Microsoft GitHub Advanced Security - GH-500 Exam Practice Test
Which of the following benefits do code scanning, secret scanning, and dependency review provide?
Correct Answer: B
A dependency has a known vulnerability. What does the warning message include?
Correct Answer: C
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
Where can you use CodeQL analysis for code scanning? Each answer presents part of the solution. (Choose two.)
Correct Answer: B,D
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
What scenario demonstrates the use of Dependabot security updates?
Correct Answer: D
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
What are the default settings for Dependabot alerts in public and private repositories on GitHub?
Correct Answer: A
Which of the following workflow events would trigger a dependency review? (Each answer presents a complete solution. Choose two.)
Correct Answer: A,D
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
You are a maintainer of a repository and Dependabot notifies you of a vulnerability. Where could the vulnerability have been disclosed? Each answer presents part of the solution. (Choose two.)
Correct Answer: A,C
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).