Which of the following tasks can be performed by a security team as a proactive measure to help address secret scanning alerts? (Each answer presents a complete solution. Choose two.)
What is required to trigger code scanning on a specified branch?
How many alerts are created when two instances of the same secret value are in the same repository?
You are configuring code scanning with CodeQL. What is one impact of using a language matrix in your workflow?
Which of the following options are code scanning application programming interface (API) endpoints? (Each answer presents part of the solution. Choose two.)
Which syntax in a query suite tells CodeQL to look for one or more specified .ql files?
You want to specify a CodeQL configuration file for a GitHub Actions workflow. Which input to the init step in the CodeQL action do you use to pass the path of the configuration file?
What is the scope of the Enable all setting for Dependabot alerts at the organization level?
Assuming that default security and analysis settings have not been changed at the repository, organization, or enterprise level, which scenario would generate a dependency graph for the repository?
Assuming security and analysis features are not configured at the repository, organization, or enterprise level, secret scanning is enabled on:
|
PDF + Testing Engine
|
|---|
|
$43.75 |
|
Testing Engine
|
|---|
|
$33.75 |
|
PDF (Q&A)
|
|---|
|
$28.75 |
Microsoft Free Exams |
|---|
|