CompTIA DataX DY0-001 (V1) Practice Question

A data science team is creating a container image for a predictive-analytics service that will be offered under a proprietary license. Corporate policy forbids distribution of any image that contains a direct or transitive dependency released under the GNU GPL or other strong-copyleft licenses. The team wants to block non-compliant images automatically before they are pushed to the internal registry, while adding as little manual work as possible to the continuous-integration (CI) pipeline.

Which approach best meets these dependency-licensing requirements?

  • Run pip freeze after the image is built, store the output as a build artifact, and ask the compliance team to review the file once a quarter.

  • Generate an SBOM during each build with Syft or Trivy and have an Open Policy Agent rule fail the pipeline whenever a prohibited license is detected.

  • Pin every third-party package version in a requirements.txt file and commit it to version control to keep a reproducible inventory of licenses.

  • Replace any GPL-licensed dependencies with internal forks released under a permissive license and document the change in the project's README.

CompTIA DataX DY0-001 (V1)
Operations and Processes
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

SAVE $64
$529.00 $465.00
Bash, the Crucial Exams Chat Bot
AI Bot