Skip to content
Official reseller in Brazil

Bad code goes unnoticed. Until it becomes an incident.

SonarQube analyzes every code change to identify bugs, vulnerabilities and quality issues before they reach production.

100% genuine licenses Invoiced in Brazil Licensing guidance
What usually happens without verification

AI-written code entering the repository without validation

Vulnerability found only after the deploy

Technical debt growing every sprint

Slow code review, with a different bar for each reviewer

Rework eating the senior team's time

No consolidated view of code health

Get a personalized proposal

Talk to an OSB Software specialist and find out which Sonar solution fits your operation.

Consultative support Invoicing in Brazil The right license
Solutions of interest
None yet — pick the solutions in the cards below.

Commercial SonarQube licenses are sized by the volume of lines of code analyzed (LOC). OSB Software prepares the proposal after understanding the size of your codebase.

Request a personalized quote

Market recognition
7M+
Developers worldwide
75%
Of Fortune 100 companies
Leader
Gartner Magic Quadrant
4.6/5
G2 rating
The pain SonarQube solves

The problem only shows up once it is expensive

With AI generating code in volume, the bottleneck stopped being writing — it became verifying. With no objective criteria, whatever enters the repository becomes silent risk.

The solution

A verification layer at every stage of the code

SonarQube analyzes new and changed code automatically and applies a clear approval criterion — the Quality Gate — before the merge.

I want a SonarQube quote
  • Detects bugs, vulnerabilities and code smells
  • Checks human and AI-generated code with the same standard
  • Blocks delivery when the criteria are not met
  • Shows the problem where the developer already works
Choose what to evaluate

Just SonarQube or the full ecosystem?

Request a proposal for SonarQube alone or tick other Sonar solutions that make sense for your team. The choices go straight into the form.

Showing SonarQube only. Switch to see the full portfolio.

Most requested

SonarQube

Core platform
What it solves
Centralizes code quality and security verification, applying a single approval criterion before the merge.
Teams that need a standard and governance

SonarQube Server

Installed on your infrastructure
What it solves
Solves data sovereignty and governance requirements: the analysis runs on-premises or in a private cloud, under your company's control.
Regulated environments and corporate scale

SonarQube Cloud

Managed SaaS
What it solves
Removes the effort of maintaining a server, database and upgrades. Connect the repository and every pull request is analyzed automatically.
Teams that want speed without infrastructure

SonarLint

IDE extension
What it solves
Tackles rework at the source: it flags the problem while the developer types, before the commit.
Developers, day to day

SonarCloud

Former name of Cloud
What it solves
Gives quality visibility across distributed projects, with reports available to the whole team.
Distributed projects and multiple squads
Licensing

Which SonarQube license fits your team?

The choice starts with the delivery model: Server, installed on your own infrastructure, or Cloud, delivered as SaaS. In both, sizing goes by the volume of lines of code analyzed.

SonarQube Server

Installed and operated on your company's infrastructure — on-premises or in a private cloud.

SonarQube Cloud (SaaS)

Managed by the vendor — no server, database or upgrade to maintain.

SonarQube IDE — the free extension for VS Code, IntelliJ, Visual Studio and Eclipse — complements any of the licenses: in Connected Mode it synchronizes the rules and Quality Gate defined in Server or Cloud. Community Build, free and open source, covers only the main branch and does not replace the commercial licenses.

Requirements and Compatibility

Requirements for SonarQube Server (self-hosted) — with SonarQube Cloud there is no environment to provision:

Java 17 (JRE or JDK) to run the server
PostgreSQL, Microsoft SQL Server or Oracle database
MySQL is not supported
From 2 GB of free RAM, depending on the volume of code analyzed
Installation on Linux or Windows, with official Docker and Kubernetes images
Kernel settings for the bundled Elasticsearch (vm.max_map_count and open file limits)
Scanners for Maven, Gradle, .NET, Ant, npm and the command line

Supported integrations and environments:

  • Repositories: GitHub, GitLab, Bitbucket (Cloud and Data Center) and Azure DevOps.
  • CI/CD: Jenkins, GitHub Actions, GitLab CI, Azure Pipelines, Bitbucket Pipelines and others via the command line scanner.
  • IDEs with SonarQube IDE: Visual Studio Code, IntelliJ IDEA (and other JetBrains IDEs), Visual Studio and Eclipse.
Official partner in Brazil

Why buy from OSB Software?

We help your company secure a safe purchase, matched to the team's needs and followed through the whole lifecycle of the solution.

Local purchase and tax compliance

A license with local invoicing, tax documents and alignment with your company's fiscal requirements.

Guidance on licensing

We help define the best combination of model, license and code volume, avoiding unnecessary cost.

Consultative local support

Commercial and technical support to clear doubts and back internal approval processes.

Renewals followed through

We track the license cycle, anticipating renewals and supporting budget planning.

A safer purchase

Less risk in international invoicing, taxation and contract management with a local operation.

A strategic partner

More than a license: we help your team extract value from the tool and decide based on the business.

With OSB Software, you combine Sonar technology with local service, consultative support and a simplified buying experience for your company.

Request a quote
Frequently asked questions

What you need to know before the proposal

Which SonarQube licenses does OSB sell?
In the self-hosted model: SonarQube Server Developer Edition, Enterprise Edition and Data Center Edition. In the SaaS model: SonarQube Cloud Team and SonarQube Cloud Enterprise.
How is licensing sized?
Commercial licenses are sized by the volume of lines of code analyzed (LOC). OSB helps estimate that volume before preparing the proposal.
Server or Cloud: which one?
Server runs on your infrastructure and meets data sovereignty, internal governance and audit requirements. Cloud is delivered as SaaS, with no environment to provision and no maintenance on your side.
What is the difference between the Server licenses?
Developer adds branch and pull request analysis, injection vulnerability detection and languages such as C, C++, Objective-C, Swift, ABAP, T-SQL and PL/SQL. Enterprise adds portfolios, security reports, project PDF and regulatory reports, languages such as Apex, COBOL, JCL, PL/I, RPG and VB6, plus SAML SSO, SCIM and audit logs. Data Center delivers clustered high availability, horizontal scalability and Kubernetes autoscaling.
What is the difference between Cloud Team and Cloud Enterprise?
Team unlocks unlimited branch and pull request analysis, plus custom quality profiles and gates. Enterprise adds a corporate hierarchy across organizations, SAML SSO, portfolios, reports and enterprise languages.
Does SonarQube for IDE replace the Server or Cloud license?
No. It is the extension that brings verification into the developer's editor and, in Connected Mode, syncs the rules and quality gates defined in your Server or Cloud license.
Next step

Name the pain. We point to the right solution.

Map your operation with an OSB specialist and get guidance on license, sizing and delivery model.

No commitment Consultative support Invoicing in Brazil