Code Intelligence
Code Intelligence provides AI-automated coverage-guided fuzz testing through its CI Fuzz platform and open-source Jazzer engines, targeting automotive, medical device, and other regulated industries needing ISO 21434 and FDA cybersecurity compliance.
- Company typePrivate
- Founded2017
- HeadquartersBonn, Germany
- Headcount51–100
- GTM typeB2B
- OfferingSoftware
What Code Intelligence does
Code Intelligence GmbH is a German application security company that provides AI-automated coverage-guided fuzz testing through its CI Fuzz platform. Founded in 2017 and headquartered in Bonn with a fully remote workforce, the company builds tooling that identifies memory corruption and other vulnerabilities in C/C++, Java, and JavaScript codebases. Its technology stack includes the proprietary CI Fuzz platform, the Spark AI Test Agent — which uses large language models together with static analysis to autonomously generate and execute fuzz tests — and the open-source fuzzing engines Jazzer (Java) and Jazzer.js (JavaScript), which Google uses within its OSS-Fuzz project and which have collectively uncovered 1,382 issues. The platform also includes an AUTOSAR Simulator that enables hardware-independent fuzz testing of automotive software.
The company sells CI Fuzz via quote-based enterprise subscriptions through a direct sales motion targeting security- and safety-conscious industries, primarily automotive and medical devices, with regulatory alignment to ISO/SAE 21434, Automotive SPICE, FDA cybersecurity guidance, EU MDR, AAMI TIR 57:2016, IEC 81001-5-1, and ISA/IEC 62443. It operates a hybrid go-to-market: a product-led growth layer built around the free open-source Jazzer and Jazzer.js engines drives developer adoption and community, while direct enterprise sales convert regulated-industry buyers. Named customers include Google, Deutsche Telekom, Bosch, Continental, CARIAD, GitHub, Vector Informatik, ETAS, Secunet, and XOS Trucks, spanning automotive, telecommunications, and software development.
The business has raised approximately $14.8 million in total funding across a 2018 seed round (HTGF, Digitalhub.de), a 2020 extension (LBBW VC, OCCIDENT, Verve Ventures), a 2021 Intel Ignite program participation, and a $12 million Series A in June 2022 led by Tola Capital. Leadership consists of co-founder and CEO Sergej Dechand, co-founder and Chief Scientist Khaled Yakdan, co-founder and COO Henning Perl, and CTO Niklas Henrich. Headcount sits in the 51–100 range, and the company continues to invest in product expansion (Spark GA, MCP server integration, multi-LLM provider support) and vertical expansion into medical devices, industrial automation, telecommunications, energy, and aerospace.
Code Intelligence firmographics
Firmographics- Name
- Code Intelligence
- Legal name
- Code Intelligence GmbH
- Website
- https://code-intelligence.com
- Company type
- Private
- Founded year
- 2017
- Operating status
- Operating
- Headcount range
- 51–100 employees
- Short description
- Code Intelligence provides AI-automated coverage-guided fuzz testing through its CI Fuzz platform and open-source Jazzer engines, targeting automotive, medical device, and other regulated industries needing ISO 21434 and FDA cybersecurity compliance.
- Ownership category
- akta.pro rank
Code Intelligence industry classification
Industry- Product category
- Application Security Testing Software
- NAICS
- Computer Systems Design and Related Services (54151)
- SIC
- Services-Prepackaged Software (7372)
- akta.pro primary industry
- App Security, Compliance & Review Automation Platforms (BPAMADAJ)
Keywords
Where Code Intelligence is headquartered
LocationHeadquarters
- HQ city
- Bonn
- HQ country
- Germany
- HQ region
- Europe
Offices3 records
Markets served
Code Intelligence business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Technology or R&D, Personnel, Marketing or Sales, Operations
Revenue model
- Enterprise Software Licenses/Subscriptions: Code Intelligence generates revenue through enterprise subscriptions for CI Fuzz, their AI-automated fuzz testing platform. The company targets automotive, medical device, and other security-conscious industries with compliance requirements (ISO 21434, FDA, etc.). The open-source fuzzers (Jazzer, Jazzer.js) are free for testing open-source projects, while closed-source enterprise usage requires contacting the company.
