Courseiva

Microsoft Power Platform Fundamentals PL-900 (PL-900) — Questions 601–675

701 questions total · 10pages · All types, answers revealed

Page 8

Page 9 of 10

Page 10
601
Multi-Selectmedium

Which THREE of the following are features of Power Automate that help manage and monitor flows?

Select 3 answers
A.Solution checker
B.Flow checker
C.Run history
D.Alerts
E.Flow analytics
AnswersC, D, E

Run history records each flow execution, showing trigger time, duration, and per-action inputs and outputs, including failures. This satisfies the monitoring requirement by letting makers diagnose why a run failed and confirm whether it succeeded, rather than merely designing or triggering flows.

Why this answer

Run history (C) is correct because Power Automate retains the execution details of each flow run, letting makers inspect trigger inputs, action outputs, durations, and failures for troubleshooting and monitoring. Alerts (D) are correct because Power Automate can notify flow owners when a flow fails or when a cloud flow's run metrics cross configured thresholds, enabling proactive monitoring. Flow analytics (E) is correct because it provides built-in dashboards and metrics such as run success/failure rates, usage trends, and error counts across flows for ongoing monitoring.

Solution checker (A) does not belong because it validates solution components for issues when packaging/exporting solutions in Power Apps/Power Automate, not for managing or monitoring flow runs. Flow checker (B) does not belong because it is a design-time validation tool that flags errors and warnings in the flow definition before saving or testing, rather than a runtime monitoring feature.

602
MCQhard

A Power Platform administrator needs to ensure that all Power Automate cloud flows in a specific environment can only use connectors approved by the security team, and that flows combining a blocked connector with any other connector are prevented from running. Which mechanism should the administrator use?

A.Managed environment settings that enforce the solution checker before flows can be shared
B.Connector consent settings in the Power Platform admin center that require admin approval for new connectors
C.Environment security roles that deny the Flow creation privilege to all makers
D.A Data Loss Prevention policy that classifies connectors as Business, Non-Business, or Blocked
AnswerD

Data Loss Prevention policies in the Power Platform admin center classify connectors into Business, Non-Business, and Blocked groups. A connector placed in the Blocked group cannot be used in any flow, and mixing Business and Non-Business connectors in a single flow is prevented. This precisely enforces the requirement of restricting flows to approved connectors and stopping disallowed combinations.

Why this answer

Data Loss Prevention policies are the designated mechanism for connector governance in Power Platform. By grouping connectors into Business, Non-Business, and Blocked categories, the admin can block a specific connector entirely and prevent flows from combining Business and Non-Business connectors. Security roles, connector consent, and managed environment solution checker settings address permissions, consent, and quality respectively, not connector combination rules.

Exam trap

The trap here is assuming that connector consent settings or managed environment sharing restrictions can block connector combinations, when only Data Loss Prevention policies define Business, Non-Business, and Blocked connector groups.

603
MCQmedium

You are a business analyst at a logistics company. The company uses a SharePoint Online list named 'Shipments' to track packages. You need to create a Power Automate cloud flow that automatically sends an email to the customer whenever a new shipment is added to the list. The email must include the shipment's tracking number and the customer's email address. Which trigger and action should you use?

A.Use the 'When an item is created' trigger for SharePoint, then add a 'Send an email (V2)' action from Outlook.
B.Use the 'Recurrence' trigger, then add a 'Get items' action for SharePoint and a 'Send an email (V2)' action.
C.Use the 'When a file is created' trigger for SharePoint, then add a 'Post message' action for Microsoft Teams.
D.Use the 'When an item is modified' trigger for SharePoint, then add a 'Send an email (V2)' action from Outlook.
AnswerA

This is correct because the 'When an item is created' trigger fires when a new list item is added, and the 'Send an email (V2)' action can send an email using dynamic content from the item, such as tracking number and customer email. This combination directly meets the requirement to notify customers upon new shipment creation.

Why this answer

The 'When an item is created' trigger for SharePoint is designed to start a flow when a new list item is added, which matches the need to detect new shipments. The 'Send an email (V2)' action from Outlook can use dynamic content from the trigger, such as the tracking number and customer email, to compose the message. This ensures timely and accurate notification without manual intervention.

Exam trap

The trap here is confusing list triggers with file triggers or modification triggers, which fire under different conditions and would not meet the requirement for immediate notification on new item creation.

604
MCQeasy

A small business wants to create a chatbot to answer common customer questions about store hours and return policies. Which Power Platform tool should they use?

A.Power BI
B.Power Automate
C.Power Apps
D.Copilot Studio
AnswerD

Copilot Studio builds conversational chatbots with no-code topics, so staff can publish a bot answering store hours and return policy questions without developer effort. It satisfies the small business's need for a low-skill, self-service assistant rather than custom code or analytics tooling.

Why this answer

Copilot Studio (formerly Power Virtual Agents) is the correct tool because it is specifically designed to create conversational AI chatbots without writing code. It allows the business to build a bot that answers common questions about store hours and return policies by defining topics and using natural language processing to interact with users.

Exam trap

The trap here is that candidates may confuse Power Apps (custom app builder) or Power Automate (workflow automation) with chatbot creation, but only Copilot Studio provides the conversational AI capabilities needed for this use case.

How to eliminate wrong answers

Option A is wrong because Power BI is a business analytics tool for visualizing data and creating reports, not for building chatbots. Option B is wrong because Power Automate is a workflow automation tool that connects apps and services to automate repetitive tasks, but it does not provide a conversational interface for answering customer questions. Option C is wrong because Power Apps is a low-code platform for building custom business applications with forms and data connections, not for creating chatbots.

605
MCQhard

A Power Platform administrator is reviewing the capacity of a production environment. The environment has a database size of 2 GB, file storage of 10 GB, and log storage of 1 GB. The tenant has a total of 10 GB of database capacity, 50 GB of file capacity, and 2 GB of log capacity. The administrator notices that the production environment is consuming a disproportionate amount of database capacity. Which action should the administrator take to identify the largest tables in the environment?

A.Use the Microsoft Dataverse API to retrieve metadata for all tables and calculate their sizes using the 'RetrieveTotalRecordCount' message.
B.In the Power Apps maker portal, open each table and check the 'Table properties' for the 'Storage size' field.
C.In the Power Platform admin center, select the environment, then go to Analytics > Dataverse, and view the 'Table size' report.
D.Run a SQL query against the Dataverse database using the TDS endpoint to select table names and their sizes from the sys.tables view.
AnswerC

The Power Platform admin center provides Dataverse analytics that include storage usage by table. The 'Table size' report shows the size of each table in the environment, allowing administrators to identify which tables consume the most database capacity. This is the correct tool for analyzing table-level storage consumption without writing custom queries.

Why this answer

The Power Platform admin center includes Dataverse analytics that provide detailed storage usage reports. The 'Table size' report specifically lists each table and its size, enabling administrators to pinpoint which tables are consuming the most database capacity. This is the intended and supported method for storage analysis at the table level.

Exam trap

The trap here is assuming that record counts or maker portal properties directly reflect storage size, or that the TDS endpoint can be used for administrative metadata queries.

606
MCQeasy

Your organization wants to create a public-facing website where customers can submit support requests. The website should be built with minimal custom code and integrate with Dataverse. Which Power Platform component should you use?

A.Power Pages
B.Power BI
C.Power Apps
D.Power Automate
AnswerA

Power Pages provides a low-code, external-facing portal that authenticates and stores customer submissions directly in Dataverse, satisfying the public website and minimal custom code constraints. Unlike model-driven apps, which require internal licensing, or canvas apps, which lack anonymous public access, Power Pages is purpose-built for external users.

Why this answer

Power Pages is the correct choice because it is a low-code, secure, enterprise-grade platform for creating public-facing websites that integrate directly with Dataverse. It enables external customers to submit support requests without custom code, leveraging built-in authentication, form components, and Dataverse data binding.

Exam trap

The trap here is that candidates may confuse Power Apps (which also uses Dataverse) with Power Pages, not realizing that Power Apps requires user authentication and is not designed for anonymous public-facing websites, whereas Power Pages is explicitly built for external portals.

How to eliminate wrong answers

Option B is wrong because Power BI is a business analytics tool for visualizing data and creating reports, not for building public-facing websites with form submission capabilities. Option C is wrong because Power Apps is designed for building custom business applications (canvas or model-driven) for internal or authenticated users, not for creating public-facing websites accessible to anonymous customers. Option D is wrong because Power Automate is an automation platform for creating workflows and process automations, not a website builder; it can be used to process submissions but cannot serve as the front-end website itself.

607
MCQhard

You are a Power Automate developer for a large retail company. The company uses a SharePoint Online list named 'SalesOrders' to track orders. Each order has a Status column (choice: New, Processing, Shipped, Delivered). When an order is updated to 'Shipped', a flow should send an email with tracking info to the customer. Additionally, if the order amount exceeds $10,000, a manager must approve the shipment before the email is sent. You create a flow with a trigger 'When an item is modified' and add a condition to check if Status equals 'Shipped'. Inside the condition, you add an approval action. The flow currently sends the approval to the manager for all orders, even those under $10,000. You need to modify the flow so that orders under $10,000 skip the approval and directly send the email. What should you do?

A.Modify the existing condition to check if amount exceeds $10,000, and if false, terminate the flow
B.Add a second condition inside the 'Status equals Shipped' condition that checks if amount exceeds $10,000; place the approval action inside this new condition, and the email action after it
C.Use a 'Switch' action based on the amount, with cases for >10000 and <=10000
D.Add a 'Parallel branch' after the trigger: one branch for approval, one for email
AnswerB

Nesting the approval inside a second condition on amount means only orders above $10,000 route to the manager; smaller orders fall through to the email action directly. This satisfies the stem's requirement to skip approval below the threshold.

Why this answer

It adds a nested condition inside the existing 'Status equals Shipped' condition to check if the order amount exceeds $10,000. The approval action is placed inside this nested condition (for orders over $10,000), while the email action is placed after the nested condition but still within the 'Status equals Shipped' condition. This ensures that only orders over $10,000 require manager approval, and all shipped orders (regardless of amount) eventually send the email—either directly (if under $10,000) or after approval (if over $10,000).

Exam trap

The trap here is that candidates often think a single condition with a 'terminate' action (Option A) is sufficient, but they overlook that terminating the flow for low-value orders would also stop the email, whereas the requirement is to skip only the approval, not the email.

How to eliminate wrong answers

Option A is wrong because modifying the existing condition to check if amount exceeds $10,000 and terminating the flow for false would stop the flow entirely for orders under $10,000, preventing the email from being sent—which is not the requirement. Option C is wrong because a 'Switch' action based on the amount would evaluate the amount before checking the Status, potentially running the wrong branch if the order is not yet 'Shipped', and it does not naturally handle the sequential logic of approval then email for high-value orders. Option D is wrong because adding a 'Parallel branch' after the trigger would run both branches simultaneously, meaning the email could be sent before the manager approves (or even if approval is denied), violating the requirement that approval must happen before the email for orders over $10,000.

608
Multi-Selecthard

Which THREE actions can a Power Platform administrator perform in the Power Platform admin center to manage environments?

Select 3 answers
A.Create a new environment
B.Create a new Microsoft Entra ID security group
C.Install a managed solution from AppSource
D.Delete an environment
E.Back up and restore an environment
AnswersA, D, E

Admins can create environments.

Why this answer

The Power Platform admin center provides administrators with the ability to create new environments, which are containers for managing apps, flows, and data. This action is a core administrative task for organizing and isolating resources within a tenant.

Exam trap

The trap here is that candidates may confuse environment-level actions (like installing solutions) with tenant-level administrative actions, or assume that security group creation is part of Power Platform administration when it is actually a separate Entra ID task.

609
MCQhard

A company is using Microsoft Copilot Studio to build a copilot for employee onboarding. The copilot must authenticate users to provide personalized information. The company uses Azure AD (now Microsoft Entra ID) for identity management. Which authentication method should the administrator configure in Copilot Studio?

A.Anonymous access
B.Manual authentication
C.Microsoft Entra ID (Azure AD) authentication
D.SharePoint authentication
AnswerC

Microsoft Entra ID authentication lets the copilot sign users in with their existing organisational credentials, returning identity claims the bot uses to personalise onboarding content. It integrates directly with the company's current identity provider without separate credential stores.

Why this answer

Microsoft Entra ID (Azure AD) authentication is the correct choice because the company uses Azure AD for identity management, and Copilot Studio natively supports this authentication method to provide personalized, authenticated experiences. This allows the copilot to verify user identities via OAuth 2.0 and OpenID Connect, enabling access to user-specific data and context during onboarding.

