd-c7fd-47ec-831d-60cf98e88275_CiviCMS+.png?auto=compress,format


1
ok
alt: CiviCRM Code Execution Vulnerability Chain Explained














img
src
https://images.prismic.io/sonarsource/a5df5815-4cfe-4d8e-a79d-6a57aa2f8272_wordpress-hardening-bypass.png?auto=compress,format


1
ok
alt: WordPress &lt;= 5.2.3: Hardening Bypass














img
src
https://images.prismic.io/sonarsource/b4b4c9c7-3583-4bee-97f5-dd3cd36b744a_suitecrm_security.png?auto=compress,format


1
ok
alt: SuiteCRM Security














img
src
https://images.prismic.io/sonarsource/b6543c39-9080-4011-90ab-e078bb92dcdd_RD-165+Icingaweb2%402x.png?auto=compress,format


1
ok
alt: Path Traversal Vulnerabilities in Icinga Web














img
src
https://images.prismic.io/sonarsource/b6ff7f15-3036-4275-b486-fe8beb0f33a7_CheckMK+RCE+Chain_Blog_1200x627-2.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/b9934a1c-bbc3-497e-bc6a-abfa66cec8fe_Code+Security+Advent+Cal_blog+header_1200x627%402x.png?auto=compress,format


2
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/bcb5e9ca-8c91-4adb-aa9c-4d334973af01_SC_python_blog.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/bcb889be-725b-49b8-8b72-6cdf073560b3_3_3+learnings+from+XXE%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/bcdd4761-dbbd-433d-bc87-beaee50bfe00_hidden-flaws-of-archives-java.png?auto=compress,format


1
ok
alt: The Hidden Flaws of Archives in Java














img
src
https://images.prismic.io/sonarsource/bf8231dc-a689-4eff-a89b-973bd5b05b97_final%402x.png?auto=compress,format


1
ok
alt: Unit tests are the safety net, but what happens when the net is broken?














img
src
https://images.prismic.io/sonarsource/c83b02ac-8a39-4e4c-a02f-c1db5cafcde0_Packagist+RCE_Blog-Banner_Sonarsite+-+687%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/c84e0752-8ad2-4e98-a96a-373e531c28f0_Cost+of+Bad+Code_Blog+Header%402x.png?auto=compress,format


1
ok
alt: Coding issues are shown in a development environment along with cost of time and money














img
src
https://images.prismic.io/sonarsource/ca5a7ab4-6eca-4203-9eac-34cff3a67d59_php_core_security.gif?auto=compress,format


1
ok
alt: Security flaws in PHP core














img
src
https://images.prismic.io/sonarsource/caff6e3d-0d18-4820-b6b2-4c5bcf3c0d70_9-7_Social+Shared+Image%402x.jpg?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/cdd91c21-27e0-4a24-8c58-015c97c438ea_MKTCOL-249+Clion+SL+Blog%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/ceaf0f50-e69e-4ccc-879a-7e5b5fcfca46_shopware_exploit.jpg?auto=compress,format


1
ok
alt: Shopware PHP Object Instantiation to Blind XXE














img
src
https://images.prismic.io/sonarsource/d0c5e00c-bef4-4412-ad9d-a22e94fa10a9_sql_injection.jpg?auto=compress,format


1
ok
alt: Joomla! 3.8.3: Privilege Escalation via SQL Injection














img
src
https://images.prismic.io/sonarsource/d3a34893-54f4-42bb-9453-bc70e39868ae_03_java_regex_rules%402x.png?auto=compress,format


1
ok
alt: A developer climbs a ladder to add yet another `a|b` box to an already teetering stack














img
src
https://images.prismic.io/sonarsource/d559945a-437c-4152-b408-c581aba3dbda_java_regex_rules_hoodie%402x.png?auto=compress,format


1
ok
alt: Writing accurate and readable regexes requires a delicate balance.














img
src
https://images.prismic.io/sonarsource/db6a3b51-d6aa-4c0c-b3ed-e3387c789f66_mummy_security_final.png?auto=compress,format


1
ok
alt: A Developer runs from the reanimated horror - the Mummy known as Quarterly Security Analysis.














img
src
https://images.prismic.io/sonarsource/dc12e72c-0d4d-4ff6-b18a-dcd06decc32b_SquirrelLang+Blogpost%402x.png?auto=compress,format


1
ok
alt: Squirrel Sandbox Escape allows Code Execution in Games and Cloud Services














img
src
https://images.prismic.io/sonarsource/dc55753c-7695-4bf5-822b-e7f2d2e36dc4_Doing+More+With+Less_blog+header_1200x627%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/dd119a0a-4d88-41b8-bd27-b563427f6e6d_limesurvey_attack.jpg?auto=compress,format


1
ok
alt: LimeSurvey Code Execution














img
src
https://images.prismic.io/sonarsource/dd27f46f-aa11-4eef-abe4-90e21a81e5bc_Lesser+Spotted+React+Mistakes-PART+2_blog+header_1200x627%402x.png?auto=compress,format


1
ok
alt: Lesser spotted React mistakes. Image of gravestone with Dead Code carved into it. Stormy night background.














img
src
https://images.prismic.io/sonarsource/ddad169b-0568-4744-a488-948d294168b7_mono-repo.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/dfa97c39-b3be-4481-a555-e348f7c23a14_WHATWG+Vs+RFC_Blog+Header%402x.png?auto=compress,format


1
ok
alt: A user is redirected to an unintended destination because of an URL parsing differential bug.














img
src
https://images.prismic.io/sonarsource/dfac2126-0c5b-4929-9da6-dcdf87ba7804_Rules+of+3-5-0_02.png?auto=compress,format


1
ok
alt: The Rules of Three, Five and Zero














img
src
https://images.prismic.io/sonarsource/dfd7242c-9169-44e4-bb5c-457a9b4b9458_RD-145+WordPress+5.8.2%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/e149d35f-b760-4ff3-acb1-4ec74823d5bc_Programmers+Day_Blog_1200x628+%281%29.png?auto=compress,format


1
ok
alt: Happy Day of the Programmer














img
src
https://images.prismic.io/sonarsource/e2a249cc-1f9b-4afa-b40d-5ab1ffedf1bf_02_SL_c-cpp-vscode_Blog-Social%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/eac58edf-1cea-4939-b893-ee05a27a5aef_MKTCOL-245+SL+Quickfixes%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/ec1baf43-56b0-4b09-9058-1d32ed82aa53_MKTCOL-231%402x.png?auto=compress,format


1
ok
alt: SonarCloud new project overview














img
src
https://images.prismic.io/sonarsource/ecb63a50-2821-46b4-809d-c0d7e4970610_blog_secturity_present_final.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/ee76d543-d340-4c1b-9e30-b085068e37d6_PyCon-US-2022_Blog-Header%402x.jpg?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/f09c9454-462c-4e42-afcc-94373fc56440_LTS+easter+eggs%402x.png?auto=compress,format


