Skip to main content
Run any Skill in Manus
with one click
$pwd:

qa-sca

// Software composition analysis gate using Syft (SBOM generation) and Grype (CVE scanning) plus license compliance checking. Generates a CycloneDX SBOM, scans for CVEs in all direct and transitive dependencies, flags denied license types (GPL, AGPL), and diffs against the previous SBOM to surface only new findings per run. Env vars: SCA_FAIL_ON_CRITICAL, SCA_LICENSE_DENY_LIST. (qa-agentic-team)

$ git log --oneline --stat
stars:0
forks:0
updated:May 6, 2026 at 16:12
File Explorer
3 files
SKILL.md
readonly