SonarQube

by SonarSource freemium Security

Code quality and security scanning for 30+ languages with CI/CD integration.

Free Community / $150+/mo Free tier available

About

SonarQube detects bugs, vulnerabilities, and code smells in 30+ programming languages. Self-hosted or SonarCloud SaaS. Integrates with GitHub, GitLab, Jenkins, and Azure DevOps to enforce quality gates in every pipeline.

Features

30+ language support
SAST and code smell detection
Quality gates enforcement
CI/CD pipeline integration
Security hotspot review
Self-host or SaaS

Specifications

SAST
SCA
Secret Scanning
AI Remediation
Open Source
Starting Price Free Community

Community Feedback

How would you rate SonarQube?

Quick Info

Category Security
Pricing freemium
Vendor SonarSource
Free Community / $150+/mo

Free tier available

Try SonarQube