1
ok
alt: sonarqube 8.9 lts features














img
src
https://images.prismic.io/sonarsource/f19d17a4-2bdb-41f4-b1b6-2275d5077ce9_pandora_fms_blogpost.png?auto=compress,format


1
ok
alt: Pandora FMS Security Vulnerabilities














img
src
https://images.prismic.io/sonarsource/f339d0f0-4e7c-467b-8811-cd5d4396f962_BlackHat-USA-2022_Blog-Header%402x.jpg?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/f3a85109-5370-45ab-ae8f-d9f92fddf16d_lts-upgrade.png?auto=compress,format


1
ok
alt: SonarQube 8.9 LTS: 3 steps to a smooth upgrade














img
src
https://images.prismic.io/sonarsource/f3b2b954-7c3e-4fc8-ba51-c4ef406bd622_2_3+how+to+resolve+XXE%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/f4952492-7114-4d3a-b61a-b59c69017eda_KubeCon+2022_1200x627.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/f677a108-087d-4f93-b4f1-f0db9fab3d7a_RD-32+Etherpad%402x.png?auto=compress,format


1
ok
alt: Code Execution Vulnerabilities in Etherpad














img
src
https://images.prismic.io/sonarsource/f803320a-2249-4532-b1b3-2212a31d3c3e_Topic-+C%2B%2B+20%402x.png?auto=compress,format


1
ok
alt: C++20 features, including the spaceship operator














img
src
https://images.prismic.io/sonarsource/fa5f71d1-eeee-4d71-94cb-53a63849cc50_phar_deserialization.png?auto=compress,format


1
ok
alt: phpBB3 Phar Deserialization














img
src
https://images.prismic.io/sonarsource/fb92427d-4a4d-46f3-ab2a-863a66e82201_GOcd_blogpost_opt%402x.png?auto=compress,format


1
ok
alt: We recently discovered critical security issues in the popular CI/CD solution GoCD that can be exploited by unauthenticated attackers














img
src
https://images.prismic.io/sonarsource/fc0f034c-395a-4c76-a103-5cf4ef135ffe_c%2B%2B+blogpost+zen+dev.png?auto=compress,format


1
ok
alt: When feedback is timely, it's easy to be cool and collected.














img
src
https://images.prismic.io/sonarsource/fc6bb713-8149-4e3e-9245-113b0a065a8c_wordpress-design-flaw.png?auto=compress,format


1
ok
alt: wordpress-design-flaw-leads-to-woocommerce-rce














img
src
https://images.prismic.io/sonarsource/fc9866f3-d3e6-4fc9-a217-61ae7a82f8cf_CAYC+blogpost%402x.png?auto=compress,format


1
ok
alt: Clean As You Code Essentials














img
src
https://images.prismic.io/sonarsource/fd3d7acb-90f7-4127-bd10-be1b345f1395_Scaling+Clean+Code_blog+header_1200x627%402x.png?auto=compress,format


1
ok
no alt-Attribute














img
src
https://images.prismic.io/sonarsource/fd7ed5ab-d270-45e6-8e9d-8ae50c9d7b59_drupal-pop-chain.png?auto=compress,format


1
ok
no alt-Attribute














link
canonical
https://blog.sonarsource.com


1
ok















link
preload
/58e4efcf1def007bf8fb027bf05a19772b6ee29f-919bea8b5c648eb21851.js


1
ok















link
preload
/app-ef6abcc21f9b290a8447.js


1
ok















link
preload
/component---src-pages-index-jsx-05ef9955fd9be5ea52e5.js


1
ok















link
preload
/e678b8b4676ac9fa48670c696e16c887ac7f55c7-a53c81d741ccb607c881.js


1
ok















link
preload
/framework-2487f19e1244ef850a47.js


1
ok















link
preload
/page-data/app-data.json


1
ok















link
preload
/page-data/index/page-data.json


1
ok















link
preload
/page-data/sq/d/1689267692.json


1
ok















link
preload
/page-data/sq/d/1948420336.json


1
ok















link
preload
/webpack-runtime-c44558ba98940720a4c8.js


1
ok















link
shortcut icon
/favicon.ico


1
ok















meta
charset
utf-8


1
ok















meta
og:description
SonarSource builds world-class Code Quality & Code Security tools. Our products, SonarLint, SonarQube, and SonarCloud are trusted by 200k+ organizations globally.


1
ok















meta
og:image
https://blog.sonarsource.com/blog-sonarsource-og-image.png


1
ok















meta
og:image:height
440


1
ok















meta
og:image:type
image/png


1
ok















meta
og:image:width
880


1
ok















meta
og:title
SonarSource Blog


1
ok















meta
og:type
website


1
ok















meta
og:url
https://blog.sonarsource.com


1
ok















meta
x-ua-compatible
ie=edge


1
ok















meta
description
SonarSource builds world-class Code Quality & Code Security tools. Our products, SonarLint, SonarQube, and SonarCloud are trusted by 200k+ organizations globally.


1
ok















meta
generator
Gatsby 4.10.2


1
ok















meta
robots
index, follow


1
ok















meta
twitter:card
summary_large_image


1
ok















meta
twitter:creator
@sonarsource


1
ok















meta
twitter:image
hhttps://blog.sonarsource.com/blog-og-image.png


1
ok















meta
twitter:site
@blog_SonarSource


1
ok















meta
viewport
width=device-width, initial-scale=1, shrink-to-fit=no


1
ok















picture

• source




image/webp


1
ok















• img







1
ok
alt: SonarSource Blog














picture


• source

type: image/webp



1
ok














srcset
/static/e3a16c8eb72c38279ac32acb9a08805f/6d343/sonar-light-bg%402x.webp 126w,/static/e3a16c8eb72c38279ac32acb9a08805f/8c7c6/sonar-light-bg%402x.webp 252w,/static/e3a16c8eb72c38279ac32acb9a08805f/64361/sonar-light-bg%402x.webp 504w


1
ok







/static/e3a16c8eb72c38279ac32acb9a08805f/6d343/sonar-light-bg%402x.webp 126w,/static/e3a16c8eb72c38279ac32acb9a08805f/8c7c6/sonar-light-bg%402x.webp 252w,/static/e3a16c8eb72c38279ac32acb9a08805f/64361/sonar-light-bg%402x.webp 504w


1
Only one definition after the url allowed. If you have more then one definition, you **must use** ", " as delimiter, a comma followed by a space. If the space is missing, that's a descriptor with a wrong value.













