Courseiva

CCAR-P · domain

Advanced Agentic Architecture

This domain covers building agents that plan, call tools, and stay coherent across long multi-step executions. Questions are scenario-based: you pick architectures and patterns that preserve state, control context growth, and keep tool use reliable when steps depend on prior outputs.

62 questions6 easy33 medium23 hard

Focused practice

Practice Advanced Agentic Architecture questions

Scored sessions drawing only from this domain — pick a length below.

Start 20-question practice test →

What this domain covers

What to know about Advanced Agentic Architecture

You must design an agent loop that externalizes state, curates which tools are visible, and preserves goal-relevant context across many steps. The single most important thing: keep a durable, structured record of prior results so dependent steps never lose their inputs.

Designing explicit state or scratchpad persistence across dependent multi-step tool chains

Reducing tool-selection overhead via tool grouping, routing, or dynamic tool exposure

Maintaining context and goal fidelity over long sessions with many tool calls

Applying Claude tool-use patterns such as structured tool schemas and result handling

Watch out for

Common Advanced Agentic Architecture exam traps

  • ▸Relying on the raw conversation history as the only memory, letting early symptoms get truncated as context grows
  • ▸Exposing all tools at once, inflating prompt tokens and degrading selection accuracy instead of routing or filtering
  • ▸Treating each step as independent and dropping intermediate outputs, so later steps lose required inputs

Question index

All Advanced Agentic Architecture questions (62)

Click any question to see the full explanation, or start a practice session above.

1

Which TWO security measures are most effective at preventing 'Prompt Injection' attacks that target the arguments of tools used by an agent?

Hard
2

What is the primary benefit of using a 'System Prompt' to define an agent's persona and constraints compared to embedding these in the user message?

Medium
3

When designing an agent that must perform highly sensitive operations (e.g., deleting records), what architectural pattern is mandatory?

Hard
4

A team is building an agent that must call a payment provider's API. The API requires an idempotency key on every charge request, and the agent may retry a charge if a network error occurs mid-call. Which design correctly preserves financial correctness when retries happen?

Easy
5

Which architectural approach is best for handling an agent's failure to retrieve information from a database tool?

Medium
6

An agent uses a retrieval tool that returns the top 20 chunks for any query. In production, the agent frequently cites irrelevant chunks and sometimes misses the correct answer even when it is present in the corpus. The corpus contains documents with overlapping terminology. Which architectural change most improves answer grounding without increasing the number of retrieved chunks?

Hard
7

An agentic system is designed to run long-lived 'background' tasks that may take several days to complete. How should the architect manage the agent's state to ensure it can resume correctly after a system reboot?

Hard
8

A document-processing agent must extract structured fields from thousands of PDFs. Some PDFs are scanned images, some are native text, and some are encrypted. The architect wants one pipeline that routes each document to the appropriate extractor and reports per-document confidence. Which design best fits?

Medium
9

You are designing an agentic workflow that must reliably complete a multi-step refund process across an internal billing service and an external payment gateway. The workflow can fail at any step, and partial completion is unacceptable. Which two architectural mechanisms are required to guarantee that the workflow either completes fully or leaves no partial effect? (Choose two.)

Medium
10

You are architecting a customer-support agent for a SaaS platform. The agent must answer billing questions using a live invoice API and general policy questions using a static knowledge base. The invoice API is fast but occasionally returns stale data; the knowledge base is large and slow to search. Your design gives the agent a dedicated 'billing' sub-agent and a 'policy' sub-agent, coordinated by a router agent. After deployment, you observe the router sending nearly every query to both sub-agents in parallel, causing high latency. Which architectural change best addresses this while preserving answer quality?

Medium
11

An agentic system uses a supervisor agent that delegates to specialized worker agents. During a long incident, the supervisor's own context fills with worker transcripts, and it begins losing track of which workers have completed and which are still running. Which TWO architectural changes best preserve the supervisor's ability to coordinate correctly? (Choose two.)

