Real-time verification for code quality and security
Catch bugs, vulnerabilities, and exposed secrets in AI-generated and human-written code — the moment they appear, inside the IDE you already use.
Discover SonarQube for IDE features
Resolve issues fast — without leaving your editor
SonarQube for IDE offers Quick Fixes for many detected issues: one click and the source is edited to match the rule, with an optional preview before you commit. It's how Sonar closes the loop from verification to remediation, right inside your IDE.
Discover Quick FixesKeep secrets out of repositories
SonarQube for IDE detects exposed secrets in your source code, ensuring they can be removed before they make it to your repository. When running in connected mode, the SonarQube Server or SonarQube Cloud Quality Profiles are applied to locally detected secrets. Custom secret patterns will also be detected.
Discover Secrets DetectionContextual learning opportunities
SonarQube for IDE not only uncovers issues in your code, it also offers contextual information designed to help you improve your coding skills. When an issue is highlighted, selecting "view problem" will open the SonarQube for IDE Rule Description. Here you are presented with more information as to why is this an issue, and the potential impact if left unresolved. This, together with suggested ways to fix the issue, often with code examples, plus additional resources all combine to offer you the option to learn.
Discover Developer EducationDetect and resolve taint vulnerabilities
Taint analysis detects any injection vulnerability pattern in your source code. In connected mode, SonarQube for IDE pulls taint issues detected by SonarQube Server or SonarQube Cloud following a project analysis. You can then learn about the vulnerability and fix it locally. Then commit your code to the server and rerun the analysis on SonarQube Server or SonarQube Cloud. The new status (of the issue) will show up automatically in your local analysis.
Explore taint analysisFocus on new code
SonarQube for IDE allows you to focus on new code by filtering issues shown in the IDE, as determined by your SonarQube Server or SonarQube Cloud new code definition. With a simple toggle, you can select whether to see all issues in a project or just those in your new code, according to the set definition.
Discover connected modeGet SonarQube for IDE updates delivered directly to your inbox
By signing up, you will receive product and marketing information about upcoming SonarQube for IDE updates, new releases, news, and events.