Best SonarQube MCP Servers
SonarQube is an open-source platform developed by SonarSource for continuous inspection of code quality to perform automatic reviews with static analysis of code to detect bugs, code smells, and security vulnerabilities.
Why this server?
Integrates with SonarQube for static application security testing (SAST), enabling automated code analysis and vulnerability detection.
AlicenseBqualityDmaintenanceAn MCP server that integrates SAST, DAST, and SCA security tools to enable AI-driven vulnerability scanning and automated security reporting. It allows AI assistants to execute and analyze results from tools like Semgrep, OWASP ZAP, and Trivy within a DevSecOps workflow.Last updated6MITWhy this server?
Provides tools for interacting with SonarQube to list projects, retrieve project metrics, manage code quality issues, analyze security vulnerabilities, check quality gates, and view historical analysis trends.
AlicenseAqualityDmaintenanceA Model Context Protocol (MCP) server that provides AI assistants with access to SonarQube code quality, security, and project analytics data.Last updated761MITWhy this server?
Offers specialized AI agent security analysis that complements traditional code quality tools like SonarQube with AI-specific vulnerability detection.
Why this server?
Provides read-only tools for interacting with SonarQube instances, enabling discovery of projects, retrieval of quality metrics, Quality Gate status checks, issue search with filtering, and cross-project ranking by worst metric values.
AlicenseAqualityBmaintenanceAn MCP server for SonarQube that enables LLM agents to discover projects, analyze code quality metrics, check Quality Gate status, search issues with filters, and rank projects by worst-performing metrics. It provides read-only, safe access to SonarQube instances with structured outputs and error handling.Last updated5MITWhy this server?
Provides read-only access to the SonarQube Web API, enabling issue retrieval, quality gate status checks, rule details, component measures, and source code context for project analysis.
AlicenseBqualityBmaintenanceRead-only MCP server that exposes SonarQube Web API tools for issue retrieval, quality gate status, and source context, enabling coding agents to fix code issues.Last updated8126MITWhy this server?
Allows interaction with a SonarQube instance for managing projects, issues, metrics, quality gates, and performing code reviews and security audits.
Why this server?
Provides read-only access to SonarQube projects, metrics, and rules, allowing users to search for issues, retrieve quality dashboards, and access detailed information about code bugs, vulnerabilities, and security hotspots.
FlicenseAqualityDmaintenanceA read-only MCP server that provides AI assistants with structured access to SonarQube projects, issues, metrics, and rules. It enables safe analysis of code quality and security findings through a set of validated, safety-first tools.Last updated6Why this server?
Integrates with SonarQube to query projects, issues, quality gates, coverage metrics, security hotspots, and code duplication, enabling AI agents to perform code quality analysis and monitoring.
AlicenseCqualityCmaintenanceA Python MCP server for SonarQube, enabling AI agents to query projects, issues, quality gates, coverage, and security hotspots.Last updated13MITWhy this server?
Integrates with SonarQube servers for an optional secondary phase of deep code analysis and security auditing.
Alicense-qualityAmaintenance🚀 Kill the Junior AI Era. 🤖 Level up your AI code to Principal standards. No more sloppy lines or junior mistakes. Automated ESLint ✨ TypeScript 🔧 Prettier 🎨 SonarQube 🛡️ Security 🔒 Complexity 📊 in seconds. High-stakes quality, forced to ship only the best. ⚡🏆 Goodbye, bad code. Hello, Principal Engineer. 🚀✨Last updated5932MIT