🔥 3-day streak
GitHub Advanced Security (GH-500)43 / 144
Question 43 of 144

A platform security lead wants to enforce a single organization-wide policy that (1) blocks pull requests introducing code scanning alerts of 'high' security severity or above, and (2) prevents merges when Dependabot detects a 'critical' vulnerability in a new dependency. They want this enforced consistently across dozens of repositories without configuring each repo individually. Which GitHub capability best achieves this cross-suite enforcement from a single point of control?

Reviewed for accuracy · Report an issueNext question