Quiz 9 Question 11 of 20

A security audit of your deployment pipeline agent reveals that the agent has been granted write access to all 47 repositories in the organization, admin access to CI/CD pipeline settings, and the ability to modify branch protection rules. However, the agent's actual task is only to read build logs and generate a daily summary report. What security principle has been violated, and what is the recommended remediation?

Select an answer to reveal the explanation.

Motivation