GitHub GitHub-Advanced-Security - GitHub Advanced Security GHAS Exam
You are a maintainer of a repository and Dependabot notifies you of a vulnerability. Where could the vulnerability have been disclosed? (Each answer presents part of the solution. Choose two.)​
Which of the following benefits do code scanning, secret scanning, and dependency review provide?
In the pull request, how can developers avoid adding new dependencies with known vulnerabilities?
What is a prerequisite to define a custom pattern for a repository?
Which of the following secret scanning features can verify whether a secret is still active?
You are managing code scanning alerts for your repository. You receive an alert highlighting a problem with data flow. What do you click for additional context on the alert?​
Where can you view code scanning results from CodeQL analysis?
Which of the following is the best way to prevent developers from adding secrets to the repository?
Which of the following statements best describes secret scanning push protection?​
Where can you find a deleted line of code that contained a secret value?