MORE THAN A LINTER

Real-time verification for code quality and security

Catch bugs, vulnerabilities, and exposed secrets in AI-generated and human-written code — the moment they appear, inside the IDE you already use.

Features

Discover SonarQube for IDE features

Resolve issues fast — without leaving your editor

SonarQube for IDE offers Quick Fixes for many detected issues: one click and the source is edited to match the rule, with an optional preview before you commit. It's how Sonar closes the loop from verification to remediation, right inside your IDE.

Discover Quick Fixes

Keep secrets out of repositories

SonarQube for IDE detects exposed secrets in your source code, ensuring they can be removed before they make it to your repository. When running in connected mode, the SonarQube Server or SonarQube Cloud Quality Profiles are applied to locally detected secrets. Custom secret patterns will also be detected.

Discover Secrets Detection

Contextual learning opportunities

SonarQube for IDE not only uncovers issues in your code, it also offers contextual information designed to help you improve your coding skills. When an issue is highlighted, selecting "view problem" will open the SonarQube for IDE Rule Description. Here you are presented with more information as to why is this an issue, and the potential impact if left unresolved. This, together with suggested ways to fix the issue, often with code examples, plus additional resources all combine to offer you the option to learn.

Discover Developer Education

Detect and resolve taint vulnerabilities

Taint analysis detects any injection vulnerability pattern in your source code. In connected mode, SonarQube for IDE pulls taint issues detected by SonarQube Server or SonarQube Cloud following a project analysis. You can then learn about the vulnerability and fix it locally. Then commit your code to the server and rerun the analysis on SonarQube Server or SonarQube Cloud. The new status (of the issue) will show up automatically in your local analysis.

Explore taint analysis

Focus on new code

SonarQube for IDE allows you to focus on new code by filtering issues shown in the IDE, as determined by your SonarQube Server or SonarQube Cloud new code definition. With a simple toggle, you can select whether to see all issues in a project or just those in your new code, according to the set definition. 

Discover connected mode
Icon

Get SonarQube for IDE updates delivered directly to your inbox

By signing up, you will receive product and marketing information about upcoming SonarQube for IDE updates, new releases, news, and events.

Choosing to proceed means that you agree to the storing and processing of your personal data as described in SonarSource’s Cookie Policy. You can opt out of SonarSource communications at anytime.

Unsubscribe