Open
Description
What is to be discussed?
SonarQube is a great static analysis tool that can detect dark-patterns, security flaws and elusive bugs way deeper than a linter can. We should check if we can use it in some of our projects.
Does someone have previous experience with it? I've only used it once.
Additional context
Reference: https://www.sonarsource.com/products/codeanalyzers/sonarjs.html