Sonar's latest blog posts
State of Code Developer Survey report: The current reality of AI coding
Sonar analyzes over 750 billion lines of code every day. This gives us a unique, high-level view of the state of code quality and security across the globe.


The future is AC/DC: the Agent Centric Development Cycle
The era of Continuous Integration, with its familiar processes and workflows, is rapidly coming to an end. Traditional CI relies on developers making small, frequent, iterative commits. Today, the “continuous” part is changing.
Read article >

How to optimize SonarQube for reviewing AI-generated code
Without guardrails, AI-generated code introduces technical debt, security vulnerabilities, and reliability issues that are hard to track.
Read article >
Get new blog posts delivered directly to your inbox!
Stay up-to-date with the latest Sonar content. Subscribe now to receive the latest blog articles.

The architecture gap: Why your code becomes hard to change
Stop the "silent killer" of engineering velocity. Learn what architectural drift is, why those quick code shortcuts lead to massive technical debt, and how to bridge the gap between your whiteboard designs and your actual codebase.
Read article >

Code generation tradeoffs: A comparison of Claude Opus 4.5 and 4.6
We recently ran a small experiment to see how Claude Opus 4.5 and the newer Opus 4.6 handled a specific backend task. The goal wasn't to see which one was necessarily better, but to understand the differences in their coding styles.
Read article >

Thoughts on Claude Code Security
This blog post aims to explain what Claude Code Security is (recognizing few details are currently available), and how enterprises and developers should think about its role in their cybersecurity toolchain.
Read article >