Free Microsoft Power Platform PL-400 Actual Exam Questions - Question 3 Discussion
DRAG DROP You have several model-driven apps. You must ensure that app creators and system administrators can customize the apps. You must follow the principle of least privilege. You need to assign the permissions that are needed for app creators and system administrators. Which security roles should you assign? To answer, drag the appropriate roles to the correct requirements. Each role may be used once, more than once, or not at all. You may need to drag the split bar between panes or scroll to view content. NOTE: Each correct selection is worth one point 
System administrators clearly need the System Administrator role for full control. For app creators, the Environment Maker role is ideal since it allows customization but limits broader access, aligning with least privilege.
System admins should have the System Administrator role—no question there. For app creators, the Environment Maker role makes sense because it allows customization without full admin rights, keeping with least privilege.
System admins definitely need the System Administrator role for full access. For app creators, the Environment Maker role fits better since it lets them customize apps without giving full admin privileges.
This one’s tricky because it’s all about balancing customization rights with least privilege. I’m thinking system administrators get the System Administrator role since they need full permissions, but for app creators, the Maker role fits better-it allows customization without giving full control. The drag and drop setup matches those responsibilities pretty well. Not 100% sure if there’s another subtlety here, but the principle of least privilege makes me stick with those two roles mostly. The interface layout made it a bit annoying to scroll though, so worth double-checking each role’s permi