Introducing G2.ai, the future of software buying.Try now

Compare Semmle and SonarQube

Save
    Log in to your account
    to save comparisons,
    products and more.
At a Glance
Semmle
Semmle
Star Rating
(76)4.4 out of 5
Market Segments
Small-Business (54.7% of reviews)
Information
Pros & Cons
Not enough data
Entry-Level Pricing
No pricing available
Learn more about Semmle
SonarQube
SonarQube
Star Rating
(125)4.5 out of 5
Market Segments
Enterprise (41.9% of reviews)
Information
Pros & Cons
Entry-Level Pricing
Contact Us Per Year
Browse all 6 pricing plans
AI Generated Summary
AI-generated. Powered by real user reviews.
  • G2 reviewers report that SonarQube excels in overall user satisfaction, boasting a significantly higher G2 Score compared to Semmle. Users appreciate its simple deployment process, especially when using Kubernetes, and the seamless integration with GitHub actions, which allows developers to conduct scans effortlessly.
  • Users say that SonarQube provides valuable code suggestions that enhance security and improve code quality. This feature is particularly praised for helping developers identify potential errors in their code flows, making it a robust tool for maintaining high coding standards.
  • Reviewers mention that while Semmle is user-friendly and effective for locating errors, it has a smaller market presence and fewer recent reviews compared to SonarQube. Users highlight its graphic representation of code analysis results, which aids in understanding critical flaws, but it may not match the comprehensive capabilities of SonarQube.
  • According to verified reviews, both tools offer good integration with CI tools, but Semmle is noted for its fast, reliable, and stable results. Users appreciate its ability to analyze code across multiple platforms, which can be a significant advantage for teams using diverse development environments.
  • G2 reviewers indicate that SonarQube's implementation process is generally straightforward, but some users have reported challenges with configuration. In contrast, Semmle is praised for its ease of use, making it accessible for developers of all skill levels, from beginners to experts.
  • Users highlight that while SonarQube has a strong focus on code quality and security, Semmle's automation capabilities save time by quickly identifying bugs and vulnerabilities. This feature is particularly beneficial for teams looking to streamline their code review processes and enhance productivity.
Pricing
Entry-Level Pricing
Semmle
No pricing available
SonarQube
Cloud-base: Enterprise
Contact Us
Per Year
Browse all 6 pricing plans
Free Trial
Semmle
No trial information available
SonarQube
Free Trial is available
Ratings
Meets Requirements
8.3
44
8.8
108
Ease of Use
8.6
44
8.5
111
Ease of Setup
8.6
23
8.1
70
Ease of Admin
8.8
23
8.5
63
Quality of Support
8.3
43
8.2
91
Has the product been a good partner in doing business?
8.3
21
8.4
57
Product Direction (% positive)
9.6
32
8.6
105
Features by Category
Static Application Security Testing (SAST)Hide 14 FeaturesShow 14 Features
Not enough data
7.3
22
Administration
Not enough data
7.8
19
Not enough data
6.0
20
Analysis
Not enough data
7.4
21
Not enough data
8.0
20
Not enough data
8.9
22
Not enough data
9.0
22
Testing
Not enough data
6.6
18
Not enough data
5.9
19
Not enough data
6.0
21
Not enough data
6.9
18
Not enough data
6.8
17
Not enough data
8.2
21
Not enough data
6.9
21
Agentic AI - Static Application Security Testing (SAST)
Not enough data
Not enough data
Software Development Analytics ToolsHide 6 FeaturesShow 6 Features
Not enough data
8.0
33
Functionality
Not enough data
8.1
31
Not enough data
8.4
30
Not enough data
8.2
29
Management
Not enough data
7.7
27
Not enough data
7.5
25
Not enough data
7.8
27
Not enough data
8.1
11
Bug Reporting
Not enough data
7.7
10
Not enough data
8.0
10
Not enough data
8.3
10
Bug Monitoring
Not enough data
7.8
10
Not enough data
8.2
10
Not enough data
8.5
10