Hard
12

You are architecting a Claude agent that orchestrates a long-running approval workflow spanning hours or days, where human reviewers may intervene between steps. Which TWO mechanisms are necessary to keep the workflow correct across these interruptions? (Choose two.)

Medium
13

A research agent uses Claude with an extended thinking budget to analyze a 200-page regulatory filing. Mid-analysis it must call a `fetch_footnote` tool whose result is essential to the conclusion. The architect wants the tool result to be incorporated without discarding the model's prior reasoning. Which approach best achieves this?

Hard
14

An architect needs to build an agent that handles complex, multi-step data migrations where each step depends on the output of the previous one. Which approach is most robust for ensuring the agent doesn't lose track of the long-term goal during execution?

Hard
15

A production agent uses a ReAct loop and frequently reaches its maximum step budget while still mid-task, then returns a partial answer that looks complete. Telemetry shows the agent often re-reads the same file and re-queries the same database row across consecutive steps. Which change most directly reduces wasted steps while preserving the agent's ability to finish?

Hard
16

When evaluating the performance of a new 'Orchestrator-Worker' agentic architecture, which THREE metrics provide the most insight into the system's efficiency and reliability?

Medium
17

You are building a customer-support agent with Claude that must call a lookup_order tool, then a refund_order tool that depends on the order's status. During testing, the agent sometimes calls refund_order before the lookup_order result returns. Which change to your orchestration loop best enforces the required ordering?

Medium
18

An agentic system often experiences 'goal drift' when managing long-running, multi-step tasks. Which architectural pattern most effectively mitigates this risk during recursive reasoning chains?

Medium
19

An agent must summarize a 400-page contract that exceeds the context window. The team wants a summary that references specific clauses without losing cross-references between distant sections. Which approach best preserves cross-reference integrity?

Medium
20

An architect is designing an agent to perform administrative tasks in a corporate environment. One of the tools allows the agent to delete employee records. What is the most important architectural safeguard to implement for this specific tool?

Easy
21

Your agent orchestrates a research task by spawning several subagents, each with its own Claude conversation, and merging their outputs. You observe that the final synthesis contradicts the subagents' findings. Which architectural change most reliably preserves fidelity when merging?

Hard
22

A Claude agent orchestrates three specialized subagents: one for data extraction, one for validation, and one for report generation. In production, the validation subagent sometimes receives malformed input from the extraction subagent and silently produces a passing result. You need the orchestrator to detect and contain these failures without halting the entire pipeline. Which design change is most appropriate?

Medium
23

A support agent built on Claude must decide whether a customer request is a billing issue, a technical issue, or a general inquiry before routing it. The categories are fixed and mutually exclusive, and the routing decision must be fast and cheap. Which approach is most appropriate?

Easy
24

You are building a system that requires strict adherence to a specific output format. Which approach provides the highest reliability in a high-traffic agentic environment?

Hard
25

When designing agentic systems that require human-in-the-loop (HITL) verification, which mechanism prevents the agent from stalling indefinitely while waiting for user input?

Medium
26

A claims-processing agent runs for hours and must survive process restarts without losing in-flight work. You are designing durable execution around Claude's stateless Messages API. Which TWO practices are required to make the agent resumable? (Choose two.)

Hard
27

When designing agents that interact with external APIs, which pattern best addresses the challenge of 'unreliable API latency' impacting the agent's reasoning chain?

Medium
28

Refer to the exhibit. Your agent is receiving this error during a high-concurrency operation. Which implementation correctly handles this scenario?

Medium
29

A financial services firm is deploying an AI agent to handle diverse requests including balance inquiries, market analysis, and loan applications. To minimize latency and maximize precision, the architect decides to implement a pattern where a primary model classifies the intent and delegates to specialized sub-agents. Which architectural pattern is being described?

