Skip to content

Fraunhofer Tool Codyze Audits Code for Security Requirements

Bottom line: Fraunhofer Codyze automates code verification against security requirements, simplifying compliance standard adherence.

The Fraunhofer Institute provides Codyze, an analysis tool that automatically verifies whether source code meets defined security requirements. The tool helps enterprises demonstrate compliance requirements and identify gaps early.

Codyze performs automated analysis of program code to detect violations against specified security patterns and best practices. The tool aims to uncover security vulnerabilities early in the development process, rather than discovering them only during penetration tests or in production.

For CTOs, the tool is relevant because it reduces time-consuming manual code review work while simultaneously improving the demonstrability of security measures – an aspect that is becoming increasingly important for regulatory requirements and compliance audits. Particularly in the context of legislation such as the Cyber Resilience Act (CRA), automated security checks can document that software has been tested against known security standards.

The tool is developed by the Fraunhofer Institute for Secure Information Technology (SIT) and can be integrated into existing development pipelines. Organizations that want to standardize software security while reducing administrative overhead can employ Codyze as part of their security governance.


Source: www.security-insider.de · Published 30 July 2026
Lumi AI News — AI-assisted curation in accordance with Art. 50 EU AI Act. Paraphrase and classification by Lumi News Pipeline v1.7.3.

Share on: