A CI/CD pipeline has a stage that runs security vulnerability scans on dependencies. Which tool is specifically designed to scan Python packages for known vulnerabilities?
Trap 1: Snyk
Snyk is a third-party tool, but not Python-specific.
Trap 2: Dependabot
Dependabot automates updates, not scanning.
Trap 3: npm audit
npm audit is for Node.js packages.
- A
pip audit
pip audit scans Python packages for vulnerabilities.
- B
Snyk
Why it fails: Snyk is a third-party tool, but not Python-specific.
- C
Dependabot
Why it fails: Dependabot automates updates, not scanning.
- D
npm audit
Why it fails: npm audit is for Node.js packages.