Pick a focused question that fits your time, stack, and interview goal.
How much time do you have?
Show one-drill sessions you can finish now.
95 results across 1 active filter
Page 2 of 4
Diagnose authentication redirect or callback failures after a slot swap or domain change.
Investigate a production issue caused by staging and production slot configuration drifting apart.
Diagnose browser CORS errors after moving an Azure-hosted API or frontend to a new custom domain.
Diagnose a .NET API that cannot connect to Azure SQL using managed identity.
Designs tenant isolation across API, data, cache, background jobs, search, and admin access.
Designs immutable audit records for sensitive administrative changes with useful before/after context and safe retention.
Designs a checkout or order creation flow that survives client retries without duplicate orders, payments, or messages.
Designs an external partner API with authentication, versioning, rate limits, idempotency, documentation, and compatibility.
Explains reset-token generation, hashing, expiration, generic responses, session revocation, and abuse controls.
Designs a file workflow with metadata, durable storage, validation, access control, scanning, and safe downloads.
Explains password verification, hashing, throttling, generic errors, lockout, and safe login telemetry.
Designs authenticated, replay-resistant webhook intake with durable acknowledgement, idempotent asynchronous processing, ordering policy, and reconciliation.
Designs a safe admin import flow with upload staging, validation, preview, confirmation, idempotency, and rollback strategy.
Explains cache-key scope for tenant, user, role, locale, filters, response version, and security-sensitive reads.
Designs comments with permissions, threading, mentions, notifications, editing history, and moderation concerns.
Designs draft, review, publish, rollback, and audit behavior for content managed by editors and admins.
Designs deletion, retention, soft delete, hard delete, backups, audit records, and asynchronous cleanup across related data.
Designs user reports, moderation queues, actions, audit history, abuse controls, and appeal-friendly decisions.
Designs layered public API protection with caller identity, quotas, burst limits, abuse signals, and client-friendly responses.
Designs authorization that combines roles, permissions, tenant context, resource ownership, and auditability.
Designs plan entitlements, provider webhooks, idempotent billing updates, access checks, grace periods, and support overrides.
Designs a controlled support impersonation workflow with scoped access, approvals, visible banners, audit trails, and session boundaries.
Designs membership, role changes, removal, ownership transfer, and permission updates without weakening tenant boundaries.
Designs an invitation workflow with token security, expiry, membership creation, email delivery, and replay-safe onboarding.