Go-to-market motion2 records
Distribution channels3 records
Marketing channels7 records
Code Intelligence product offering
Product offeringCore offering
Code Intelligence provides CI Fuzz, an AI-automated coverage-guided fuzz testing platform that enables developers and security teams to find and fix bugs and vulnerabilities in source code with minimal manual effort. The platform is complemented by the open-source Jazzer (Java) and Jazzer.js (JavaScript) fuzzing engines, the AUTOSAR Simulator for hardware-independent automotive software testing, and Spark, an AI Test Agent that autonomously identifies and generates fuzz tests using LLMs and static analysis.
Product overview
Code Intelligence provides an AI-automated application security testing platform centered around CI Fuzz, a coverage-guided fuzz testing solution. The platform is complemented by open-source fuzzing engines (Jazzer for Java, Jazzer.js for JavaScript) and specialized solutions like the AUTOSAR Simulator for automotive testing. The AI Test Agent (Spark) enhances the platform by autonomously generating and running fuzz tests using LLMs, reducing manual effort in vulnerability discovery.
Differentiator
Problem solved
Functional benefit
Brands
- CI Fuzz: AI-automated Coverage-Guided Fuzz testing solution that lowers barriers to secure code. With its AI Test Agent, it automates manual tasks associated with fuzzing and autonomously detects bugs and vulnerabilities.
- Jazzer & Jazzer.js
- Spark
Products and services
- CI Fuzz AI-automated coverage-guided fuzz testing platform that enables developers and security teams to find and fix bugs and vulnerabilities in source code with minimal manual effort. Features autonomous AI-driven fuzz test generation, root-cause analysis with full stack traces, and CI/CD integration. Targeted at enterprise security and development teams in automotive, medical devices, and other regulated industries.
- Jazzer World-leading open-source fuzzing engine for Java, maintained by Code Intelligence and used by Google in OSS-Fuzz projects, where it has helped uncover 1,382 issues in open-source projects. Distributed freely on GitHub.
- Jazzer.js Open-source fuzzing engine for JavaScript, maintained by Code Intelligence and used by Google in OSS-Fuzz projects for testing JavaScript codebases. Distributed freely on GitHub.
- AUTOSAR Simulator Enables testing of AUTOSAR applications without hardware dependencies, allowing software engineers to redirect calls from original MCal functionality to a simulator implementation. Designed for automotive software validation in compliance with Classic AUTOSAR standards.
- AI Test Agent (Spark) AI-powered agent that autonomously identifies fuzzing targets via static analysis, generates realistic fuzz test harnesses using LLMs (including Tree of Thoughts prompting), runs tests, and reports findings with exact code locations and triggering inputs. Available as a distinct AI-driven capability within the CI Fuzz platform.
Quantifiable outcome
- Saves up to 1,000 hours of manual work per project
- +3 more outcomes
Companies that use Code Intelligence
Customer profileNamed customers10 records
Segments6 records
Ideal customer profiles3 records
Code Intelligence technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Integration5 records
AI capability4 records
Feature8 records
Code Intelligence partnerships and signals
Strategic signalPartnerships
One partnership is on record.
- GooglecoreGoogle uses Code Intelligence's open-source fuzzing engines (Jazzer and Jazzer.js) in their OSS-Fuzz project, which has helped uncover 1,382 issues in open-source projects. This represents a mutual collaboration where Google provides infrastructure and Code Intelligence provides fuzzing technology.
Scale indicators7 records
Recent moves6 records
Expansion highlights6 records
Code Intelligence competitors and assessment
Company assessmentBroad incumbents
- JFrog (Xray, Curation): Software supply-chain security platform increasingly bundling SAST and contextual analysis; competes for the same DevSecOps tooling consolidation budgets that drive CI Fuzz sales.
- Synopsys (Coverity, Black Duck, Defensics): Broad incumbent in application security testing; Defensics offers protocol and API fuzzing while Coverity does static analysis. Directly competes for the same automotive/medical device AppSec budget with a much larger platform footprint.
