►
From YouTube: Container Scanning Transition Sync Session
Description
This is a recording from the meeting Container Scanning Transition Sync Session, where we have discussed the transition of Container Scanning feature, from Govern:Security Policies to Secure:Composition Analysis.
A
Okay,
hello:
everyone
welcome
to
our
meeting
container
scanning
transition
sync
session
today.
We're
gonna
talk
briefly
about
the
transition
itself
and,
as
we
had
the
document
here,
we
had
two
questions:
I'm
gonna
just
answer
them
and
we'll
see
if
we're
gonna
have
any
any
more
questions
on
the
way.
A
So
the
first
question
is:
are
the
licenses
inside
legal
updated
automatically?
For
example,
if
three
used
license
a
and
then
transition
to
license
b
nope?
I
believe
we
had
a
long
discussion
with
legal
team
about
the
whole
licensing
stuff,
because
we
also
had
some
concerns
about
licenses
for
alpine
database.
A
If
I
correct
correctly
so
I
will
post
the
link
to
the
issue
here
where
we,
it
was
all
discussed,
but
no,
it's
not
automatically.
So
at
some
point
we
either
want
to
to
have
some
check
for
that
or
I
will
just
do
it
every
month
or
something
just
to
verify
and
and
the
other
question
howard.
Somebody
would
like
to
add
something
to
that.
B
B
So
alpine
has
a
project
that
actually
takes
all
of
that
vulnerability,
data
and
extracts
it
parses
it
out
and
puts
it
into
a
database,
that's
convenient
and
easy
to
use,
but
that
database
or
sorry
the
the
code,
the
go
code.
I
think
it's
go
anyway.
The
code
that
generates
that
is
licensed
with
a
shift
left
license.
B
B
B
A
Yeah
thanks
sam
okay
and
other
question
about
ee
features
how
they
are
enabled.
So
we
have
this
ello
list
feature
that
should
not
be
available
on
free
tier.
I'm
gonna
just
quickly
share
my
screen
and,
let's
see.
C
A
So,
in
terms
of
this
list
now,
I
believe,
you've
seen
the
video
when
I
briefly
went
through
the
to
the
source
code
and
how
it's
built
like
it
has
plugins
and
so
on.
So
in
terms
of
allo
list,
there
is
this
method
called
build,
outlist,
and
if
environment
is
ae,
it
will
not
include
the
allo
list
generated
from
from
this
file
and
how
we
are
checking
if
it's
e
or
not
like,
we
simply
check
the
github
features
variable.
So,
when
you're
running
a
pipeline,
you
get
these
features
populated
with
the
features
that
are
enabled.
A
Okay
cool,
so
just
just
one
thing
from
me:
I
went
through
whole
like
all
issues
and
all
features
that
were
in
our
backlog
and
I
if
they
were
not
started
or
they
were
not
like
in
progress
and
death
or
an
interview.
I
I
kept
them
in
our
group
for
now
so
we'll
finish
them
any
important
box.
I
mean
customer
box
and
so
on.
We've
decided
to
to
take
into
this
milestone
to
quickly
fix
them.
A
So
you'll
not
end
up
with
bugs
with
due
date
that
you
need
to
work
on
immediately,
but
anything
else
like
features
proposals
and
so
on,
went
to
to
your
group,
and
I
believe
I
did
it
yesterday.
A
So
if
you
have
any
questions
we'll
here
to
to
help
you
with
all
the
refinements
and
all
understanding,
so
let
us
know
if
you
need
anything.
A
Okay,
so
thank
you
for
this
quick
meeting
enjoy
the
rest
of
the
day
and
have
a
nice
one.
Bye
thanks,
bye.