No more typing reviews! Try our Samantha, our new voice AI agent.

What is SonarQube?

Get the report
Helped 900,228 peers since 2012

Featured SonarQube reviews

SonarQube mindshare

As of June 2026, the mindshare of SonarQube in the Application Security Tools category stands at 12.7%, down from 24.3% compared to the previous year, according to calculations based on PeerSpot user engagement data.
Application Security Tools Mindshare Distribution
ProductMindshare (%)
SonarQube12.7%
Checkmarx One8.3%
Snyk5.0%
Other74.0%
Application Security Tools

PeerResearch reports based on SonarQube reviews

TypeTitleDate
CategoryApplication Security ToolsJun 21, 2026Download
ProductReviews, tips, and advice from real usersJun 21, 2026Download
ComparisonSonarQube vs Checkmarx OneJun 21, 2026Download
ComparisonSonarQube vs VeracodeJun 21, 2026Download
ComparisonSonarQube vs GitHubJun 21, 2026Download
Suggested products
TitleRatingMindshareRecommending
Snyk4.15.0%100%51 interviewsAdd to research
Checkmarx One3.98.3%88%81 interviewsAdd to research
 
 
Key learnings from peers
Last updated Apr 12, 2026

Valuable Features

Room for Improvement

ROI

Pricing

Popular Use Cases

Service and Support

Deployment

Scalability

Stability

Review data by company size

By reviewers
Company SizeCount
Small Business36
Midsize Enterprise20
Large Enterprise60
By reviewers
By visitors reading reviews
Company SizeCount
Small Business1224
Midsize Enterprise776
Large Enterprise2924
By visitors reading reviews

Top industries

By visitors reading reviews
Financial Services Firm
13%
Manufacturing Company
13%
Computer Software Company
12%
Comms Service Provider
6%
Government
5%
Insurance Company
4%
Retailer
4%
Healthcare Company
4%
University
4%
Outsourcing Company
3%
Construction Company
3%
Energy/Utilities Company
3%
Educational Organization
3%
Media Company
2%
Performing Arts
2%
Consumer Goods Company
2%
Real Estate/Law Firm
2%
Marketing Services Firm
2%
Non Profit
2%
Transportation Company
2%
Aerospace/Defense Firm
2%
Legal Firm
1%
Hospitality Company
1%
Wholesaler/Distributor
1%
Pharma/Biotech Company
1%
Logistics Company
1%
Recreational Facilities/Services Company
1%

Compare SonarQube with alternative products

Learn more about SonarQube

Product Demo

Interactive SonarQube demo

SonarQube customers

Related questions

 
SonarQube Reviews Summary
Author infoRatingReview Summary
IT Officer (Solution Architect) at World Bank4.0I rely on SonarQube for static code analysis, review, and unit test coverage, valuing its tailored metrics. Generally satisfied (9/10), I seek improved daily portfolio reporting and more AI integration, despite easy deployment and good DevOps integration.
Sr Software Engineering Supervisor at Mozarc Medical4.5I use SonarQube for static code analysis, valuing its rule control. While stable and scalable, I wish for better control over continuous vulnerability scanning, as new issues constantly appear. Overall, it's a valuable, FDA-approved tool.
Head of Software Engineering at ronaldmariah@gmail.com4.5I rely on SonarQube for static analysis, improving code quality and security, and reducing technical debt. I value its stability, scalability, and code suggestions, despite wishing for more generative AI features for code fixing.
Security Analyst at Dover Corporation4.0I value SonarQube Cloud's user-friendly interface and precise vulnerability reports, which save time and cost. While I recommend it, the UI could improve, and more detailed solutions for CVEs would be beneficial.
DevOps Lead at CODVO3.5I use SonarQube Cloud in CI/CD for vulnerability and code quality, appreciating its tracking. It needs improved automatic ticket creation for critical issues and lacks DAST/SCA, which limits its overall utility.
Independent Professional at Studio Dott. Ing. Angelo Quaglia4.5I appreciate SonarQube's effective Jira and IDE integrations, as we've used it for years. However, I'd like more in-depth training resources, similar to Fortify's Code Warrior integration, to help developers understand issues better.
Architect at sigpsc inc4.5I use SonarQube Cloud for code quality checks, finding it stable and easy to integrate into YAML pipelines. However, I need a single comprehensive solution for vulnerabilities, static scanning, and architecture, as it's expensive for small companies.
CEO at a computer software company with 1-10 employees3.5I use SonarQube Cloud for static code analysis, finding it easy to use, integrate, and stable. However, its vulnerability detection and capabilities are weaker than Veracode's, leading me to use both solutions.
Software Quality Coordinator at a retailer with 10,001+ employees4.0I use SonarCloud for code quality and security, valuing its SaaS model. While stable and scalable, reporting features are missing, and increased costs make ROI evaluation critical. I recommend it despite pricing concerns, rating it eight out of ten.
Senior Manager Product Engineering at GlobalLogic4.5I use SonarQube for static analysis, unit test coverage, and vulnerability detection. I appreciate its comprehensive information, easy setup, and cost-effectiveness. However, its thoroughness sometimes leads to false alarms. I rate it 9/10.
Sathyamurthi Natarajan - PeerSpot reviewer
Sathyamurthi Natarajan
IT Officer (Solution Architect) at World Bank
Sep 8, 2025
We maintain high code standards with effective static code analysis and integration
KH
KarthikHarpanhalli
Sr Software Engineering Supervisor at Mozarc Medical
May 27, 2025
Gains control over rule customization and achieves reliable vulnerability assessment
Sthembiso Zondi - PeerSpot reviewer
Sthembiso Zondi
Head of Software Engineering at ronaldmariah@gmail.com
May 27, 2025
Consistent improvements in code quality and security with effective integration and reliable technical support
Archana Verma - PeerSpot reviewer
Archana Verma
Security Analyst at Dover Corporation
Feb 24, 2025
Provides valuable insights on code vulnerabilities and integrates seamlessly with CI/CD pipelines
SK
Sidharath Kapoor
DevOps Lead at CODVO
Aug 14, 2025
Offers significant benefits in code quality but user interface improvements needed
Angelo Quaglia - PeerSpot reviewer
Angelo Quaglia
Independent Professional at Studio Dott. Ing. Angelo Quaglia
Mar 27, 2026
Code reviews have become more effective as integration with Jira and IDE plugins streamlines fixes
RG
René Gamom
Architect at sigpsc inc
Apr 9, 2025
Regular integration into pipelines for effective quality checks
reviewer2356089 - PeerSpot reviewer
reviewer2356089
CEO at a computer software company with 1-10 employees
Feb 18, 2025
Integration is simple and effective, but detection capabilities need enhancement
Diego Moreo - PeerSpot reviewer
Diego Moreo
Software Quality Coordinator at a retailer with 10,001+ employees
Oct 7, 2024
Enhanced code quality with data consolidation needs and good pipeline integration
MB
Mohit Bhatla
Senior Manager Product Engineering at GlobalLogic
Sep 2, 2024
Used for static code analysis and checking the overall unit test coverage