🔥 3-day streak
GitHub Advanced Security (GH-500)13 / 144
Question 13 of 144
A platform security team wants to enforce a consistent remediation SLA across 40 repositories: any open code scanning alert with a security severity of 'critical' or 'high' must block deployment to production, while medium and low alerts should only generate warnings. They also need the enforcement to survive when individual repository admins try to loosen their local branch protection settings. Which approach best meets these requirements at scale?
Reviewed for accuracy · Report an issueNext question