Exam trap

The trap here is that candidates may confuse SharePoint as an authentication method because it is a common data source, but authentication in Copilot Studio is always handled by an identity provider like Microsoft Entra ID, not by SharePoint itself.

How to eliminate wrong answers

Option A is wrong because anonymous access does not authenticate users, so it cannot provide personalized information or enforce identity-based security. Option B is wrong because manual authentication is not a supported authentication method in Copilot Studio; the platform relies on pre-configured identity providers like Microsoft Entra ID or generic OAuth 2.0. Option D is wrong because SharePoint authentication is not a standalone authentication method for Copilot Studio; SharePoint can be a data source, but user authentication is handled by the underlying identity provider, typically Microsoft Entra ID.

610
MCQmedium

A retail chain uses Power Apps for an inventory management app. Employees report that the app loads slowly. What is the most likely cause?

A.The app has too many controls per screen
B.The app uses a non-delegable query on a large data source
C.The app uses too many screens
D.The app has complex formulas in OnStart
AnswerB

Non-delegable queries force Power Apps to pull the full dataset to the client before filtering, so a large data source causes slow loads. Delegation pushes filtering to the source; the constraint here is the non-delegable operation combined with data volume.

Why this answer

The most likely cause of slow loading in a Power Apps inventory management app is a non-delegable query on a large data source. When a query cannot be delegated, Power Apps retrieves all records from the data source to the client device, then filters locally, causing significant performance degradation with large datasets. This is a common issue when using functions like `Filter` with unsupported operators or columns on large tables.

Exam trap

The trap here is that candidates often assume too many controls or screens cause slowness, but the PL-900 exam specifically tests the concept of delegation as the primary performance bottleneck when dealing with large data sources in Power Apps.

How to eliminate wrong answers

Option A is wrong because having many controls per screen primarily affects rendering and responsiveness during app use, not initial load time; the load time is dominated by data retrieval and formula execution. Option C is wrong because the number of screens does not directly impact load time, as screens are loaded on demand unless preloaded, and the app loads only the first screen initially. Option D is wrong because complex formulas in OnStart can slow down app startup, but the most likely cause for a slow-loading app connected to a large data source is a non-delegable query, which forces all data to be transferred before any filtering.

611
MCQmedium

A company uses Microsoft Copilot Studio to build a copilot that helps employees submit IT support tickets. The copilot must collect the user's employee ID, the issue description, and the urgency level before creating a ticket in an external system. The company wants to ensure that the copilot asks for each piece of information in a structured way and validates that the employee ID is a number. What should they use in Copilot Studio?

A.Create a single message node that asks for all information at once and parse the response.
B.Use a Power Automate flow to prompt the user for each piece of information.
C.Use a Question node for each piece of information and set the entity type for the employee ID to Number.
D.Configure an adaptive card that contains input fields for all information.
AnswerC

Question nodes are designed to prompt the user for input and store the response in a variable. By setting the entity type to Number for the employee ID, Copilot Studio will validate that the input is numeric. This ensures structured data collection and validation without custom code. The other pieces can use appropriate entity types like String or Multiple choice.

Why this answer

Question nodes in Copilot Studio are designed to ask the user for information and store it in variables. Each Question node can specify an entity type, such as Number, which enforces validation. By using separate Question nodes for employee ID, issue description, and urgency, the copilot collects data in a structured manner.

This approach is no-code and ensures that the employee ID is numeric before proceeding.

Exam trap

The trap here is assuming that a single message node or an adaptive card can replace the structured, validated data collection that Question nodes provide, especially for enforcing data types like numbers.

612
MCQhard

A healthcare organization uses Power Apps to manage patient intake forms. The app is built on Dataverse and includes a field for medical record number (MRN) that must be unique. The app currently uses a text input, but duplicate MRNs have been entered. What is the best way to enforce uniqueness at the data layer?

A.Create a Dataverse alternate key on the MRN field
B.Use a Power Automate flow to check for duplicates after submission
C.Configure a business rule on the MRN field
D.Add a validation rule in the app to check for duplicates before submitting
AnswerA

An alternate key applies a database-level uniqueness constraint on the MRN column, so Dataverse rejects any duplicate value on save regardless of which app or user performs the insert. This enforces uniqueness at the data layer itself, not merely in the canvas app's validation logic.

Why this answer

A Dataverse alternate key enforces uniqueness at the database level, preventing duplicate MRN values from being saved regardless of how data enters the system. This is the only option that operates at the data layer, ensuring integrity even if the app, a flow, or an external integration submits a record. Alternate keys are indexed and validated by Dataverse before commit, making them the proper solution for unique field constraints.

Exam trap

The trap here is that candidates confuse client-side validation (business rules, app validation) with data-layer enforcement, assuming any uniqueness check in the app or a flow is sufficient, but only alternate keys (or unique constraints) guarantee integrity at the database level.

How to eliminate wrong answers

Option B is wrong because a Power Automate flow runs after submission, meaning duplicates can already be committed before the flow checks—this is a reactive, not preventive, approach and does not enforce uniqueness at the data layer. Option C is wrong because a business rule operates on the client side (in a model-driven app form) and cannot enforce uniqueness at the database level; it only provides UI-level validation and can be bypassed by direct API calls or bulk imports. Option D is wrong because a validation rule in the app (canvas or model-driven) runs only within the app client and can be circumvented by direct data operations, such as Dataverse API calls or data imports, so it does not guarantee data-layer uniqueness.

613
MCQeasy

A non-profit organization wants to create a public donation page using Power Pages. Donors should be able to enter their information and submit without creating an account. What type of authentication should be configured for the donation page?

A.SAML 2.0
B.Microsoft Entra ID
C.Anonymous
D.OpenID Connect
AnswerC

Anonymous access lets visitors submit the donation form without signing in, since no identity provider or account is required. This satisfies the requirement that donors enter information and submit without creating an account, keeping the page publicly accessible.

Why this answer

For a public donation page where donors should submit information without creating an account, anonymous authentication is required. Power Pages supports anonymous access, allowing unauthenticated users to view and interact with the site. This is the only option that permits access without any identity provider.

Exam trap

PL-900 often tests the difference between authentication types, and candidates may incorrectly assume that some authentication is always required, overlooking anonymous access for public-facing scenarios.

How to eliminate wrong answers

Option A is wrong because SAML 2.0 is an authentication protocol that requires integration with an identity provider and would force users to authenticate, which is not desired. Option B is wrong because Microsoft Entra ID requires users to have accounts and sign in, which contradicts the requirement for no account creation. Option D is wrong because OpenID Connect is an authentication layer on top of OAuth 2.0 that also requires users to authenticate via an identity provider, again not suitable for anonymous access.

614
MCQhard

A maker builds a canvas app that reads from a SharePoint list containing 50,000 rows. Users report the gallery shows only a subset of records and search results are incomplete. The maker needs the app to return complete results for filter and search operations. What should the maker do?

A.Add a second SharePoint data source pointing to the same list
B.Increase the app's data row limit setting to the maximum value
C.Enable the SharePoint list's versioning settings
D.Rewrite queries to use only delegable functions and operators for SharePoint
AnswerD

When a query is delegable, Power Apps pushes the operation to SharePoint and processes all rows server-side. Non-delegable expressions are evaluated locally and capped at the delegation limit, so only a subset returns. Restricting Filter, Search, and Sort to SharePoint-delegable constructs makes results complete across the 50,000 rows.

Why this answer

Delegation is the mechanism that lets Power Apps hand processing to the data source. SharePoint supports a specific set of delegable functions and operators. When a query uses only those, all matching rows are processed server-side regardless of list size.

When it uses a non-delegable expression, processing happens on the device and is limited, which explains the partial gallery and incomplete search results.

Exam trap

The trap here is believing the data row limit setting removes the delegation cap, when that setting only affects local processing and cannot exceed 2000.

615
Multi-Selectmedium

Which TWO are benefits of using Microsoft Power Platform for business process automation? (Select TWO)

Select 2 answers
A.It reduces development time compared to traditional coding.
B.It can be used offline without any connectivity.
C.It requires no coding skills for any scenario.
D.It integrates easily with Microsoft 365 and Azure services.
E.It only works with Microsoft data sources.
AnswersA, D

Low-code development with Microsoft Power Platform lets makers assemble apps, flows and connectors visually, cutting build time against hand-written code. This directly satisfies the stem's automation benefit: faster delivery of business processes without a professional developer, since prebuilt connectors and templates remove most bespoke coding effort.

Why this answer

Option A is correct because Power Platform's low-code/no-code designers (Power Apps Studio, Power Automate's visual designer, and prebuilt connectors) let makers assemble apps and flows with drag-and-drop components and formulas instead of writing full custom code, which shortens delivery time versus traditional development. Option D is correct because Power Platform is natively integrated with Microsoft 365 (SharePoint, Teams, Outlook, Dataverse) and Azure services (Azure Functions, Logic Apps, Azure AD, API Management), so connectors and identity/data services work out of the box. Option B is not a general benefit: Power Apps and Power Automate are cloud services that normally require connectivity, and offline use is limited to specific Power Apps mobile offline scenarios, not the platform as a whole.

Option C is inaccurate because advanced scenarios (custom connectors, plug-ins, PCF controls, complex expressions) do require coding or scripting skills. Option E is false because Power Platform supports hundreds of non-Microsoft connectors (Salesforce, SAP, SQL Server, Twitter/X, Dropbox, etc.), not only Microsoft data sources.

Exam trap

The trap here is that candidates may assume 'low-code' means 'no-code for all scenarios' (Option C) or that Power Platform is limited to Microsoft ecosystems (Option E), but the exam tests the understanding that low-code reduces but does not eliminate coding needs, and that the platform is designed for broad interoperability.

616
MCQmedium

A company uses Power Automate to manage customer support tickets. They want to ensure that when a ticket is escalated, a notification is sent to the support manager. The escalation is indicated by a change in the 'Priority' column of a SharePoint list from 'Normal' to 'High'. Which trigger should they use to detect this change?

A.When a file is created or modified (properties only)
B.When an item is deleted
C.When an item is modified
D.When an item is created
AnswerC

The 'When an item is modified' trigger fires when any column in a SharePoint list item changes. It provides the old and new values of the item, allowing you to compare the 'Priority' column and detect if it changed from 'Normal' to 'High'. This is the correct trigger because it specifically monitors for modifications to existing items, which is necessary to detect the escalation. It can be used with a condition to check the priority change.

Why this answer

To detect a change in the 'Priority' column of a SharePoint list item, the flow must use a trigger that fires on item modification. The 'When an item is modified' trigger is designed for this purpose. It provides the before and after values of the item, allowing a condition to check if the priority changed from 'Normal' to 'High'.

Other triggers either fire on creation, deletion, or are for document libraries. Therefore, the correct trigger is 'When an item is modified'.

Exam trap

The trap here is confusing triggers for creation with those for modification, and assuming that a trigger for document libraries applies to lists.

617
MCQeasy

A Power Platform administrator needs to provide a team of makers with a shared environment that includes a common set of connectors and a preconfigured Microsoft Dataverse database. The makers should be able to collaborate on apps and flows without affecting other environments. What should the administrator create?

A.A new Power Platform environment with no database and share the default environment with the team.
B.A new environment with a Dataverse database and assign the makers the Environment Maker security role.
C.A new Power Apps solution that includes all required connectors and share it with the team.
D.A new security group in Microsoft Entra ID and assign the team to it.
AnswerB

Creating a new environment with a Dataverse database provides the shared workspace, and assigning the Environment Maker role allows the team to create apps, flows, and other resources within that environment. This isolates their work from other environments and gives them the necessary permissions to collaborate on the common set of connectors and data.

Why this answer

To provide a shared, isolated workspace with Dataverse, the administrator should create a new environment and provision a Dataverse database. Assigning the Environment Maker security role enables team members to create and collaborate on apps and flows within that environment. This approach keeps their work separate from other environments and ensures they have the necessary permissions.

Exam trap

The trap here is confusing a solution with an environment; a solution is a container for components, not a separate workspace with its own data store.

618
MCQmedium

You have a Power Automate flow that sends an email notification when a new file is added to a SharePoint document library. Users report that emails are not being sent for some files. What is the most likely cause?

A.The flow uses a premium connector that requires a license
B.The file is being co-authored by multiple users
C.A trigger condition is filtering out some files
D.The file content contains sensitive information
AnswerC

A trigger condition evaluates each new file and skips the flow when the expression is false, so some files never fire the email action. This precisely explains why notifications arrive for only a subset of files added to the SharePoint library.

Why this answer

Trigger conditions in Power Automate allow you to define expressions that must evaluate to true for the flow to run. If a condition is configured to filter out certain files (e.g., based on file name, metadata, or size), those files will not trigger the flow, and no email will be sent. This is the most likely cause when emails are missing for some files but not all.

