nerdexam
HashiCorpHashiCorp

TA-002-P · Question #18

TA-002-P Question #18: Real Exam Question with Answer & Explanation

The correct answer is B: False. {"question_number": 8, "question": "You should store secret data in the same version control repository as your Terraform configuration.", "correct_answer": "B", "explanation": "False. Storing secrets (API keys, passwords, tokens, certificates) in version control is a critical se

Understand infrastructure as code (IaC) concepts

Question

You should store secret data in the same version control repository as your Terraform configuration.

Options

  • ATrue
  • BFalse

Explanation

{"question_number": 8, "question": "You should store secret data in the same version control repository as your Terraform configuration.", "correct_answer": "B", "explanation": "False. Storing secrets (API keys, passwords, tokens, certificates) in version control is a critical security risk. Even if a repository is private, secrets committed to git remain in history and can be exposed through leaks, misconfigurations, or access changes. Best practices include using environment variables, a secrets manager like HashiCorp Vault, AWS Secrets Manager, or passing sensitive values at runtime. Terraform also supports sensitive variable types to prevent accidental output exposure.", "generated_by": "claude-sonnet", "llm_judge_score": 4}

Topics

#Secrets Management#Security Best Practices#Version Control#IaC Security

Community Discussion

No community discussion yet for this question.

Full TA-002-P PracticeBrowse All TA-002-P Questions