• img




/static/e3a16c8eb72c38279ac32acb9a08805f/0d709/sonar-light-bg%402x.png


1
ok
alt: SonarSource Blog













srcset
/static/e3a16c8eb72c38279ac32acb9a08805f/f2a1d/sonar-light-bg%402x.png 126w,/static/e3a16c8eb72c38279ac32acb9a08805f/81fc1/sonar-light-bg%402x.png 252w,/static/e3a16c8eb72c38279ac32acb9a08805f/0d709/sonar-light-bg%402x.png 504w


1
ok







/static/e3a16c8eb72c38279ac32acb9a08805f/f2a1d/sonar-light-bg%402x.png 126w,/static/e3a16c8eb72c38279ac32acb9a08805f/81fc1/sonar-light-bg%402x.png 252w,/static/e3a16c8eb72c38279ac32acb9a08805f/0d709/sonar-light-bg%402x.png 504w


1
Only one definition after the url allowed. If you have more then one definition, you **must use** ", " as delimiter, a comma followed by a space. If the space is missing, that's a descriptor with a wrong value.













picture

• source




image/webp


1
ok















• img







1
ok
alt: Code Quality and Code Security in your IDE with SonarLint














picture


• source

type: image/webp



1
ok














srcset
/static/99307ef95cb23491f292afe1515434b3/d2898/sonarlint-black.webp 35w,/static/99307ef95cb23491f292afe1515434b3/3825c/sonarlint-black.webp 69w,/static/99307ef95cb23491f292afe1515434b3/09e88/sonarlint-black.webp 138w,/static/99307ef95cb23491f292afe1515434b3/593bf/sonarlint-black.webp 276w


1
ok







/static/99307ef95cb23491f292afe1515434b3/d2898/sonarlint-black.webp 35w,/static/99307ef95cb23491f292afe1515434b3/3825c/sonarlint-black.webp 69w,/static/99307ef95cb23491f292afe1515434b3/09e88/sonarlint-black.webp 138w,/static/99307ef95cb23491f292afe1515434b3/593bf/sonarlint-black.webp 276w


1
Only one definition after the url allowed. If you have more then one definition, you **must use** ", " as delimiter, a comma followed by a space. If the space is missing, that's a descriptor with a wrong value.













• img




/static/99307ef95cb23491f292afe1515434b3/14620/sonarlint-black.svg


1
ok
alt: Code Quality and Code Security in your IDE with SonarLint













srcset
/static/99307ef95cb23491f292afe1515434b3/a86f1/sonarlint-black.svg 35w,/static/99307ef95cb23491f292afe1515434b3/c105b/sonarlint-black.svg 69w,/static/99307ef95cb23491f292afe1515434b3/14620/sonarlint-black.svg 138w,/static/99307ef95cb23491f292afe1515434b3/bd734/sonarlint-black.svg 276w


1
ok







/static/99307ef95cb23491f292afe1515434b3/a86f1/sonarlint-black.svg 35w,/static/99307ef95cb23491f292afe1515434b3/c105b/sonarlint-black.svg 69w,/static/99307ef95cb23491f292afe1515434b3/14620/sonarlint-black.svg 138w,/static/99307ef95cb23491f292afe1515434b3/bd734/sonarlint-black.svg 276w


1
Only one definition after the url allowed. If you have more then one definition, you **must use** ", " as delimiter, a comma followed by a space. If the space is missing, that's a descriptor with a wrong value.













picture

• source




image/webp


1
ok















• img







1
ok
alt: Code Quality and Code Security in the cloud with SonarCloud














picture


• source

type: image/webp



1
ok














srcset
/static/db3aaf01a95ba93bd89d3f37daf046c4/149b0/sonarcloud-black.webp 539w,/static/db3aaf01a95ba93bd89d3f37daf046c4/9fefd/sonarcloud-black.webp 1079w,/static/db3aaf01a95ba93bd89d3f37daf046c4/5008c/sonarcloud-black.webp 2157w


1
ok







/static/db3aaf01a95ba93bd89d3f37daf046c4/149b0/sonarcloud-black.webp 539w,/static/db3aaf01a95ba93bd89d3f37daf046c4/9fefd/sonarcloud-black.webp 1079w,/static/db3aaf01a95ba93bd89d3f37daf046c4/5008c/sonarcloud-black.webp 2157w


1
Only one definition after the url allowed. If you have more then one definition, you **must use** ", " as delimiter, a comma followed by a space. If the space is missing, that's a descriptor with a wrong value.













• img




/static/db3aaf01a95ba93bd89d3f37daf046c4/ae999/sonarcloud-black.svg


1
ok
alt: Code Quality and Code Security in the cloud with SonarCloud













srcset
/static/db3aaf01a95ba93bd89d3f37daf046c4/2c30f/sonarcloud-black.svg 539w,/static/db3aaf01a95ba93bd89d3f37daf046c4/49d45/sonarcloud-black.svg 1079w,/static/db3aaf01a95ba93bd89d3f37daf046c4/ae999/sonarcloud-black.svg 2157w


1
ok







/static/db3aaf01a95ba93bd89d3f37daf046c4/2c30f/sonarcloud-black.svg 539w,/static/db3aaf01a95ba93bd89d3f37daf046c4/49d45/sonarcloud-black.svg 1079w,/static/db3aaf01a95ba93bd89d3f37daf046c4/ae999/sonarcloud-black.svg 2157w


1
Only one definition after the url allowed. If you have more then one definition, you **must use** ", " as delimiter, a comma followed by a space. If the space is missing, that's a descriptor with a wrong value.













picture

• source




image/webp


1
ok















• img







1
ok
alt: Code Quality and Code Security on-premise with SonarQube














picture


• source

type: image/webp



1
ok














srcset
/static/312c4d0a3777ce8004a22ea7b6df9d9d/8fbd0/sonarqube-black.webp 536w,/static/312c4d0a3777ce8004a22ea7b6df9d9d/e69f8/sonarqube-black.webp 1072w,/static/312c4d0a3777ce8004a22ea7b6df9d9d/e03a0/sonarqube-black.webp 2144w


1
ok







/static/312c4d0a3777ce8004a22ea7b6df9d9d/8fbd0/sonarqube-black.webp 536w,/static/312c4d0a3777ce8004a22ea7b6df9d9d/e69f8/sonarqube-black.webp 1072w,/static/312c4d0a3777ce8004a22ea7b6df9d9d/e03a0/sonarqube-black.webp 2144w


1
Only one definition after the url allowed. If you have more then one definition, you **must use** ", " as delimiter, a comma followed by a space. If the space is missing, that's a descriptor with a wrong value.













