Alternatives to SonarQube Cloud

Ordered by how much they overlap with SonarQube Cloud, then by score.

Alternatives, ranked

  1. Burp Suite Professional

    Burp Suite Professional is a web application penetration testing toolkit combining an intercepting proxy, automated scanner and manual tools.

    • Higher score
    • Runs on more platforms
    • No shared features
    No dated release history published
    285 40.0 = Compare
  2. Checkmarx One

    Checkmarx One is an application security platform covering SAST, SCA and supply chain risk across the development lifecycle.

    • No shared features
    No dated release history published
    949 24.0 = Compare
  3. Rapid7 InsightVM

    Rapid7 InsightVM identifies and prioritizes vulnerabilities across infrastructure as the scanning engine of the Exposure Command platform.

    • Runs on more platforms
    • No shared features
    No dated release history published
    1152 24.0 = Compare
  4. Snyk

    Snyk is an application security platform that scans code, dependencies, containers and infrastructure for vulnerabilities.

    • No shared features
    No dated release history published
    1184 24.0 = Compare
  5. Tenable Nessus

    Tenable Nessus is a vulnerability assessment tool that identifies security flaws, missing patches, and misconfigurations across IT infrastructure.

    • Runs on more platforms
    • No shared features
    No dated release history published
    1206 24.0 = Compare
  6. Veracode

    Veracode is an application security platform offering static, dynamic and software composition analysis testing.

    • No shared features
    No dated release history published
    1222 24.0 = Compare
  7. Wiz

    Wiz is a cloud and AI application security platform that connects code, cloud, and runtime data into a single security graph.

    • Runs on more platforms
    • No shared features
    No dated release history published
    1230 24.0 = Compare