Knowledge check

Completed

Choose the best response for each question,

Check your knowledge

1.

What's the best way to make sure you're integrating the most secure versions of your project dependencies?

2.

Suppose one of your source projects relies on secrets kept in a folder called .secrets. You would like to make sure that the files kept in this folder on development machines aren't inadvertently committed to the repository. Which of these files best helps enforce this policy?

3.

What does secret scanning do?