Limited-Time Offer: Enjoy 50% Savings! Ends in 00h 00m 00s Coupon code: 50OFF
Skip to content

Free Anthropic Claude Certified Architect - Professional CCAR-P Exam Questions

Page: 1 / 13 Total 126 questions

Want more questions? Get Premium Access.

Question 1

A Claude architect is auditing configuration scope assignments.

Which two statements correctly identify an appropriate use of user-scope configuration versus other scopes? (Select two.)

Correct Answer: A. Persisting personal editor theme preferences that follow an engineer across projects.; B. Saving a preferred Claude response language that applies to all repositories the engineer uses.
Explanation:

User scope applies to one engineer across every project and is therefore appropriate for portable personal preferences. Option A fits this definition because an interface theme belongs to the individual rather than to a repository or organization. Option B also fits because Claude Code provides a language setting for the preferred response language, and placing that preference in user scope makes it apply across repositories.

Option C requires managed configuration because an organization-wide security control must be centrally deployed and resistant to individual override. Option D belongs in project scope because repository-specific MCP endpoints must be shared consistently with that repository's contributors.

Option E describes credential handling rather than merely a preference assignment. Credentials must not be placed in a repository, but avoiding version control alone is insufficient. They must be stored through a supported secure authentication mechanism, protected environment configuration, operating-system credential facility, or approved secrets manager---not inserted as plaintext into an ordinary settings file.

Anthropic defines user scope as affecting one user across all projects, project scope as shared repository configuration, and managed scope as the location for enforceable organizational controls. It also explicitly lists themes and other personal settings as user-scope use cases. Claude Code Configuration Scopes

Study Guide references/topics: User scope; project scope; managed configuration; personal preferences; repository-shared MCP configuration; credential protection.


Question 2

You are building an evaluation pipeline for a Claude-based deployment and must complete the specification steps before running the deployment against the dataset.

Which two steps must be completed BEFORE running the deployment against the evaluation dataset? (Select two.)

Each correct answer presents part of the solution.

Correct Answer: B. Curate and label the evaluation dataset to match the defined slices.; D. Define the metrics and slices the framework will report across representative, edge, and adversarial cases.
Explanation:

The evaluation specification must exist before inference begins. Option D defines what the evaluation will measure and how results will be segmented. Representative cases measure normal workload performance, edge cases test boundary behavior, and adversarial cases examine safety, security, or robustness under hostile inputs.

Option B then supplies the correctly curated and labeled dataset corresponding to those slices. Labels, expected outcomes, grading rubrics, provenance, and dataset versions must be established before the deployment generates outputs. Otherwise, evaluators risk modifying criteria after seeing results and introducing confirmation bias.

Anthropic defines an evaluation as an input combined with grading logic used to measure success. Its evaluation guidance distinguishes tasks, trials, graders, traces, outcomes, and the harness that runs and aggregates them. Demystifying Evals for AI Agents

Option E occurs after model execution because outputs must exist before they can be scored. Option A follows scoring and aggregation. Option C is an iterative improvement step performed after failure cases become available, although rubric calibration may also be conducted on separate development data.

Study Guide references/topics: Evaluation specification; metrics and slices; representative and adversarial datasets; labeling; scoring; aggregation; release gates.


Question 3

You are running a discovery session with a business sponsor who asks for ''an AI system to fix our customer escalations.''

Which approach best yields actionable requirements?

Correct Answer: B. Decompose the request by asking targeted questions about who escalates, what triggers escalation, what good resolution looks like, and which constraints---latency, cost, audit, and data sensitivity---apply.
Explanation:

The sponsor's statement expresses a desired outcome but does not define an implementable requirement. Option B converts the vague request into concrete information about users, workflow triggers, expected resolutions, decision boundaries, and non-functional constraints. These findings can then be translated into measurable success criteria, evaluation cases, integration requirements, and escalation rules. Anthropic's evaluation guidance states that an LLM application should begin with specific, measurable, achievable, and relevant success criteria. Option A prematurely treats an aspiration as a complete specification. Option C incorrectly transfers discovery responsibility entirely to the sponsor, while Option D imports assumptions from an unrelated context. Effective Claude architecture requires traceability from the business problem through requirements, evaluation measures, design decisions, and production acceptance criteria. Anthropic: Define success criteria and build evaluations


Question 4

A research summarization assistant has been deployed for six months. A user has flagged that a generated summary contained a fabricated citation. The product team has asked whether the incident requires architectural action or whether it is an isolated case.

