
GitLabCertified Duo Agent Platform Associate
Domain 4Objective 3
Apply AI-assisted Security Workflows CERTIFIED-GITLAB-DUO-AI-ASSOCIATE Practice Questions (Page 1)
Part of the AI-Assisted Code Workflows domain, which makes up ~29% of our current practice bank.
19questions here
4free pages
5concepts
Questions 1–5
- 1
A developer wants to use GitLab Duo AI to automatically check new code for security issues before merging. Where should they look for the AI-generated security findings?
Select an answer first - 2
A developer is reviewing a GitLab Duo AI security report for a Java application. The report flags a hardcoded password in the source code. The developer is surprised because the password is used for a test environment, not production. What is the best practice for handling this finding?
Select an answer first - 3
During a code review, a developer notices a file containing an API key that is committed to the repository. Which type of security vulnerability does this represent?
Select an answer first - 4
A software team wants to adopt a 'security as code' approach and ensure that AI-assisted security scanning is part of their daily development workflow. They currently have a GitLab instance with multiple projects. The team lead wants to enforce a policy that no code can be merged without a successful AI security scan. What is the most effective way to implement this policy?
Select an answer first - 5
A developer receives a GitLab Duo AI security finding that flags a potential path traversal vulnerability in a file upload feature. The AI suggests validating the file name and path to prevent directory traversal. The developer is not sure if the finding is a false positive because the application runs in a sandboxed environment. What should the developer do?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GitLab. “CERTIFIED-GITLAB-DUO-AI-ASSOCIATE” is a trademark of its owner, used for identification only.