• img




/static/312c4d0a3777ce8004a22ea7b6df9d9d/cccab/sonarqube-black.svg


1
ok
alt: Code Quality and Code Security on-premise with SonarQube













srcset
/static/312c4d0a3777ce8004a22ea7b6df9d9d/fe74c/sonarqube-black.svg 536w,/static/312c4d0a3777ce8004a22ea7b6df9d9d/bc3d3/sonarqube-black.svg 1072w,/static/312c4d0a3777ce8004a22ea7b6df9d9d/cccab/sonarqube-black.svg 2144w


1
ok







/static/312c4d0a3777ce8004a22ea7b6df9d9d/fe74c/sonarqube-black.svg 536w,/static/312c4d0a3777ce8004a22ea7b6df9d9d/bc3d3/sonarqube-black.svg 1072w,/static/312c4d0a3777ce8004a22ea7b6df9d9d/cccab/sonarqube-black.svg 2144w


1
Only one definition after the url allowed. If you have more then one definition, you **must use** ", " as delimiter, a comma followed by a space. If the space is missing, that's a descriptor with a wrong value.













picture

• source




image/webp


1
ok















• img







1
ok
alt: Sign up today never miss an update from Sonar














picture


• source

type: image/webp



1
ok














srcset
/static/d114fd8b2e1b99fefcf533af064e2614/cc38b/pane.webp 18w,/static/d114fd8b2e1b99fefcf533af064e2614/64c91/pane.webp 37w,/static/d114fd8b2e1b99fefcf533af064e2614/f7163/pane.webp 73w


1
ok







/static/d114fd8b2e1b99fefcf533af064e2614/cc38b/pane.webp 18w,/static/d114fd8b2e1b99fefcf533af064e2614/64c91/pane.webp 37w,/static/d114fd8b2e1b99fefcf533af064e2614/f7163/pane.webp 73w


1
Only one definition after the url allowed. If you have more then one definition, you **must use** ", " as delimiter, a comma followed by a space. If the space is missing, that's a descriptor with a wrong value.













• img




/static/d114fd8b2e1b99fefcf533af064e2614/fe5cd/pane.png


1
ok
alt: Sign up today never miss an update from Sonar













srcset
/static/d114fd8b2e1b99fefcf533af064e2614/58610/pane.png 18w,/static/d114fd8b2e1b99fefcf533af064e2614/bba79/pane.png 37w,/static/d114fd8b2e1b99fefcf533af064e2614/fe5cd/pane.png 73w


1
ok







/static/d114fd8b2e1b99fefcf533af064e2614/58610/pane.png 18w,/static/d114fd8b2e1b99fefcf533af064e2614/bba79/pane.png 37w,/static/d114fd8b2e1b99fefcf533af064e2614/fe5cd/pane.png 73w


1
Only one definition after the url allowed. If you have more then one definition, you **must use** ", " as delimiter, a comma followed by a space. If the space is missing, that's a descriptor with a wrong value.













picture

• source




image/webp


1
ok















• img







1
ok
alt: Code Quality and Code Security in your IDE with SonarLint














picture


• source

type: image/webp



1
ok














srcset
/static/99307ef95cb23491f292afe1515434b3/d2898/sonarlint-black.webp 35w,/static/99307ef95cb23491f292afe1515434b3/3825c/sonarlint-black.webp 69w,/static/99307ef95cb23491f292afe1515434b3/09e88/sonarlint-black.webp 138w,/static/99307ef95cb23491f292afe1515434b3/593bf/sonarlint-black.webp 276w


1
ok







/static/99307ef95cb23491f292afe1515434b3/d2898/sonarlint-black.webp 35w,/static/99307ef95cb23491f292afe1515434b3/3825c/sonarlint-black.webp 69w,/static/99307ef95cb23491f292afe1515434b3/09e88/sonarlint-black.webp 138w,/static/99307ef95cb23491f292afe1515434b3/593bf/sonarlint-black.webp 276w


1
Only one definition after the url allowed. If you have more then one definition, you **must use** ", " as delimiter, a comma followed by a space. If the space is missing, that's a descriptor with a wrong value.













• img




/static/99307ef95cb23491f292afe1515434b3/14620/sonarlint-black.svg


1
ok
alt: Code Quality and Code Security in your IDE with SonarLint













srcset
/static/99307ef95cb23491f292afe1515434b3/a86f1/sonarlint-black.svg 35w,/static/99307ef95cb23491f292afe1515434b3/c105b/sonarlint-black.svg 69w,/static/99307ef95cb23491f292afe1515434b3/14620/sonarlint-black.svg 138w,/static/99307ef95cb23491f292afe1515434b3/bd734/sonarlint-black.svg 276w


1
ok







/static/99307ef95cb23491f292afe1515434b3/a86f1/sonarlint-black.svg 35w,/static/99307ef95cb23491f292afe1515434b3/c105b/sonarlint-black.svg 69w,/static/99307ef95cb23491f292afe1515434b3/14620/sonarlint-black.svg 138w,/static/99307ef95cb23491f292afe1515434b3/bd734/sonarlint-black.svg 276w


1
Only one definition after the url allowed. If you have more then one definition, you **must use** ", " as delimiter, a comma followed by a space. If the space is missing, that's a descriptor with a wrong value.













picture

• source




image/webp


1
ok















• img







1
ok
alt: Code Quality and Code Security in the cloud with SonarCloud














picture


• source

type: image/webp



1
ok














srcset
/static/db3aaf01a95ba93bd89d3f37daf046c4/149b0/sonarcloud-black.webp 539w,/static/db3aaf01a95ba93bd89d3f37daf046c4/9fefd/sonarcloud-black.webp 1079w,/static/db3aaf01a95ba93bd89d3f37daf046c4/5008c/sonarcloud-black.webp 2157w


1
ok







/static/db3aaf01a95ba93bd89d3f37daf046c4/149b0/sonarcloud-black.webp 539w,/static/db3aaf01a95ba93bd89d3f37daf046c4/9fefd/sonarcloud-black.webp 1079w,/static/db3aaf01a95ba93bd89d3f37daf046c4/5008c/sonarcloud-black.webp 2157w


1
Only one definition after the url allowed. If you have more then one definition, you **must use** ", " as delimiter, a comma followed by a space. If the space is missing, that's a descriptor with a wrong value.













• img




/static/db3aaf01a95ba93bd89d3f37daf046c4/ae999/sonarcloud-black.svg


1
ok
alt: Code Quality and Code Security in the cloud with SonarCloud













srcset
/static/db3aaf01a95ba93bd89d3f37daf046c4/2c30f/sonarcloud-black.svg 539w,/static/db3aaf01a95ba93bd89d3f37daf046c4/49d45/sonarcloud-black.svg 1079w,/static/db3aaf01a95ba93bd89d3f37daf046c4/ae999/sonarcloud-black.svg 2157w


1
ok







/static/db3aaf01a95ba93bd89d3f37daf046c4/2c30f/sonarcloud-black.svg 539w,/static/db3aaf01a95ba93bd89d3f37daf046c4/49d45/sonarcloud-black.svg 1079w,/static/db3aaf01a95ba93bd89d3f37daf046c4/ae999/sonarcloud-black.svg 2157w


1
Only one definition after the url allowed. If you have more then one definition, you **must use** ", " as delimiter, a comma followed by a space. If the space is missing, that's a descriptor with a wrong value.













picture

• source




image/webp


1
ok















• img







1
ok
alt: Code Quality and Code Security on-premise with SonarQube














picture


• source

type: image/webp



1
ok














srcset
/static/312c4d0a3777ce8004a22ea7b6df9d9d/8fbd0/sonarqube-black.webp 536w,/static/312c4d0a3777ce8004a22ea7b6df9d9d/e69f8/sonarqube-black.webp 1072w,/static/312c4d0a3777ce8004a22ea7b6df9d9d/e03a0/sonarqube-black.webp 2144w


1
ok







/static/312c4d0a3777ce8004a22ea7b6df9d9d/8fbd0/sonarqube-black.webp 536w,/static/312c4d0a3777ce8004a22ea7b6df9d9d/e69f8/sonarqube-black.webp 1072w,/static/312c4d0a3777ce8004a22ea7b6df9d9d/e03a0/sonarqube-black.webp 2144w


1
Only one definition after the url allowed. If you have more then one definition, you **must use** ", " as delimiter, a comma followed by a space. If the space is missing, that's a descriptor with a wrong value.













