UiPath-ADPv1 API Automation Practice Question
A developer is using the UiPath HTTP Request activity to call an API that requires a bearer token. The token is obtained from an authentication endpoint and stored in a String variable named authToken. The developer must ensure that the token is sent in the Authorization header for every subsequent request. Which configuration in the HTTP Request activity correctly achieves this?
⚠ Common exam trap
A common mix-up: candidates confuse where authentication credentials belong, such as placing them in the body or URL instead of the required Authorization header.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
In the Headers property, add a new header with Name "Authorization" and Value "Bearer " + authToken.
Bearer tokens must be sent in the Authorization header with the prefix "Bearer ". The HTTP Request activity's Headers collection is the correct place to add this header dynamically using the stored token variable. This approach is secure and compliant with OAuth 2.0 standards, ensuring the API can authenticate the request.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
In the Body property, add a JSON object with a key "Authorization" and value "Bearer " + authToken.
Why it's wrong here
Placing the token in the body is incorrect for bearer authentication; the Authorization header is the standard location. APIs expect the token in the header, and sending it in the body may cause authentication failures or security issues. The body is for request payload, not credentials.
- ✗
In the Authentication property, select "Bearer Token" and enter authToken in the Token field.
Why it's wrong here
The HTTP Request activity does not have a built-in 'Bearer Token' authentication option; authentication is handled via headers or other means. While some activities have authentication properties, the HTTP Request activity requires manual header configuration. Selecting a non-existent option would not work.
- ✓
In the Headers property, add a new header with Name "Authorization" and Value "Bearer " + authToken.
Why this is correct
The HTTP Request activity allows custom headers via the Headers collection. Adding an Authorization header with the value "Bearer " concatenated with the token is the standard way to pass a bearer token. This ensures the token is included in the request headers as required by OAuth 2.0 bearer token usage.
- ✗
In the URL property, append "?Authorization=Bearer " + authToken as a query string parameter.
Why it's wrong here
Passing credentials in the URL query string is insecure and non-standard. Tokens in URLs can be logged in server access logs, browser history, and proxies. APIs that require bearer tokens expect the Authorization header, not a query parameter, so this would likely result in a 401 Unauthorized response.
About these practice questions
Courseiva writes every UiPath-ADPv1 question from scratch — 276 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official UiPath exam blueprint
This UiPath-ADPv1 practice question is part of Courseiva's free UiPath certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the UiPath-ADPv1 exam.