Sonar Launches Sonar Vortex and SonarQube Remediation Agent to Improve Agentic Effectiveness

Sonar has launched Sonar Vortex and the SonarQube Remediation Agent to directly tackle three critical pain points: agentic code quality, token consumption, and technical debt, making enterprise AI investments more efficient and sustainable.
Now available: SonarQube plugin for Cursor

SonarSource has officially launched a SonarQube plugin for Cursor, shifting deterministic code quality gates and security scanning directly into the AI coding session. As an authorized SonarQube partner, DragonSoft is here to provide an exclusive, first-look breakdown of this new plugin. We are committed to helping your engineering teams harness the full potential of AI while rigorously safeguarding your code quality and security baselines.
Now available: SonarQube Agent App in GitHub

GitHub is expanding its agentic platform beyond coding agents to other external applications, including code verification and analysis agents. The SonarQube Agent App packages SonarQube’s shared skills and MCP server configuration as an Agentic App. Once installed, GitHub gains access to SonarQube’s code quality and security analysis, all governed by your existing quality profiles and gates.
How SonarQube Code Coverage Reporting Works

In automated testing, scenarios like “all tests passed but coverage remains at 0%” or “discrepancies between SonarQube and local tool data” are classic challenges for developers. As an authorized Sonar partner, DragonSoft provides a deep dive into the four-stage pipeline of SonarQube code coverage reporting. We will help you precisely locate the seven root causes of 0% coverage and reveal the underlying logic behind data discrepancies in languages like Python and Java across different tools. By building a deterministic verification layer, we empower enterprises to maintain the baseline of code quality and health while accelerating with AI.
SonarQube Launches Claude Code Plugin: Empowering Enterprise AI Code Governance

As the adoption of AI coding tools accelerates, the tension between development velocity and code quality has intensified. As the officially authorized partner of SonarQube in China, DragonSoft presents an in-depth analysis of the newly released SonarQube plugin for Claude Code. This integration is set to revolutionize code governance in the AI era by leveraging “inner-loop verification” to ensure code meets enterprise-grade security and quality standards the moment it is generated.
Revolutionizing AI-Assisted Coding: Introducing Sonar Context Augmentation

Sonar Context Augmentation is here to change the game. By leveraging the Model Context Protocol (MCP), it injects real-time, verified, and structured insights from SonarQube directly into the AI agent’s reasoning engine. As an authorized partner of Sonar, DragonSoft is excited to deep dive into this milestone feature, which empowers your team to embrace the Agent-Centric Development Cycle (AC/DC) without sacrificing code quality or security.
How to scale code review when AI writes code faster than you can understand it

As AI coding assistants and autonomous agents rapidly reshape the Software Development Life Cycle (SDLC), the sheer volume and complexity of machine-generated code have far exceeded the limits of traditional manual review. This shift has triggered a “black box” code crisis. As an authorized SonarQube partner, DragonSoft explores how to overcome this bottleneck by implementing a “source-agnostic” and risk-based automated code review mechanism. By leveraging Sonar’s Agentic Flow and Quality Gates, engineering teams can verify code quality and security at machine speed, enabling scalable AI-driven innovation without compromising software integrity.
Systematic Analysis vs. Opportunistic Hunting: The SonarQube Advantage.

A few days ago, Anthropic announced Claude Code Security, an agentic approach to vulnerability identification and remediation. Similar to the announcement of Aardvark (aka Codex Security) from OpenAI a few months ago, these initiatives have sparked significant discussion about the future of cybersecurity. This blog post aims to explain what Claude Code Security is (recognizing few details are currently available), and how enterprises and developers should think about its role in their cybersecurity toolchain.
Unlock the True Speed of AI Development: SonarQube 2026.1 LTA is Here

The 2026.1 LTA release represents a fundamental shift in how teams develop software. As AI-generated code becomes a standard and AI-native IDEs and agents become a common component of the development lifecycle, the “vibe, then verify” philosophy has moved from a recommendation to a necessity.
SonarQube Server 10.7 Highlights

Discover the key highlights of SonarQube Server 10.7 in this guide by HKDSD Tech. Learn about its new features for code quality analysis, developer productivity, and maintaining clean, secure code.
