🔥 3-day streak
GitHub Advanced Security (GH-500)136 / 144
Question 136 of 144

An enterprise security team wants a group of engineers to be able to view and dismiss code scanning and Dependabot alerts across all repositories in an organization, and to configure security settings, but the team must NOT be granted the ability to push code or administer repository settings unrelated to security. Which approach best satisfies this least-privilege governance requirement?

Reviewed for accuracy · Report an issueNext question