Be able to call a protected REST endpoint with HTTP Request, authenticate correctly, and extract nested JSON values. The most important thing is handling credentials and token expiry securely via Orchestrator rather than hardcoding them.
Start practicing
API Automation — choose a session length
Free · No account required
Domain overview
API Automation in UiPath-ADPv1 covers consuming and securing REST APIs from Studio and Orchestrator. Questions present realistic scenarios: large JSON payloads, expiring Bearer tokens, OAuth 2. 0 client-secret handling, and extracting values from deeply nested responses using the HTTP Request activity and JSON activities.
Exam objectives
Configuring the HTTP Request activity with method, endpoint, headers, and authentication options
Handling OAuth 2.0 authorization code flow and storing client secrets in Orchestrator assets
Parsing JSON responses with Deserialize JSON and SelectToken/JsonPath for nested values
Managing memory when APIs return very large JSON payloads across many records
Hardcoding client secrets or tokens in workflow files instead of using Orchestrator assets or credential stores
Assuming a Bearer token stays valid for the whole run, causing 401 errors after expiry
Loading an entire huge JSON response into memory and deserializing it all at once, triggering OutOfMemoryException
Click any question to see the full explanation and answer options, or start a focused practice session above.
An automation developer is building an integration with a third-party REST API that returns a JSON payload containing over 50,000 transaction records per request. The process frequently throws an OutOfMemoryException inside UiPath Studio when attempting to parse the entire response string using standard string manipulation. Which approach should the developer use to handle this large response efficiently?
2A developer is configuring OAuth 2.0 authorization code flow within UiPath Orchestrator and API activities to connect securely to a corporate CRM system. The security team mandates that client secrets must never be exposed or stored in plain text configuration files. Which authentication mechanism or credential management pattern should the developer implement?
3An automation developer is troubleshooting an API workflow where a POST request to an external service intermittently returns a 429 Too Many Requests status code. Which TWO strategies should the developer implement in UiPath Studio to handle this rate-limiting scenario gracefully? (Choose two)
4A developer uses the HTTP Request activity in a UiPath Studio project to call a REST API that returns a deeply nested JSON response. The developer needs to extract a specific value located at a path of several levels, and the response structure may vary slightly between calls. The developer wants to avoid deserializing the entire payload into custom classes. Which approach is most appropriate?
5A developer is using the UiPath HTTP Request activity to call a REST API that returns a JSON array of customer records. The API paginates results and includes a 'nextPageToken' field in the response body when more data is available. The developer needs to retrieve all pages and aggregate the results into a single DataTable. Which approach should the developer use in the UiPath workflow?
6An automation developer is using the HTTP Request activity in UiPath Studio to call a REST API that requires a bearer token. The token is stored in Orchestrator as an asset named "APIToken". The developer needs to include the token in the request header. Which approach should be used?
7A developer is building an API workflow that must call a protected endpoint. The API requires a Bearer token that expires every 60 minutes. The developer uses the HTTP Request activity in a UiPath Studio project and wants to avoid hardcoding credentials. They have already configured an Orchestrator asset of type Credential named 'ApiUser' that stores the client ID and secret. Which approach should the developer use to obtain and attach the token to each request?
8A developer has built a UiPath API workflow that calls a vendor's REST endpoint returning a JSON object with a nested 'items' array. The response is large, and the developer needs to extract only the 'id' field from each element in 'items' to feed a downstream process. The HTTP Request activity's output is stored in a variable of type String. Which approach should the developer use to reliably extract the required values?
9A developer is using the UiPath HTTP Request activity to call an API that requires a bearer token. The token is obtained from an authentication endpoint and stored in a String variable named authToken. The developer must ensure that the token is sent in the Authorization header for every subsequent request. Which configuration in the HTTP Request activity correctly achieves this?
10A developer is using the UiPath HTTP Request activity to call a REST API that returns a JSON response. The developer needs to extract a specific value from the response body. Which activity should be used to convert the JSON response string into a manipulable object?
11A developer is building a UiPath automation that consumes a REST API. The API returns a JSON response with a 'status' field and a 'data' array. The developer needs to handle both successful responses and error responses gracefully. Which two actions should the developer take to ensure robust error handling? (Choose two.)
12A developer needs to call a REST API that requires an API key to be passed as a query parameter named 'api_key'. The developer is using the UiPath HTTP Request activity. Which property should the developer use to add this parameter?
13A developer is using the HTTP Request activity to call a REST API that returns a 401 Unauthorized response. The API documentation states that the access token must be included in the 'Authorization' header as 'Bearer <token>'. The developer has already obtained a valid token and stored it in a string variable named 'accessToken'. Which configuration should the developer apply to the HTTP Request activity to ensure the token is sent correctly?
14A developer is using the UiPath HTTP Request activity to send a POST request to an API that expects a JSON payload. The developer has a Dictionary(Of String, Object) variable named payloadDict containing the data to send. Which approach correctly serializes the dictionary and configures the request?
15A developer is automating a process that calls a REST API which returns a large JSON response containing a 'results' array with 10,000 objects. The developer uses the Deserialize JSON activity and then a For Each loop to process each object. The workflow is running slowly and consuming high memory. Which approach should the developer take to improve performance while still processing all objects?
Be able to call a protected REST endpoint with HTTP Request, authenticate correctly, and extract nested JSON values. The most important thing is handling credentials and token expiry securely via Orchestrator rather than hardcoding them.
The Courseiva UiPath-ADPv1 question bank contains 15 questions in the API Automation domain. Click any question to see the full explanation and answer breakdown.
Start with a 10-question focused session to identify your baseline accuracy in this domain. Read every explanation — even for questions you answer correctly — to understand the reasoning. Once you score consistently above 80%, move to a 20–30 question session to confirm depth before moving to the next domain.
Yes — the session launcher on this page draws questions exclusively from the API Automation domain. Choose 10, 20, 30, or 50 questions for a focused session, or click individual questions to review them one by one.
Save your results, see per-domain analytics, and get readiness scores — free, for every certification.
Sign Up FreeFree forever · Every certification included