What’s new
Discover the latest features released in SonarQube Cloud
January 28, 2026
A new name for the SonarQube Cloud open source plan
We’ve renamed the legacy Free plan in SonarQube Cloud to SonarQube for OSS. This change is now effective for all existing users currently on this plan.
This update better reflects our commitment to supporting open source projects. Users will see this new plan name reflected immediately in the Billing and upgrade tab within their organization settings.
Note: This is a naming update only. Users will see no change to their existing features, project access, or analysis capabilities.
See here for details on all our plan offerings, plus the supporting Community announcement.
January 27, 2026
Dedicated security contact for organizations
SonarQube Cloud has introduced a dedicated security contact email field to streamline communication during critical events.
This feature ensures that critical incident alerts or service-level vulnerability disclosures are routed directly to security operations teams, decoupling security oversight from the organization's initial administrative creator.
- Targeted communication: This field is specifically reserved for urgent, SonarQube Cloud service-level security notifications and critical incident response.
- Operational continuity: Users are encouraged to provide a distribution list (e.g., security-ops@yourcompany.com) to ensure the organization remains reachable despite individual team transitions.
- Internal auditing: To support transparency, we display the identity of the person who last updated the contact information, and the timestamp of the change. Only Organization Admins can access this page.
- Data privacy: This contact address is stored strictly for administrative security purposes and is excluded from marketing, sales, or routine newsletter distributions.
To update your contact information, navigate to your Organization page and follow Administration > Organization Settings > Security contact
January 26, 2026
Beta: A modernized workspace for SonarQube Cloud
We are introducing a redesigned interface built to align with your development flow. This update brings the SonarQube Cloud experience closer to modern IDEs, as we move from a product-specific navigation to a unified platform with a seamless, consistent experience.
- Maximized Screen Real Estate: A new vertical, collapsible sidebar lets you reclaim 100% of your screen width, giving you more space for deep code analysis.
- Seamless Context Switching: Branch and Pull Request switching is now embedded directly within the analysis view. You no longer need to jump back to the project root to change contexts.
- Faster Navigation: Instantly toggle between Organizations and Projects with a streamlined quick-switcher.
We are rolling this out progressively. Selected users will see an option to opt in directly within the product.
To learn more about these changes visit our Community post here.
January 06, 2026
General Availability (GA): IP allowlists
We are pleased to announce that the IP allowlist feature has graduated from beta and is now officially in GA. This transition signifies that the feature is fully hardened, supported, and ready for critical production workflows for all customers on the Enterprise plan.
By restricting access to your SonarQube Cloud enterprise based on approved source IP addresses, you can significantly improve your security posture and meet strict compliance requirements.
With IP allowlists, you can enforce network-level control to prevent unauthorized entry and secure access for:
- SAML SSO authentication.
- Personal Access Tokens (PATs) for SAML SSO user operations.
- Scoped Organization Tokens (SOTs) for CI/CD pipeline automation.
Enterprise administrators can configure this by navigating to Administration > IP Allow List.
For detailed examples and setup instructions, refer to our documentation here, as well as this Community post.
November 12, 2025
Announcing customizable project dashboards
We're introducing customizable project dashboards in SonarQube Cloud, now rolling out in beta for Enterprise plan customers.
This feature gives engineering managers, tech leads, and security champions the strategic visibility needed to:
- Monitor health: Get a single view to monitor key code health metrics.
- Identify risk: Surface project risks for quick assessment and action.
- Communicate progress: Share project status and report on code health to stakeholders.
Find the new Dashboards item in your project's main branch menu to see the built-in Project health dashboard, or start creating your own.
This feature is in beta as we build a foundation for new widgets and pre-built dashboards.
For more information, please see the dashboards documentation and the Community post. We welcome all your thoughts, requests, and feedback on our dedicated Portal card.
November 03, 2025
Now available in beta: 41 new rules for Apex
Salesforce developers: we’ve just added new rules for Apex, increasing the total to 97.
Of these new rules, 39 are active by default in the Sonar way quality profile, helping you write more maintainable and reliable code.
Run a fresh analysis on your Apex projects to see them in action.
These new rules are currently in beta and available with the Enterprise plan. As we continue to assess their quality, your feedback is essential:
- For false positives: Please mark the issue using the dialog box and check the box to share your reasoning and the code with us.
- For general feedback: Please comment on our community forum thread.
You can see all 97 Apex rules in our rules database.
Get quick and insightful SonarQube Cloud updates delivered directly to your inbox
SonarQube Cloud product news shares the most important product updates and the latest helpful content, allowing you to get the most out of your SonarQube Cloud plan.