Exam trap

The trap here is that candidates assume email failures are due to licensing or content issues, but the most common cause in practice is a misconfigured trigger condition that silently filters out legitimate file additions.

How to eliminate wrong answers

Option A is wrong because the flow uses a SharePoint trigger and an email action, both of which are standard connectors included with Power Automate licenses; premium connectors are not involved. Option B is wrong because co-authoring does not prevent the 'When a file is created' trigger from firing; the trigger fires once when the file is first added, regardless of subsequent edits. Option D is wrong because file content containing sensitive information does not affect the trigger or email sending; Power Automate does not inspect or filter content for sensitivity by default.

619
MCQmedium

An organization uses Power Pages to provide a partner portal. Partners must log in using their corporate Microsoft Entra ID credentials. Which authentication provider should be configured in Power Pages?

A.Microsoft account
B.SAML 2.0
C.Microsoft Entra ID
D.Local authentication
AnswerC

Configuring Microsoft Entra ID as the identity provider lets Power Pages federate directly with partners' corporate directories, satisfying the stem's requirement for Entra ID credentials. External identity providers such as Facebook or Google cannot authenticate corporate tenants, and local accounts would bypass the partners' existing directory entirely.

Why this answer

Microsoft Entra ID (formerly Azure Active Directory) is the authentication provider in Power Pages that allows users to sign in with their organizational Microsoft Entra ID credentials. Configuring the Microsoft Entra ID provider enables partners to authenticate using their corporate identities, which is exactly what the scenario requires.

Exam trap

The trap is selecting SAML 2.0 as a generic federation answer when a native Microsoft Entra ID provider exists — candidates must recognize that the question specifies Microsoft Entra ID credentials, which map directly to the dedicated provider.

How to eliminate wrong answers

Option A is wrong because Microsoft account refers to personal accounts (e.g., outlook.com, hotmail.com), not corporate Entra ID credentials. Option B is wrong because SAML 2.0 is a generic federation protocol that could be used with various identity providers, but the question specifies corporate Microsoft Entra ID credentials, which have a dedicated native provider. Option D is wrong because local authentication uses Power Pages' built-in username/password store, which does not leverage corporate Entra ID credentials.

620
MCQhard

A company has a copilot built with Microsoft Copilot Studio that includes a topic for checking order status. The topic calls a Power Automate flow to retrieve order details from a SQL database. The flow uses a service account with read access. After deployment, users report that the copilot sometimes responds with order details for the wrong customer. The company wants to ensure that the copilot only returns orders for the authenticated user. What should they do?

A.Create a new topic that asks the user to confirm their identity by providing their order number.
B.Use a Power Automate flow with a service account that has access to all orders and filter by the user's IP address.
C.Modify the Power Automate flow to accept a customer ID as input and prompt the user for it.
D.Configure the copilot to authenticate users using Microsoft Entra ID and pass the user's email to the flow.
AnswerD

Authentication ensures the copilot knows who the user is. By enabling Microsoft Entra ID authentication, the copilot can retrieve the user's profile, including email. Passing this email to the Power Automate flow allows the flow to filter orders by the authenticated user's email. This prevents unauthorized access and ensures data is scoped to the user.

Why this answer

To ensure the copilot returns only the authenticated user's orders, the copilot must authenticate users. Microsoft Copilot Studio supports authentication with Microsoft Entra ID. Once authenticated, the user's email or other claims can be passed to the Power Automate flow.

The flow can then query the database filtering by the user's email, ensuring data isolation. This is the secure and correct approach.

Exam trap

The trap here is thinking that simply asking the user for an identifier like a customer ID or order number is sufficient for security, when in fact authentication is required to prevent unauthorized access.

621
MCQmedium

A support team's copilot in Microsoft Copilot Studio must collect a caller's order number, validate the format, and then branch to different responses depending on whether the order is domestic or international. The team wants a guided, deterministic conversation rather than generative answers. What should you use?

A.Generative answers with a SharePoint knowledge source containing order records.
B.The copilot's system prompt with instructions to ask for the order number.
C.A topic with question nodes, a condition node, and message nodes.
D.A Power Automate cloud flow triggered by a scheduled recurrence.
AnswerC

Topics provide authored, deterministic conversation paths. Question nodes collect and validate input, condition nodes branch on values, and message nodes return responses. This directly satisfies the requirement for guided behavior that varies by order type, and it avoids relying on generative answers for a structured data-collection flow.

Why this answer

Authored topics are the deterministic conversation mechanism in Copilot Studio. Question nodes gather and validate the order number, condition nodes route based on domestic or international status, and message nodes present the appropriate response. Generative answers, scheduled flows, and prompt instructions cannot enforce this structured, repeatable conversation path.

Exam trap

The trap here is treating generative answers or prompt instructions as a substitute for authored topic logic when the requirement is deterministic validation and branching.

622
MCQmedium

A Power Automate flow fails with the error 'GatewayTimeout'. The flow uses an on-premises data gateway to connect to a SQL Server database. What is the most likely cause?

A.The SQL Server credentials are incorrect.
B.The flow creator does not have a Power Automate license.
C.The on-premises data gateway is offline or unreachable.
D.The flow trigger is misconfigured.
AnswerC

GatewayTimeout indicates the cloud flow waited for the on-premises data gateway but received no response. An offline or unreachable gateway cannot broker the SQL Server connection, so the request expires. Restoring gateway connectivity resolves the timeout.

Why this answer

A GatewayTimeout error in Power Automate when using an on-premises data gateway indicates that the cloud service could not reach the gateway within the allowed time. The most common cause is that the gateway is offline, stopped, or otherwise unreachable from the internet. This directly produces the timeout rather than an authentication or configuration error.

Exam trap

The trap is assuming any flow failure relates to credentials or licensing — candidates must recognize that GatewayTimeout specifically points to connectivity between the cloud and the on-premises gateway, not authentication or configuration.

How to eliminate wrong answers

Option A is wrong because incorrect SQL Server credentials would produce an authentication failure (e.g., Login failed), not a GatewayTimeout. Option B is wrong because a missing Power Automate license would prevent the flow from running at all, typically showing a licensing error rather than a gateway timeout. Option D is wrong because a misconfigured trigger would cause the flow not to start or to start incorrectly, not to time out during gateway communication.

623
Multi-Selectmedium

A company is using Microsoft Copilot Studio to build a copilot for internal support. They want to ensure the copilot can perform actions such as creating a support ticket and sending a confirmation email. They also want to test the copilot before publishing it to Microsoft Teams. Which TWO actions should they perform? (Choose two.)

Select 2 answers
A.Write a custom connector to integrate with the ticketing system.
B.Publish the copilot to Teams first, then test it there.
C.Create a Power Automate flow to create the ticket and send the email, and call it from a topic.
D.Use the Test bot pane to simulate conversations and verify the flow is triggered correctly.
E.Configure authentication to Microsoft Entra ID before testing.
AnswersC, D

Power Automate flows are used to perform backend actions like creating tickets in external systems and sending emails. By calling a flow from a topic, the copilot can execute these actions. This is the standard way to extend a copilot's capabilities beyond simple responses. It requires no custom code within Copilot Studio itself.

Why this answer

To enable the copilot to create tickets and send emails, a Power Automate flow is the appropriate tool, called from a topic. To test before publishing to Teams, the Test bot pane in Copilot Studio allows simulation of conversations and verification of flow triggers. These two actions ensure the copilot functions correctly and is ready for deployment.

Authentication and custom connectors are not required for this scenario.

Exam trap

The trap here is thinking that publishing to Teams is a necessary step for testing, or that custom connectors are needed for integration when a Power Automate flow suffices.

624
MCQeasy

A non-profit organization uses Power Platform to manage donor information. The organization wants to ensure that only users in the ‘Donor Managers’ security group can edit records in the ‘Donations’ table. What is the best way to achieve this?

A.Create a DLP policy to restrict edit connectors
B.Use a business process flow to require approval
C.Share the canvas app only with the security group
D.Assign a custom security role that grants edit permissions on the Donations table to the security group
AnswerD

Power Platform table permissions are granted through security roles, not group membership alone. Assigning a custom role with edit privileges on the Donations table to the Donor Managers group restricts editing to those users, meeting the least-privilege requirement.

Why this answer

The most direct and secure method to control record-level permissions in Dataverse is to assign a custom security role with specific edit privileges on the Donations table to the 'Donor Managers' security group. This leverages Dataverse role-based security, which governs CRUD operations at the table level, ensuring that only members of that group can edit records without affecting other tables or users.

Exam trap

The trap here is that candidates confuse app-level sharing (Option C) with data-level security, forgetting that a canvas app's sharing settings only control access to the app interface, not the underlying Dataverse record permissions.

How to eliminate wrong answers

Option A is wrong because DLP policies control which connectors can be used in apps and flows, not who can edit records in a Dataverse table; they are for data loss prevention, not access control. Option B is wrong because a business process flow guides users through a sequence of stages and steps but does not enforce edit permissions; it requires additional logic (e.g., Power Automate) to check security group membership and cannot natively restrict editing. Option C is wrong because sharing a canvas app only controls who can open the app, not who can edit records in the underlying Dataverse table; a user could still edit records through other interfaces (e.g., model-driven app, API) if they have the appropriate security role.

625
Drag & Dropmedium

Drag and drop the steps to create a Power Automate flow that sends an email when a new item is added to SharePoint in the correct order.

Drag or tap steps into the slots.

Steps
Order
1Step 1
2Step 2
3Step 3
4Step 4

Why this order

The flow starts with an automated trigger, then adds an email action, and is saved after configuration.

626
MCQmedium

Your organization has multiple Power Platform environments. You need to ensure that a specific connector (e.g., SQL Server) is blocked in the production environment but allowed in the development environment. What should you configure?

A.Set the connector's API rate limits to zero in the production environment.
B.Modify the connector's sharing settings in the environment.
C.Configure environment-level security roles to restrict connector usage.
D.Create a data loss prevention (DLP) policy and assign it to the production environment.
AnswerD

A data loss prevention policy defines connector classification and can be scoped to specific environments, so blocking SQL Server in production while permitting it in development is achieved by assigning the policy to production only.

Why this answer

Data loss prevention (DLP) policies in Power Platform allow administrators to classify connectors as Blocked, Business Data Only, or No Business Data Allowed. By creating a DLP policy and assigning it to the production environment, you can specifically block the SQL Server connector in that environment while leaving it available in the development environment, which is not assigned the same policy.

Exam trap

The trap here is that candidates often confuse environment security roles (which manage user permissions) with DLP policies (which manage connector availability), leading them to incorrectly select Option C.

How to eliminate wrong answers

Option A is wrong because setting API rate limits to zero does not block a connector; it only throttles the number of requests, and the connector would still be available for use, just limited in throughput. Option B is wrong because connector sharing settings control who can share the connector with others, not whether the connector itself is available for use in an environment. Option C is wrong because environment-level security roles control user permissions (e.g., who can create or use resources), but they do not provide a mechanism to block specific connectors; DLP policies are the dedicated feature for connector classification and restriction.

627
MCQmedium

A company wants to use AI to automatically categorize customer support tickets based on their description. Which Power Platform AI capability should they use?

A.Power Automate with a regular expression
B.AI Builder category classification model
C.Power Virtual Agents (now Copilot Studio)
D.Power BI AI visuals
AnswerB

AI Builder's category classification model trains on labelled ticket examples and predicts a category from free-text descriptions, matching the requirement to categorise support tickets automatically. It is purpose-built for text classification, unlike form processing or object detection.

Why this answer

AI Builder's category classification model is specifically designed to automatically categorize text into predefined categories, making it ideal for routing support tickets based on their description. This prebuilt AI model uses natural language processing to analyze the text and assign the most relevant category without requiring custom machine learning expertise.

Exam trap

The trap here is that candidates often confuse AI Builder's category classification with simple pattern matching (Option A) or assume any AI-related tool like Power Virtual Agents can perform categorization, but only AI Builder provides a dedicated, no-code classification model for text data.

How to eliminate wrong answers

Option A is wrong because Power Automate with a regular expression can only match exact patterns or keywords, not understand the semantic meaning of a ticket description; it cannot perform true categorization based on context. Option C is wrong because Power Virtual Agents (now Copilot Studio) is designed for building conversational chatbots, not for categorizing existing text data; it lacks a built-in classification model for ticket routing. Option D is wrong because Power BI AI visuals are used for analyzing and visualizing data trends, not for categorizing individual text records; they cannot process real-time ticket descriptions to assign categories.

628
MCQhard

A company uses Power Virtual Agents (now Copilot Studio) to build a customer service chatbot. The bot needs to securely escalate to a live agent when it cannot resolve the issue. The escalation must pass the conversation context to the agent. What should the bot use?

