
GitHubAdvanced Security (GH-500)
Domain 1Objective 3
Detect, Manage, and Respond to Security Alerts GH-500 Practice Questions (Page 5)
Part of the Describe GitHub Security suites, features, and ecosystem domain, which accounts for 15-20% of the GH-500 exam.
33questions here
7free pages
9concepts
15-20%of the exam
Questions 21–25
- 21
What is the developer's role when a Dependabot alert identifies a vulnerable dependency?
Select an answer first - 22
A developer is triaging a code scanning alert that flags a potential SQL injection in a stored procedure. The developer knows that the stored procedure is only called from an internal admin interface that requires authentication. The developer wants to dismiss the alert. What is the best practice?
Select an answer first - 23
A developer attempts to push a commit that contains a hardcoded API key. Push protection is enabled for the repository, and the push is blocked. What should the developer do?
Select an answer first - 24
What is the purpose of configuring alert policies in GitHub?
Select an answer first - 25
A security team is responsible for overseeing remediation of security alerts across multiple repositories. They want to track the status of all open alerts in a single dashboard. What is the most efficient way to achieve this?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GitHub. “GH-500” is a trademark of its owner, used for identification only.