Microsoft GH-500 - GitHub Advanced Security Exam
You have enabled security updates for a repository. When does GitHub mark a Dependabot alert as resolved for that repository?
Your security team requested that you enable the dependency graph. What happens when you enable this feature for your repository?
In the pull request, how can developers avoid adding new dependencies with known vulnerabilities?
By default, which role can enable Dependabot alerts?
Which of the following workflow events would trigger a dependency review? (Each answer presents a complete solution. Choose two.)​
What happens when you remove someone's access to a private repository?
By default, what is the minimum role needed to bypass push protection in a repository?
When using CodeQL, what extension stores query suite definitions?
What is a benefit of using a custom CodeQL configuration file?
You want to enforce an enterprise policy that allows repository administrators within all organizations to enable GitHub Advanced Security for their repositories. Which option should you choose for this policy?
