Microsoft · Free Practice Questions · Last reviewed May 2026
30real exam-style questions organised by domain, each with the correct answer highlighted and a plain-English explanation of why it's right — and why the others are wrong.
23% of exam · 6 sample questions below
A retail company uses Power Apps to build a mobile app for store managers to approve discount requests. The app must work offline and sync when connected. Which type of app should the developer choose?
Portal
Model-driven app
Canvas app
Canvas apps support offline capability through the SaveData and LoadData functions, storing data locally on the device and syncing when connectivity returns. This directly satisfies the requirement that store managers approve discount requests without network access.
Power Automate
A healthcare organization needs a Power Apps app to track patient visit data. The data must be stored in Microsoft Dataverse, and the app should automatically generate a timeline of visits for each patient. Which app type is most suitable?
Portal
Model-driven app
Model-driven apps render Dataverse tables as forms, views and dashboards, and the timeline control automatically surfaces related visit records for each patient. This satisfies the Dataverse storage and auto-generated timeline constraints without custom canvas coding.
Power Automate
Canvas app
A company has a canvas app that uses a SharePoint list as its data source. The app works fine for most users but a few users report that they cannot submit new items. They receive a generic 'Access denied' error. What is the most likely cause?
The connection reference is not shared with the users.
The SharePoint list has exceeded its item limit.
The users lack write permissions on the SharePoint list.
SharePoint enforces its own item-level permissions independently of the Power Apps canvas app. Users without Contribute or Edit rights on the underlying list can read data but cannot create items, producing the generic 'Access denied' error on submit. Granting write permissions on the list resolves the constraint.
The app is shared with 'Can edit' permission but not 'Can view'.
Which TWO of the following are capabilities of Power Apps that help organizations build custom business applications without writing traditional code?
Integration with Common Data Service (Microsoft Dataverse)
Dataverse provides a built-in data platform with standard tables, relationships and security, so makers bind controls to data without writing code. It satisfies the no-traditional-code constraint by removing the need to provision or query a separate database manually.
Pre-built templates for common business scenarios
Templates ship pre-wired screens, data schemas and logic for common scenarios, so makers start from a working app and adjust it visually. This directly satisfies the no-traditional-code constraint by eliminating the need to author app structure from scratch.
Natural language processing to create conversational bots
Automated workflows triggered by business events
Real-time data dashboards with drill-down analytics
Drag and drop the steps to deploy a solution from a development environment to a production environment in Power Platform in the correct order.
Step 1: Create a solution, Step 2: Add components, Step 3: Export the solution, Step 4: Import the solution, Step 5: Publish.
This is the correct order because you must first create the solution, then add the necessary components, export it from the development environment, import it into production, and finally publish to make the changes active.
Step 1: Create a solution, Step 2: Export the solution, Step 3: Add components, Step 4: Import the solution, Step 5: Publish.
Step 1: Add components, Step 2: Create a solution, Step 3: Export the solution, Step 4: Import the solution, Step 5: Publish.
Step 1: Create a solution, Step 2: Add components, Step 3: Import the solution, Step 4: Export the solution, Step 5: Publish.
A business analyst creates a model-driven app using Dataverse. They need to ensure that when a new lead is created, a task is automatically assigned to the sales team. Which component should be used?
A business rule on the lead form
A calculated field that sets the task status
A Power Automate flow triggered on lead creation
A Power Automate flow registered on the Dataverse lead-creation message runs automatically when a lead record is created, letting it create and assign a task to the sales team, which satisfies the required automated trigger.
A canvas app with a button to create a task
Want more Demonstrate the capabilities of Power Apps practice?
Practice this domain23% of exam · 6 sample questions below
A company wants to automate sending a welcome email to new employees after they are added to a SharePoint list. Which type of trigger should be used in the Power Automate flow?
For a selected item - SharePoint
Recurrence
Start and wait for an approval
When an item is created - SharePoint
The SharePoint 'When an item is created' trigger fires automatically whenever a new list item is added, which is exactly the event that represents a new employee. This event-driven trigger initiates the flow so the welcome email is sent without manual intervention.
