🔥 3-day streak
GitHub Advanced Security (GH-500)42 / 144
Question 42 of 144

A platform team maintains an internal npm package consumed by twelve product repositories across your organization. A newly published GHSA reveals a high-severity prototype-pollution flaw in a third-party dependency that the platform package pulls in transitively. Leadership wants a single, coordinated remediation effort that gives each product team visibility into their own affected repositories, tracks progress against a shared deadline, and avoids twelve independent, uncoordinated fixes. Which approach best meets these requirements using GitHub Advanced Security capabilities?

Reviewed for accuracy · Report an issueNext question