For the complete documentation index, see llms.txt. This page is also available as Markdown.

Feature comparison table

This page lists features relevant to comparing support in the different SonarQube deployments.

For the supported languages, see Supported languages.

For more information about the features supported in the SonarQube Cloud, see Subscription plans. For more information about features supported in SonarQube Server, see the SonarQube Server documentation.

Feature
SonarQube Community Build
SonarQube Cloud Free plan
SonarQube Server
SonarQube Cloud Team and Enterprise plans

Code analysis

Branch analysis

Only main branch analysis

Only main branch analysis

Checkmark icon

Checkmark icon

Pull request analysis

Only if the target branch is the main branch

Checkmark icon

Checkmark icon

Custom quality profiles

Checkmark icon

Checkmark icon

Checkmark icon

Custom quality gates

Checkmark icon

Checkmark icon

Checkmark icon

Prioritized rules (in quality gate definition)

From Enterprise

AI code analysis

AI Code Assurance (Code quality assurance for AI generated code)

Checkmark icon

Checkmark icon

Checkmark icon

Security analysis

Injection vulnerabilities detection

Checkmark icon

Checkmark icon

Checkmark icon

Injection vulnerabilities detection: security engine custom configuration

From Enterprise

Secret detection: Custom secret patterns

From Enterprise

Advanced security analysis

Software Composition Analysis (SCA)

From Enterprise

Enterprise's add-on

Advanced SAST (Static Application Security Testing)

From Enterprise

Enterprise's add-on

AI-powered code remediation

AI CodeFix (AI-generated fix suggestions)

Checkmark icon

Checkmark icon

Remediation Agent

Enterprise only

Agentic development

SonarQube Cloud-hosted and Server-hosted MCP server

Checkmark icon

Checkmark icon

Checkmark icon

Management reporting

Portfolios

From Enterprise

Enterprise only

Security reports

From Enterprise

Enterprise only

Project PDF reports

From Enterprise

Enterprise only

Regulatory reports

From Enterprise

Applications (aggregation of multiple projects)

Checkmark icon

System security

Single Sign-On (SAML)

Checkmark icon

Checkmark icon

Enterprise only

Auto-provisioning (SCIM)

From Enterprise

Enterprise only

IP allow list restriction

Enterprise only

Audit logs

From Enterprise

Enterprise only

Maximum lifetime for tokens

From Enterprise

Checkmark icon (Scoped Organization Tokens)

Inactive session timeout

Configurable

Not configurable (24 h)

Configurable

Not configurable (24 h)

Active session timeout

From Enterprise (configurable)

DevOps platforms: GitHub, Bitbucket Data Center, Bitbucket Cloud, GitLab, Azure DevOps

Checkmark icon

Checkmark icon

Checkmark icon

Checkmark icon

User authentication

Checkmark icon

Checkmark icon

Checkmark icon (with automatic provisioning for GitHub and GitLab)

Checkmark icon

Security issues report in GitHub and Gitlab

Checkmark icon

Quality gate status report on pull requests; Preventing merge when quality gate fails

Checkmark icon

Checkmark icon

Monorepo integration

Checkmark icon

From Enterprise

Checkmark icon

Multiple DevOps Platform instances

From Enterprise

Integration with external applications

Jira Cloud

Checkmark icon

Checkmark icon

Slack

Checkmark icon

Checkmark icon

Checkmark icon

JFrog Evidence Collection

From Enterprise

Enterprise only

Webhooks

Checkmark icon

Checkmark icon

Checkmark icon

Checkmark icon

Last updated

Was this helpful?