• img




/static/312c4d0a3777ce8004a22ea7b6df9d9d/cccab/sonarqube-black.svg


1
ok
alt: Code Quality and Code Security on-premise with SonarQube













srcset
/static/312c4d0a3777ce8004a22ea7b6df9d9d/fe74c/sonarqube-black.svg 536w,/static/312c4d0a3777ce8004a22ea7b6df9d9d/bc3d3/sonarqube-black.svg 1072w,/static/312c4d0a3777ce8004a22ea7b6df9d9d/cccab/sonarqube-black.svg 2144w


1
ok







/static/312c4d0a3777ce8004a22ea7b6df9d9d/fe74c/sonarqube-black.svg 536w,/static/312c4d0a3777ce8004a22ea7b6df9d9d/bc3d3/sonarqube-black.svg 1072w,/static/312c4d0a3777ce8004a22ea7b6df9d9d/cccab/sonarqube-black.svg 2144w


1
Only one definition after the url allowed. If you have more then one definition, you **must use** ", " as delimiter, a comma followed by a space. If the space is missing, that's a descriptor with a wrong value.













picture

• source




image/webp


1
ok















• img







1
ok
alt: SonarSource














picture


• source

type: image/webp



1
ok














srcset
/static/fa3367b11cf1524589e600a1df4790b3/e0054/sonar-dark-bg%402x.webp 128w,/static/fa3367b11cf1524589e600a1df4790b3/15988/sonar-dark-bg%402x.webp 256w,/static/fa3367b11cf1524589e600a1df4790b3/0b654/sonar-dark-bg%402x.webp 512w


1
ok







/static/fa3367b11cf1524589e600a1df4790b3/e0054/sonar-dark-bg%402x.webp 128w,/static/fa3367b11cf1524589e600a1df4790b3/15988/sonar-dark-bg%402x.webp 256w,/static/fa3367b11cf1524589e600a1df4790b3/0b654/sonar-dark-bg%402x.webp 512w


1
Only one definition after the url allowed. If you have more then one definition, you **must use** ", " as delimiter, a comma followed by a space. If the space is missing, that's a descriptor with a wrong value.













• img




/static/fa3367b11cf1524589e600a1df4790b3/1e476/sonar-dark-bg%402x.png


1
ok
alt: SonarSource













srcset
/static/fa3367b11cf1524589e600a1df4790b3/d42ee/sonar-dark-bg%402x.png 128w,/static/fa3367b11cf1524589e600a1df4790b3/a741c/sonar-dark-bg%402x.png 256w,/static/fa3367b11cf1524589e600a1df4790b3/1e476/sonar-dark-bg%402x.png 512w


1
ok







/static/fa3367b11cf1524589e600a1df4790b3/d42ee/sonar-dark-bg%402x.png 128w,/static/fa3367b11cf1524589e600a1df4790b3/a741c/sonar-dark-bg%402x.png 256w,/static/fa3367b11cf1524589e600a1df4790b3/1e476/sonar-dark-bg%402x.png 512w


1
Only one definition after the url allowed. If you have more then one definition, you **must use** ", " as delimiter, a comma followed by a space. If the space is missing, that's a descriptor with a wrong value.













script
src
/58e4efcf1def007bf8fb027bf05a19772b6ee29f-919bea8b5c648eb21851.js


1
ok
async attribute found














script
src
/app-ef6abcc21f9b290a8447.js


1
ok
async attribute found














script
src
/component---src-pages-index-jsx-05ef9955fd9be5ea52e5.js


1
ok
async attribute found














script
src
/e678b8b4676ac9fa48670c696e16c887ac7f55c7-a53c81d741ccb607c881.js


1
ok
async attribute found














script
src
/framework-2487f19e1244ef850a47.js


1
ok
async attribute found














script
src
/polyfill-78ef8539c941a97eb9e6.js


1
ok
Missing defer / async attribute.














script
src
/webpack-runtime-c44558ba98940720a4c8.js


1
ok
async attribute found














script
src
https://cdn.polyfill.io/v2/polyfill.js?features=default,Symbol


1
ok
Missing defer / async attribute.














script
src
https://cdn.polyfill.io/v3/polyfill.min.js


1
ok
Missing defer / async attribute.














style

/static/FiraCode-Bold-7a2126e615fd0bd775a0549609eac1aa.woff


1
ok















style

/static/FiraCode-Bold-d081da93dc09dcf0093fe24202cfc574.woff2


1
ok















style

/static/FiraCode-Light-b25190d886c08e1f5666ee666a275847.woff


1
ok















style

/static/FiraCode-Light-e4e7e7132cde8c791f10a1958ef8423f.woff2


1
ok















style

/static/FiraCode-Medium-0b7d5635706e069e9bc06a268fd6efa9.woff2


1
ok















style

/static/FiraCode-Medium-7e381fc5b5dfff7c9e892c9f81290ece.woff


1
ok















style

/static/FiraCode-Regular-0beda36b7b8c4727e2f0d3df24859fdb.woff2


1
ok















style

/static/FiraCode-Regular-61d0fa431fec2e49d4d2686cbff71795.woff


1
ok














 

12. Html-Parsing via https://validator.w3.org/nu/

Small Code update, wait one minute

 

13. Nameserver - IP-Adresses

Required Root-climbing DNS-Queries to find ip addresses of all Name Servers: ns1.gandi.net, ns-253-a.gandi.net, ns-66-c.gandi.net, ns-67-b.gandi.net

 

QNr.DomainTypeNS used
1
net
NS
e.root-servers.net (2001:500:a8::e)

Answer: a.gtld-servers.net, b.gtld-servers.net, c.gtld-servers.net, d.gtld-servers.net, e.gtld-servers.net, f.gtld-servers.net, g.gtld-servers.net, h.gtld-servers.net, i.gtld-servers.net, j.gtld-servers.net, k.gtld-servers.net, l.gtld-servers.net, m.gtld-servers.net
2
ns1.gandi.net
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: dns0.gandi.net, dns1.gandi.net, dns2.gandi.net, dns3.gandi.net, dns4.gandi.net, dns6.gandi.net