Medium
30

A Claude agent maintains a long conversation with a user over weeks. The architect notices that the agent gradually forgets early constraints the user stated, even though the conversation is well within the model's context window. The team wants to fix this without re-summarizing the entire history on every turn. Which approach is most appropriate?

Hard
31

An orchestration agent runs a nightly workflow that fans out to 12 subagents, each calling a partner REST API. Partner calls intermittently return HTTP 429 with a Retry-After header. The orchestrator currently retries immediately in a tight loop, causing cascading 429s and duplicate side effects on the partner systems. Which architectural change best addresses both the throttling and the duplicate side effects?

Medium
32

A developer is concerned about the high token cost and latency of an agent that has access to 50 different tools. What is the most effective architectural change to optimize this system?

Medium
33

When designing an agent capable of multi-step tool use, what is the most important property to maintain across steps?

Medium
34

When implementing a 'Human-in-the-loop' (HITL) checkpoint, what is the best way to handle the state persistence during the wait period?

Medium
35

Which of the following describes the role of the 'System Prompt' in an agentic architecture?

Easy
36

You are architecting a Claude-based agent for a regulated financial client that performs long-running portfolio rebalancing workflows. A compliance requirement mandates that no single trade instruction may be executed unless it is cryptographically traceable to the exact model-generated intent that produced it. The agent uses the Messages API with tool use, and several downstream services consume tool calls asynchronously. Which architectural mechanism best satisfies this requirement while preserving agent autonomy?

Hard
37

A logistics agent needs to fetch shipping rates from five different carriers simultaneously to find the best price. Which architecture is best suited for this requirement?

Medium
38

In the Anthropic tool-use workflow, what is the primary purpose of the 'system prompt' relative to tool usage?

Easy
39

An agent is engaged in a multi-hour troubleshooting session involving dozens of tool calls and thousands of lines of log data. The architect notices that the agent is starting to 'forget' early symptoms of the problem. Which strategy best addresses this while managing token costs?

Medium
40

Which pattern is most suitable for an agent that must balance the need for speed (latency) versus the need for correctness in a customer support scenario?

Medium
41

A customer-support agent must sometimes escalate to a human and sometimes resolve autonomously. The compliance team requires that any action touching billing be reviewed by a human before execution, while password resets may proceed automatically. The architect wants the model to decide routing without hardcoding every rule in the prompt. Which design best satisfies the requirement?

Medium
42

An autonomous agent is designed to browse the web and perform research. Which TWO mechanisms are most critical for preventing infinite loops and excessive API consumption during autonomous tool-calling cycles?

Hard
43

You are scaling an agentic system that uses external APIs. Which THREE design patterns prevent the agent from being blocked by third-party rate limits or latency?

Hard
44

In a swarm of specialized agents, what is the primary benefit of using a 'Blackboard' pattern for inter-agent communication?

Medium
45

When designing an agentic system, which TWO of these 'observability' metrics are most crucial for monitoring the health of the agent's reasoning process?

Medium
46

Which THREE strategies should be employed to securely manage sensitive data within an agentic workflow?

Hard
47

You are operating a Claude-based support agent that must follow a strict refund policy: refunds over $500 require a manager approval code that is only obtainable through a separate internal API. The agent has access to a `get_manager_code` tool, but in production it occasionally issues refunds above $500 without calling the tool. Which architectural change most reliably prevents this?

Medium
48

You are designing a long-running agent that executes a sequence of irreversible operations, such as issuing refunds and sending customer notifications. The agent runs unattended overnight. Which TWO architectural patterns best ensure that a partial failure does not leave the system in an inconsistent state? (Choose two.)

Hard
49

You operate a long-running research agent that maintains a scratchpad of findings across many turns. You notice that as the scratchpad grows, the agent begins ignoring recent tool results and repeating earlier conclusions. You cannot increase the context window. Which intervention most directly addresses the root cause of the recency failure?

Hard
50

Refer to the exhibit. An agentic loop receives this response from the Anthropic API during a critical multi-step operation. Which strategy should the architect implement to ensure the agent completes its task successfully?

