This feature was mentioned in 19 SonarQube reviews.
Application Programming Interface Specification for how the application communicates with other software. APIs typically enable integration of data, logic, objects, etc. with other software applications.
Extensibility
20 reviewers of SonarQube have provided feedback on this feature.
Provides the ability to extend the platform to include additional features and functionalities
Analysis (4)
Reporting and Analytics
Based on 21 SonarQube reviews.
Tools to visualize and analyze data.
Issue Tracking
Based on 20 SonarQube reviews.
Track issues as vulnerabilities are discovered. Documents activity throughout the resolution process.
Static Code Analysis
23 reviewers of SonarQube have provided feedback on this feature.
Examines application source code for security flaws without executing it.
Code Analysis
Based on 23 SonarQube reviews.
Scans application source code for security flaws without executing it.
Testing (7)
Command-Line Tools
18 reviewers of SonarQube have provided feedback on this feature.
Allows users to access a terminal host system and input command sequences.
Manual Testing
Based on 19 SonarQube reviews.
Allows users to perfrom hands-on live simulations and penetration tests.
Test Automation
As reported in 21 SonarQube reviews.
Runs pre-scripted security tests without requiring manual work.
Compliance Testing
As reported in 18 SonarQube reviews.
Allows users to test applications for specific compliance requirements.
Black-Box Scanning
As reported in 17 SonarQube reviews.
Scans functional applications externally for vulnerabilities like SQL injection or XSS.
Detection Rate
As reported in 21 SonarQube reviews.
The rate at which scans accurately detect all vulnerabilities associated with the target.
False Positives
As reported in 22 SonarQube reviews.
The rate at which scans falsely indicate detection of a vulnerability when no vulnerabilitiy legitimately exists.
Management (2)
Data Context
25 reviewers of SonarQube have provided feedback on this feature.
Provide insights into why trends are occurring and what issues could be related.
Testing Integration
Based on 28 SonarQube reviews.
Integrate with manual and automated testing tools to increase bottleneck and problem identification.
Functionality (3)
Repository Integration
31 reviewers of SonarQube have provided feedback on this feature.
Integrate with one or more code repositories.
Analytics and Trends
As reported in 31 SonarQube reviews.
Analyze historical data to highlight trends, statistics, and KPIs.
Productivity Updates
29 reviewers of SonarQube have provided feedback on this feature.
Follow assigned tasks across the development team to find quick turnarounds and bottlenecks.
Bug Reporting (3)
User Reports & Feedback
As reported in 10 SonarQube reviews.
Give users in-app method of reporting bugs and leaving general performance feedback.
Tester Reports & Feedback
10 reviewers of SonarQube have provided feedback on this feature.
Give testers in-app method of reporting bugs and leaving general performance feedback.
Team Reports & Comments
Based on 10 SonarQube reviews.
Give team members method of reporting bugs and leaving comments on bug status.
Bug Monitoring (3)
Analytics
This feature was mentioned in 10 SonarQube reviews.
Provide reproducible, insightful info surrounding bug and crash scenarios.
Bug History
10 reviewers of SonarQube have provided feedback on this feature.
Track history of bug status by application version, date, etc.
Data Retention
This feature was mentioned in 10 SonarQube reviews.
Store bug tracking data for an appropriate and useful amount of time.
Functionality - Software Composition Analysis (3)
Language Support
Supports a useful and wide variety of programming languages.
Integration
Integrates seamlessly with the build environment and development tools like repositories, package managers, etc.
Transparency
Grants comprehensive user-friendly insight into all open source components.
Effectiveness - Software Composition Analysis (3)
Remediation Suggestions
Provides relevant and helpful suggestions for vulnerability remediation upon detection.
Continuous Monitoring
Monitors open source components proactively and continuously.
Thorough Detection
Comprehensively identifies all open source version updates, vulnerabilities, and compliance issues.
Documentation (3)
Feedback
This feature was mentioned in 40 SonarQube reviews.
Provides thorough, actionable feedback regarding security vulnerabilities, or allows collaborators to do the same.
Prioritization
As reported in 36 SonarQube reviews.
Prioritizes detected vulnerabilities by potential risk, or allows collaborators to do the same.
Remediation Suggestions
Based on 38 SonarQube reviews.
Provides suggestions for remediating vulnerable code, or allows collaborators to do the same.
Security (3)
False Positives
37 reviewers of SonarQube have provided feedback on this feature.
Does not falsely indicate vulnerable code when no vulnerabilitiy legitimately exists.
Custom Compliance
As reported in 34 SonarQube reviews.
Allows users to set custom code standards to meet specific compliances.
Agility
This feature was mentioned in 36 SonarQube reviews.
Detects vulnerabilities at a rate suitable to maintain security, or allows collaborators to do the same.
With over 3 million reviews, we can provide the specific details that help you make an informed software buying decision for your business. Finding the right product is important, let us help.