Courseiva
Logging →hardMultiple Select

UiPath-ADAv1 Logging Practice Question

A developer is designing a UiPath automation that processes sensitive customer data. The developer needs to ensure that log entries do not contain personally identifiable information (PII) while still allowing effective troubleshooting. Which two actions should the developer take? (Choose two.)

⚠ Common exam trap

The trap here is believing that sensitive data can be safely logged at higher severity levels or redacted later, when the correct approach is to never log PII in the first place.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Replace direct logging of sensitive values with references to non-sensitive identifiers, such as a hashed customer ID or a queue item reference.

To avoid logging PII while maintaining troubleshooting capability, the developer should replace sensitive values with non-sensitive identifiers and log only non-sensitive metadata. These actions ensure that logs remain useful for diagnostics without containing personally identifiable information, aligning with security best practices and compliance requirements.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    Use the Add Log Fields activity to add a custom field containing the customer's full name for easy identification in logs.

    Why it's wrong here

    Adding PII such as a full name as a custom log field directly violates the requirement to avoid logging sensitive data. Custom fields are included in every subsequent log entry and are visible in Orchestrator, so this would expose PII. Instead, non-sensitive identifiers like a hashed customer ID should be used.

  • ✗

    Set the robot's logging level to Verbose to capture all details, then manually redact sensitive information from the logs before sharing them.

    Why it's wrong here

    Setting the level to Verbose increases the risk of logging sensitive data because more detailed messages are captured. Manual redaction is error-prone and does not prevent PII from being stored in Orchestrator. The goal is to avoid logging PII in the first place, not to redact after the fact.

  • ✓

    Replace direct logging of sensitive values with references to non-sensitive identifiers, such as a hashed customer ID or a queue item reference.

    Why this is correct

    Using non-sensitive identifiers allows the developer to correlate log entries with specific customers or transactions without exposing PII. A hashed ID or queue reference provides traceability for troubleshooting while ensuring that the actual sensitive data is never written to logs, satisfying both security and diagnostic needs.

  • ✓

    Configure the automation to log only non-sensitive metadata, such as timestamps, status codes, and transaction outcomes, for each processing step.

    Why this is correct

    Logging only non-sensitive metadata provides a record of the automation's execution without exposing PII. Timestamps, status codes, and outcomes are sufficient for troubleshooting and auditing while ensuring compliance with data protection policies. This approach minimizes the risk of accidental PII exposure in logs.

  • ✗

    Use the Log Message activity with Level set to Error to log the full customer record when an exception occurs, ensuring that support can see the data.

    Why it's wrong here

    Logging the full customer record, even at Error level, still writes PII to the logs. Error-level entries are not automatically encrypted or restricted, and they persist in Orchestrator. This action would violate the requirement to avoid logging sensitive data, regardless of the severity level used.

About these practice questions

One of 285 original UiPath-ADAv1 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written and reviewed by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

Last reviewed September 2026 · checked against the official UiPath exam blueprint

This UiPath-ADAv1 practice question is part of Courseiva's free UiPath certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the UiPath-ADAv1 exam.