Courseiva

CCAR-P Practice Question: Developer Productivity and Operational Enablement

An organization wants to enforce consistent prompt engineering standards across teams. They have a large library of prompts and need to ensure that developers use approved versions while maintaining audit trails of prompt usage. What is the most effective approach?

⚠ Common exam trap

Candidates often suggest hardcoding prompts in application code or using simple version control systems like Git, failing to realize that these do not provide the necessary runtime API-based governance and auditability required.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Deploy a central prompt management service that provides versioned API endpoints for prompt retrieval.

Using a centralized Prompt Registry allows teams to version-control, audit, and distribute approved prompt templates. This ensures governance without hindering developer velocity, as teams can reference specific versions through API calls rather than hardcoding prompts. Establishing a registry mitigates risks associated with prompt injection and inconsistent model behavior across different product features, effectively bridging the gap between security compliance and rapid software iteration.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    Require developers to manually copy-paste prompt templates into a shared documentation Wiki.

    Why it's wrong here

    Manual documentation lacks version control and programmatic access, leading to 'documentation rot' and inconsistencies. Developers will inevitably copy outdated snippets, bypassing security reviews and causing model output drift. This approach fails to provide the auditability required for enterprise compliance and complicates the maintenance of prompt lifecycle management.

  • ✗

    Implement a custom middleware layer that encrypts all prompt traffic at the network edge.

    Why it's wrong here

    While encryption secures data in transit, it does not address the core requirement of versioning or standardizing the prompts themselves. This adds significant latency and operational overhead without offering a structured way to manage the prompt templates, which are the source of logic for the generative AI application.

  • ✓

    Deploy a central prompt management service that provides versioned API endpoints for prompt retrieval.

    Why this is correct

    A central registry enables immutable versioning and structured metadata, allowing developers to fetch vetted prompts via API. This creates a single source of truth that simplifies auditing and testing. It allows prompt engineers to update prompts centrally without requiring developers to redeploy their application code frequently.

  • ✗

    Enforce strict hardcoding of all prompts within the application source code with mandatory PR reviews.

    Why it's wrong here

    Hardcoding prompts tightly couples application logic with model behavior, forcing a full build and deployment cycle for every minor prompt tweak. This severely limits developer productivity and prevents agile experimentation. Additionally, PR reviews are less effective than automated testing against specific prompt versions for AI reliability.

About these practice questions

This CCAR-P question is part of Courseiva's 262-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written and reviewed by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

Last reviewed September 2026 · checked against the official Anthropic exam blueprint

This CCAR-P practice question is part of Courseiva's free Anthropic certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CCAR-P exam.