A.HTTP request to a webhook
B.Transfer conversation action
C.Power Automate flow trigger
D.Custom connector for the live agent system
AnswerB

The Transfer conversation action hands the live session to a human agent while preserving the full dialogue history, so the agent receives context without the customer repeating themselves. This satisfies the secure escalation and context-passing requirement natively within Copilot Studio.

Why this answer

In Power Virtual Agents (now Copilot Studio), the 'Transfer conversation' action is the built-in mechanism to escalate a bot conversation to a live agent while preserving the full conversation context. This action hands off the session to a configured engagement hub or live agent system, passing along the transcript and context so the agent can continue seamlessly. It is the native, supported method for human handoff in Copilot Studio.

Exam trap

PL-900 often tests the built-in capabilities of Power Virtual Agents/Copilot Studio, and candidates may choose generic integration methods like webhooks or Power Automate flows instead of the native 'Transfer conversation' action that specifically handles context-aware escalation.

How to eliminate wrong answers

Option A is wrong because an HTTP request to a webhook is a generic integration method that does not natively handle conversation context transfer or live agent escalation; it would require custom development and would not automatically pass the conversation history. Option C is wrong because a Power Automate flow trigger can automate actions but does not provide the built-in conversation transfer capability with context preservation; it would need to be combined with other mechanisms. Option D is wrong because a custom connector for the live agent system is a lower-level integration that does not inherently manage the handoff or context transfer; it would require significant custom work and is not the recommended approach for standard escalation.

629
MCQhard

An administrator is setting up a new Power Platform environment for a department. The department requires that all users in the environment use only approved connectors, and that data cannot be shared between the approved connectors and any unapproved connectors. What should the administrator configure?

A.A Power Automate flow that monitors connector usage and alerts the administrator.
B.Environment security roles that restrict which connectors users can access.
C.A data loss prevention (DLP) policy that classifies connectors into Business, Non-Business, and Blocked groups.
D.Microsoft Entra ID conditional access policies that block unapproved connectors.
AnswerC

DLP policies allow administrators to classify connectors into Business, Non-Business, and Blocked categories. By placing approved connectors in the Business group and unapproved ones in Blocked, the policy prevents data sharing between them. This precisely meets the requirement to restrict usage to approved connectors and prevent data leakage.

Why this answer

Data loss prevention policies in Power Platform are designed to classify connectors and control data flow between them. By assigning approved connectors to the Business group and unapproved ones to Blocked, the policy ensures that only approved connectors are used and that data cannot be shared with unapproved ones. This is the correct and only native mechanism to enforce such restrictions.

Exam trap

The trap here is assuming that environment security roles or conditional access can control connector usage, but only DLP policies provide that capability.

630
MCQeasy

An app maker wants to add a button in a model-driven app that, when clicked, creates a new record of a custom entity called 'Inspection'. The maker should use which feature?

A.Custom command on the command bar
B.Power Automate flow
C.Business rule
D.Form editor
AnswerA

Command bar custom commands attach buttons to a model-driven app's command bar and can run JavaScript that creates a record of a specified table, such as Inspection. This is the supported mechanism for triggering record creation from a button in model-driven apps.

Why this answer

A custom command can be added to the command bar in a model-driven app to create a new record for a custom entity. Option B (Power Automate flow) is wrong because while a flow can be triggered from a command, the question is about the feature used to add the button itself. Option C (Business rule) is wrong because business rules are used for validation and show/hide logic, not for adding buttons.

Option D (Form editor) is wrong because the form editor is used for form layout, not for adding command bar buttons.

631
Matchingmedium

Match each solution type in Power Platform to its description.

Drag a concept onto its matching description — or click a concept then click the description.

Concepts
Matches

Used during development; can be edited

Used for deployment; cannot be edited

Identifies the creator of a solution

Update to a managed solution

Replaces an older solution version

Why these pairings

Managed solutions are production-ready and non-editable, while unmanaged solutions are for development and editable. The distractors swap these definitions.

632
MCQeasy

You want to design a Power Automate flow that triggers when a customer submits a support ticket in a Microsoft Dataverse table. Which trigger should you use?

A.When a new response is submitted (Forms)
B.When a new email arrives (Outlook)
C.When an item is created (SharePoint)
D.When a row is added, modified or deleted (Dataverse)
AnswerD

Dataverse's 'When a row is added, modified or deleted' trigger fires on table change events, matching the requirement to start when a support ticket row is created. It exposes filtering attributes so the flow runs only for the intended table and change type.

Why this answer

The trigger 'When a row is added, modified or deleted' in Dataverse is used when a support ticket is submitted in a Dataverse table. Option A is incorrect because the Forms trigger is for form responses, not Dataverse tables. Option B is incorrect because the Outlook email trigger is for incoming emails.

Option C is incorrect because the SharePoint trigger is for items in a SharePoint list.

633
MCQhard

A company is migrating an existing website to Power Pages. The current site has custom URL slugs for each page (e.g., /products/widget). How can Power Pages support custom URL patterns?

A.Modify the web page name to include the desired URL path.
B.Create a custom web template that generates URL routes.
C.Use the URL Rewrite module in IIS to map custom URLs.
D.Set the 'Partial URL' field for each web page in Power Pages to the desired slug.
AnswerD

The Partial URL field defines each web page's path segment, so setting it to 'products/widget' produces the custom slug /products/widget. This satisfies the requirement to preserve the existing site's custom URL patterns after migration to Power Pages.

Why this answer

In Power Pages, each web page record has a 'Partial URL' field that defines the URL segment for that page relative to its parent. Setting this field to a value like 'widget' produces the URL /products/widget when the page is nested under a parent page whose partial URL is 'products'. This is the built-in, supported mechanism for custom URL slugs and requires no code or server configuration.

Exam trap

PL-900 often tests the misconception that the web page 'Name' field controls the URL, when in fact the 'Partial URL' field is the dedicated slug attribute — candidates who conflate display names with URL paths pick the wrong option.

How to eliminate wrong answers

Option A is wrong because the web page 'Name' field is a display label used in the portal UI and navigation, not the URL path — changing it does not alter the page's address. Option B is wrong because web templates control the rendered HTML/layout of a page, not URL routing; Power Pages resolves URLs from the page hierarchy and Partial URL values, not from templates. Option C is wrong because Power Pages is a SaaS-hosted portal and you do not have access to IIS or its URL Rewrite module — that approach applies to self-hosted IIS sites, not Power Pages.

634
MCQhard

Your organization uses Power Virtual Agents (now Copilot Studio) for customer service. You need to ensure that the bot can access customer data from a Dataverse table that contains sensitive information. What is the best approach to secure the data?

A.Configure a data loss prevention (DLP) policy to block the bot from accessing the table.
B.Use the bot's authentication settings to require multi-factor authentication.
C.Assign appropriate security roles and field-level security to the bot's service principal.
D.Restrict access to the environment to only the bot's service account.
AnswerC

Dataverse enforces access through security roles, and field-level security masks sensitive columns even for privileged identities. Granting the bot's service principal a least-privilege role with field-level security restricts it to only the customer data required.

Why this answer

Power Virtual Agents (Copilot Studio) uses a service principal to authenticate with Dataverse. By assigning appropriate security roles and field-level security to that service principal, you can grant the bot granular, least-privilege access to only the necessary customer data, ensuring sensitive information is protected while still enabling the bot to function.

Exam trap

The trap here is that candidates confuse DLP policies (which govern connector usage) with data access control, or they assume user authentication methods like MFA apply to non-interactive service principals, leading them to pick options A or B instead of understanding the service principal security role mechanism.

How to eliminate wrong answers

Option A is wrong because a DLP policy controls data movement between connectors and endpoints, not access to specific Dataverse tables; blocking the bot from the table would prevent it from working entirely, which is not a security approach. Option B is wrong because multi-factor authentication applies to interactive user sign-ins, not to service-to-service authentication used by the bot's service principal; the bot cannot perform MFA. Option D is wrong because restricting access to the environment to only the bot's service account would block all human administrators and users, breaking management and troubleshooting, and does not provide fine-grained data-level security.

635
MCQmedium

A company uses Microsoft Power Platform and wants to enforce data loss prevention (DLP) policies for all environments. The admin needs to block the use of SharePoint connector in all default environments. Which action should the admin take?

A.Create a DLP policy and assign it to the default environment only.
B.Use Microsoft Entra ID conditional access to block the SharePoint connector.
C.Create a DLP policy that applies to all environments and block the SharePoint connector.
D.Configure connector sharing settings in Power Apps to block SharePoint.
AnswerC

A tenant-wide DLP policy scoped to all environments blocks the SharePoint connector across every default environment, satisfying the requirement to enforce restrictions everywhere rather than per-environment. Connector classification as Blocked prevents makers from adding it to apps and flows, which per-environment policies could not achieve at this scale.

Why this answer

DLP policies in Microsoft Power Platform are designed to control connector usage across environments. By creating a DLP policy that applies to all environments and blocking the SharePoint connector, the admin ensures that the connector is prohibited in every environment, including all default environments. This action directly enforces the data loss prevention requirement at the tenant level.

Exam trap

The trap here is that candidates may confuse DLP policies with other security controls like conditional access or connector sharing settings, mistakenly thinking those can block connector usage at the environment level.

How to eliminate wrong answers

Option A is wrong because assigning a DLP policy to the default environment only would not block the SharePoint connector in other environments, leaving them unprotected. Option B is wrong because Microsoft Entra ID conditional access controls user authentication and access to applications, not connector-level data policies within Power Platform; it cannot block a specific connector like SharePoint. Option D is wrong because connector sharing settings in Power Apps control who can share apps using a connector, not whether the connector itself can be used; blocking the connector requires a DLP policy, not sharing settings.

636
MCQeasy

A support team wants to launch a copilot that can answer questions about their publicly published product documentation. They have no coding resources and need the copilot to use the documentation pages as its knowledge source. What should they do first in Microsoft Copilot Studio?

A.Publish a Power Apps canvas app that displays the documentation in an iframe.
B.Create a custom connector that calls the documentation search API.
C.Create a new copilot and add the documentation website as a knowledge source.
D.Build a Power Automate cloud flow that emails documentation excerpts to users.
AnswerC

Copilot Studio lets makers create a copilot and attach knowledge sources such as public websites, SharePoint, and uploaded files without writing code. Adding the documentation website as a knowledge source enables the copilot to ground its answers in that content, which directly meets the team's requirement of using published documentation with no coding effort.

Why this answer

Copilot Studio is designed for makers to build conversational copilots and ground them with knowledge sources. For public documentation, adding the website as a knowledge source allows the copilot to retrieve relevant content and generate answers. The other approaches either require development work, do not create a conversational experience, or fail to connect the copilot to the documentation content.

Exam trap

The trap here is assuming that any external content integration requires a custom connector or code, when Copilot Studio natively supports public website knowledge sources for grounding.

637
MCQmedium

Your company is migrating a legacy paper-based expense report process to Power Apps. Employees will submit expenses via a Canvas app. The app must integrate with the corporate travel system to fetch trip details (e.g., dates, destination). The travel system exposes a REST API with OAuth 2.0 authentication. Finance requires that all expense reports over $1,000 receive a second-level approval from a manager. Additionally, the app must be available on mobile devices. Which combination of technologies should you use?

A.Canvas app with custom connector to travel API, and Power Automate for conditional approval
B.Canvas app with standard connector to travel API and Power Automate
C.Canvas app with AI Builder to extract trip details and Power Automate for approval
D.Model-driven app with Dataverse and Power Automate for approval
AnswerA

A canvas app gives mobile availability and can call the OAuth 2.0 REST API through a custom connector, while Power Automate handles the conditional second-level approval for reports over $1,000. This combination satisfies the API integration, approval threshold and mobile requirements together.

Why this answer

A Canvas app can use a custom connector to authenticate with OAuth 2.0 and fetch trip details from the travel REST API. Power Automate can handle the conditional approval workflow for expenses over $1,000. Canvas apps are suitable for mobile use.

Option B is wrong: the travel API uses OAuth 2.0, which requires a custom connector; standard connectors may not support the specific authentication or endpoints. Option C is wrong: AI Builder is for AI capabilities like form processing, not for fetching data from a REST API or handling approvals. Option D is wrong: while a model-driven app can be used for mobile, it relies on Dataverse as a data source, not direct integration with an external REST API; the travel system API requires a custom connector, which is easier to implement with a Canvas app.

638
MCQhard

A company uses Microsoft Copilot Studio to create a custom copilot. The copilot needs to access customer data stored in a Dataverse table that contains sensitive information. The compliance team requires that data accessed by the copilot must be audited. What should the admin configure?

