Audience
Companies searching for a solution to manage and empower their dev teams
About SonarQube
SonarSource builds world-class products for Code Quality and Security. Our open-source and commercial code analyzer - SonarQube - supports 27 programming languages, empowering dev teams of all sizes to solve coding issues within their existing workflows. We embrace progress - whether it's multi-language applications, teams composed of different backgrounds or a workflow that's a mix of modern and legacy, SonarQube has you covered. SonarQube fits with your existing tools and proactively raises a hand when the quality or security of your codebase is at risk. SonarQube can analyze branches of your repo, and notify you directly in your Pull Requests! Our mission is to empower developers first and grow an open community around code quality and code security. Jenkins, Azure DevOps server and many others. Thousands of automated Static Code Analysis rules, protecting your app on multiple fronts, and guiding your team.
Integrations
Company Information
Product Details
SonarQube Product Features
Application Security
Static Code Analysis
SonarQube Additional Categories
SonarQube Reviews
Write a Review-
Probability You Would Recommend?1 2 3 4 5 6 7 8 9 10
"Industry standard code quality tool" Posted 2022-04-01
Pros: Great User Interface / Dashboard.
Different tiers of bugs - helps identify and fix only the critical issues.
Suggestions to fix the issue.
Jenkins integration.
Also available as SaaS offering.
Also shows security defects.Cons: The only con i can think of is expensive license which is not optimal for personal projects (unless open source). There is a free trial though.
Overall: SonarQube is used across the industry as the go-to solution for code review. It has an impressive interface which provides all the information - issue, the code where it occurred and the optimal solution suggestion; at one place.
Read More... -
Probability You Would Recommend?1 2 3 4 5 6 7 8 9 10
"Excellent Product" Posted 2019-04-01
Pros: - Accurate results and no bullshit findings
- Very fast analysis
- Handy configuration features for analysis customization
- Nice interface
- Plenty integration optionsCons: - It has its price but its worth every penny. Similar vendors are more expensive with significantly less value.
Overall: I integrated SonarQube into my SDLC and it reliably detects and blocks security issues
Read More...
- Previous
- You're on page 1
- Next