Microsoft GitHub Advanced Security - GH-500 Exam Practice Test

Which of the following options are code scanning application programming interface (API) endpoints? Each answer presents part of the solution. (Choose two.)
Correct Answer: B,D
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
If notification and alert recipients are not customized, which users receive notifications about new Dependabot alerts in an affected repository?
Correct Answer: C
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
How would you build your code within the CodeQL analysis workflow? Each answer presents a complete solution. (Choose two.)
Correct Answer: D,E
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
Which of the following features helps to prioritize secret scanning alerts that present an immediate risk?
Correct Answer: C
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
How many alerts are created when two instances of the same secret value are in the same repository?
Correct Answer: D
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
After looking into an injection code scanning alert, you notice that the input is properly sanitized with custom logic. Which of the following is the next step?
Correct Answer: D
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).