Sushi Bytes

Software Composition in the AI Era

6 min · 24. mar. 2026
episode Software Composition in the AI Era cover

Beskrivelse

AI is changing how software gets written – but what does that mean for open source compliance and software supply chain security? In this episode of Sushi Bytes, Shinobi and Gen explore SCA in the AI era. As development shifts from prompts to autonomous agents, tool-augmented workflows, and spec-driven engineering, traditional software composition analysis workflows need to evolve. They break down the three major shifts in AI-assisted development and explain why SCA tools must become agent-friendly, tool-driven, and embedded directly into modern development pipelines. If AI is writing the code, someone still needs to understand what’s in it.

Kommentarer

0

Vær den første til at kommentere

Tilmeld dig nu og bliv en del af Sushi Bytes-fællesskabet!

Kom i gang

2 måneder kun 19 kr.

Derefter 99 kr. / måned · Opsig når som helst.

  • Podcasts kun på Podimo
  • 20 lydbogstimer pr. måned
  • Gratis podcasts

Alle episoder

14 episoder

episode Agentic SCA is the Next Evolution in Software Supply Chain Integrity cover

Agentic SCA is the Next Evolution in Software Supply Chain Integrity

AI didn’t just change how you build software, it broke your process for inspecting it for open source license compliance and security vulnerabilities. In this episode of Sushi Bytes, Shinobi and Gen reconnect with Aaron Branson to unpack FossID’s newly announced Agentic SCA strategy – and why the timing couldn’t be better after our last conversation on SCA in the AI Era. As code generation accelerates and the sheer volume of code explodes, software risk leaders are facing a new reality: more code, more complexity, and less time to react. Aaron breaks down how Agentic SCA shifts the process from passive scanning to active participation – embedding intelligence, automation, and policy enforcement directly into the development workflow. If you’re dealing with AI-generated code, SBOM pressure, or stepping up compliance rigor without slowing developers down – this is the conversation you need right now.

16. apr. 202613 min