< All integrations

JFrog

Integrate SonarQube with the JFrog Platform for a complete DevSecOps solution from code to production.

Integration type

  • Chevron right iconSonar certified

SDLC Categories

  • Chevron right iconCI/CD
  • Chevron right iconSecurity & Compliance

Integration overview

The SonarQube integration with JFrog provides trusted auditing for software packages by enriching artifacts and builds with signed attestation metadata. This allows for easy tracking and verification for governance and compliance. The integration uses the JFrog CLI to create Sonar evidence, including the quality gate status, which is then displayed on the JFrog platform.

  • Follow SonarSource on Twitter
  • Follow SonarSource on Linkedin
language switcher
简体中文 (Simplified Chinese)
  • 法律文件
  • 信任中心

© 2008-2024 SonarSource SA。保留所有权利。SONAR、SONARSOURCE、SONARQUBE、 和 CLEAN AS YOU CODE 是 SonarSource SA 的商标。