Courseiva

200-901 Understanding and Using APIs Practice Question

Which HTTP header is used to specify the format of the request body (e.g., application/json) when sending a POST request to a REST API?

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Content-Type

Content-Type indicates the media type of the request body. Accept indicates the desired response format. Authorization carries credentials.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    Accept

    Why it's wrong here

    Accept tells the server which response media types the client can handle; it does not describe the request payload. It tempts because it names a media type, and would be correct when negotiating the format of the returned representation, such as requesting application/json from an endpoint.

  • ✓

    Content-Type

    Why this is correct

    Content-Type specifies the media type of the request body, such as application/json, so the server knows how to parse the POST payload. Accept instead describes the desired response format, so Content-Type satisfies the requirement to declare the body's format.

  • ✗

    Authorization

    Why it's wrong here

    Authorization carries credentials such as a bearer token for authenticating the caller, not the body's media type. Content-Type declares application/json. Authorization is tempting because POST requests to secured APIs usually include it, but it would be the right header only when the API requires proof of identity or permissions.

  • ✗

    X-Requested-With

    Why it's wrong here

    X-Requested-With identifies AJAX requests, typically carrying XMLHttpRequest, so it conveys nothing about body media type. Content-Type is the header that declares application/json. X-Requested-With is tempting because frameworks use it to detect asynchronous calls, but it would only be correct when a server must distinguish AJAX from full-page requests.

About these practice questions

One of 975 original 200-901 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This 200-901 practice question is part of Courseiva's free Cisco certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 200-901 exam.