- GitHub Advanced Security (CodeQL, Copilot Autofix): Hyperscaler-grade incumbent bundling code scanning, secret scanning, and dependency analysis into GitHub; CodeQL is extending toward AI-driven test generation. GitHub is also a Code Intelligence reference customer, creating both partnership and competitive overlap.
- GitLab (SAST/DAST, Duo AI Security): Single DevSecOps platform with built-in SAST, DAST, and dependency scanning plus AI security features; overlaps with CI Fuzz on CI/CD-integrated security testing and competes for the same enterprise developer-tooling budget.
- Snyk: Developer-first security platform covering SCA, SAST, container, and IaC; Snyk Code uses AI-assisted fix suggestions and competes for security tooling wallet inside engineering organizations where Code Intelligence also sells.
- Checkmarx: Enterprise AppSec suite (SAST, SCA, IaC) sold into regulated industries; competes for automotive and medical-device security testing budgets alongside Code Intelligence.
- Veracode: Enterprise application security testing vendor with SAST, DAST, and software composition analysis; strong presence in regulated verticals (financial services, healthcare) that overlap with Code Intelligence's medical-device segment.
Direct peers
- ForAllSecure (Mayhem): Direct competitor in autonomous fuzz testing; Mayhem is a coverage-guided fuzzing platform used for continuous software vulnerability discovery, closely overlapping with CI Fuzz in target market (developers, AppSec) and approach (AI/automation).
Emerging players
- Semgrep: Code-centric SAST platform with strong developer adoption and AI-assisted scanning (Semgrep Assistant); competes for the same AppSec-tooling slot in CI pipelines and increasingly extends into dynamic testing.
Others
- OSS-Fuzz (Google): Free, large-scale continuous fuzzing service run by Google that also hosts Code Intelligence's Jazzer/Jazzer.js engines; serves as both a credibility channel and a free alternative that constrains Code Intelligence's pricing in the open-source ecosystem.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat5 records
Key risks6 records
Key highlights6 records
Customer concentration
Code Intelligence social profiles
Digital presenceCode Intelligence compliance and trust
Trust signalCompliance8 records
Code Intelligence financial estimates
Financial estimateRevenue estimate
Valuation estimate
Code Intelligence leadership team
Management profileNumber of profiles
Profiles4 records
Code Intelligence funding detail
Funding detailFunding overview
Funding rounds4 records
Investors7 records
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Code Intelligence M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Code Intelligence
What does Code Intelligence do?
Code Intelligence provides CI Fuzz, an AI-automated coverage-guided fuzz testing platform that enables developers and security teams to find and fix bugs and vulnerabilities in source code with minimal manual effort. The platform is complemented by the open-source Jazzer (Java) and Jazzer.js (JavaScript) fuzzing engines, the AUTOSAR Simulator for hardware-independent automotive software testing, and Spark, an AI Test Agent that autonomously identifies and generates fuzz tests using LLMs and static analysis.
Is Code Intelligence a public or private company?
Code Intelligence is a private company. It is classified as venture growth investor backed and is currently operating.
When was Code Intelligence founded?
Code Intelligence was founded in 2017. It employs 51 to 100 people.
Where is Code Intelligence based?
Code Intelligence is headquartered in Bonn, Germany, in the Europe region.
How does Code Intelligence make money?
One revenue line is on record: enterprise Software Licenses/Subscriptions.
Who are Code Intelligence's main competitors?
Broad incumbents on record are JFrog (Xray, Curation), Synopsys (Coverity, Black Duck, Defensics), GitHub Advanced Security (CodeQL, Copilot Autofix), GitLab (SAST/DAST, Duo AI Security), Snyk, Checkmarx and Veracode. ForAllSecure (Mayhem) is listed as a direct peer. Semgrep is listed as an emerging player. OSS-Fuzz (Google) is listed as an others.
Does Code Intelligence have an API?
No public API is recorded for Code Intelligence.
What industry is Code Intelligence in?
Code Intelligence's product category is Application Security Testing Software. Its primary akta.pro industry code is BPAMADAJ, App Security, Compliance & Review Automation Platforms. Its NAICS code is 54151 and its SIC code is 7372.