SonarQube
Code quality and security scanning for 30+ languages with CI/CD integration.
Free Community / $150+/mo Free tier available
About
SonarQube detects bugs, vulnerabilities, and code smells in 30+ programming languages. Self-hosted or SonarCloud SaaS. Integrates with GitHub, GitLab, Jenkins, and Azure DevOps to enforce quality gates in every pipeline.
Features
30+ language support
SAST and code smell detection
Quality gates enforcement
CI/CD pipeline integration
Security hotspot review
Self-host or SaaS
Specifications
| SAST | |
| SCA | |
| Secret Scanning | |
| AI Remediation | |
| Open Source | |
| Starting Price | Free Community |