You have a Power Automate flow that sends an email notification when a new file is added to a SharePoint document library. Users report that emails are not being sent for some files. What is the most likely cause?
The flow uses a premium connector that requires a license
The file is being co-authored by multiple users
A trigger condition is filtering out some files
A trigger condition evaluates each new file and skips the flow when the expression is false, so some files never fire the email action. This precisely explains why notifications arrive for only a subset of files added to the SharePoint library.
The file content contains sensitive information
You are designing a Power Automate flow to approve expense reports. The flow must allow managers to approve or reject directly from the email notification without signing in. Which action should you use?
Create a file
Send an email (V2)
Start and wait for an approval
The Start and wait for an approval action sends actionable approval requests via email, letting managers approve or reject using Outlook buttons without signing in to Power Automate. This directly satisfies the stem's requirement for email-based decisions without authentication.
Send an HTTP request
A flow fails with the error: 'GatewayTimeout'. The flow connects to an on-premises SQL Server via a data gateway. What is the most likely cause?
The SQL login credentials are incorrect
The on-premises data gateway is not running or unreachable
A GatewayTimeout means the cloud service waited for the on-premises data gateway and received no response. If the gateway is stopped or unreachable, the SQL Server connection never completes, producing exactly this timeout rather than an authentication or query error.
The SQL table does not exist
The flow trigger did not fire
Which TWO components are required to create a Power Automate flow that sends an email when a new item is added to a SharePoint list? (Choose two.)
A trigger
Correct. Every flow needs a trigger.
An approval action
A variable
A condition
A Send an email action
Correct. This sends the email notification.
A Power Automate flow uses the trigger configuration shown. Users report that the flow does not start when a new order is added with Status = 'Pending'. What is the most likely cause?
The SharePoint dataset URL is incorrect
The flow is paused or turned off
The trigger only fires on modification, not creation
The trigger condition only allows items with Status = 'New'
The trigger's condition filters on Status = 'New', so Power Automate never fires for orders created with Status = 'Pending'. The condition must be edited to match the intended value before the flow can start.
Want more Demonstrate the capabilities of Power Automate practice?
Practice this domain8% of exam · 6 sample questions below
A sales team wants to track customer interactions and automate follow-up emails without custom development. What Microsoft Power Platform component should they use?
Power BI
Power Apps
Power Virtual Agents
Power Automate
Power Automate triggers workflows from Dataverse record changes, so a new customer interaction can automatically send a follow-up email without code. This satisfies the no-custom-development constraint, whereas Power Apps would require building an app and Power BI only reports on data.
A hospital uses Power BI to monitor patient wait times. The data source is an on-premises SQL Server database. To ensure real-time reporting, what should the hospital deploy?
Azure Data Factory
Power BI Report Server
On-premises data gateway
An on-premises data gateway brokers queries between Power BI cloud services and the internal SQL Server, enabling scheduled or near real-time refresh without exposing the database directly. It satisfies the real-time reporting constraint while keeping the data source on-premises.
Power BI Desktop
A non-profit organization wants to automate donation receipt emails and track donor engagement. Which Microsoft Power Platform tool should they use?
Power Automate
Power Automate provides event-driven flows that trigger on a new donation record, then send receipt emails and log donor interactions automatically. Its connectors to Microsoft 365 and Dynamics 365 satisfy both the notification and engagement-tracking requirements without custom code.
Power Virtual Agents
Power BI
Power Apps
A retail chain uses Power Apps for an inventory management app. Employees report that the app loads slowly. What is the most likely cause?
The app has too many controls per screen
The app uses a non-delegable query on a large data source
Non-delegable queries force Power Apps to pull the full dataset to the client before filtering, so a large data source causes slow loads. Delegation pushes filtering to the source; the constraint here is the non-delegable operation combined with data volume.
The app uses too many screens
The app has complex formulas in OnStart
Which TWO are benefits of using Microsoft Power Platform for business process automation?
Reduces need for custom coding
Low-code tools allow business users to create solutions without extensive coding.
Integrates seamlessly with Microsoft 365 and Dynamics 365
Native connectors enable easy integration with Microsoft ecosystem.
