You are a maintainer of a repository and Dependabot notifies you of a vulnerability. Where could the vulnerability have been disclosed? (Each answer presents part of the solution. Choose two.)
Which of the following formats are used to describe a code scanning alert from CodeQL?
Assuming that no custom patterns are configured, what type of secret is detected by secret scanning?
In a private repository, what minimum requirements does GitHub need to generate a dependency graph? (Each answer presents part of the solution. Choose two.)