Your question is Secrets in CI/CD. Take a moment with it on the right.
Talk me through your thinking if you like. When you're confident, submit your answer and I'll grade it like a real screen (7/10 or better passes).
How do you handle secrets and credentials in CI/CD pipelines?
Explain how you would prevent exposure in source control, build logs, artifacts, runners, and deployment environments. Address authentication, least privilege, rotation, auditing, failure handling, and how you would verify the controls in a Microsoft Azure DevOps or GitHub Actions environment.