Fossid unveils real time compliance tool for ai generated code
FossID, a software compliance company based in Stockholm, introduced Agentic SCA, a new software composition analysis layer designed for AI assisted coding environments. The system embeds compliance checks directly into development workflows. It scans code as it is written rather than after compilation, aiming to detect risks earlier in the process.
The tool responds to a shift in how software is produced. Generative AI systems now write and modify large volumes of code. This code often draws from fragmented sources with unclear origins. Traditional SCA tools, built for dependency managed codebases, struggle to track these inputs. Agentic SCA integrates FossID’s analysis engine and database directly into AI agents, enabling real time inspection during code generation.
The platform allows AI agents to identify open source, third party and proprietary code, whether in full files or small fragments. It detects license obligations in complex multi license scenarios. It flags known vulnerabilities and provides remediation guidance before the code is committed. FossID positions this approach as a continuous model for securing the software supply chain, where compliance is embedded at the point of creation.
The system relies on an agent compatible architecture built around three components. FossID’s MCP server gives AI agents access to a database covering more than 200 million open source components, along with tools such as signature search, fragment detection and license analysis. Skills modules embed audit logic derived from compliance experts. Hooks act as event driven controls that trigger checks throughout development workflows.
Beyond real time compliance, the technology also reshapes code auditing. AI agents can perform multi layer analysis of entire codebases, prioritize risks based on severity and impact, and generate structured audit reports that update continuously as the code evolves. This reduces the need for manual review cycles and shortens response times to compliance issues.
Agentic SCA is currently in pilot testing with enterprise clients in sectors including automotive, semiconductors, telecommunications and software. FossID plans to make the tool generally available in the second half of 2026.
-
17:30
-
17:20
-
17:15
-
17:00
-
17:00
-
16:45
-
16:40
-
16:30
-
16:20
-
16:15
-
16:00
-
16:00
-
15:45
-
15:40
-
15:30
-
15:20
-
15:15
-
15:01
-
15:00
-
14:45
-
14:40
-
14:30
-
14:20
-
14:15
-
14:00
-
13:50
-
13:45
-
13:33
-
13:20
-
13:17
-
13:05
-
13:00
-
12:40
-
12:30
-
12:20
-
12:15
-
12:00
-
11:50
-
11:45
-
11:40
-
11:30
-
11:20
-
11:17
-
11:15
-
11:09
-
11:00
-
11:00
-
10:45
-
10:34
-
10:33
-
10:30
-
10:15
-
10:00
-
10:00
-
09:45
-
09:40
-
09:30
-
09:20
-
09:17
-
09:15
-
09:01
-
09:00
-
08:45
-
08:40
-
08:30
-
08:20
-
08:15
-
08:00
-
07:50
-
07:45
-
07:30
-
07:15
-
07:06