Quentin Jaquier is a software developer with seven years of experience specializing in static analysis and security engineering, based in Lausanne, Switzerland. At SonarSource he has enhanced flagship analyzers for Java and JavaScript/TypeScript, contributing security fixes for XML and cryptography issues and adding robust static analysis rules adapted from ESLint. His background includes a master’s thesis on a universal intermediate representation for static analysis, giving him deep insight into program representation and cross-language tooling. Quentin combines backend development, QA sensibilities, and a pragmatic focus on maintainability—often addressing subtle false positives and cross-OS differences that improve real-world accuracy of analysis tools.
7 years of coding experience
Master of Science - MS, Computer Science, Master of Science - MS, Computer Science at Ecole polytechnique fédérale de Lausanne
:coffee: SonarSource Static Analyzer for Java Code Quality and Security
Role in this project:
Back-end Developer & Security Engineer
Contributions:9 releases, 509 reviews, 480 commits in 2 years 11 months
Contributions summary:Quentin primarily focused on improving the security and maintainability of the sonar-java project, which is a static analyzer for Java code quality and security. Their contributions include fixing security vulnerabilities related to XML vulnerabilities and other weak cryptographic implementations. The user implemented security-related features, such as ensuring the use of strong cipher algorithms and proper handling of parameters to enhance overall security. They also worked on general code improvements, addressing false positives and refactoring code to improve the project's overall quality and effectiveness.
SonarSource Static Analyzer for JavaScript and TypeScript
Role in this project:
Back-end Developer & QA Engineer
Contributions:22 reviews, 89 commits, 174 PRs in 5 months
Contributions summary:Quentin primarily contributed to enhancing code quality and adding new rules for static analysis in the SonarJS repository. They focused on implementing new rules based on existing ESLint plugins, such as for detecting duplicate strings, unused function arguments, and inconsistent function calls. Additionally, the user worked on fixing issues with the static analysis, including cleaning the ruling process and adjusting for differences between operating systems.
Find and Hire Top DevelopersWe’ve analyzed the programming source code of over 60 million software developers on GitHub and scored them by 50,000 skills. Sign-up on Prog,AI to search for software developers.