GitHub Advanced Security GHAS Exam GitHub-Advanced-Security Question # 1 Topic 1 Discussion

GitHub Advanced Security GHAS Exam GitHub-Advanced-Security Question # 1 Topic 1 Discussion

GitHub-Advanced-Security Exam Topic 1 Question 1 Discussion:
Question #: 1
Topic #: 1

Which of the following is the most complete method for Dependabot to find vulnerabilities in third-party dependencies?


A.

Dependabot reviews manifest files in the repository


B.

CodeQL analyzes the code and raises vulnerabilities in third-party dependencies


C.

A dependency graph is created, and Dependabot compares the graph to the GitHub Advisorydatabase


D.

The build tool finds the vulnerable dependencies and calls the Dependabot API


Get Premium GitHub-Advanced-Security Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.