Requires dedicated IT team for every automation
Only works on-premises
Requires deep knowledge of programming languages
A retail company wants to reduce the time store managers spend on manual inventory reporting. Currently, managers use paper forms and email to submit daily stock counts, which then need to be manually entered into a central system. This process is error-prone and delays replenishment. The company wants a solution that automates data entry, provides real-time dashboards, and allows managers to submit reports from their phones without installing any software on the phones. Which combination of Microsoft Power Platform tools should the company use?
Power Automate only
Power Apps only
Power Apps, Power Automate, and Power BI
Power Apps delivers a phone browser-based canvas app requiring no installation, Power Automate replaces manual entry by writing counts into the central system, and Power BI supplies real-time dashboards. Together they satisfy automation, dashboards and no-install mobile submission.
Power BI only
Want more Describe the business value of Microsoft Power Platform practice?
Practice this domain23% of exam · 6 sample questions below
Your organization uses Power Automate to automate business processes. A flow that runs daily fails intermittently with 'HTTP 429 - Too Many Requests' errors. What should you do to resolve this issue?
Increase the frequency of the flow to run more often.
Change the flow trigger from a schedule to an instant trigger.
Set up an on-premises data gateway to bypass the throttling limits.
Configure retry policies with exponential backoff in the flow actions.
Exponential backoff retry policies directly address HTTP 429 throttling by spacing repeated attempts progressively further apart, letting the service's request limit reset before the next call. This satisfies the intermittent daily-flow failure constraint, since transient rate limiting resolves without manual intervention or flow redesign.
Your organization has a Power Apps portal that allows external users to submit support tickets. You need to ensure that only authenticated external users from specific domains can access the portal. What should you configure?
Create a data loss prevention (DLP) policy that blocks external users.
Restrict access to the portal by IP address using a web application firewall.
Share the portal URL only with users from the allowed domains.
Configure the portal to use Microsoft Entra ID authentication and set up domain restrictions.
Microsoft Entra ID authentication with domain restrictions enforces tenant-based sign-in, so only users from the specified domains authenticate. This satisfies the requirement that external users be authenticated and limited to particular domains, which anonymous or local portal accounts cannot enforce.
Your organization has multiple Power Platform environments. You need to ensure that a specific connector (e.g., SQL Server) is blocked in the production environment but allowed in the development environment. What should you configure?
Set the connector's API rate limits to zero in the production environment.
Modify the connector's sharing settings in the environment.
Configure environment-level security roles to restrict connector usage.
Create a data loss prevention (DLP) policy and assign it to the production environment.
A data loss prevention policy defines connector classification and can be scoped to specific environments, so blocking SQL Server in production while permitting it in development is achieved by assigning the policy to production only.
Your organization uses Power Virtual Agents (now Copilot Studio) for customer service. You need to ensure that the bot can access customer data from a Dataverse table that contains sensitive information. What is the best approach to secure the data?
Configure a data loss prevention (DLP) policy to block the bot from accessing the table.
Use the bot's authentication settings to require multi-factor authentication.
Assign appropriate security roles and field-level security to the bot's service principal.
Dataverse enforces access through security roles, and field-level security masks sensitive columns even for privileged identities. Granting the bot's service principal a least-privilege role with field-level security restricts it to only the customer data required.
Restrict access to the environment to only the bot's service account.
Which THREE actions can a Power Platform administrator perform in the Power Platform admin center to manage environments?
Create a new environment
Admins can create environments.
Create a new Microsoft Entra ID security group
Install a managed solution from AppSource
Delete an environment
Admins can delete environments.
Back up and restore an environment
Admins can manage backups and restores.
Which TWO of the following are valid environment types in Power Platform?
Development
Production
Production is a standard environment type.
Sandbox
Sandbox is a standard environment type.
Trial
Preview
Want more Manage the Microsoft Power Platform environment practice?
Practice this domain23% of exam · 6 sample questions below
A company wants to create a custom copilot that answers employee questions about IT policies. The copilot must use existing SharePoint documents as a knowledge source. Which feature of Microsoft Copilot Studio should the company use?
Generative AI feature
Power Automate cloud flow
Copilot for Microsoft 365
Add a knowledge source
Adding a knowledge source lets the copilot ground its answers in specified SharePoint documents, retrieving content at query time rather than relying on the model's pretrained knowledge. This satisfies the requirement to answer IT policy questions from existing SharePoint content.
