Courseiva
API-Based Automation →mediumMultiple Choice

UiPath-ADAv1 API-Based Automation Practice Question

An automation project needs to retrieve secure credentials from a REST API endpoint that requires OAuth 2.0 authorization. Which activity should be utilized first to establish the connection before making subsequent data requests?

⚠ Common exam trap

Candidates mistakenly look for specialized authentication activities rather than recognizing that standard web requests like HTTP Request are used to fetch OAuth tokens.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

HTTP Request

To interact with OAuth 2.0 secured APIs, the automation must first obtain an access token by authenticating with the identity provider. The HTTP Request activity is used to POST client credentials or grant codes to the token endpoint. Understanding this sequence is vital for API automation, as failing to handle the authentication handshake results in 401 Unauthorized errors, preventing any data exchange with protected resources during the workflow execution.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    Invoke Workflow File

    Why it's wrong here

    This activity is designed for modularizing UiPath projects by calling secondary XAML files. It lacks the network stack and protocol capabilities necessary to perform HTTP handshakes or communicate with remote REST endpoints. It does not handle headers, query parameters, or authentication payloads required for interacting with external web-based application programming interfaces.

  • ✓

    HTTP Request

    Why this is correct

    This activity provides the necessary framework to send authenticated requests to API endpoints. By configuring the correct endpoint URL and authentication parameters, the automation successfully requests an access token. This token acts as the credential for subsequent API calls, ensuring the process satisfies the security requirements of modern OAuth 2.0 authentication flows.

  • ✗

    Get Asset

    Why it's wrong here

    The Get Asset activity is strictly for retrieving values stored within the Orchestrator database, such as keys or passwords. It does not possess the capacity to execute network requests, handle HTTP verbs, or process OAuth handshake sequences required by external REST APIs. It is meant for local platform resource management only.

  • ✗

    Deserialize JSON

    Why it's wrong here

    This activity is a data transformation tool used to parse raw JSON strings into usable objects within the UiPath runtime. It has no networking functionality and cannot initiate connections to external services. It is strictly used for processing the response body after a successful connection has already been established by another activity.

About these practice questions

Courseiva writes every UiPath-ADAv1 question from scratch — 285 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written and reviewed by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

Last reviewed September 2026 · checked against the official UiPath exam blueprint

This UiPath-ADAv1 practice question is part of Courseiva's free UiPath certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the UiPath-ADAv1 exam.