Agentic AI - Bug Tracking
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Software Composition AnalysisHide 6 FeaturesShow 6 Features
Not enough data
Not enough data
Functionality - Software Composition Analysis
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Effectiveness - Software Composition Analysis
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
7.5
37
Documentation
Not enough data
7.7
35
Not enough data
7.6
35
Not enough data
8.2
36
Security
Not enough data
6.9
33
Not enough data
7.0
32
Not enough data
7.9
33
Application Security Posture Management (ASPM)Hide 11 FeaturesShow 11 Features
Not enough data
8.6
7
Risk management - Application Security Posture Management (ASPM)
Not enough data
9.3
5
Not enough data
8.7
5
Not enough data
9.0
5
Not enough data
8.9
6
Integration and efficiency - Application Security Posture Management (ASPM)
Not enough data
7.8
6
Not enough data
8.6
6
Reporting and Analytics - Application Security Posture Management (ASPM)
Not enough data
7.8
6
Not enough data
Not enough data
Not enough data
8.3
5
Agentic AI - Application Security Posture Management (ASPM)
Not enough data
Not enough data
Not enough data
Not enough data
Software Bill of Materials (SBOM)Hide 6 FeaturesShow 6 Features
Not enough data
Not enough data
Functionality - Software Bill of Materials (SBOM)
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Management - Software Bill of Materials (SBOM)
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
AI Compliance
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Risk Management & Monitoring
Not enough data
Not enough data
Not enough data
Not enough data
AI Lifecycle Management
Not enough data
Not enough data
Access Control and Security
Not enough data
Not enough data
Collaboration and Communication
Not enough data
Not enough data
Agentic AI - AI Governance Tools
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Static Code AnalysisHide 3 FeaturesShow 3 Features
Not enough data
6.2
8
Agentic AI - Static Code Analysis
Not enough data
6.3
8
Not enough data
5.7
7
Not enough data
6.7
8
AI AppSec AssistantsHide 6 FeaturesShow 6 Features
Not enough data
Not enough data
Performance - AI AppSec Assistants
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Integration - AI AppSec Assistants
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Cloud Visibility
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Security
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Identity
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Not enough data
Reviews
Reviewers' Company Size
Semmle
Semmle
Small-Business(50 or fewer emp.)
54.7%
Mid-Market(51-1000 emp.)
34.7%
Enterprise(> 1000 emp.)
10.7%
SonarQube
SonarQube
Small-Business(50 or fewer emp.)
17.7%
Mid-Market(51-1000 emp.)
40.3%
Enterprise(> 1000 emp.)
41.9%
Reviewers' Industry
Semmle
Semmle
Computer Software
40.0%
Information Technology and Services
9.3%
Computer & Network Security
6.7%
Education Management
5.3%
Management Consulting
4.0%
Other
34.7%
SonarQube
SonarQube
Information Technology and Services
26.6%
Computer Software
21.8%
Financial Services
6.5%
Hospital & Health Care
3.2%
Computer & Network Security
3.2%
Other
38.7%
Alternatives
Semmle
Semmle Alternatives
Coverity
Coverity
Add Coverity
Checkmarx
Checkmarx
Add Checkmarx
Veracode Application Security Platform
Veracode Application Security Platform
Add Veracode Application Security Platform
OpenText Core Application Security
OpenText Core Application Security
Add OpenText Core Application Security
SonarQube
SonarQube Alternatives
GitHub
GitHub
Add GitHub
GitLab
GitLab
Add GitLab
Semgrep
Semgrep
Add Semgrep
Veracode Application Security Platform
Veracode Application Security Platform
Add Veracode Application Security Platform
Discussions
Semmle
Semmle Discussions
Monty the Mongoose crying
Semmle has no discussions with answers
SonarQube
SonarQube Discussions
Monty the Mongoose crying
SonarQube has no discussions with answers