SonarCloud

RATING:

4.3

(7)
Overview

About SonarCloud

SonarCloud is a cloud-based alternative of the SonarQube platform, offering continuous code quality and security analysis as a service. SonarCloud integrates seamlessly with popular version control and CI/CD platforms such as GitHub, Bitbucket, and Azure DevOps. It provides static code analysis to identify and help remediate issues such as bugs and security vulnerabilities. SonarCloud enables developers to receive immediate feedback on their code within their development environment, facilitating the maintenance of high-quality code standards, and promoting a culture of continuous improvement in software development projects. It helps produce software that is secure, reliable, and maintainable.

SonarCloud Pricing

Subscribing to a paid plan on SonarCloud allows you to create a private organization containing private projects. You pay upfront for a maximum number of private lines of code to be analyzed in your organization. SonarCloud pricing starts at €11/month for a maximum analysis of 100,000 LOC and can extend to €5,250/month for a maximum analysis of 20M LOC.

Starting price: 

€11.00 per month

Free trial: 

Available

Free version: 

Available

Overall Projects Summary View
Slide 1 of 4

SonarCloud Reviews

Overall Rating

4.3

Ratings Breakdown

Secondary Ratings

Ease-of-use

4.5

Customer Support

3.5

Value for money

4.5

Functionality

4.5

Most Helpful Reviews for SonarCloud

7 Reviews

User Profile

Dimitri Alexander

Verified reviewer

Computer Software, 2-10 employees

Used weekly for more than 2 years

Review Source: Capterra
This review was submitted organically. No incentive was offered

OVERALL RATING:

5

EASE OF USE

5

CUSTOMER SUPPORT

5

FUNCTIONALITY

5

Reviewed August 2022

SonarCloud is a must have in your stack

It's still a good tool that help the dev teams to increase their knowledge in a specific language, it's still gives good indicator, overall it's still a good companion

PROS

It's free, as a Self hosted instance with sonarqube, and it's free for open source project. I like the advice they give that my IDE doesn't

CONS

It's a bit using a lot of RAM as it is written in Java

Paolo

Computer Software, 51-200 employees

Used daily for less than 12 months

Review Source: Capterra
This reviewer was invited by us to submit an honest review and offered a nominal incentive as a thank you.

OVERALL RATING:

5

EASE OF USE

5

VALUE FOR MONEY

5

FUNCTIONALITY

5

Reviewed September 2022

Essential tool for professional code delivery

SonarCloud improves software quality and developers' skills since it shows where the bugs and security hotspots are and how to correct them.

PROS

I use GitHub integration to run analysis on Pull Requests via GitHub workflows. Pull Request decoration is a great feature, it adds analysis results directly to GitHub PR's page.

CONS

SonarCloud reports also the code coverage by automated test, but it does not execute the report itself. You have to configure an external plugin (based on the nature of the project) that produces a report that SonarCloud can read and include in its dashboard and PR decoration.

Reason for choosing SonarCloud

I decided to use SonarCloud over SonarQube because it is not more expensive and you don't have to purchase and maintain the machine to run the on-premise server.

User Profile

Londou Jacques

Verified reviewer

Computer Software, 2-10 employees

Used weekly for less than 2 years

Review Source: Capterra
This review was submitted organically. No incentive was offered

OVERALL RATING:

3

EASE OF USE

4

VALUE FOR MONEY

3

CUSTOMER SUPPORT

3

FUNCTIONALITY

4

Reviewed May 2023

SonarCloud one of the cloud-based code quality and security analysis tools

PROS

SonarCloud has a strong focus on security and compliance, with features such as vulnerability detection, security hotspots, and compliance reporting.

CONS

A potential drawback is the complexity of SonarCloud. While SonarCloud's comprehensive feature set can be a strength, it can also make the platform more challenging to use and configure

Donovan

Printing, 51-200 employees

Used daily for less than 2 years

Review Source: Capterra
This reviewer was invited by us to submit an honest review and offered a nominal incentive as a thank you.

OVERALL RATING:

5

EASE OF USE

5

VALUE FOR MONEY

4

CUSTOMER SUPPORT

3

FUNCTIONALITY

4

Reviewed March 2022

Good tool, easy to setup, cloud means limited in customisation

Overall it was great

PROS

Super easy to setup. Took literally minutes to do and then maybe another hour to tweak to fully operational. Gives community standard results very quickly.

CONS

The inability to add in some extra key scanners/rules is quite limiting.

Reason for choosing SonarCloud

Price, ease of setup and breadth of language coverage

Michael

Health, Wellness and Fitness, 1,001-5,000 employees

Used monthly for more than 2 years

Review Source: Capterra
This review was submitted organically. No incentive was offered

OVERALL RATING:

4

EASE OF USE

4

VALUE FOR MONEY

5

FUNCTIONALITY

5

Reviewed June 2022

Code Quality for just about Anything

We've seen a large increase in our code coverage and quality over the past two years of using SonarCloud. Some of our software had 0% coverage or less than 30% and a large majority of our code repositories have over 80% coverage now.

PROS

It tracks code quality over time. It does static analysis to look for duplicate code blocks, code smells, cyclomatic complexity, security issues, and more. It will also ingest code coverage reports to track test coverage over time. Integrates with GitHub (and other tools) so you can gate PR's based on the percent of code coverage and absence of flaws. We utilize it on mobile Xamarin projects, Kotlin projects, React web projects. It's a pretty mature product that has been around for a while. Its available in a free form, SonarQube, for you to test it out and run things locally. Static analysis helps ease the burden of code reviewers since it finds many common issues such as not null checking a parameter. It shoes metrics over time so you can see how your code base is improving over time. It basically automates code quality checking and metrics.

CONS

It can be a pain to set up your CI/CD pipeline to download and run all the necessary things to integrate with SonarCloud. It requires running some commands before you do a build and then some more after you do a build. SonarQube helps a lot with setting things up and testing your workflow locally though.

User Profile

David Felipe

Verified reviewer

Information Technology and Services, 51-200 employees

Used monthly for more than 2 years

Review Source: Capterra
This reviewer was invited by us to submit an honest review and offered a nominal incentive as a thank you.

OVERALL RATING:

4

EASE OF USE

4

VALUE FOR MONEY

4

FUNCTIONALITY

4

Reviewed October 2022

Simple and powerful tool to improve your delivery process

We have more than 45 repos, and we practice continuous delivery, Sonar help us reduce the overhead by automating some tasks that previously were executed by a developer. They gain more control over their time, without sacrificing code quality

PROS

Helps my team to reduce time on checking several controls that are very standard in our projects, like code coverage, code smells, complexity, and security.

CONS

I used to like one functionality they had on the open source version (Sonarqube) in which the software commented the code directly on GitHub, helping the developer to notice their mistakes; I haven´t been able to use it again.Sometimes the configuration and customization are not very straightforward, and developers spend a lot of time trying to tune the tools.

Anonymous

51-200 employees

Used monthly for less than 6 months

Review Source: Capterra
This reviewer was invited by us to submit an honest review and offered a nominal incentive as a thank you.

OVERALL RATING:

4

EASE OF USE

5

VALUE FOR MONEY

5

CUSTOMER SUPPORT

3

FUNCTIONALITY

4

Reviewed November 2022

A simple and easy way to integrate sonarcube code analysis solution

very good and super useful

PROS

easiness and robustness of integration with cloud.

CONS

a bit costly in sonarcloud but when you compare management cost ,its okey

7 Reviews