Which two Diligence-competency actions should you take? (Select two.)

Each correct answer presents part of the solution.

Correct Answer: A. Sample recent summaries to estimate the fabrication frequency across the population.; C. Review whether citation-grounding controls exist anywhere in the current generation pipeline.
Explanation:

A single confirmed fabrication requires investigation, but it does not establish the population-level failure rate. Sampling recent summaries determines prevalence, affected content types, and whether the incident correlates with particular prompts, documents, or model versions. The architecture must also be examined for grounding controls, including source-constrained generation, citation rendering, claim-to-source verification, and rejection of unsupported statements. Anthropic recommends making factual outputs auditable through citations and requiring supporting quotations for important claims. Immediate universal shutdown may become necessary if the risk is severe, but doing so before establishing scope is not the most disciplined first response. Options D and E dismiss evidence without validation and would prevent corrective action. Reducing hallucinations


Question 5

A Claude Architect is reviewing a post-deployment performance report for an AI-assisted legal-document summarization system. The report includes these observations:

Average summarization time decreased from 47 minutes to 6 minutes per document.

Associates spend less time on summaries, but overall billable output has not measurably changed.

Infrastructure costs increased by 22% because redundant retry logic generated additional API calls.

Some summaries require attorney correction, adding an average of 8 minutes of review per document.

Which analysis correctly attributes each observation to the appropriate business-value pillar?

Correct Answer: D. Observation 1 indicates an efficiency gain; Observation 2 shows that productivity has not yet been realized; Observation 3 is a solution-cost issue; Observation 4 is an efficiency loss that partially offsets Observation 1.
Explanation:

Observation 1 is a direct efficiency improvement because the time required for one summarization task fell substantially. Observation 2 shows that local time savings have not yet translated into higher organizational productivity or billable output. Observation 3 is explicitly a solution-cost problem caused by unnecessary API calls. Observation 4 introduces additional human correction time and therefore partially offsets the gross efficiency gain reported in Observation 1. Option D is the only answer that keeps these value dimensions distinct. Measuring only generation speed would overstate realized value because review effort, retry costs, and downstream output must also be included. A valid post-deployment assessment should calculate net cycle time, cost per accepted summary, correction rate, and resulting business output.


Question 6

You are reviewing a peer's draft architecture decision record (ADR). The ADR states the decision and the technical detail but does not state the alternatives considered or the trade-offs accepted.

Which response is most appropriate?

Correct Answer: B. Ask the author to add the alternatives considered and the trade-offs accepted before publishing the ADR.
Explanation:

An ADR must preserve not only the selected decision but also the context, alternatives evaluated, and trade-offs consciously accepted. Without this information, future engineers cannot determine whether the decision remains valid after requirements, Claude models, costs, security controls, or integration capabilities change. Option B completes the record while retaining the valid technical detail already documented. Option A destroys useful evidence and replaces durable documentation with unreliable organizational memory. Option C produces an incomplete record that cannot support audits, onboarding, or later architectural review. Option D changes the decision without evidence or a decision-making process. For Claude solutions, ADRs should typically capture the chosen model and integration pattern, rejected alternatives, evaluation evidence, security implications, operational consequences, and conditions that would trigger reconsideration.


Question 7

You are reviewing an integration specification for security gaps.

Which two findings constitute valid security gaps in the specification? (Select two.)

Each correct answer presents a complete solution.

Correct Answer: B. Service credentials are placed in the prompt context, where they can leak into logs and traces.; C. Role-based access control is enforced only at the response-rendering layer after the model accesses restricted data.
Explanation:

Credentials must never be supplied as prompt content. Prompts can be retained in traces, debugging output, caches, or logs, and model output may inadvertently expose included secrets. Credentials should instead be resolved server-side through an approved secret store or delegated authentication mechanism. Option C is also a serious gap because post-response RBAC occurs after unauthorized data has already entered model context. Authorization must be enforced before retrieval and prompt construction. Options A, D, and E describe appropriate controls: least-privilege service identities, per-user scoped OAuth, and encrypted transport. Anthropic's prompt-leak guidance recommends excluding unnecessary sensitive information, while Claude Code security relies on permission-based enforcement rather than natural-language instructions alone. Reduce prompt leak


Question 8

You are responding to an adversarial input pattern in which users include text claiming admin authority and instructing the model to bypass safety restrictions.

