Paths you can defend in the readout.
Every edge in the graph records where it came from. Collected edges come straight from SharpHound or AzureHound. Computed edges, such as DCSync, are derived from rights that were collected. Assumed edges cover defaults, like Domain Admins being local admin everywhere. Inferred edges come from GPO settings.
A path is rated Verified, High, Medium or Low by its weakest edge. Use Verified Only when you need to prove exploitability, and All Edges when you are scoping exposure.