Comprehensive AI code verification, at your scale
From 50K to 5B+ lines of code, we'll help you choose the right plan to standardize code verification across all of your code so you can adopt AI and agentic coding with confidence.
Team
Essential capabilities for small teams
Starts at
$32 monthly
- Recommended for teams <50 developers
- 30+ languages
- Code quality standards
- Detecting bugs and vulnerabilities
- Secrets detection
- AI-driven code fixes
- Pull request analysis
- Commercial support available
Enterprise
Mission critical scale & performance.
Annual price
Custom pricing
Team plan plus:- Advanced security reports & audit logs
- OWASP, CWE, PCI DSS, and MISRA C++:2023
- Unlimited users and projects
- 40+ languages incl. ABAP, COBOL, Apex
- SSO, SCIM, CMK/BYOK, IP allowlist
- Enterprise hierarchy, portfolios, org-wide defaults
- Customizable portfolio & project dashboards
- GitHub Advanced Security integration
- Enterprise SLA
- Premium support available
Advanced Security
Developer-first security for your first-party, AI-generated, and open source code, powered by advanced SAST and integrated SCA. Requires SonarQube Cloud Enterprise plan.
Contact sales for pricing >
SonarQube self starter
Looking to get started right away on your own? Sign up with a 14-day free trial.
Start free trial >
TRUSTED BY OVER 7M DEVELOPERS WORLDWIDE
Team
Enterprise
General/Setup
Supports projects hosted on GitHub and Azure DevOps
Supports the following
IDEs
- VS Code
- Visual Studio
- IntelliJ
- Eclipse
- Cursor
- Windsurf
Supports the following
DevOps platforms
- GitHub
- GitLab
- Bitbucket
- Azure DevOps
Analysis
- Team plan
- Java
- C
- C++
- C#
- JavaScript
- TypeScript
- Kotlin
- CloudFormation
- Terraform
- Docker
- Ansible
- Kubernetes/Helm
- Azure Resource Manager/Bicep
- Ruby
- Go
- Scala
- Shell
- Swift
- Dart/Flutter
- Flex
- Python
- PHP
- HTML
- CSS
- XML
- VB.NET
- T-SQL
- PL/SQL
- Objective-C
- VB6
- Rust
- JSON
- YAML
- GitHub Actions
- Groovy
- Enterprise plan
- All languages in Team plan plus...
- ABAP
- Apex
- COBOL
- PL/I
- RPG
- JCL
Code Quality
Code Security
Detects 400+ secrets patterns with 340+ rules, including coverage of 248 public, private, commercial, and enterprise cloud services.
Supported standards
- PCI DSS
- OWASP Top 10
- OWASP ASVS
- OWASP Mobile Top 10
- CWE Top 25
- STIG
- CASA
- OWASP Top 10 for LLM Application
- OWASP MASVS
Reporting
Supported standards
- PCI DSS
- OWASP Top 10
- OWASP ASVS
- OWASP Mobile Top 10
- CWE Top 25
- STIG
- CASA
- OWASP Top 10 for LLM Application
- OWASP MASVS
AI tools
Support
Frequently asked questions
How does pricing work for private projects?
Subscribing to a paid plan on SonarQube allows you to create a private organization containing private projects.
There are two paid plans available: Team and Enterprise. You pay upfront for a maximum number of private lines of code to be analyzed in your organization.
SonarQube plan pricing starts at $32 monthly for analysis of up to 100k LOC. Other LOC increments are available, up to 1.9M LOC
We also offer a free tier that allows you to explore SonarQube using your private projects up to a maximum of 50k LoC.
Do you offer pricing for a self-hosted solution?
Yes. If you prefer to manage your own infrastructure, SonarQube Server is our self-managed static analysis solution.
It's available in three editions — Developer, Enterprise, and Data Center — each priced per instance, per year, based on your lines of code (LOC).
View SonarQube Server plans and pricing →
What payment options are available?
For the Team plan, payment is completed online via credit card and will happen automatically every month. For all billing questions, use the Contact Us form.
What is a Line of Code (LOC) on SonarQube?
LOCs are computed by summing up the lines of code of each project analyzed in SonarQube. The LOCs used for a project are the ones found during the most recent analysis of this project.
How are Lines of Code (LOCs) counted towards billing?
Only LOCs from your private projects are counted toward your maximum number of LOCs.
If your project contains branches, we only count the lines of code in your largest branch
The count is not related to how frequently the source code is analyzed. If your private project has 6K LOCs and you analyze it 100 times in the month, this will be counted as 6K for the billing.
If you are getting close to the threshold, you will be notified to either upgrade your plan or reduce the number of LOCs in your projects.
Please note - in the future, we plan to introduce compute analysis measurements to enable admin monitoring of the volume of analyses made.
When will I be invoiced?
With SonarQube Team plan you will be invoiced once a month, the day of the month after your trial ends. For example if you start your free trial on January 1st, it will last until January 14th and you will be first billed on January 15th for your upcoming month, e.g. January 15th to February 15th.
Which programming languages does SonarQube Cloud support?
SonarQube currently supports the following languages and frameworks in the Team plan: Ansible, Azure Resource Manager, C, C++, CloudFormation, C#, CSS, Docker, Flex, Go, HTML, Java, JavaScript, Kotlin, Kubernetes, Objective-C, PHP, PL/SQL, Python, RPG, Ruby, Rust, Scala, Swift, Terraform, TypeScript, T-SQL, VB.NET, VB6, XML, JSON, YAML and Groovy. Additionally, the Enterprise Plan offers ABAP, COBOL, JCL, RPG, PL/I, and Apex.
Is support available for SonarQube?
Yes.
The SonarQube Enterprise plan includes commercial support (starting at 5M LOC).
For the Team plan commercial support is available to purchase (contact sales).
For the Free plan (as well as Enterprise and Team plans) the Sonar Community is a channel for you to ask questions and receive help from our community members.
Can I try a private project on SonarQube for free?
Yes. The free tier enables you to explore SonarQube with your private project up to a maximum size of 50k LoC. Sign up here
Can I cancel my subscription?
Of course! There's no commitment. You can delete your paid organization whenever you wish. Or simply downgrade to the free tier if you wish to keep on analyzing some public projects.
Can I try the new enterprise features?
Yes. Please contact sales and request a trial of SonarQube Enterprise features to discover the value they will bring to your organization.
How can I get SCA?
SCA is available with the Advanced Security subscription available to Enterprise plan users. It offers vulnerability detection, license checks, and SBOM visibility. Head here to discover more.