GitHub Advanced Security GHAS Exam GitHub-Advanced-Security Question # 12 Topic 2 Discussion

GitHub Advanced Security GHAS Exam GitHub-Advanced-Security Question # 12 Topic 2 Discussion

GitHub-Advanced-Security Exam Topic 2 Question 12 Discussion:
Question #: 12
Topic #: 2

Assuming there is no custom Dependabot behavior configured, where possible, what does Dependabot do after sending an alert about a vulnerable dependency in a repository?


A.

Creates a pull request to upgrade the vulnerable dependency to the minimum possible secure version


B.

Scans repositories for vulnerable dependencies on a schedule and adds those files to a manifest


C.

Constructs a graph of all the repository's dependencies and public dependents for the default branch


D.

Scans any push to all branches and generates an alert for each vulnerable repository


Get Premium GitHub-Advanced-Security Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.