Our Products

Sonar static code analysis

SonarQube Server (self-managed) and SonarQube Cloud (hosted) offer static code analysis with hundreds of unique rules to find bugs, vulnerabilities, and more in your code, while SonarQube for IDE, an advanced linter, offers seamless IDE to CI integration.

Download SonarQube Server for Free免费试用 SonarQube 云

our products

The open-source and commercial Sonar solution – SonarQube for IDE, SonarQube Cloud, and SonarQube Server – supports over 30 programming languages, frameworks, and infrastructure technologies. Trusted by more than 400,000 organizations globally to clean more than half a trillion lines of code, Sonar is integral to delivering better software. From analyzing your code in real-time as you type in your IDE all the way through to code review, pull requests, and branch analysis for production-ready code, Sonar ensures Code Quality at every step in your workflow.

Image shows code that passes the quality gate to ensure Clean Code.

Are your team, code, and workflow fully cloud-based?

If you’re looking for a hosted static analysis option, then SonarQube Cloud is a great choice. As a hosted offering, users do not have to worry about installation or maintenance. At a high level, SonarQube Cloud offers: 

  • Automatic, zero-configuration, analysis with GitHub for many popular languages, and immediate access to new features and functionality
  • Authentication integration with GitHub, Azure DevOps, Bitbucket and GitLab
  • Free open-source analysis for public projects or usage-based pricing model for private projects
免费试用 SonarQube 云
Main Branch Evolution on SonarCloud

Looking for a self-managed solution?

If you’re looking for a self-managed static code analysis option, then open-source based SonarQube Server is a great choice. SonarQube Server Developer Edition and Enterprise Edition also include additional enterprise features that may be valuable to your organization’s specific use case(s). At a high level, SonarQube Server offers: 

  • Run your instance your way, as a virtual machine, on Docker, or with Kubernetes with vertical and horizontal scaling support
  • Easy project onboarding with integration to GitHub, GitLab, Azure and Bitbucket; in-cloud and on-premises
  • Commerical features include executive-level reporting capabilities, security reports including coverage for OWASP Top 10 and CWE Top 25 and more, portfolios support, multiple DevOps platform support and more
  • Advanced security analysis with deeper SAST
立即下载 SonarQube 服务器
SonarQube Quality Gate Passed

How are SonarQube Server and SonarQube Cloud similar?

  • Open-source analysis is always free with SonarQube Community Build and SonarQube Cloud, and a no-commitment, 14-day free trial offering covering 30+ languages and frameworks
  • Both are based on the same underlying static analysis engine to catch bugs, vulnerabilities, and code smells - generating valuable code quality metrics
  • IDE Support with SonarQube for IDE integration and integration with CI/CD workflow in most DevOps platforms
  • Efficient and fast SAST analysis and more!
Setting up SonarQube and SonarCloud is easy
Developer-First

SonarQube for IDE for your IDE

SonarQube for IDE in your IDE is your first line of defense for keeping the code you write today clean and secure. Issues are raised in-line with clear rule descriptions and guidance.

With SonarQube for IDE, the impact is immediate and no configuration is required. You learn from the real-time feedback provided and quickly resolve issue with contextual guidance and automatic Quick Fixes!

SonarQube for IDE is available from your IDE marketplace:
Visual Studio | VS Code | JetBrains | Eclipse

探索SonarQube for IDE
Sonar works in your Jetbrains, VS Code, Visual Studio and Eclipse IDE's
Featured Blog post

SonarQube Cloud or SonarQube Server? - Guidance on Choosing One for Your Team

Learn about the similarities and key differences between SonarQube Cloud and SonarQube Server and which one is best for your use case.

Read Blog Post
Image shows the SonarQube Cloud and SonarQube Server logos with a question mark between them, referencing the decision a potential user needs to make. Luckily, Sonar makes it easy to choose!

start your clean code journey now

  • Follow SonarSource on Twitter
  • Follow SonarSource on Linkedin
language switcher
简体中文 (Simplified Chinese)
  • 法律文件
  • 信任中心

© 2008-2024 SonarSource SA。保留所有权利。SONAR、SONARSOURCE、SONARQUBE、 和 CLEAN AS YOU CODE 是 SonarSource SA 的商标。