UiPath-ADAv1 API-Based Automation Practice Question
An automation project needs to retrieve secure credentials from a REST API endpoint that requires OAuth 2.0 authorization. Which activity should be utilized first to establish the connection before making subsequent data requests?
⚠ Common exam trap
Candidates mistakenly look for specialized authentication activities rather than recognizing that standard web requests like HTTP Request are used to fetch OAuth tokens.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
HTTP Request
To interact with OAuth 2.0 secured APIs, the automation must first obtain an access token by authenticating with the identity provider. The HTTP Request activity is used to POST client credentials or grant codes to the token endpoint. Understanding this sequence is vital for API automation, as failing to handle the authentication handshake results in 401 Unauthorized errors, preventing any data exchange with protected resources during the workflow execution.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Invoke Workflow File
Why it's wrong here
This activity is designed for modularizing UiPath projects by calling secondary XAML files. It lacks the network stack and protocol capabilities necessary to perform HTTP handshakes or communicate with remote REST endpoints. It does not handle headers, query parameters, or authentication payloads required for interacting with external web-based application programming interfaces.
- ✓
HTTP Request
Why this is correct
This activity provides the necessary framework to send authenticated requests to API endpoints. By configuring the correct endpoint URL and authentication parameters, the automation successfully requests an access token. This token acts as the credential for subsequent API calls, ensuring the process satisfies the security requirements of modern OAuth 2.0 authentication flows.
- ✗
Get Asset
Why it's wrong here
The Get Asset activity is strictly for retrieving values stored within the Orchestrator database, such as keys or passwords. It does not possess the capacity to execute network requests, handle HTTP verbs, or process OAuth handshake sequences required by external REST APIs. It is meant for local platform resource management only.
- ✗
Deserialize JSON
Why it's wrong here
This activity is a data transformation tool used to parse raw JSON strings into usable objects within the UiPath runtime. It has no networking functionality and cannot initiate connections to external services. It is strictly used for processing the response body after a successful connection has already been established by another activity.
About these practice questions
Courseiva writes every UiPath-ADAv1 question from scratch — 285 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official UiPath exam blueprint
This UiPath-ADAv1 practice question is part of Courseiva's free UiPath certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the UiPath-ADAv1 exam.