Automatic analysis for Azure DevOps is here
Blog post from Sonar
Automatic analysis for Azure DevOps is a SonarQube Cloud feature that provides a streamlined and zero-configuration solution for analyzing code directly from repositories, eliminating the need for CI pipeline setup or YAML editing. It automatically identifies bugs, vulnerabilities, and security hotspots in over 20 programming languages, including C/C++, Java, JavaScript/TypeScript, .NET, and Python, by triggering scans on every push or pull request. This feature offers a quick and frictionless path to initial code quality insights, making it ideal for teams with standard build environments or those new to SonarQube Cloud. While it provides rapid results, it is recommended to transition to CI-based analysis for more complex and mature codebases. Previously available only for GitHub repositories, this feature is now accessible for Azure DevOps, allowing teams to connect their organization, select repositories, and receive actionable insights without altering their build configurations.