A.Deploy Microsoft Sentinel to monitor copilot behavior.
B.Configure a DLP policy to block non-compliant data access.
C.Enable auditing in Microsoft Purview and log copilot interactions.
D.Use Copilot Studio analytics to track usage.
AnswerC

Enabling auditing in Microsoft Purview captures copilot interactions and Dataverse data access in the unified audit log, satisfying the compliance team's requirement that copilot-accessed sensitive data be auditable. Other settings govern authentication or sharing, not audit trails.

Why this answer

Microsoft Purview auditing captures detailed logs of user and admin activities, including interactions with custom copilots built in Copilot Studio. By enabling auditing in Purview and logging copilot interactions, the admin can meet the compliance requirement to audit all data accessed by the copilot, ensuring a traceable record of sensitive customer data access.

Exam trap

The trap here is that candidates often confuse analytics (usage metrics) with auditing (compliance logging), or assume that a DLP policy alone satisfies audit requirements, when in fact auditing must be explicitly enabled in Microsoft Purview to capture detailed interaction logs.

How to eliminate wrong answers

Option A is wrong because Microsoft Sentinel is a SIEM tool used for threat detection and response, not for auditing specific copilot data access logs; it can ingest audit logs but does not replace the need to enable auditing in Purview. Option B is wrong because a DLP policy prevents data leakage by blocking non-compliant actions but does not generate audit logs or provide a historical record of data access. Option D is wrong because Copilot Studio analytics tracks usage metrics like session counts and user satisfaction, not detailed audit trails of data access required for compliance.

639
MCQeasy

You are building a Power Automate flow that automatically creates a calendar event in Outlook when a customer booking is confirmed in a third-party system. The flow uses a trigger that polls the third-party system every 5 minutes. Which type of trigger is this?

A.Webhook trigger
B.Polling trigger
C.Manual trigger
D.Scheduled trigger
AnswerB

A polling trigger repeatedly calls the third-party system at fixed intervals, here every 5 minutes, to check for new booking confirmations. This satisfies the stem's requirement for a scheduled, interval-based check rather than an event-driven push, which would require the external system to notify Power Automate directly.

Why this answer

A polling trigger is one where Power Automate periodically checks the source system for new data at a defined interval — in this case, every 5 minutes. The trigger does not receive a push notification from the third-party system; instead, Power Automate initiates the request on a schedule and evaluates whether new bookings exist. This is the defining characteristic of a polling trigger.

Exam trap

PL-900 often tests whether candidates confuse polling triggers (interval-based checks for new data) with scheduled triggers (fixed-time recurrence), leading them to pick 'Scheduled trigger' when the scenario describes polling.

How to eliminate wrong answers

Option A is wrong because a webhook trigger is push-based — the source system actively sends an HTTP request to Power Automate when an event occurs, rather than Power Automate checking on an interval. Option C is wrong because a manual trigger requires a user to explicitly start the flow (e.g., a button or manual run), which does not match the automatic 5-minute polling behavior. Option D is wrong because a scheduled trigger runs the flow at fixed times (e.g., daily at 9 AM) regardless of whether new data exists, whereas a polling trigger checks for new data and only fires when new items are found.

640
MCQmedium

A financial analyst needs to run a Power Automate flow that retrieves data from an on-premises SQL Server and writes it to a SharePoint list. The flow must use a data gateway. Which gateway type should be used?

A.On-premises data gateway
B.Power BI personal gateway
C.Azure Virtual Network gateway
D.Microsoft 365 gateway
AnswerA

The on-premises data gateway is designed to enable secure access to on-premises data sources, such as SQL Server, from cloud services like Power Automate. It acts as a bridge, allowing the flow to query the SQL Server and retrieve data without exposing the server to the internet. This is the correct gateway type for this scenario.

Why this answer

To connect Power Automate to an on-premises SQL Server, the on-premises data gateway is required. It securely bridges cloud services and on-premises data, supporting connectors like SQL Server. Other gateway types serve different purposes: Azure Virtual Network gateway is for network connectivity, Microsoft 365 gateway does not exist, and Power BI personal gateway is for individual Power BI use, not for Power Automate flows.

Exam trap

The trap here is confusing network gateways with data gateways, or assuming that any gateway can provide the necessary connectivity for Power Automate.

641
MCQmedium

A company wants to automate the process of archiving completed sales orders from a SQL Server database to a SharePoint list every night. Which approach should they use?

A.Use a 'When an item is created' trigger on the SQL table.
B.Create an instant flow triggered by a Power Apps button for manual archiving.
C.Use a 'When a HTTP request is received' trigger from an external scheduler.
D.Use a SQL Server connector with a 'Recurrence' trigger to query and move data.
AnswerD

A scheduled 'Recurrence' trigger in Power Automate fires nightly without manual intervention, satisfying the automation constraint. The SQL Server connector retrieves completed sales orders, and the SharePoint connector writes them to the target list, achieving the required data movement between the two systems.

Why this answer

It uses a Recurrence trigger to run the flow on a schedule (every night) to query SQL Server for completed sales orders and archive them to SharePoint. Option A uses an event-driven trigger (when an item is created) which is not suitable for a nightly batch process. Option B is an instant flow triggered manually by a button, not automated.

Option C requires an external scheduler to send an HTTP request, but Power Automate's built-in Recurrence trigger is simpler and more appropriate.

642
MCQeasy

A company wants to integrate Power Automate with Microsoft Teams so that when a new task is assigned in Planner, a message is posted in a Teams channel. Which connector should be used?

A.Outlook.com
B.SharePoint
C.Office 365 Outlook
D.Microsoft Teams
AnswerD

The Microsoft Teams connector supplies the 'Post message in a chat or channel' action, which publishes to the target channel. Planner's own connector detects the task assignment, but Teams is the connector that performs the required channel post.

Why this answer

Microsoft Teams. The Microsoft Teams connector allows posting messages to Teams channels, which is exactly what the scenario requires. Option A (Outlook.com) is for personal email, not Teams.

Option B (SharePoint) is for document management, not Teams messaging. Option C (Office 365 Outlook) is for email and calendar, not for posting to Teams channels.

643
MCQeasy

A human resources manager wants to create a Power Automate cloud flow that runs every Monday at 9:00 AM to remind the team about timesheet submission. The flow should not depend on any external event. Which trigger should the manager use?

A.Recurrence
B.Manually trigger a flow
C.When an item is created – SharePoint
D.When a new email arrives (V3) – Office 365 Outlook
AnswerA

The Recurrence trigger starts a flow on a defined schedule, such as every Monday at 9:00 AM. It is independent of external events and is ideal for periodic tasks like weekly reminders. By configuring the frequency, interval, and start time, the HR manager ensures the flow runs consistently each week without needing any other trigger condition.

Why this answer

The Recurrence trigger is designed for flows that must run at regular intervals, such as daily, weekly, or monthly. By setting it to repeat every week on Monday at 9:00 AM, the HR manager creates a reliable, unattended reminder. Other triggers are event-driven and depend on external actions like receiving an email or creating a list item, which may not occur on the desired schedule.

Recurrence ensures the flow runs regardless of external activity.

Exam trap

The trap here is confusing event-driven triggers with scheduled triggers; a weekly reminder needs a time-based Recurrence trigger, not an event like a new email or list item.

644
MCQeasy

A sales team at a manufacturing company needs a mobile-friendly app that shows a product catalog and lets reps submit orders. The team has no developers and wants to build the app quickly by dragging controls onto a blank screen and connecting to an existing SharePoint list. Which type of Power Apps app should the team create?

A.A Power Automate cloud flow
B.A Power Pages site
C.A model-driven app
D.A canvas app
AnswerD

A canvas app gives makers a blank canvas where they drag and drop controls such as galleries, labels, and buttons, then bind them to a data source like SharePoint. Because the team has no developers and needs a custom layout with quick delivery, the pixel-perfect design freedom and connector-based data binding of a canvas app match the requirement exactly.

Why this answer

A canvas app is the right choice because it starts from a blank design surface, allows makers to drag and drop controls, and connects directly to data sources such as SharePoint without requiring pro-code development. The need for a custom, mobile-friendly catalog and order form built by non-developers aligns with canvas app capabilities rather than model-driven, portal, or automation technologies.

Exam trap

The trap here is assuming that any Power Apps app connected to SharePoint must be model-driven, when in fact model-driven apps require Dataverse tables and cannot be built on SharePoint lists.

645
Matchingmedium

Match each Power BI component to its description.

Drag a concept onto its matching description — or click a concept then click the description.

Concepts
Matches

Single page of visualizations from one or more reports

Multi-page collection of visualizations

Collection of data used to create visuals

Single visualization pinned to a dashboard

Container for dashboards, reports, and datasets

Why these pairings

The correct matches are: Power BI Desktop is a Windows application for report creation; Power BI Service is a cloud-based sharing platform; Power BI Mobile is for viewing reports on mobile devices; Power BI Report Server is an on-premises deployment solution. Common confusions include swapping the Desktop and Service definitions or confusing Report Server with the cloud service.

646
Multi-Selecthard

Which THREE features are available in Power Pages to customize the user interface?

Select 3 answers
A.Liquid templates
B.CSS overrides
C.Web templates
D.Dataverse tables
E.Power BI reports
AnswersA, B, C

Liquid templates let makers inject dynamic server-side logic directly into page markup, satisfying the requirement to customise the rendered interface. Unlike static HTML, Liquid processes conditions, loops and data from Dataverse before output, so the UI adapts per user. This is a native Power Pages customisation feature, not a portal add-on.

Why this answer

Liquid templates (A) are correct because Power Pages supports the Liquid templating language, allowing developers to dynamically render HTML and inject data into portal pages for UI customization. CSS overrides (B) are correct because Power Pages lets you add custom CSS (via the Styling workspace or custom CSS files) to override the default Bootstrap-based theme and restyle the portal's look and feel. Web templates (C) are correct because they are reusable Liquid-based components in Power Pages that render HTML fragments and are a core mechanism for customizing page layout and content.

Dataverse tables (D) are incorrect because they are the data storage layer used by Power Pages, not a UI customization feature. Power BI reports (E) are incorrect because they are analytics/visualization artifacts that can be embedded in a page but do not themselves customize the user interface.

Exam trap

PL-900 often tests whether candidates confuse data-layer components (Dataverse tables) or visualization components (Power BI) with actual UI customization features — remember that customization means templates, styles, and markup, not data sources or reports.

647
Multi-Selecthard

A global organization wants to standardize expense reporting across subsidiaries using Power Platform. They require integration with Microsoft Entra ID for identity and must ensure data residency compliance. Which TWO capabilities should they use?

Select 2 answers
A.AI Builder
B.Power BI dashboards
C.Dataverse environments with specific regions
D.Copilot Studio
E.Data Loss Prevention (DLP) policies
AnswersC, E

Dataverse environments can be created in specific geographic regions.

Why this answer

Dataverse environments can be created in specific geographic regions to ensure data residency compliance by storing data at rest within that region. Integration with Microsoft Entra ID is inherent to Dataverse, which uses Entra ID as its identity provider for authentication and authorization, meeting the requirement for standardized identity management across subsidiaries. Additionally, Data Loss Prevention (DLP) policies enforce data residency by restricting data sharing across connectors and preventing data from leaving the designated region, ensuring compliance with regulatory requirements.

Exam trap

The PL-900 exam often tests the misconception that Power BI or AI Builder are responsible for compliance features, when in fact data residency is enforced at the Dataverse environment level and identity is handled by Entra ID, not by analytics or AI tools.

648
MCQhard

You are a Power Platform administrator at Contoso Ltd. The company uses a Power Automate flow that monitors a SharePoint list for new items. When a new item is added, the flow retrieves data from an external CRM system via an HTTP request, then updates a second SharePoint list. Recently, the flow has been failing with a '400 Bad Request' error from the HTTP action. The CRM API endpoint and authentication are correct. The flow works for some items but fails for others. You need to identify the root cause and fix the flow. What should you do?

A.Change the HTTP action to use a different API endpoint
B.Add a 'Compose' action to sanitize the input data before the HTTP request
C.Add a 'Condition' to check if the item already exists
D.Increase the retry count for the HTTP action
AnswerB

The HTTP action returns 400 when the request body contains characters the CRM API rejects, such as unescaped quotes or ampersands from certain list items. A Compose action sanitising that input before the request prevents the malformed payload.

Why this answer

The '400 Bad Request' from the HTTP action occurs intermittently, meaning the API endpoint and authentication are correct but the payload sent for certain items is malformed — often due to special characters, null values, or incorrect data types from the SharePoint list. Adding a Compose action to sanitize or transform the input data before the HTTP request ensures the JSON payload is valid for all items, resolving the intermittent failures.

