
GitHubAdvanced Security (GH-500)
Domain 6Objective 2
Configure Security Features and Defaults GH-500 Practice Questions (Page 3)
Part of the GitHub Security suites administration domain, which accounts for 10-15% of the GH-500 exam.
16questions here
4free pages
5concepts
10-15%of the exam
Questions 11–15
- 11
An organization wants to enable CodeQL code scanning on a repository with minimal manual configuration, using GitHub's recommended default settings. Which setup method should be used?
Select an answer first - 12
Your organization has a default security configuration that enables secret scanning with push protection. A developer reports that they cannot push a commit that contains a test API key, even though the key is not a real secret. What should you do to allow this push while maintaining security?
Select an answer first - 13
What is the purpose of a default security configuration in a GitHub organization?
Select an answer first - 14
Your organization has a default security configuration that enables secret scanning with push protection. A repository that was previously excluded from the default configuration is now included. The repository has a custom configuration that disables push protection. What happens to the repository's push protection setting?
Select an answer first - 15
Your organization has a default security configuration that enables CodeQL with default setup and secret scanning with push protection. A new repository is created for a proof-of-concept project that should not have push protection enabled because developers frequently push test secrets. What should you do?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GitHub. “GH-500” is a trademark of its owner, used for identification only.