Answer: dns0.gandi.net
2001:4b98:d:1::39, 217.70.177.39

Answer: dns1.gandi.net
2001:4b98:d:1::45, 217.70.177.45

Answer: dns2.gandi.net
2001:4b98:d:589::211, 217.70.183.211

Answer: dns3.gandi.net
2001:4b98:c:13::14, 217.70.184.14

Answer: dns4.gandi.net
2001:4b98:dc2:90:217:70:186:184, 217.70.186.184

Answer: dns6.gandi.net
162.159.24.111, 162.159.25.213, 2400:cb00:2049:1::a29f:186f, 2400:cb00:2049:1::a29f:19d5
3
ns-253-a.gandi.net
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: dns0.gandi.net, dns1.gandi.net, dns2.gandi.net, dns3.gandi.net, dns4.gandi.net, dns6.gandi.net

Answer: dns0.gandi.net
2001:4b98:d:1::39, 217.70.177.39

Answer: dns1.gandi.net
2001:4b98:d:1::45, 217.70.177.45

Answer: dns2.gandi.net
2001:4b98:d:589::211, 217.70.183.211

Answer: dns3.gandi.net
2001:4b98:c:13::14, 217.70.184.14

Answer: dns4.gandi.net
2001:4b98:dc2:90:217:70:186:184, 217.70.186.184

Answer: dns6.gandi.net
162.159.24.111, 162.159.25.213, 2400:cb00:2049:1::a29f:186f, 2400:cb00:2049:1::a29f:19d5
4
ns-66-c.gandi.net
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: dns0.gandi.net, dns1.gandi.net, dns2.gandi.net, dns3.gandi.net, dns4.gandi.net, dns6.gandi.net

Answer: dns0.gandi.net
2001:4b98:d:1::39, 217.70.177.39

Answer: dns1.gandi.net
2001:4b98:d:1::45, 217.70.177.45

Answer: dns2.gandi.net
2001:4b98:d:589::211, 217.70.183.211

Answer: dns3.gandi.net
2001:4b98:c:13::14, 217.70.184.14

Answer: dns4.gandi.net
2001:4b98:dc2:90:217:70:186:184, 217.70.186.184

Answer: dns6.gandi.net
162.159.24.111, 162.159.25.213, 2400:cb00:2049:1::a29f:186f, 2400:cb00:2049:1::a29f:19d5
5
ns-67-b.gandi.net
NS
a.gtld-servers.net (2001:503:a83e::2:30)

Answer: dns0.gandi.net, dns1.gandi.net, dns2.gandi.net, dns3.gandi.net, dns4.gandi.net, dns6.gandi.net

Answer: dns0.gandi.net
2001:4b98:d:1::39, 217.70.177.39

Answer: dns1.gandi.net
2001:4b98:d:1::45, 217.70.177.45

Answer: dns2.gandi.net
2001:4b98:d:589::211, 217.70.183.211

Answer: dns3.gandi.net
2001:4b98:c:13::14, 217.70.184.14

Answer: dns4.gandi.net
2001:4b98:dc2:90:217:70:186:184, 217.70.186.184

Answer: dns6.gandi.net
162.159.24.111, 162.159.25.213, 2400:cb00:2049:1::a29f:186f, 2400:cb00:2049:1::a29f:19d5
6
ns1.gandi.net: 173.246.100.2
A
dns0.gandi.net (2001:4b98:d:1::39)
7
ns1.gandi.net: 2001:4b98:aaaa::2
AAAA
dns0.gandi.net (2001:4b98:d:1::39)
8
ns-253-a.gandi.net: 173.246.100.254
A
dns0.gandi.net (2001:4b98:d:1::39)
9
ns-253-a.gandi.net: 2001:4b98:aaaa::fe
AAAA
dns0.gandi.net (2001:4b98:d:1::39)
10
ns-66-c.gandi.net: 217.70.187.67
A
dns0.gandi.net (2001:4b98:d:1::39)
11
ns-66-c.gandi.net: 2604:3400:aaac::43
AAAA
dns0.gandi.net (2001:4b98:d:1::39)
12
ns-67-b.gandi.net: 213.167.230.68
A
dns0.gandi.net (2001:4b98:d:1::39)
13
ns-67-b.gandi.net: 2001:4b98:aaab::44
AAAA
dns0.gandi.net (2001:4b98:d:1::39)

 

14. CAA - Entries

DomainnameflagNameValue∑ Queries∑ Timeout
www.sonarqube.org
0

no CAA entry found
1
0
sonarqube.org
5
issue
amazon.com
1
0

9
issuewild
amazon.com
1
0

5
issue
amazonaws.com
1
0

9
issuewild
amazonaws.com
1
0

5
issue
amazontrust.com
1
0

9
issuewild
amazontrust.com
1
0

5
issue
awstrust.com
1
0

9
issuewild
awstrust.com
1
0

5
issue
letsencrypt.org
1
0

32773
iodef
mailto:infra@sonarsource.com
1
0

5
issue
pki.goog
1
0

5
issue
sectigo.com
1
0

9
issuewild
sectigo.com
1
0
org
0

no CAA entry found
1
0

 

15. TXT - Entries

DomainnameTXT EntryStatus∑ Queries∑ Timeout
sonarqube.org
google-site-verification=d7ieC3yxYQSvP6SjKnLaLxw17YWRVs-EzdtDoHhd8bA
ok
1
0
sonarqube.org
google-site-verification=ITyzUFgEVaf92pJieeKi4P_thEkcSwIhaYB5DUCYRD8
ok
1
0
sonarqube.org
google-site-verification=kXSARqmUfstHdMVXFSe3FrXoeO4bPUCcHI8-YQ_Nlgg
ok
1
0
sonarqube.org
v=spf1 -all
ok
1
0
www.sonarqube.org

ok
1
0
_acme-challenge.sonarqube.org

Name Error - The domain name does not exist
1
0
_acme-challenge.www.sonarqube.org

Name Error - The domain name does not exist
1
0
_acme-challenge.sonarqube.org.sonarqube.org

Name Error - The domain name does not exist
1
0
_acme-challenge.www.sonarqube.org.sonarqube.org

Name Error - The domain name does not exist
1
0
_acme-challenge.www.sonarqube.org.www.sonarqube.org

Name Error - The domain name does not exist
1
0

 

16. DomainService - Entries

TypeDomainPrefValueDNS-errornum AnswersStatusDescription
MX

sonarqube.org
1
ASPMX.L.GOOGLE.COM
07ok

A


142.250.27.26
01ok

AAAA


2a00:1450:4025:401::1a
01ok

CNAME


00ok
MX

sonarqube.org
3
ALT2.ASPMX.L.GOOGLE.COM
07ok

A


142.250.150.26
01ok

AAAA


2a00:1450:4010:c1c::1a
01ok

CNAME


00ok
MX

sonarqube.org
3
ALT1.ASPMX.L.GOOGLE.COM
07ok

A


142.250.147.26
01ok

AAAA


2a00:1450:4025:c01::1a
01ok

CNAME


00ok
MX

sonarqube.org
5
ASPMX3.GOOGLEMAIL.COM
07ok

A


142.250.150.26
01ok

AAAA


2a00:1450:4010:c1c::1b
01ok

CNAME


00ok
MX

sonarqube.org
5
ASPMX5.GOOGLEMAIL.COM
07ok

A


142.251.8.26
01ok

AAAA


2404:6800:4008:c15::1a
01ok

CNAME


00ok
MX

sonarqube.org
5
ASPMX2.GOOGLEMAIL.COM
07ok

A


142.250.147.27
01ok

AAAA


2a00:1450:4025:c01::1a
01ok

CNAME


00ok
MX

sonarqube.org
5
ASPMX4.GOOGLEMAIL.COM
07ok

A


74.125.200.26
01ok

AAAA


2404:6800:4003:c00::1b
01ok

CNAME


00ok

 