Exam trap

PL-900 often tests the misconception that retrying or changing endpoints fixes HTTP 400 errors, when the real cause is usually malformed input data that must be sanitized before the request.

How to eliminate wrong answers

Option A is wrong because changing the API endpoint would not fix intermittent 400 errors if the endpoint is already correct and works for some items — the issue is data-dependent, not endpoint-dependent. Option C is wrong because checking if the item already exists addresses duplicate processing, not malformed request payloads that cause 400 errors. Option D is wrong because increasing retry count only repeats the same malformed request; it does not fix the underlying data validation issue causing the 400 response.

649
MCQmedium

Refer to the exhibit. The following JSON shows a Power Apps component (canvas app) manifest snippet: { "properties": { "dataSources": [ { "name": "SalesData", "type": "Microsoft Dataverse", "entity": "accounts" } ], "screens": [ { "name": "MainScreen", "controls": [ { "name": "AccountGallery", "type": "Gallery", "items": "Filter(SalesData, status = 'Active')" } ] } ] } } What is the data source for the gallery named AccountGallery?

A.The filtered Dataverse Accounts data source
B.A SQL Server table named Accounts
C.A SharePoint list named SalesData
D.The raw Dataverse Accounts entity
AnswerA

The gallery's Items property binds to SalesData, a Microsoft Dataverse data source pointing at the accounts entity, with a Filter expression restricting rows to status = 'Active'. The gallery therefore draws its records from that filtered Dataverse Accounts source, satisfying the manifest's declared dataSources constraint.

Why this answer

The gallery named AccountGallery has its Items property set to 'Filter(SalesData, status = 'Active')'. SalesData is defined as a data source of type Microsoft Dataverse, entity 'accounts'. Therefore, the data source is the filtered Dataverse Accounts data source.

The filter is applied to the Accounts entity, so it is not the raw entity but a filtered view.

Exam trap

The trap is overlooking the Filter function and assuming the gallery uses the raw entity; candidates might pick the raw entity instead of the filtered data source.

How to eliminate wrong answers

Option B is wrong because the data source is Microsoft Dataverse, not SQL Server. Option C is wrong because SalesData is not a SharePoint list; it is a Dataverse data source. Option D is wrong because the gallery uses a filtered version of the Accounts entity, not the raw entity.

650
MCQhard

An administrator manages a Power Automate cloud flow that uses the SharePoint 'When an item is created' trigger. The flow occasionally processes the same item twice, creating duplicate records in a downstream system. The administrator wants to prevent duplicate processing without changing the trigger. What should the administrator configure?

A.Use a unique identifier from the item as an idempotency key and check it against a Dataverse table or SharePoint list before creating the downstream record.
B.Configure the trigger's split-on setting to off and set a trigger condition on the item ID.
C.Enable concurrency control on the trigger and set the degree of parallelism to 1.
D.Add a 'Get item' action and check whether the item already exists before creating the downstream record.
AnswerA

Storing the item's unique identifier and checking it before the create step makes the flow idempotent. If the same item is delivered again, the check finds the existing key and skips creation, preventing duplicates. This directly targets the root cause without altering the trigger, which matches the administrator's constraint.

Why this answer

Duplicate processing occurs when the same source record is delivered to the flow more than once, which can happen with retries or trigger polling behavior. The reliable fix is to make the downstream write idempotent by recording a unique key and checking it before writing. This preserves the existing trigger and prevents duplicate records regardless of how many times the item is seen.

Exam trap

The trap here is assuming that concurrency control or split-on settings prevent duplicate processing, when they actually govern parallel execution rather than record-level duplication.

651
MCQhard

A model-driven app uses a custom button that runs a Power Automate flow to send an email notification. Users report that the button sometimes does not appear on the command bar. The app maker checks the form customizations and confirms the button is configured correctly. What is the most likely cause?

A.The user's browser does not support the Power Apps client.
B.The app is opened in the phone form factor, and the button is only shown on web.
C.The custom button is configured with visibility rules that hide it for certain security roles.
D.The Power Automate flow is disabled or not shared with the user.
AnswerC

Command bar buttons can be hidden by role-based visibility rules, so users lacking the required security role never see the button. Since the form customisation is confirmed correct, the differing security role assignments across users explain the intermittent absence.

Why this answer

Command bar buttons in model-driven apps support visibility rules that can be scoped by security role, so a button configured correctly on the form can still be hidden from specific users if their role is excluded. Since the maker confirmed the form customization is correct, the most likely cause is role-based visibility logic that hides the button for the affected users.

Exam trap

PL-900 often tests the distinction between a button being hidden due to visibility rules versus being disabled due to a broken flow or missing permission, so candidates must recognize that 'button missing entirely' points to display rules, not runtime failures.

How to eliminate wrong answers

Option A is wrong because browser compatibility would prevent the entire app from loading, not selectively hide a single command bar button. Option B is wrong because form factor differences affect layout, not the presence of a properly configured command bar button, and the scenario doesn't mention mobile usage. Option D is wrong because a disabled or unshared flow would cause the button to appear but fail when clicked, not disappear from the command bar.

652
MCQhard

Your Power Automate flow uses an HTTP action to call a REST API. The API returns a JSON array of objects. You need to process each object and create a record in a SQL Server database. Which actions should you use?

A.Use 'Filter array' to select objects, then 'Insert row'.
B.Use 'Parse JSON' to define the schema, then 'Apply to each' with 'Insert row' inside.
C.Use 'Compose' to store the JSON, then 'Insert row' directly.
D.Use 'Select' to transform the array, then 'Insert row' with a batch.
AnswerB

'Parse JSON' converts the returned array into a typed schema, enabling 'Apply to each' to iterate every object and 'Insert row' to write each into SQL Server. This satisfies the requirement to process each object individually.

Why this answer

To process a JSON array of objects from an HTTP response, you first use 'Parse JSON' to define the schema so Power Automate understands the structure, then use 'Apply to each' to iterate over the array, placing the 'Insert row' action inside the loop to create a SQL record per object. This is the standard pattern for iterating and inserting.

Exam trap

PL-900 often tests whether candidates know that arrays require 'Apply to each' iteration and schema parsing, so they wrongly pick 'Filter array' or 'Compose' thinking those process each object.

How to eliminate wrong answers

Option A is wrong because 'Filter array' only selects a subset of objects based on a condition; it does not iterate or insert records, and 'Insert row' cannot process an array directly. Option C is wrong because 'Compose' merely stores the JSON as a value; 'Insert row' cannot consume an array directly and would fail without iteration and schema parsing. Option D is wrong because 'Select' transforms/maps array elements into a new shape but still produces an array; 'Insert row' with a batch is not a standard action that consumes an array without an Apply to each loop.

653
MCQhard

Your organization is a multi-national corporation using Microsoft Power Platform. The compliance team requires that all Power Apps apps be auditable: every data modification (create, update, delete) must be logged with the user, timestamp, and old/new values. Additionally, the app must enforce that only users from the same business unit can view each other's records. The app uses Dataverse as the data source. You need to design the solution. Which approach should you take?

A.Enable Dataverse auditing for the entity and configure business unit security to restrict access
B.Enable Dataverse auditing and use hierarchy security with business units
C.Use Power Automate to create custom logs and use field-level security to restrict visibility
D.Create a separate audit table and use Power Automate to write logs, and use role-based security
AnswerA

Dataverse auditing records create, update and delete operations with user, timestamp and old/new values, satisfying the audit requirement. Business unit security roles then restrict record visibility to the same business unit, meeting the second constraint without custom code.

Why this answer

Enabling Dataverse auditing for the entity captures all create, update, and delete operations with user, timestamp, and old/new values — this is native Dataverse functionality that requires no custom development. Configuring business unit security ensures that users can only access records within their own business unit, which directly satisfies the requirement that only users from the same business unit can view each other's records. This combination uses built-in platform capabilities to meet both the auditing and access control requirements.

Exam trap

PL-900 often tests the difference between native platform security features (business unit security, Dataverse auditing) and custom workarounds (Power Automate logging, separate audit tables) — candidates overcomplicate the solution by choosing custom approaches when native features fully satisfy the requirements.

How to eliminate wrong answers

Option B is wrong because hierarchy security is designed for manager-subordinate relationships and does not enforce business unit isolation — it would actually grant broader access, not restrict it to same-business-unit users. Option C is wrong because Power Automate custom logging is a manual, error-prone approach that does not capture old/new values natively and field-level security controls field visibility, not record-level business unit access. Option D is wrong because a separate audit table with Power Automate is a custom solution that duplicates native functionality and is less reliable than Dataverse auditing, and role-based security does not inherently enforce business unit boundaries.

654
MCQmedium

The exhibit shows a JSON snippet used to create a Power Platform environment via the Power Platform API. The administrator runs the script but the environment is created with the default language and currency instead of the specified values. What is the most likely reason?

A.The JSON syntax is invalid because of the empty securityGroupId.
B.The API version used does not support specifying language and currency.
C.The environment name "ContosoSales" is already in use.
D.The location "eastus" is not a valid Azure region for Power Platform.
AnswerA

An empty GUID may cause the API to ignore the dataverse configuration and apply defaults.

Why this answer

The JSON snippet uses an empty GUID for 'securityGroupId' (all zeros). In the Power Platform API, an empty or invalid GUID in this field can cause the entire Dataverse settings block to be ignored, resulting in the environment being created with default language and currency. Option A correctly identifies this syntax issue.

Options B, C, and D are incorrect because the API version, environment name, and location are valid.

655
MCQeasy

A retail company wants to build a mobile app that allows store employees to scan product barcodes and check inventory levels in real time. The company has no professional developers and wants to minimize coding. Which Power Apps approach should they use?

A.Use Power Apps component framework (PCF) to build a custom barcode scanner control.
B.Create a Power Virtual Agents bot that asks employees to type in product codes.
C.Create a canvas app and add the Barcode Scanner control from the Insert menu.
D.Create a model-driven app based on a custom Dataverse table for products.
AnswerC

Canvas apps provide a built-in Barcode Scanner control that can be added from the Insert menu without writing code. This control uses the device camera to scan barcodes and returns the scanned value, which can then be used to look up inventory data. This approach requires no professional development and is ideal for non-developers.

Why this answer

The built-in Barcode Scanner control in canvas apps allows non-developers to add barcode scanning functionality by simply dragging the control onto a screen. It uses the device camera and returns the scanned barcode value, which can be used in formulas to query inventory data. This meets the requirement for a mobile app with minimal coding.

Exam trap

The trap here is overlooking that canvas apps include prebuilt controls for device capabilities, so custom development is unnecessary.

656
Multi-Selecteasy

Which TWO data sources can be directly connected to a canvas app without using an on-premises data gateway?

Select 2 answers
A.SQL Server on-premises
B.SAP ERP on-premises
C.SharePoint Online
D.Oracle database on-premises
E.Microsoft Dataverse
AnswersC, E

SharePoint Online is a cloud service reachable directly over the internet, so the canvas app's connector authenticates to it without any on-premises data gateway. The gateway is only needed for resources inside a private network.

Why this answer

Option C (SharePoint Online) is correct because it is a cloud-based Microsoft 365 service that canvas apps connect to directly through the built-in SharePoint connector, with no on-premises data gateway required. Option E (Microsoft Dataverse) is correct because it is a native cloud data platform in Power Platform, and canvas apps use the standard Dataverse connector to access it directly without a gateway. Options A (SQL Server on-premises), B (SAP ERP on-premises), and D (Oracle database on-premises) are all on-premises systems, so reaching them from a canvas app requires an on-premises data gateway to bridge the cloud service to the local network.

657
MCQmedium

A company has a legacy on-premises SQL Server database and wants to build a Power BI report that refreshes daily. However, the database is behind a firewall. What should they use to securely access the data?

A.Power Automate with SQL connector
B.An on-premises data gateway
C.Microsoft Dataverse
D.A VPN connection to the database
AnswerB

An on-premises data gateway installs inside the corporate network, letting Power BI cloud services query the firewalled SQL Server without exposing it to inbound internet traffic. It satisfies the daily refresh requirement by relaying scheduled refresh requests securely outbound, authenticated through Microsoft Entra ID, so the legacy database stays protected behind the firewall.

Why this answer

An on-premises data gateway is the correct solution because it acts as a secure bridge between on-premises data sources (like SQL Server behind a firewall) and cloud services such as Power BI. The gateway encrypts data in transit and allows scheduled refresh without opening inbound ports in the firewall, using outbound connections to Azure Service Bus.

Exam trap

The trap here is that candidates often confuse a VPN or direct connector (like Power Automate) as sufficient for firewall traversal, but the PL-900 exam specifically tests the on-premises data gateway as the only secure, supported method for scheduled Power BI refresh from behind a firewall.

