SonarQube Logo
SonarQube Logo
SonarSource SA

SonarQube

8.0 /10
Category
SonarQube
8.0 /10

What is SonarQube?

SonarQube is the leading tool for continuously inspecting the Code Quality & Security of your codebases and guiding development teams during Code Reviews. Covering 27 programming languages, while pairing-up with your existing software pipeline, SonarQube provides clear remediation guidance for developers to understand and fix issues and ultimately deliver better and safer software. With over 170k deployments helping small development teams as well as global organizations, SonarQube provides the means for all teams and companies around the world to own and impact their Code Quality.

Company Details


Need Assistance?

We're here to help you with understanding our reports and the data inside to help you make decisions.

Get Assistance

SonarQube Ratings

Real user data aggregated to summarize the product performance and customer experience.
Download the entire Product Scorecard to access more information on SonarQube.

91 Likeliness to Recommend

100 Plan to Renew

81 Satisfaction of Cost Relative to Value


{y}
{name}

Emotional Footprint Overview

+93 Net Emotional Footprint

The emotional sentiment held by end users of the software based on their experience with the vendor. Responses are captured on an eight-point scale.

How much do users love SonarQube?

0% Negative
0% Neutral
100% Positive

Pros

  • Performance Enhancing
  • Efficient Service
  • Caring
  • Saves Time

Feature Ratings

Average 82

Software Composition Analysis (SCA)

88

Automated Workflow

87

Mobile Application Security Testing

85

Dynamic Application Security Testing (DAST)

83

Container Security Testing

83

Vulnerability Scanning

83

False Positive Remediation

83

Static Application Security Testing (SAST)

82

Interactive Application Security Testing (IAST)

80

Policy Engine and Enforcements

79

Risk Scoring

79

Vendor Capability Ratings

Average 81

Availability and Quality of Training

100

Breadth of Features

100

Ease of Customization

100

Ease of Implementation

100

Ease of IT Administration

100

Usability and Intuitiveness

100

Vendor Support

100

Ease of Data Integration

92

Quality of Features

92

Product Strategy and Rate of Improvement

84

Business Value Created

78

SonarQube Reviews

Amit C.

  • Role: Industry Specific Role
  • Industry: Healthcare
  • Involvement: End User of Application
Validated Review
Verified Reviewer

Submitted Mar 2024

SonarQube is amazing and Swift!

Likeliness to Recommend

10 /10

What differentiates SonarQube from other similar products?

We can integrate SonarQube seamlessly with build tools, such as Gradle and ant

What is your favorite aspect of this product?

SonarQube reports duplicate code, code coverage, unit testing, code complexity historical.

What do you dislike most about this product?

It lacks advanced code security features.

What recommendations would you give to someone considering this product?

It's a open source and supports various languages such as C# and Java.

Pros

  • Helps Innovate
  • Continually Improving Product
  • Reliable
  • Performance Enhancing

Rajat S.

  • Role: Information Technology
  • Industry: Engineering
  • Involvement: IT Development, Integration, and Administration
Validated Review
Verified Reviewer

Submitted Mar 2024

Open-source with a free community edition

Likeliness to Recommend

9 /10

What differentiates SonarQube from other similar products?

SonarQube promotes a philosophy of "Clean Code," guiding development towards well-structured, maintainable, and secure code. SonarQube goes beyond basic code analysis, offering robust security vulnerability detection capabilities.

What is your favorite aspect of this product?

Catching issues early in development saves time and resources compared to fixing them later in the cycle. By identifying code smells and complexities, SonarQube encourages developers to write code that's easier to understand and modify in the future.

What do you dislike most about this product?

Setting up and configuring SonarQube can be challenging for those unfamiliar with static code analysis tools. SonarQube can generate a large number of warnings, requiring developers to filter and prioritize effectively.

What recommendations would you give to someone considering this product?

Consider the size and complexity of your codebase, as well as your team's experience with static analysis tools. Begin with a pilot project using the free community edition to get comfortable with SonarQube's functionalities.

Pros

  • Helps Innovate
  • Continually Improving Product
  • Reliable
  • Performance Enhancing

DANIEL A.

  • Role: Information Technology
  • Industry: Technology
  • Involvement: IT Development, Integration, and Administration
Validated Review
Verified Reviewer

Submitted Mar 2024

Likeliness to Recommend

10 /10

What differentiates SonarQube from other similar products?

Quality customer service Open source and community

What is your favorite aspect of this product?

Early detection of issues

Pros

  • Helps Innovate
  • Performance Enhancing
  • Enables Productivity
  • Trustworthy