フリー問題

GitHub Administration (GH-100) のフリー問題 11 / 20 問目

問題文

A security team wants automated analysis of the organization's own source code to find vulnerabilities such as injection flaws, with results shown as alerts in each repository. Which feature provides this?

選択肢

  1. The dependency graph, which lists the packages a repository depends on.
  2. Dependabot alerts, which report known vulnerabilities in the project's dependencies and therefore also cover the injection flaws that reach the code through those libraries.
  3. Code scanning, which can use the CodeQL analysis engine to examine the repository's code and raise alerts.
  4. Secret scanning, which detects credentials committed to the repository.

解答・解説を確認するには

正解と解説の確認、回答の記録には無料登録が必要です。登録すると演習モードでフリー問題に回答し、正誤と解説をその場で確認できます。