Sonar
Code quality and application security platform with static analysis, SAST, SCA, secrets detection and AI-assisted code review to find and fix issues in code and dependencies
The product is a code quality and application security platform that provides static analysis, SAST, SCA, secrets detection and AI-assisted code review to find and fix reliability, security and compliance issues in source code and dependencies. It sells to developers, engineering teams and IT teams in businesses that build and maintain software. It is delivered as cloud-based SaaS, self-managed server and IDE extensions with CI/CD integrations and is offered with open-source components.
Key features
- Static code analysis
- Static Application Security Testing (SAST)
- Software Composition Analysis (SCA)
- Secrets detection
- Infrastructure as Code misconfiguration detection
- AI code review and fixes
- On-the-fly IDE analysis
- CI/CD workflow integration
- Continuous codebase inspection
- Supply chain security scanning
- No social media activity detected
GTM channels
- Blog
- Partner program
- Marketplace
- Community
- API
- Docs
- Changelog
ICP
- Software developers
- Engineering teams
- IT teams