🔥 3-day streak
GitHub Advanced Security (GH-500)107 / 144
Question 107 of 144

At Meridian Software, a code scanning alert for a potential SQL injection is raised on a pull request. The team is clarifying responsibilities: the developer who opened the PR, the security team that owns organization policy, and the repository admin. According to GitHub's recommended division of responsibilities for handling code scanning alerts, who is primarily responsible for remediating the flagged vulnerability in the code before the PR is merged?

Reviewed for accuracy · Report an issueNext question