A course for the engineer who owns a queue whose count nobody believes, written for an estate with an incumbent scanner and more findings than anyone can read. It separates the three operations that hide behind the word deduplication, shows why the key everybody writes first, file path plus line plus rule, fails on the first ordinary refactor, and works the churn arithmetic on a hypothetical repository. It compares four fingerprinting strategies against the same sequence of refactors, gives a design procedure that starts from the fix event, and sets out the different keys that dependency, secret and data flow findings each need. Then the cases that need judgement: one defect reached by two call paths, one library flagged across forty services and whether that is one finding or forty, and cross tool duplicates against genuinely independent detections. It resolves what to do when two engines disagree on severity for a merged record, how a partially fixed merged finding moves through a lifecycle, and where one finding, one ticket stops being the right rule. It closes on measurement: the five numbers that tell you whether the deduplication is working, the golden set that makes a merge rule change testable, the seven production failures you will actually meet, and the written policy an assessor will ask to see.
Nothing. Every course, exam, and certificate on the catalog is free — including retakes. All you need is a free Safeguard account.
None. The flagship course, Safeguard Certified Practitioner, is a beginner-level course — basic familiarity with how software is built helps, but every exam question is answerable from the lessons themselves.
You can retake it after a 24-hour cooldown, as many times as you need. Retakes are free, and each attempt draws a fresh random set of questions.
The Safeguard Certified Practitioner credential is valid for 24 months from issue. The expiry date is printed on the certificate and shown live on its public verification page. Renewing means passing the current exam again.