Sushi Bytes
Sushi Bytes is an unapologetically AI-generated podcast brought to you by Shinobi, FossID’s vigilant Software Composition Analysis ninja. In each bite-sized episode, Shinobi breaks down the evolving world of software supply chain integrity – from open-source license compliance and vulnerability disclosure to SBOM standards, IP risks, and AI-generated code implications.
With a surge in regulatory scrutiny and AI adoption, the software stack is becoming harder to manage – and riskier to ignore. Sushi Bytes offers sharp, fast insights for engineering leaders, open-source program managers, and legal professionals navigating the intersection of compliance, code, and code generation.
Sushi Bytes
Due Diligence Déjà Vu: License Compliance in Software M&A
Use Left/Right to seek, Home/End to jump to start or end. Hold shift to jump forward or backward.
Startups are moving fast – fueled by AI-generated code, experimental “vibe coding,” and a breakneck pace of shipping software. But when those startups become acquisition targets, things can get messy. In this episode, Shinobi goes solo (with Gen temporarily sidelined by a network outage) to unpack how this new wave of coding introduces license risk that traditional SBOMs miss. Learn why SCA-powered software audits are essential for surfacing modified open source fragments, how blind audits protect confidentiality, and why acquirers need more than metadata to see what’s really lurking in a target’s repo.