How to eliminate wrong answers

Option A is wrong because Power Automate with SQL connector is designed for real-time or event-driven workflows, not for scheduled data refresh in Power BI reports; it also cannot bypass a firewall without a gateway. Option C is wrong because Microsoft Dataverse is a cloud-based data storage service, not a connectivity tool for on-premises databases; it does not provide a secure bridge to SQL Server behind a firewall. Option D is wrong because a VPN connection to the database would require opening inbound ports and managing complex network configurations, which is less secure and more cumbersome than the dedicated, outbound-only on-premises data gateway.

658
Multi-Selecteasy

Northwind Traders uses Power Apps to build a simple help desk ticketing system. The app uses Microsoft Dataverse as the data source. The help desk team wants to ensure that only members of the 'Help Desk Agents' security role can edit tickets, while all employees can view tickets. The app is a model-driven app. The administrator needs to configure the appropriate security. Which two actions should the administrator take? (Choose two.)

Select 2 answers
A.Create a new Dataverse table for ticket views
B.Create a business rule to restrict editing to certain users
C.Assign the 'Help Desk Agents' security role to the help desk team
D.Share the app with all employees using the Power Apps sharing feature
E.Ensure the 'Employees' security role has read privilege on the ticket table
AnswersC, E

Assigning the 'Help Desk Agents' security role grants that team the Dataverse privileges to edit ticket records. Combined with broader read access for all employees, this satisfies the stem's constraint that only Help Desk Agents can edit tickets while everyone can view them.

Why this answer

Option C is correct because in a model-driven app backed by Microsoft Dataverse, access to create, read, write, and delete records is governed by Dataverse security roles, so assigning the 'Help Desk Agents' security role to the help desk team grants those users the edit (write) privileges on the ticket table. Option E is correct because all employees must be able to view tickets, and Dataverse enforces read access through security roles; granting the 'Employees' security role read privilege on the ticket table allows them to view records without granting edit rights. Option A is incorrect because creating a separate table for ticket views does not control record-level edit versus read permissions.

Option B is incorrect because business rules enforce field-level logic and validation, not security role-based edit restrictions. Option D is incorrect because Power Apps sharing controls app access, not Dataverse table record privileges, so it does not restrict editing to the Help Desk Agents role.

659
MCQhard

A Power Platform administrator is configuring a data loss prevention (DLP) policy for a new environment. The policy must allow the use of the SharePoint and Outlook connectors together, but must prevent the use of the Twitter connector with any other connector. How should the administrator configure the DLP policy?

A.Place SharePoint in the Business group, Outlook in the Non-Business group, and Twitter in the Blocked group.
B.Place SharePoint and Outlook in the Business group, and Twitter in the Blocked group.
C.Place SharePoint and Outlook in the Business group, and Twitter in the Business group as well.
D.Place SharePoint and Outlook in the Business group, and Twitter in the Non-Business group.
AnswerB

Blocking the Twitter connector ensures it cannot be used at all, thus preventing it from being combined with any other connector. Placing SharePoint and Outlook in Business allows them to be used together. This configuration meets both requirements: SharePoint and Outlook can be used together, and Twitter is completely blocked.

Why this answer

To allow SharePoint and Outlook together, they must be in the same group (Business). To prevent Twitter from being used with any other connector, it must be in the Blocked group, which disallows its use entirely. Thus, the correct configuration is SharePoint and Outlook in Business, Twitter in Blocked.

Exam trap

The trap here is assuming that placing a connector in Non-Business prevents it from being used with any other connector, when actually Non-Business connectors can be used together.

660
Multi-Selectmedium

A team is building a canvas app that must allow users to work with data from multiple sources. The app will use Microsoft Dataverse as the primary data source and also needs to display data from an on-premises SQL Server database. Which two components are required to connect the canvas app to the on-premises SQL Server data? (Choose two.)

Select 2 answers
A.A virtual table created in Microsoft Dataverse for the SQL Server data.
B.A Power Automate flow that triggers on app load.
C.An Azure Logic Apps workflow to synchronize the data.
D.An on-premises data gateway installed and configured.
E.The SQL Server connector added to the canvas app.
AnswersD, E

An on-premises data gateway is required to securely connect cloud services like Power Apps to on-premises data sources such as SQL Server. It acts as a bridge, allowing the canvas app to query and write data without exposing the database directly to the internet.

Why this answer

To connect a canvas app to an on-premises SQL Server database, the maker must install and configure an on-premises data gateway to bridge the cloud and local network, and then add the SQL Server connector to the app. These two components together enable secure, direct data access from the canvas app without additional workflows or virtual tables.

Exam trap

The trap here is thinking that a Power Automate flow or virtual table is needed to access on-premises data, when the gateway and connector alone are sufficient for canvas apps.

661
Multi-Selecteasy

A manufacturing company wants to use Power Platform to improve operational efficiency. Which TWO benefits of using Microsoft Power Platform are most relevant?

Select 2 answers
A.Replace the need for any third-party software
B.Automate hardware inventory management
C.Build custom apps without extensive coding
D.Eliminate the need for user authentication
E.Automate business processes and workflows
AnswersC, E

Power Apps enables citizen developers to build custom business applications using low-code drag-and-drop tools and prebuilt connectors, reducing reliance on professional developers. This satisfies the stem's operational-efficiency benefit by accelerating app delivery and cutting development costs, letting manufacturing staff digitise processes quickly without extensive coding expertise.

Why this answer

Option C is correct because Power Apps provides a low-code/no-code development environment with drag-and-drop designers, prebuilt connectors, and Power Fx formulas, letting the manufacturing company build custom apps without extensive coding. Option E is correct because Power Automate enables the automation of business processes and workflows through cloud flows, approvals, and connectors to services like Dynamics 365 and SharePoint, directly improving operational efficiency. The unmarked options do not belong: Power Platform does not replace all third-party software (A), hardware inventory management is a specific use case rather than a general benefit and typically requires additional tooling (B), and Power Platform relies on Microsoft Entra ID authentication rather than eliminating it (D).

Exam trap

The trap here is that candidates often confuse 'automating hardware inventory management' (a specific IT task) with the broader business process automation capability of Power Platform, leading them to incorrectly select Option B instead of recognizing that Power Platform's strength lies in automating workflows and building custom apps, not in replacing dedicated inventory management tools.

662
MCQmedium

A company is building a canvas app to track inventory. The app needs to display the current stock level from a SharePoint list and allow users to update quantities via a form. Which connector should be used to read and write data?

A.Power Automate connector
B.SharePoint connector
C.Microsoft Dataverse connector
D.Microsoft Teams connector
AnswerB

The SharePoint connector provides native read and write operations against SharePoint lists, so it satisfies the requirement to display current stock levels and update quantities through a form. It authenticates via Microsoft Entra ID and exposes list items directly, avoiding custom API development.

Why this answer

The SharePoint connector is the correct choice because it provides native, bidirectional access to SharePoint lists, which are the data source described in the scenario. It supports both reading current stock levels (via Get items) and writing updates (via Create item or Update item) directly from a canvas app. Since the inventory data already resides in a SharePoint list, this connector is the most direct and appropriate integration point.

Other connectors either serve different services or are not designed for direct data manipulation in this context.

Exam trap

PL-900 often tests the confusion between data sources and automation tools, leading candidates to pick Power Automate when direct data access is needed, or to overcomplicate by choosing Dataverse when the data is already in SharePoint.

How to eliminate wrong answers

Option A is wrong because Power Automate is a workflow automation service, not a data connector for canvas apps; while you can trigger flows from an app, it is not used to directly read/write SharePoint data in the app's data layer. Option C is wrong because Microsoft Dataverse is a different data storage platform; while it can store inventory data, the scenario explicitly states the data is in a SharePoint list, so using Dataverse would require data migration or duplication. Option D is wrong because Microsoft Teams is a collaboration hub, not a data source for inventory records; it lacks native capabilities to read/write SharePoint list items directly.

663
MCQmedium

Refer to the exhibit. A Power Automate flow definition is shown. The flow is supposed to trigger when a high-importance email with attachments arrives in the inbox, and then send a notification email to support. However, the flow does not trigger for emails that have attachments but are not marked as high importance. What is the most likely reason?

A.The folder path is set to 'Inbox' but the email was moved to a different folder.
B.The trigger requires attachments, so emails without attachments are ignored.
C.The importance filter is set to 'High', so lower importance emails are ignored.
D.The trigger is set to 'When a new email arrives' but the email is already read.
AnswerC

The trigger's importance condition filters on 'High', so messages with Normal or Low importance never satisfy the trigger and the flow does not run. Attachment presence is irrelevant because the importance filter excludes those emails first.

Why this answer

The trigger parameters include 'importance': 'High', so only emails with high importance trigger the flow. If the email has attachments but is not marked as high importance, the flow will not trigger. Option A is incorrect because the folder path being set to 'Inbox' does not affect the trigger; the trigger fires on new emails arriving in the inbox regardless of folder.

Option B is incorrect because attachments are set to 'Yes', meaning attachments are required, but the flow still triggers only on high-importance emails; the issue is the importance filter, not attachments. Option D is incorrect because the trigger is set to 'When a new email arrives', which fires on new emails; the email being read does not prevent the trigger from firing on arrival.

664
MCQeasy

A business analyst wants to create a real-time dashboard showing sales performance from Dynamics 365 Sales data. Which tool should they use?

A.Power Apps
B.Power BI
C.Power Pages
D.Power Automate
AnswerB

Power BI's Dynamics 365 connector and scheduled refresh pull sales data into interactive dashboards, satisfying the real-time sales performance requirement. Its visualisation layer surfaces trends that the analyst needs, which Dataverse alone does not provide.

Why this answer

Power BI is the correct tool for creating real-time dashboards because it is designed specifically for data visualization and business intelligence. It can connect directly to Dynamics 365 Sales data via the Dataverse connector or direct query mode, enabling live, interactive dashboards that refresh automatically as data changes.

Exam trap

The trap here is that candidates may confuse Power Apps' ability to display data in a gallery or chart with the dedicated real-time dashboarding and analytics capabilities of Power BI, leading them to select Power Apps for a visualization task.

How to eliminate wrong answers

Option A is wrong because Power Apps is a low-code platform for building custom applications, not for creating real-time dashboards or data visualizations. Option C is wrong because Power Pages is used to build external-facing websites, not for internal dashboards or analytics. Option D is wrong because Power Automate is an automation tool for workflows and processes, not for visualizing or analyzing data in a dashboard format.

665
MCQmedium

An administrator needs to ensure that only users from a specific Microsoft Entra ID group can access a Power Platform environment. What should the administrator configure?

A.Disable the 'Create personal productivity environments' setting
B.Assign a security group to the environment in the Power Platform admin center
C.Set environment capacity limits
D.Configure a data loss prevention (DLP) policy
AnswerB

Assigning a security group to the environment in the Power Platform admin center restricts access to that group's members, satisfying the requirement that only users from a specific Microsoft Entra ID group can reach the environment. Environment security groups govern who may access an environment, unlike environment roles, which control privileges within it.

Why this answer

Assigning a security group to an environment in the Power Platform admin center restricts access to only members of that Microsoft Entra ID group. This is the standard method for controlling user access to a Power Platform environment, ensuring that only authorized users can interact with its resources.

Exam trap

The trap here is that candidates often confuse access control (security group assignment) with data governance (DLP policies) or capacity management, leading them to select options that address different administrative concerns.

How to eliminate wrong answers

Option A is wrong because disabling the 'Create personal productivity environments' setting only prevents users from creating their own personal environments; it does not restrict access to an existing environment. Option C is wrong because setting environment capacity limits controls storage and API usage, not user authentication or authorization. Option D is wrong because configuring a data loss prevention (DLP) policy governs data movement between connectors and services, not user access to the environment itself.

666
MCQeasy

An app maker creates a canvas app that uses Microsoft Dataverse as the data source. The app includes a gallery that displays all accounts. The app maker wants to filter the gallery to show only accounts where the 'City' field equals 'Seattle'. Which formula should be used in the Items property of the gallery?

A.Accounts(City = "Seattle")
B.Filter(Accounts, City = "Seattle")
C.LookUp(Accounts, City = "Seattle")
D.Search(Accounts, "Seattle", "City")
AnswerB

Filter returns only records meeting the predicate, so the gallery shows accounts whose City column equals Seattle. The delegate-friendly syntax matches Dataverse column names directly, satisfying the requirement to restrict the gallery's Items to Seattle accounts rather than all accounts.

