Probieren
Einloggen

What’s new

Discover the latest features released in SonarQube Cloud

  • Kontakt zum Vertrieb
  • Kostenlose 14-Tage-Testversion
  • Preise ansehen
feature blue

November 03, 2025

Now available in beta: 41 new rules for Apex

Salesforce developers: we’ve just added new rules for Apex, increasing the total to 97. 

Of these new rules, 39 are active by default in the Sonar way quality profile, helping you write more maintainable and reliable code. 

Run a fresh analysis on your Apex projects to see them in action.


These new rules are currently in beta and available with the Enterprise plan. As we continue to assess their quality, your feedback is essential:

  • For false positives: Please mark the issue using the dialog box and check the box to share your reasoning and the code with us.
  • For general feedback: Please comment on our community forum thread.


You can see all 97 Apex rules in our rules database.


feature blue

October 30, 2025

Now available in beta: IP allow lists

You can now restrict access to your SonarQube Cloud enterprise based on the source IP address, helping you improve security and meet compliance requirements. This feature is now available in beta to all customers on the Enterprise plan.

With IP allow lists, you can:

  • Secure Access: Restrict SAML SSO authentication and personal access tokens to approved IP addresses only.
  • Prevent unauthorised entry: Block unwanted or unauthorized access attempts from unknown network sources.
  • Maintain control: Fully manage and define your list of permitted IP addresses or ranges.


Enterprise administrators can configure this by navigating to Administration > IP Allow List


For detailed examples, instructions and beta limitations, refer to our documentation, as well as this Community post.

feature blue

October 26, 2025

Now available in beta: 33 new rules for Ruby

We’ve just added 33 new rules for Ruby and Ruby on Rails, increasing the total to 75. These new rules are designed to help you write more maintainable and reliable code. Run a fresh analysis on your Ruby projects to see them in action.

These new rules are currently in "beta" as we continue to assess their quality. Your feedback is important to us as we finalize them:

  • For false positives: Please mark the issue in SonarQube Cloud. In the dialog box, check the box to share your reasoning and the code with us so we can improve the rules.
  • For general feedback: Please share your thoughts on our community forum thread.


You can see all 75 Ruby rules in our rules database.

feature blue

October 01, 2025

Dynamic portfolio creation now available with Enterprise plan

Announcing a powerful new way to manage your codebase at scale: dynamic, parameter-based portfolios are now available in SonarQube Cloud Enterprise. This feature significantly simplifies getting an aggregated view of the projects you care about.


  • Define portfolios using three new methods: Using project tags, organizations, or with regular expressions (RegEx) that match project keys.
  • Automatic updates: Portfolios automatically add or remove projects as their tags or keys change, ensuring your view is always current without manual intervention.
  • Gain an enterprise-wide perspective. Create a single portfolio that spans multiple organizations to gain a comprehensive, top-level view of specific initiatives across your entire business.


To get started, ensure you have permissions to manage Portfolios. Navigate to your Portfolios page (e.g., via “My Portfolios” from the main header) and click “Create Portfolio”. You will then see the new options to define your portfolio dynamically.

Discover more here

feature blue

September 25, 2025

New: Scoped Organization Tokens available for Team and Enterprise plans

Ensure your CI/CD pipelines run without interruption using Scoped Organization Tokens (SOTs), a secure and scalable way to manage authentication for automated processes. Available for our Team and Enterprise plans, SOTs are not tied to individual user accounts, preventing broken builds when a team member leaves the organization.


With SOTs, you can:

  • Ensure CI/CD continuity. Create tokens at the organization level, decoupled from individual users, to keep your automation running smoothly even when team members change.
  • Enhance security with granular permissions. Apply the principle of least privilege by creating tokens with specific, limited scope - starting with analysis permission - to reduce your security risk.
  • Simplify token management. Centrally create, view, and revoke all organization tokens from a single location, giving administrators full visibility and control.


Discover more in this blog post. For further details check out our documentation and this Community post.

quality assurance-pink-size-large

September 18, 2025

Announcing SonarQube Advanced Security

Advanced Security is now generally available as a subscription for the Enterprise plan. Secure your software supply chain by identifying vulnerabilities in both your own code and its third-party open source dependencies, all within your existing workflow.


Advanced Security builds on SonarQube Cloud’s existing security features to provide even more comprehensive protection:

  • Discover vulnerabilities in your dependencies. Automatically detect known vulnerabilities (CVEs) and license compliance issues in your third-party open source libraries with Software Composition Analysis (SCA).
  • Uncover complex security hotspots. Find deeper vulnerabilities that arise from the interaction between your code and open source library code with advanced SAST.
  • Streamline your security workflow. Analyze your entire codebase—first-party, third-party, and AI-generated—in one place, reducing tool sprawl and keeping developers in their flow.


Learn more in this blog post, and Community post.

Erhalten Sie aktuelle Informationen zu SonarQube Cloud direkt in Ihrem Posteingang

Wenn Sie sich registrieren, erhalten Sie Produkt- und Marketinginformationen über bevorstehende SonarCloud-Updates, neue Versionen, Neuigkeiten und Veranstaltungen.

Select your preferred languages
I do not wish to receive promotional emails about upcoming SonarQube updates, new releases, news and events.

Mit dem Absenden dieses Formulars stimmen Sie der Speicherung und Verarbeitung Ihrer personenbezogenen Daten zu, wie in der Datenschutzrichtlinie und in der Cookie-Richtlinie beschrieben. Sie können Ihre Zustimmung jederzeit widerrufen, indem Sie sich abmelden.

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

  • Follow SonarSource on Twitter
  • Follow SonarSource on Linkedin
language switcher
Deutsch (German)
  • Rechtliche Dokumentation
  • Vertrauenszentrum

© 2008-2024 SonarSource SA. All rights reserved. SONAR, SONARSOURCE, SONARQUBE, and CLEAN AS YOU CODE are trademarks of SonarSource SA.