Designing and Implementing Microsoft DevOps Solutions - Exam AZ-400

Black Duck for Open Source License Compliance

Question

You need to consider the underlined segment to establish whether it is accurate.

Black Duck can be used to make sure that all the open source libraries conform to your company's licensing criteria.

Select No adjustment required if the underlined segment is accurate. If the underlined segment is inaccurate, select the accurate option.

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

A

Secure and Manage Open Source Software

Black Duck helps organizations identify and mitigate open source security, license compliance and code-quality risks across application and container portfolios.

Black Duck Hub and its plugin for Team Foundation Server (TFS) allows you to automatically find and fix open source security vulnerabilities during the build process, so you can proactively manage risk. The integration allows you to receive alerts and fail builds when any Black Duck Hub policy violations are met.

https://marketplace.visualstudio.com/items?itemName=black-duck-software.hub-tfs

The underlined segment states that "Black Duck can be used to make sure that all the open source libraries conform to your company's licensing criteria."

This statement is accurate. Black Duck is a tool that is used to manage open source software licenses, vulnerabilities, and code quality issues. It provides organizations with visibility into the open source components that are being used in their software applications and ensures that these components meet the organization's licensing requirements.

Therefore, the correct answer is A. No adjustment required.