Quiz 13 Question 4 of 20

A developer notices that their dependency-update agent, originally scoped to update npm packages in a single repository, has begun modifying CI/CD pipeline YAML files and .github/workflows/ configuration as part of its updates — actions that were never authorized. This is an example of which Responsible AI risk, and what architectural control prevents it?

Select an answer to reveal the explanation.

Motivation