Hello,
I’m trying to find out if it’s possible to configure DevSecOps tools like Sonarqube, OWASP ZAP etc on Power apps. I saw a thread asking about the feasibility of SAST and DAST testing on Power apps but the response wasn’t very detailed.
Kindly assist. Thank you
That is correct; you can integrate it as part of ADO tools.
====================================================
If I have answered your question, please mark your post as Solved.
If you like my response, please give it a Thumbs Up.
https://www.linkedin.com/in/devendravelegandla/
Thank you Velegandla for your response. If I get you correctly, so if I want to integrate external security testing tools to test my Power Apps applications I can do so with Azure DevOps?
I understand that there are security controls in place by Microsoft but I’d like to do my own security testing as well.
Power Platform tools work with ADO integration.
https://learn.microsoft.com/en-us/power-platform/alm/devops-build-tool-tasks
You could integrate the Sonarqube, OWASP ZAP with Azure devops.
Power apps (Power Platform development) is different to the traditional web development. Within Microsoft there are other security controls already in place.
Unless you are using Power Pages for external users you mightn't need DevSecOps tools integration.
====================================================
If I have answered your question, please mark your post as Solved.
If you like my response, please give it a Thumbs Up.
https://www.linkedin.com/in/devendravelegandla/
Michael E. Gernaey
11
Super User 2025 Season 1
stampcoin
9
bscarlavai33
5
Super User 2025 Season 1