Which combination of controls most effectively mitigates this attack pattern?

Correct Answer: B. Prompt-level instructions that treat user content as untrusted data, runtime classifiers that detect override attempts, scoped tool permissions that cannot be elevated by user content, and audit logging of attempts.
Explanation:

Self-declared administrative authority inside a prompt is untrusted data, not authenticated identity or authorization evidence. Option B correctly combines independent controls across the model, runtime, authorization, and monitoring layers.

Prompt instructions establish that user content cannot override system policy. Runtime classifiers detect known and generalized attempts to bypass controls. Tool permissions are enforced outside the model and must derive from authenticated identity, role, and approved scope---not statements contained in the conversation. Audit logging records the actor, attempted override, classifier result, tool requests, and final disposition for investigation and control improvement.

Anthropic recommends input screening, hardened system prompts, safe handling of untrusted content, narrowly scoped permissions, red-team testing, and continuous monitoring. Mitigate Jailbreaks and Prompt Injections

Option A depends entirely on model behavior and provides no containment if the model fails. Option C removes the protections the attacker is attempting to defeat. Option D commits a fundamental authorization error by accepting an unverified claim as privilege elevation.

The strongest design also rate-limits repeated attempts, escalates suspicious activity, validates outputs, and requires human confirmation for consequential actions.

Study Guide references/topics: Direct prompt injection; untrusted user content; runtime classifiers; non-model authorization; scoped tools; audit logging; defense in depth.


Question 9

You are identifying signals that a deployment should re-enter design rather than continue iterating in place.

Which signal most directly indicates the need for a new design cycle?

Correct Answer: D. The system's current architecture cannot meet the new requirements without changes to component responsibilities or core contracts.
Explanation:

A new design cycle is warranted when the required change crosses an architectural boundary. Option D explicitly states that the existing architecture cannot satisfy the new requirements without redistributing component responsibilities or altering core contracts. Such changes may affect service ownership, orchestration, data flows, integration interfaces, security boundaries, failure handling, evaluation strategy, and operational accountability. They therefore require renewed discovery, impact analysis, design review, stakeholder approval, and regression planning.

Options A, B, and C are localized maintenance activities. Clarifying a runbook improves operational documentation but does not change the deployed system's structure. Adjusting an alert threshold is a controlled operational tuning activity, provided the change remains within established monitoring policy. Editing customer-facing copy is similarly confined to the presentation or content layer. None of these changes inherently invalidates component contracts or architectural assumptions.

An architect should distinguish between iteration within an approved design and evidence that the design itself no longer supports the required outcome. Re-entering design for every minor adjustment creates unnecessary governance overhead; continuing local iteration after architectural assumptions have failed creates unmanaged technical and operational risk. Option D is the only signal that establishes a structural incompatibility.

Study Guide references/topics: Lifecycle feedback loops; design re-entry criteria; architectural significance; component responsibilities; interface contracts; controlled operational iteration.


Question 10

You are producing an architecture guide for a new deployment and must complete the planning steps before drafting each section.

Which two steps must be completed BEFORE drafting each section of the guide? (Select two.)

Each correct answer presents part of the solution.

Correct Answer: A. Identify the audience and the questions the guide must answer for that audience.; E. Outline the guide sections covering the overview, components, contracts, flows, runbooks, and limitations.
Explanation:

Effective documentation begins with audience analysis and structural planning. Identifying the audience determines the required technical depth, terminology, decision context, and operational emphasis. Defining the questions the guide must answer prevents sections from becoming generic descriptions. The outline then establishes complete coverage across architecture overview, component responsibilities, interface contracts, dominant flows, operational runbooks, and known limitations. Translation occurs only after stable source content exists. Implementation-team validation also follows an initial draft because there must be material to review. Version control, reviewers, and cadence are important governance controls, but they do not replace the two content-planning activities required before section drafting. The guide should be planned around the decisions and tasks its intended readers must perform.