I find it hilarious that FluidScan outright fails to work when following instructions from Cloud Application Security Assessment (CASA). Then again this means that the scan result file is empty, and thus you're technically compliant. Right?
Just joking - this is not how it goes, but I just hate when tooling and documentation is left to rot.
https://appdefensealliance.dev/casa/tier-2/ast-guide/static-scan