From the course: GitHub Advanced Security Cert Prep by Microsoft Press
Unlock this course with a free trial
Join today to access over 25,500 courses taught by industry experts.
Enable Dependabot alerts for organizations - GitHub Tutorial
From the course: GitHub Advanced Security Cert Prep by Microsoft Press
Enable Dependabot alerts for organizations
- [Instructor] Once again, this is a call-out that, if you're an organizational admin, you set policy for N number of repositories that are owned by the organization, and we've got inheritance happening as well. We can do organizational security settings, and this is going to give us consistency. We can establish security and Dependabot policy once at the org level, and have those policies cascade through inheritance throughout our org. Benefits of centralized management, well, from a security standpoint, doing so streamlines alert visibility and response. And again, you've got standardization, which is important, especially for businesses that need to qualify against regulatory or industry compliance certifications. It's nice to be able to demonstrate and report on that you've got consistent standardized security policies in your GitHub infrastructure.
Contents
-
-
-
-
-
-
-
-
Learning objectives33s
-
(Locked)
Identify the default settings for Dependabot alerts in public and private repositories1m 55s
-
(Locked)
Identify the permissions and roles required to enable Dependabot alerts1m 20s
-
(Locked)
Identify the permissions and roles required to view Dependabot alerts45s
-
(Locked)
Enable Dependabot alerts for private repositories28s
-
(Locked)
Enable Dependabot alerts for organizations1m 3s
-
(Locked)
Create a valid Dependabot configuration file55s
-
(Locked)
Configure notifications for vulnerable dependencies11m 52s
-
-
-
-
-
-
-
-
-
-
-
-