🔥 3-day streak
GitHub Advanced Security (GH-500)31 / 144
Question 31 of 144
You are a security manager for an organization with 40 repositories. Leadership wants a consistent, enforced policy: any pull request that introduces a new code scanning alert of 'critical' or 'high' security severity must be blocked from merging across all repositories, without requiring each repository admin to configure branch protection individually. You also want the enforcement to apply automatically to newly created repositories. Which approach best satisfies these requirements?
Reviewed for accuracy · Report an issueNext question