A company has deployed a custom copilot built with Microsoft Copilot Studio. Users report that the copilot sometimes provides outdated information. The knowledge sources are SharePoint sites and public websites. The copilot uses Generative AI to formulate answers. What should the administrator do to improve the accuracy of the copilot's responses?
Enable the 'Show citations' option
Reduce the number of topics
Refresh the knowledge sources periodically
Refreshing knowledge sources periodically re-indexes the SharePoint sites and public websites, so the generative AI answers draw on current content rather than stale cached data. This directly addresses the outdated-information constraint in the stem, since Microsoft Copilot Studio retrieves grounding data from those connected sources at query time.
Turn off Generative AI for responses
A company is using Microsoft Copilot Studio to build a copilot for employee onboarding. The copilot must authenticate users to provide personalized information. The company uses Microsoft Entra ID (now Microsoft Entra ID) for identity management. Which authentication method should the administrator configure in Copilot Studio?
Anonymous access
Manual authentication
Microsoft Entra ID (Azure AD) authentication
Microsoft Entra ID authentication lets the copilot sign users in with their existing organisational credentials, returning identity claims the bot uses to personalise onboarding content. It integrates directly with the company's current identity provider without separate credential stores.
SharePoint authentication
A company wants to extend their existing copilot built with Copilot Studio to trigger a workflow when an employee requests time off. The workflow must create a record in a Dataverse table and send an approval email. What should the copilot developer use?
Embed a Power Apps canvas app
Use AI Builder to create a model
Configure the Dataverse connector directly
Add a Power Automate flow as a plugin
Power Automate flows can be invoked as plugins from Copilot Studio, letting the copilot trigger multi-step actions. The flow performs the Dataverse record creation and approval email, satisfying both required outcomes within one orchestrated automation.
A company is designing a copilot using Microsoft Copilot Studio. The copilot must handle sensitive employee data. Which TWO actions should the administrator take to ensure data security and compliance?
Enable anonymous access to allow external users
Configure data loss prevention (DLP) policies to restrict data movement
DLP policies inspect and block sensitive information from being shared or exported, directly restricting data movement within the copilot's responses and connected sources. This enforces the compliance constraint for sensitive employee data handled by the Microsoft Copilot Studio copilot.
Disable authentication to simplify access
Enable the 'Data for training' option to be turned off
Disabling 'Data for training' prevents prompts and responses containing sensitive employee data from being used to improve Microsoft's models, keeping that data within the tenant's compliance boundary. This directly satisfies the security and compliance requirement for the Microsoft Copilot Studio copilot.
Add public websites as knowledge sources
A company has configured the copilot as shown in the exhibit. Users report that the copilot is not answering questions about HR policies that were updated in the SharePoint site today. What is the most likely cause?
The public website refresh is set to daily
Authentication is not properly configured
The knowledge source refresh interval is set to weekly
Copilot answers from indexed SharePoint content, and a weekly refresh interval means today's HR policy updates have not yet been crawled into the index. Shortening the refresh interval, or triggering reindexing, makes the new content answerable.
Generative AI is disabled
Want more Demonstrate the capabilities of Microsoft Copilot Studio practice?
Practice this domainThe PL-900 exam has 50 questions and must be completed in 60 minutes. The passing score is 700/1000.
Business and platform scenario questions covering Power Apps, Power Automate, Power BI, Power Virtual Agents, Dataverse, connectors, governance, and security.
The exam covers 5 domains: Demonstrate the capabilities of Power Apps, Demonstrate the capabilities of Power Automate, Describe the business value of Microsoft Power Platform, Manage the Microsoft Power Platform environment, Demonstrate the capabilities of Microsoft Copilot Studio. Questions are weighted by domain — higher-weight domains appear more on your actual exam.
No. These are original exam-style practice questions written against the official Microsoft PL-900 exam objectives. They are not copied from the real exam. Courseiva focuses on genuine understanding, not memorisation of braindumps.
Courseiva tracks your accuracy per domain and routes you toward weak areas automatically. Free, no account required.