GitHub GitHub-Advanced-Security - GitHub Advanced Security GHAS Exam
Total 75 questions
Which of the following workflow events would trigger a dependency review? (Each answer presents a complete solution. Choose two.)​
If default code security settings have not been changed at the repository, organization, or enterprise level, which repositories receive Dependabot alerts?
Which syntax in a query suite tells CodeQL to look for one or more specified .ql files?
Which of the following is the most complete method for Dependabot to find vulnerabilities in third-party dependencies?
Which of the following information can be found in a repository's Security tab?
Assuming security and analysis features are not configured at the repository, organization, or enterprise level, secret scanning is enabled on:
When using CodeQL, what extension stores query suite definitions?
What is a security policy?
As a developer with write access, you navigate to a code scanning alert in your repository. When will GitHub close this alert?
Assuming that no custom Dependabot behavior is configured, who has the ability to merge a pull request created via Dependabot security updates?​