🔥 3-day streak
GitHub Advanced Security (GH-500)39 / 144
Question 39 of 144

A platform team at a fintech company maintains a monorepo with a large `docs/examples/` folder containing sample configuration files that intentionally include obviously fake, non-functional API tokens for tutorials. These sample files repeatedly trigger Secret Protection alerts, creating triage noise for the security team. The team wants GitHub to stop scanning that specific directory for secrets going forward, while continuing full scanning everywhere else in the repository. What is the most appropriate way to achieve this?

Reviewed for accuracy · Report an issueNext question