SonarQube Logo
SonarQube Logo
SonarSource SA

SonarQube

8.0 /10
Category
SonarQube
8.0 /10

What is SonarQube?

SonarQube is the leading tool for continuously inspecting the Code Quality & Security of your codebases and guiding development teams during Code Reviews. Covering 27 programming languages, while pairing-up with your existing software pipeline, SonarQube provides clear remediation guidance for developers to understand and fix issues and ultimately deliver better and safer software. With over 170k deployments helping small development teams as well as global organizations, SonarQube provides the means for all teams and companies around the world to own and impact their Code Quality.

Company Details


Need Assistance?

We're here to help you with understanding our reports and the data inside to help you make decisions.

Get Assistance

SonarQube Ratings

Real user data aggregated to summarize the product performance and customer experience.
Download the entire Product Scorecard to access more information on SonarQube.

91 Likeliness to Recommend

100 Plan to Renew

81 Satisfaction of Cost Relative to Value


{y}
{name}

Emotional Footprint Overview

+93 Net Emotional Footprint

The emotional sentiment held by end users of the software based on their experience with the vendor. Responses are captured on an eight-point scale.

How much do users love SonarQube?

0% Negative
0% Neutral
100% Positive

Pros

  • Performance Enhancing
  • Efficient Service
  • Caring
  • Saves Time

Feature Ratings

Average 82

Software Composition Analysis (SCA)

88

Automated Workflow

87

Mobile Application Security Testing

85

Dynamic Application Security Testing (DAST)

83

Container Security Testing

83

Vulnerability Scanning

83

False Positive Remediation

83

Static Application Security Testing (SAST)

82

Interactive Application Security Testing (IAST)

80

Risk Scoring

79

Policy Engine and Enforcements

79

Vendor Capability Ratings

Average 81

Ease of Data Integration

91

Ease of Implementation

87

Business Value Created

85

Breadth of Features

84

Ease of IT Administration

83

Availability and Quality of Training

80

Ease of Customization

79

Vendor Support

77

Quality of Features

77

Usability and Intuitiveness

75

Product Strategy and Rate of Improvement

74

SonarQube Reviews

Jeemish M.

  • Role: Information Technology
  • Industry: Technology
  • Involvement: IT Leader or Manager
Validated Review
Verified Reviewer

Submitted Jul 2023

Enterprise scale SAST scans at zero cost !!

Likeliness to Recommend

9 /10

What differentiates SonarQube from other similar products?

Ease of implementation and support for most common technology stacks like java, Js, .net, python, groovy, etc for SAST scans

What is your favorite aspect of this product?

Minimalistic UI and multiple technology stack support

What do you dislike most about this product?

Requires a lot of manual setup and configuration for maintenance

What recommendations would you give to someone considering this product?

Must have for implementing automated SAST scans at enterprise scale

Pros

  • Helps Innovate
  • Reliable
  • Performance Enhancing
  • Respectful

Oferi G.

  • Role: Information Technology
  • Industry: Construction
  • Involvement: End User of Application
Validated Review
Verified Reviewer

Submitted Jan 2023

Securing Applications Made Easy

Likeliness to Recommend

9 /10

What differentiates SonarQube from other similar products?

Using SonarQube is easy an it comes with amazing application security testing criterion

What is your favorite aspect of this product?

I like the many security features of SonarQube The software makes testing applications for security threshold easy

What do you dislike most about this product?

No dislikes in the way SonarQube works

What recommendations would you give to someone considering this product?

SonarQube has met our needs and has been our go to software when it comes to testing application security and for this reason I recommend it.

Pros

  • Continually Improving Product
  • Unique Features
  • Efficient Service
  • Inspires Innovation

Chintan G.

  • Role: Information Technology
  • Industry: Entertainment
  • Involvement: IT Leader or Manager
Validated Review
Verified Reviewer

Submitted Nov 2022

Fine product for detecting code vulnerabilities

Likeliness to Recommend

8 /10

What differentiates SonarQube from other similar products?

SonarQube has large library of various programming language code vulnerabilities and defects.

What is your favorite aspect of this product?

SonarQube provides multi-language static analysis. Their publicly available ruleset includes thousands of rules covering various issue categories and language standards.

What do you dislike most about this product?

Nothing specifically as of now.

What recommendations would you give to someone considering this product?

Try to integrate this at every stage of project development within your CI/CD pipeline. This way you will utilize the real value of the product as it can then detect majority of the vulnerabilities.

Pros

  • Helps Innovate
  • Inspires Innovation
  • Generous Negotitation
  • Performance Enhancing

Cons

  • Commodity Features
  • Vendor Friendly Policies
  • Less Fair