 

17. Cipher Suites

Summary
DomainIPPortnum CipherstimeStd.ProtocolForward Secrecy
sonarqube.org
18.193.78.1
443
5 Ciphers34.35 sec
0 without, 5 FS
100.00 %
www.sonarqube.org
18.193.78.1
443
5 Ciphers34.63 sec
0 without, 5 FS
100.00 %
Complete

2
10 Ciphers
5.00 Ciphers/Check
68.98 sec34.49 sec/Check
0 without, 10 FS
100.00 %

Details
DomainIPPortCipher (OpenSsl / IANA)
sonarqube.org
18.193.78.1
443
ECDHE-RSA-CHACHA20-POLY1305
(Secure)
TLSv1.2
0xCC,0xA8
FS
5 Ciphers, 34.35 sec
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
RSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS

TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384

ECDH
RSA
AESGCM(256)
AEAD




DHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0x00,0x9F
FS

TLS_DHE_RSA_WITH_AES_256_GCM_SHA384

DH
RSA
AESGCM(256)
AEAD




ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256

ECDH
RSA
AESGCM(128)
AEAD




DHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0x00,0x9E
FS

TLS_DHE_RSA_WITH_AES_128_GCM_SHA256

DH
RSA
AESGCM(128)
AEAD

www.sonarqube.org
18.193.78.1
443
ECDHE-RSA-CHACHA20-POLY1305
(Secure)
TLSv1.2
0xCC,0xA8
FS
5 Ciphers, 34.63 sec
TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256

ECDH
RSA
CHACHA20/POLY1305(256)
AEAD




ECDHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0xC0,0x30
FS

TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384

ECDH
RSA
AESGCM(256)
AEAD




DHE-RSA-AES256-GCM-SHA384
(Secure)
TLSv1.2
0x00,0x9F
FS

TLS_DHE_RSA_WITH_AES_256_GCM_SHA384

DH
RSA
AESGCM(256)
AEAD




ECDHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0xC0,0x2F
FS

TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256

ECDH
RSA
AESGCM(128)
AEAD




DHE-RSA-AES128-GCM-SHA256
(Secure)
TLSv1.2
0x00,0x9E
FS

TLS_DHE_RSA_WITH_AES_128_GCM_SHA256

DH
RSA
AESGCM(128)
AEAD

 

18. Portchecks

DomainIPPortDescriptionResultAnswer
sonarqube.org
18.193.78.1
21
FTP



sonarqube.org
18.193.78.1
21
FTP



sonarqube.org
18.193.78.1
22
SSH
open
SSH-2.0-OpenSSH_8.0

sonarqube.org
18.193.78.1
22
SSH
open
SSH-2.0-OpenSSH_8.0
Bad: SSH without DNS SSHFP Record found

Possible DNS SSHFP Entries:
sonarqube.org IN SSHFP 1 2 bed8632986dda09d0b154a2a47a0591ac9e37d5ee9eec172abcf4efe05c030b8
sonarqube.org IN SSHFP 3 2 908f610354d027a636a9d44b0eaf6624afd110c4978d884c35a254bd3ea8bc9c
sonarqube.org IN SSHFP 4 2 17fa78ad9436a4cc537fa711cd48b27b7dd123e0ba4a85f9dfa4575aa1b92e06
sonarqube.org
18.193.78.1
25
SMTP



sonarqube.org
18.193.78.1
25
SMTP



sonarqube.org
18.193.78.1
53
DNS



sonarqube.org
18.193.78.1
53
DNS



sonarqube.org
18.193.78.1
110
POP3



sonarqube.org
18.193.78.1
110
POP3



sonarqube.org
18.193.78.1
143
IMAP



sonarqube.org
18.193.78.1
143
IMAP



sonarqube.org
18.193.78.1
465
SMTP (encrypted)



sonarqube.org
18.193.78.1
465
SMTP (encrypted)



sonarqube.org
18.193.78.1
587
SMTP (encrypted, submission)



sonarqube.org
18.193.78.1
587
SMTP (encrypted, submission)



sonarqube.org
18.193.78.1
993
IMAP (encrypted)



sonarqube.org
18.193.78.1
993
IMAP (encrypted)



sonarqube.org
18.193.78.1
995
POP3 (encrypted)



sonarqube.org
18.193.78.1
995
POP3 (encrypted)



sonarqube.org
18.193.78.1
1433
MS SQL



sonarqube.org
18.193.78.1
1433
MS SQL



sonarqube.org
18.193.78.1
2082
cPanel (http)



sonarqube.org
18.193.78.1
2082
cPanel (http)



sonarqube.org
18.193.78.1
2083
cPanel (https)



sonarqube.org
18.193.78.1
2083
cPanel (https)



sonarqube.org
18.193.78.1
2086
WHM (http)



sonarqube.org
18.193.78.1
2086
WHM (http)



sonarqube.org
18.193.78.1
2087
WHM (https)



sonarqube.org
18.193.78.1
2087
WHM (https)



sonarqube.org
18.193.78.1
2089
cPanel Licensing



sonarqube.org
18.193.78.1
2089
cPanel Licensing



sonarqube.org
18.193.78.1
2095
cPanel Webmail (http)



sonarqube.org
18.193.78.1
2095
cPanel Webmail (http)



sonarqube.org
18.193.78.1
2096
cPanel Webmail (https)



sonarqube.org
18.193.78.1
2096
cPanel Webmail (https)



sonarqube.org
18.193.78.1
2222
DirectAdmin (http)



sonarqube.org
18.193.78.1
2222
DirectAdmin (http)



sonarqube.org
18.193.78.1
2222
DirectAdmin (https)



sonarqube.org
18.193.78.1
2222
DirectAdmin (https)



sonarqube.org
18.193.78.1
3306
mySql



sonarqube.org
18.193.78.1
3306
mySql



sonarqube.org
18.193.78.1
5224
Plesk Licensing



sonarqube.org
18.193.78.1
5224
Plesk Licensing



sonarqube.org
18.193.78.1
5432
PostgreSQL



sonarqube.org
18.193.78.1
5432
PostgreSQL



sonarqube.org
18.193.78.1
8080
Ookla Speedtest (http)



sonarqube.org
18.193.78.1
8080
Ookla Speedtest (http)



sonarqube.org
18.193.78.1
8080
Ookla Speedtest (https)



sonarqube.org
18.193.78.1
8080
Ookla Speedtest (https)



