- Home
- All questions
- Question 217
CompTIA Security+ study material · question 217 of 611
An API key was accidentally committed to a Git repository and the commit was reverted an hour later. What must still be done?
Show the answer
Answer: D. Rotate the key, because the history still holds it
Once a credential has been pushed, history keeps the old value, so rotation is the only remedy.
Source: OWASP Secrets Management Cheat Sheet (OWASP) — OWASP Secrets Management Cheat Sheet › General Secrets Management