{"id":"sonarqube-api","name":"SonarQube / SonarCloud API","homepage":"https://docs.sonarsource.com/sonarqube/latest/extension-guide/web-api/","repo_url":"https://github.com/SonarSource/sonarqube","category":"developer-tools","subcategories":["code-quality","static-analysis","sast","developer-tools"],"tags":["sonarqube","sonarcloud","code-quality","static-analysis","sast","code-coverage","rest-api"],"what_it_does":"SonarQube/SonarCloud REST API for accessing code quality metrics, security vulnerabilities, code smells, duplications, and technical debt reports from static code analysis.","use_cases":["Fetching code quality gate status for CI/CD pipeline decisions","Pulling security hotspots and vulnerability counts for security dashboards","Querying code coverage trends and component-level metrics","Automating issue assignment and management workflows","Building engineering productivity dashboards with quality trends"],"not_for":["Runtime security monitoring or DAST","Dependency vulnerability scanning (use Snyk or Dependabot)","Teams without SonarQube/SonarCloud setup"],"best_when":"Your team uses SonarQube or SonarCloud for static analysis and you need to integrate code quality data into dashboards, reports, or CI/CD gates.","avoid_when":"You need dependency scanning, runtime analysis, or don't have SonarQube configured.","alternatives":["snyk-api","codecov-api","github-rest-api"],"af_score":71.7,"security_score":72.0,"reliability_score":null,"package_type":"mcp_server","discovery_source":["github"],"priority":"low","status":"evaluated","version_evaluated":"current","last_evaluated":"2026-03-01T09:50:06.238535+00:00","performance":{"latency_p50_ms":200,"latency_p99_ms":1500,"uptime_sla_percent":99.9,"rate_limits":"Not publicly documented; generous for self-hosted","data_source":"llm_estimated","measured_on":null}}