sonarqube.org
18.193.78.1
8083
VestaCP http



sonarqube.org
18.193.78.1
8083
VestaCP http



sonarqube.org
18.193.78.1
8083
VestaCP https



sonarqube.org
18.193.78.1
8083
VestaCP https



sonarqube.org
18.193.78.1
8443
Plesk Administration (https)



sonarqube.org
18.193.78.1
8443
Plesk Administration (https)



sonarqube.org
18.193.78.1
8447
Plesk Installer + Updates



sonarqube.org
18.193.78.1
8447
Plesk Installer + Updates



sonarqube.org
18.193.78.1
8880
Plesk Administration (http)



sonarqube.org
18.193.78.1
8880
Plesk Administration (http)



sonarqube.org
18.193.78.1
10000
Webmin (http)



sonarqube.org
18.193.78.1
10000
Webmin (http)



sonarqube.org
18.193.78.1
10000
Webmin (https)



sonarqube.org
18.193.78.1
10000
Webmin (https)



www.sonarqube.org
18.193.78.1
21
FTP



www.sonarqube.org
18.193.78.1
21
FTP



www.sonarqube.org
18.193.78.1
22
SSH
open
SSH-2.0-OpenSSH_8.0

www.sonarqube.org
18.193.78.1
22
SSH
open
SSH-2.0-OpenSSH_8.0
Bad: SSH without DNS SSHFP Record found

Possible DNS SSHFP Entries:
www.sonarqube.org IN SSHFP 1 2 bed8632986dda09d0b154a2a47a0591ac9e37d5ee9eec172abcf4efe05c030b8
www.sonarqube.org IN SSHFP 3 2 908f610354d027a636a9d44b0eaf6624afd110c4978d884c35a254bd3ea8bc9c
www.sonarqube.org IN SSHFP 4 2 17fa78ad9436a4cc537fa711cd48b27b7dd123e0ba4a85f9dfa4575aa1b92e06
www.sonarqube.org
18.193.78.1
25
SMTP



www.sonarqube.org
18.193.78.1
25
SMTP



www.sonarqube.org
18.193.78.1
53
DNS



www.sonarqube.org
18.193.78.1
53
DNS



www.sonarqube.org
18.193.78.1
110
POP3



www.sonarqube.org
18.193.78.1
110
POP3



www.sonarqube.org
18.193.78.1
143
IMAP



www.sonarqube.org
18.193.78.1
143
IMAP



www.sonarqube.org
18.193.78.1
465
SMTP (encrypted)



www.sonarqube.org
18.193.78.1
465
SMTP (encrypted)



www.sonarqube.org
18.193.78.1
587
SMTP (encrypted, submission)



www.sonarqube.org
18.193.78.1
587
SMTP (encrypted, submission)



www.sonarqube.org
18.193.78.1
993
IMAP (encrypted)



www.sonarqube.org
18.193.78.1
993
IMAP (encrypted)



www.sonarqube.org
18.193.78.1
995
POP3 (encrypted)



www.sonarqube.org
18.193.78.1
995
POP3 (encrypted)



www.sonarqube.org
18.193.78.1
1433
MS SQL



www.sonarqube.org
18.193.78.1
1433
MS SQL



www.sonarqube.org
18.193.78.1
2082
cPanel (http)



www.sonarqube.org
18.193.78.1
2082
cPanel (http)



www.sonarqube.org
18.193.78.1
2083
cPanel (https)



www.sonarqube.org
18.193.78.1
2083
cPanel (https)



www.sonarqube.org
18.193.78.1
2086
WHM (http)



www.sonarqube.org
18.193.78.1
2086
WHM (http)



www.sonarqube.org
18.193.78.1
2087
WHM (https)



www.sonarqube.org
18.193.78.1
2087
WHM (https)



www.sonarqube.org
18.193.78.1
2089
cPanel Licensing



www.sonarqube.org
18.193.78.1
2089
cPanel Licensing



www.sonarqube.org
18.193.78.1
2095
cPanel Webmail (http)



www.sonarqube.org
18.193.78.1
2095
cPanel Webmail (http)



www.sonarqube.org
18.193.78.1
2096
cPanel Webmail (https)



www.sonarqube.org
18.193.78.1
2096
cPanel Webmail (https)



www.sonarqube.org
18.193.78.1
2222
DirectAdmin (http)



www.sonarqube.org
18.193.78.1
2222
DirectAdmin (http)



www.sonarqube.org
18.193.78.1
2222
DirectAdmin (https)



www.sonarqube.org
18.193.78.1
2222
DirectAdmin (https)



www.sonarqube.org
18.193.78.1
3306
mySql



www.sonarqube.org
18.193.78.1
3306
mySql



www.sonarqube.org
18.193.78.1
5224
Plesk Licensing



www.sonarqube.org
18.193.78.1
5224
Plesk Licensing



www.sonarqube.org
18.193.78.1
5432
PostgreSQL



www.sonarqube.org
18.193.78.1
5432
PostgreSQL



www.sonarqube.org
18.193.78.1
8080
Ookla Speedtest (http)



www.sonarqube.org
18.193.78.1
8080
Ookla Speedtest (http)



www.sonarqube.org
18.193.78.1
8080
Ookla Speedtest (https)



www.sonarqube.org
18.193.78.1
8080
Ookla Speedtest (https)



www.sonarqube.org
18.193.78.1
8083
VestaCP http



www.sonarqube.org
18.193.78.1
8083
VestaCP http



www.sonarqube.org
18.193.78.1
8083
VestaCP https



www.sonarqube.org
18.193.78.1
8083
VestaCP https



www.sonarqube.org
18.193.78.1
8443
Plesk Administration (https)



www.sonarqube.org
18.193.78.1
8443
Plesk Administration (https)



www.sonarqube.org
18.193.78.1
8447
Plesk Installer + Updates



www.sonarqube.org
18.193.78.1
8447
Plesk Installer + Updates



www.sonarqube.org
18.193.78.1
8880
Plesk Administration (http)



www.sonarqube.org
18.193.78.1
8880
Plesk Administration (http)



www.sonarqube.org
18.193.78.1
10000
Webmin (http)



www.sonarqube.org
18.193.78.1
10000
Webmin (http)



www.sonarqube.org
18.193.78.1
10000
Webmin (https)



www.sonarqube.org
18.193.78.1
10000
Webmin (https)



 

 

Permalink: https://check-your-website.server-daten.de/?i=8bc2bc93-a14a-48bb-9dd1-c49489ae1456

 

Last Result: https://check-your-website.server-daten.de/?q=sonarqube.org - 2022-12-07 15:23:49

 

Do you like this page? Support this tool, add a link on your page:

 

<a href="https://check-your-website.server-daten.de/?q=sonarqube.org" target="_blank">Check this Site: sonarqube.org</a>

 

 

Do you really want to support this project? Donate: Check-your-website, IBAN DE98 1001 0010 0575 2211 07, SWIFT/BIC PBNKDEFF, Euro

 

QR-Code of this page - https://check-your-website.server-daten.de/?d=sonarqube.org