
GitHubAdvanced Security (GH-500)
Domain 4Objective 2
Set up and Configure Code Security GH-500 Practice Questions (Page 1)
Part of the Configure and use Code Security (formerly Code Scanning with CodeQL) domain, which accounts for 10-15% of the GH-500 exam.
24questions here
5free pages
6concepts
10-15%of the exam
Questions 1–5
- 1
Which cron expression would schedule a code scanning workflow to run every day at midnight UTC?
Select an answer first - 2
A company uses a self-hosted CI system that runs in a restricted network. They want to upload SARIF results to GitHub, but the CI system cannot directly access the GitHub API. What is a viable solution?
Select an answer first - 3
A team wants to use the 'security-extended' query suite in addition to the default queries. How should they configure the workflow?
Select an answer first - 4
Where can a user find the default code scanning workflow templates provided by GitHub?
Select an answer first - 5
A team wants to use the default CodeQL workflow template but needs to customize the queries to include additional security queries from a private repository. What should they modify in the workflow?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GitHub. “GH-500” is a trademark of its owner, used for identification only.