Medium
51

You are designing a Claude agent that must complete a multi-hour research task spanning dozens of tool calls, and the transcript will eventually exceed the model's context window. You want the agent to keep making correct decisions without losing critical earlier findings. Which TWO architectural strategies best preserve decision quality across the compaction boundary? (Choose two.)

Hard
52

A Claude agent performs a multi-step deployment task. Step 3 calls a `deploy_service` tool that returns success, but the subsequent verification step fails because the service is not yet healthy. The agent currently treats any tool success as completion and ends the workflow. Which change best addresses this?

Medium
53

Which THREE components are essential for building a robust 'human-in-the-loop' (HITL) approval gate within an agentic workflow?

Hard
54

An agentic system is struggling with 'context fragmentation' over long-running sessions. What is the most effective architectural solution?

Medium
55

A production agent uses the Claude Messages API with extended thinking enabled to solve multi-constraint scheduling problems. The agent must preserve its reasoning across several tool calls within a single user turn. A developer notices that after the second tool call, the model appears to forget earlier constraints it had already reasoned about. Which change best preserves the reasoning chain across tool calls?

Hard
56

Refer to the exhibit. An agentic workflow encounters an error immediately after this message is generated by Claude. No further messages are sent to the API. What is the most likely cause of the failure in the orchestration logic?

Hard
57

Your team operates a Claude agent that triages inbound customer support tickets. After several weeks in production, the agent begins approving refunds above the policy ceiling and citing outdated policy text. Investigation shows the system prompt embeds a policy document that was updated three weeks ago, but the deployed prompt was never regenerated. Which architectural practice most directly prevents this class of failure?

Medium
58

An architect wants to improve the coherence of an agent that frequently makes 'leaps of logic' or misses obvious errors in its tool outputs. Which TWO techniques directly address this behavior?

Medium
59

You are building a Claude-based agent that must parse unstructured customer emails, extract line-item order data, and then call a fulfillment tool with the extracted values. During testing, the agent occasionally calls the fulfillment tool with empty or garbled line items when an email contains a forwarded message with a different formatting style. Which architectural change most directly reduces this failure?

Medium
60

An agent orchestrator delegates work to three specialist sub-agents: a 'search' agent that returns ranked documents, an 'extract' agent that pulls structured fields from those documents, and a 'verify' agent that checks extracted fields against source text. During evaluation you find that verify frequently approves fields that extract hallucinated, because verify receives only the extracted JSON, not the source passages. Which change to the orchestration contract most directly fixes this?

Hard
61

An enterprise agentic system using Claude needs to maintain strict state isolation across multiple concurrent user sessions while executing autonomous tool loops. Which architecture best ensures security and state integrity?

Medium
62

A team wants an agent to answer questions about a large internal corpus. They notice the agent invents details when the retrieved chunks are only loosely related to the question. Which change most directly reduces fabricated answers grounded in weak evidence?

Easy

Frequently asked questions

What does the Advanced Agentic Architecture domain cover on the CCAR-P exam?
You must design an agent loop that externalizes state, curates which tools are visible, and preserves goal-relevant context across many steps. The single most important thing: keep a durable, structured record of prior results so dependent steps never lose their inputs.
How many questions are in this domain?
This page lists all 62 Advanced Agentic Architecture questions in the CCAR-P question bank. The actual exam draws from this domain proportionally to its weighting in the official exam blueprint.
What is the best way to practise this domain?
Start with a short focused session (10 questions) to identify gaps, then work through explanations. Repeat with a longer session once the weak areas feel solid.
Can I practise only Advanced Agentic Architecture questions?
Yes — the session launcher on this page filters questions to this domain only. Choose any session length for inline explanations and scoring.
anthropic-claude-architect-professional ANTHROPIC-CLAUDE-ARCHITECT-PROFESSIONAL advanced agentic architecture Practice Questions