<< Prev Question Next Question >>

Question 4/30

During implementation, the team found that there is a notification controller exposed for an external service that marks the order as paid when notification is received. The notification URL is sent to the service together with the payment request and contains only the URL with orderlD as the parameter.
What should the Architect recommend to the team in order to prevent the unauthorized usage of the controller to mark the orders as paid?

LEAVE A REPLY

Your email address will not be published. Required fields are marked *

Question List (30q)
Question 1: An Architect is documenting the technical design for a singl...
Question 2: A client has a single site with multiple domains, locales, a...
Question 3: A business wants to migrate its customerservice provider fro...
Question 4: During implementation, the team found that there is a notifi...
Question 5: An Order Management System (OMS) handles orders from multipl...
Question 6: During the testing of the login form, QA finds out that the ...
Question 7: During discovery, the customerrequired a feature that is not...
Question 8: The Client plans to deploy a new payment provider and Order ...
Question 9: A developer is remotely fetching the reviews for a product. ...
Question 10: A company manages its regional operations asseparate busines...
Question 11: The storefront integrates with a REST based Address verifica...
Question 12: There Is an Issue with the site when the domain Is opened fr...
Question 13: An integration cartridge implements communication between th...
Question 14: Northern Trail Outfitters (NTO) operate 200 physical stores....
Question 15: The Client is Crowing and decided to migrate its ecommerce w...
Question 16: During a technical review, the Client raises a need to displ...
Question 17: An Architect has been approached by the Business with a requ...
Question 18: A new version of the Page Show controller is required for im...
Question 19: The Client is planning to switch to a new Payment Service Pr...
Question 20: The Client wishes to implement a third party integration tha...
Question 21: A developer is checking for Cross Site Scripting (XSS) and f...
Question 22: The Client currently manages Customers, Inventory, and Produ...
Question 23: A B2C Commerce Developer has just finished implementing a ne...
Question 24: An Architect has been asked by the Business to integrate a n...
Question 25: An Architect to notify by the Business that order conversion...
Question 26: A new dent is moving from their existing ecommerce platform ...
Question 27: Given a website launched to production, the Architect can re...
Question 28: A new project for a Client will involve a few different Inte...
Question 29: An Architect isperforming an audit of production logs via Lo...
Question 30: A developer is validating the pipeline cache and noticed tha...