Why this answer

The Filter function in Power Apps returns a table of records that satisfy a Boolean condition, which is exactly what the gallery's Items property requires. Filter(Accounts, City = "Seattle") evaluates each record in the Accounts table and returns only those where the City column equals 'Seattle'. This is the canonical delegation-friendly pattern for Dataverse-backed galleries.

Exam trap

PL-900 often tests the confusion between Filter (returns a table), LookUp (returns one record), and Search (substring match) — candidates pick LookUp or Search because they sound like filtering, but only Filter returns the table shape a gallery requires.

How to eliminate wrong answers

Option A is wrong because Accounts(City = "Seattle") is not valid Power Apps syntax — tables are not called like functions with filter predicates. Option C is wrong because LookUp returns a single record (the first match), not a table, so the gallery would display only one account. Option D is wrong because Search performs a substring/text match across specified columns and does not support exact equality comparisons like City = "Seattle".

667
MCQmedium

Your organization uses Microsoft Teams for collaboration. You want to create a flow that sends a welcome message to a new member when they are added to a specific team. The flow should be triggered automatically without manual intervention. Which type of flow should you create?

A.Desktop flow
B.Scheduled cloud flow
C.Instant cloud flow
D.Automated cloud flow
AnswerD

An automated cloud flow uses an event-based trigger, such as 'when a member is added to a team', so it fires without manual intervention. This matches the requirement for automatic triggering when a new member joins the specified team.

Why this answer

An automated cloud flow can use the 'When a new member is added to a team' trigger from Microsoft Teams connector. Instant flows require manual trigger. Scheduled flows run on a schedule.

Desktop flows are for desktop automation.

668
MCQmedium

A flow uses a 'When an item is created' trigger for a SharePoint list. The flow needs to access the item's title and the user who created it. Which dynamic values should be used?

A.Title and Created By
B.Title and Modified By
C.ID and Modified By
D.Created By and Created By Email
AnswerA

Title and Created By map directly to the SharePoint list columns the trigger exposes, so the flow can read the item's title and its author without extra actions. Created By returns the user identity as a claims-based value, satisfying the stem's requirement to identify who created the item.

Why this answer

The 'When an item is created' trigger for a SharePoint list exposes dynamic values that include the item's 'Title' field and the 'Created By' field, which contains the user who created the item. These are standard columns in a SharePoint list and are automatically available as dynamic content in Power Automate when the trigger fires.

Exam trap

The trap here is that candidates confuse 'Created By' with 'Modified By' or assume that 'Created By Email' is a direct dynamic value, when in fact the trigger exposes 'Created By' as a user object and 'Modified By' is a separate field for the last modifier.

How to eliminate wrong answers

Option B is wrong because 'Modified By' refers to the user who last modified the item, not the user who created it, so it does not satisfy the requirement to access the creator. Option C is wrong because 'ID' is the unique identifier of the item, not its title, and 'Modified By' again refers to the last modifier, not the creator. Option D is wrong because 'Created By' is correct for the creator, but 'Created By Email' is not a standard dynamic value exposed by the SharePoint trigger; the trigger exposes 'Created By' as a user object, not a separate email field, and the question asks for the user who created it, not their email.

669
MCQhard

Refer to the exhibit. An administrator wants to enforce a mobile app management policy that prevents screen capture in Power Apps. Which Microsoft service should the administrator use to deploy this policy?

A.Microsoft Entra ID
B.Microsoft Defender XDR
C.Microsoft Intune
D.Microsoft Purview
AnswerC

Microsoft Intune app protection policies enforce mobile app management restrictions such as blocking screen capture on enrolled or unenrolled devices. Power Apps platform settings and Dataverse security roles govern data access, not device-level app behaviour, so Intune is required here.

Why this answer

Microsoft Intune is the mobile device and application management (MDM/MAM) service in the Microsoft 365 stack, and it is where app protection policies are configured. An Intune app protection policy can enforce data-loss-prevention controls such as blocking screen capture, preventing copy/paste to unmanaged apps, and requiring a PIN, specifically for mobile apps like Power Apps on iOS and Android. This is the correct service to deploy the policy described.

Exam trap

PL-900 often tests the confusion between Intune (device/app management) and Purview (data compliance) — candidates pick Purview for anything involving 'policy' or 'protection' even when the control is a mobile app runtime restriction.

How to eliminate wrong answers

Option A is wrong because Microsoft Entra ID handles identity, authentication, conditional access, and directory services — it does not manage mobile app policies such as screen-capture blocking. Option B is wrong because Microsoft Defender XDR is a threat detection and response suite (Defender for Endpoint, Identity, Office 365, Cloud Apps) and does not deploy app protection policies. Option D is wrong because Microsoft Purview focuses on data governance, compliance, and information protection (sensitivity labels, DLP for data at rest/in motion), not on mobile app runtime controls like screen capture prevention.

670
Multi-Selectmedium

A company wants to use Power Platform to streamline its expense reporting process. Which TWO components can be used together to create a complete solution that allows employees to submit expenses, managers to approve them, and finance to analyze trends?

Select 2 answers
A.Copilot Studio
B.Power BI
C.Power Apps
D.Power Automate
E.Power Pages
AnswersC, D

Power Apps provides the canvas or model-driven interface employees use to submit expenses and managers use to approve them, satisfying the submission and approval requirements. It integrates natively with Dataverse for storage and Power BI for finance trend analysis, forming the complete solution the stem demands.

Why this answer

Power Apps (C) is correct because it provides the canvas or model-driven app interface where employees can enter and submit expense data and managers can review and approve them, forming the front-end user experience of the solution. Power Automate (D) is correct because it supplies the workflow automation that routes submitted expenses to the appropriate manager for approval, sends notifications, and triggers downstream actions such as updating Dataverse or SharePoint records and alerting finance. Together, Power Apps and Power Automate deliver the submit-approve-automate flow that the scenario requires.

Power BI (B) is a reporting and analytics tool that could visualize trends, but it is not one of the two components needed to build the submission and approval process itself. Copilot Studio (A) is for building conversational AI agents, and Power Pages (E) is for creating external-facing business websites, neither of which is required to implement the internal expense submission and approval workflow.

Exam trap

The trap is assuming that Power BI is necessary for the solution. However, the question asks for two components to create a complete solution for submission and approval, which Power Apps and Power Automate fulfill. Power BI is for analytics, not the core process.

671
MCQmedium

A company is building a copilot with Microsoft Copilot Studio to assist HR with employee inquiries. The copilot must be able to answer questions based on a large set of HR policy documents stored in SharePoint. The company wants to minimize manual topic creation and ensure the copilot can handle a wide range of questions. What should they use?

A.Use a Power Virtual Agents bot with a QnA Maker knowledge base.
B.Manually create a topic for each HR policy question.
C.Generative answers with a SharePoint knowledge source.
D.A fallback topic that searches SharePoint using a Power Automate flow.
AnswerC

Generative answers in Copilot Studio allow the copilot to use a knowledge source, such as a SharePoint site, to generate responses based on the content. This reduces the need to manually create topics for each possible question. The copilot uses natural language understanding and generative AI to find relevant information and compose an answer.

Why this answer

Generative answers in Microsoft Copilot Studio enable the copilot to use knowledge sources like SharePoint to answer questions dynamically. This feature leverages generative AI to find and summarize information from the source, reducing manual topic creation. It is ideal for scenarios where users ask a wide variety of questions based on a large document set.

The other options either require manual effort or use outdated technology.

Exam trap

The trap here is assuming that a fallback topic or manual topics are sufficient, when in fact generative answers are specifically designed to handle broad, document-based Q&A without manual topic creation.

672
MCQeasy

A non-profit organization wants to track donations and manage volunteers using a single system. They have limited IT staff and budget. Which Power Platform solution is most suitable?

A.Dynamics 365 Sales
B.Custom app built with Power Apps connected to Dataverse
C.Power Automate flows to send emails
D.Power BI dashboards connected to Excel
AnswerB

Dataverse supplies a secure, scalable relational store with built-in role-based access, so donation and volunteer records live in one governed place. Power Apps then delivers the tracking interface without server infrastructure, matching the limited IT staff and budget constraint.

Why this answer

Power Apps allows building a custom app that integrates donations and volunteer management in a single system using Dataverse as the underlying data platform. This provides a low-code solution that minimizes the need for extensive IT resources and budget, while still offering relational data storage, security, and scalability suitable for a non-profit's needs.

Exam trap

The trap here is that candidates often confuse Dynamics 365 Sales as a catch-all CRM solution, but the PL-900 exam emphasizes that Power Apps is the correct choice when a custom, low-code application is needed to meet unique organizational requirements without the cost and complexity of a full Dynamics 365 license.

How to eliminate wrong answers

Option A is wrong because Dynamics 365 Sales is a full-featured CRM designed for sales processes, not for general-purpose donation and volunteer tracking, and it requires higher licensing costs and more IT overhead than a custom Power Apps solution. Option C is wrong because Power Automate flows alone only automate email notifications and workflows, but they do not provide a user interface or data storage for tracking donations and volunteers. Option D is wrong because Power BI dashboards connected to Excel are for visualization and reporting only, lacking the transactional data entry, storage, and management capabilities needed for a unified tracking system.

673
MCQeasy

A user reports that a canvas app is loading slowly. The app connects to a large SharePoint list with over 10,000 items. Which change would most improve performance?

A.Increase the delegation limit to 10,000.
B.Apply a delegable filter on the data source to limit records returned.
C.Add more screens to distribute the data.
D.Disable offline mode.
AnswerB

Delegation pushes filtering to SharePoint rather than pulling all 10,000+ items to the client, so only matching records cross the network. This directly addresses the large-list constraint causing slow loading, whereas non-delegable filters retrieve the full dataset first and process it locally.

Why this answer

The correct answer is B because delegation is the key to performance with large data sources. When a canvas app connects to SharePoint, operations that can be translated into a query (delegable) are processed server-side, returning only the necessary records. Applying a delegable filter (e.g., using '=' or 'StartsWith' on indexed columns) reduces the amount of data transferred and processed by the app, directly improving load time.

Non-delegable operations force Power Apps to fetch the first 500 (or up to 2000) records and process them locally, which is slow and may miss data.

Exam trap

PL-900 often tests the misconception that increasing the delegation limit solves performance issues, when in fact it only masks the problem by allowing more records to be processed locally, which can degrade performance further.

How to eliminate wrong answers

Option A is wrong because increasing the delegation limit does not make non-delegable queries efficient; it only allows more records to be retrieved and processed locally, which can worsen performance and memory usage. Option C is wrong because adding more screens does not reduce the data load; it may even increase app size and complexity, slowing down initial load. Option D is wrong because disabling offline mode does not affect the performance of data retrieval from SharePoint; offline mode is about caching for offline use, not about query efficiency.

674
MCQeasy

A company wants to create a custom app to track inventory in their warehouse. The app needs to integrate with their existing SQL Server database and allow users to scan barcodes to update stock levels. Which type of Power Apps should they use?

A.Power Pages
B.Canvas app
C.Power Automate
D.Model-driven app
AnswerB

Canvas apps give pixel-level control over the user interface, so barcode scanning can be wired to the device camera and connected directly to SQL Server through a data connector. This satisfies the requirement for a custom inventory interface with live stock updates.

Why this answer

(Canvas app) is correct because Canvas apps allow custom integration with SQL Server and barcode scanning via device capabilities. Model-driven apps are more for data management but not as flexible for custom scanning. Power Pages is for external websites, not scanning.

Power Automate is for workflows, not app building.

675
MCQeasy

A company is building a copilot in Microsoft Copilot Studio to answer employee questions about travel expenses. The copilot must use a published set of internal travel policy documents stored in a SharePoint site as its source of truth, and it must not require employees to write any code. What should the maker configure?

A.Publish the copilot to Microsoft Teams and rely on the Teams search index to surface travel policy results.
B.Import the travel policy documents into a Dataverse table and build topic triggers for each policy section.
C.Add a generative answers node and connect the SharePoint site as a knowledge source.
D.Create a Power Automate cloud flow that queries the SharePoint list and returns matching rows.
AnswerC

Generative answers in Microsoft Copilot Studio let a copilot synthesize responses from configured knowledge sources. By adding the SharePoint site as a knowledge source, the copilot can ground its answers in the published travel policy documents without any code. This directly satisfies the requirement to answer employee questions from internal documents.

Why this answer

A copilot that must answer employee questions from published internal documents should use generative answers with a SharePoint knowledge source. This grounds responses in the authoritative travel policy content while requiring no custom code. Power Automate flows, Dataverse tables, and Teams search do not provide the same grounded, natural-language answering capability for document-based policies.

Exam trap

The trap here is assuming that publishing the copilot to Teams or storing documents in Dataverse automatically makes the copilot answer from those documents.

Page 8

Page 9 of 10

Page 10

All pages