🔥 3-day streak
GitHub Advanced Security (GH-500)46 / 144
Question 46 of 144
A platform team wants to detect an internally issued API token that always looks like 'ACME_' followed by exactly 32 hexadecimal characters, but only when the token is immediately preceded by a quotation mark and followed by a semicolon in configuration files. They are authoring a custom secret pattern in the organization's security settings. Which combination of custom pattern fields should they use to most precisely match the token while avoiding false positives from surrounding text?
Reviewed for accuracy · Report an issueNext question