When you visit any website, it may store or retrieve information on your browser, mostly in the form of cookies. This information might be about you, your preferences or your device and is mostly used to make the site work as you expect it to. The information does not usually directly identify you, but it can give you a more personalized web experience. Because we respect your right to privacy, you can choose not to allow some types of cookies. Click on the different category headings to find out more and change our default settings. However, blocking some types of cookies may impact your experience of the site and the services we are able to offer.
More information
Can you elaborate on how you are scanning?
Hi Marc,
We are performing the scan via Bitbucket' s pipeline feature or through buildspec.yml file that builds the code in AWS. For both the cases, we have scripted the post build phase to initiate a scan in veracode by creating the respective application profile and sandbox. This gives us the static scan results. But if we want to get the result of SCA scan, in the Software Composition Analysis section, we are not sure how can we trigger that.
Are you paying for SCA in your contract? SCA scanning happens as part of the static scan. You should be able to see results through the SCA tab, reports, and analytics.