Categories
Salesforce Agentforce

Salesforce Winter ’27 Release: 15 Critical Changes to Test

The Salesforce Winter ’27 release goes generally available on October 12, 2026, and it is not a quiet one. Alongside the usual Flow and admin improvements, it carries security changes that can stop integrations from logging in, a platform events retirement with a real deadline, and a large set of Agentforce updates that change how agents are built and measured.

This guide lists the 15 Salesforce Winter ’27 release changes we think Salesforce admins, architects and IT leads should actually test, in order of risk. It is written for teams running a live production org who want to know what to check before their instance upgrades, not for people who want to read every line of the release notes. For each item you will find what changed, who it affects and the specific test to run.

We work on Salesforce orgs every week as an implementation partner, so the list leans towards what tends to break in real orgs rather than what looks best in a keynote.

Salesforce Winter ’27 release dates at a glance

Salesforce rolls a major release out in waves, so your production org may upgrade on a different weekend from someone else’s. The dates below are the ones that matter for planning. Always confirm your own maintenance window on the Salesforce Trust status site for your instance.

Salesforce Winter '27 release dates timeline with GA on October 12, 2026 and 2027 retirement deadlines
MilestoneDateWhat it means for you
Pre-release orgs openAugust 13, 2026Free trial orgs with Winter ’27 features, but none of your own configuration
Release notes publishedAugust 19, 2026Full list of features and release updates available to read
Sandbox previewLate August 2026Preview sandboxes upgraded early, the best place to test your own setup
Production upgradesWaves through early October 2026Your date depends on your instance, check Trust status
General availabilityOctober 12, 2026All production orgs on Winter ’27
OAuth username-password flow retiredFebruary 20, 2027Integrations using grant_type=password stop getting tokens
SOAP login() call retiredJune 1, 2027Integrations that log in through SOAP must move to OAuth
Standard-volume platform events retiredSummer ’27Events must be migrated to high-volume before then

How this Salesforce Winter ’27 release list is organised

The 15 Salesforce Winter ’27 release changes fall into three groups: five that can break things, five Flow and admin wins and five Agentforce updates. The first five can break something that works today, so they come first and deserve testing time before your upgrade weekend. The next five are Flow and admin improvements that are worth adopting because they save time or reduce risk. The last five are Agentforce and cloud updates that mostly affect planning and budgets rather than day to day stability.

If you only have one afternoon, test group one. If you have a week, work through all three.

Part 1: Five Salesforce Winter ’27 release changes that can break things

1. SOAP login() needs a new API permission

The Salesforce Winter ’27 release enforces a release update titled “Assign Use Any API Auth Permission for SOAP login()”. Users who authenticate through the SOAP API login() call now need that permission assigned, either through a profile or a permission set.

Who it affects: any integration user, middleware tool or older data loader setup that still logs in through SOAP rather than OAuth. These are often integrations nobody has looked at in years.

What to test: in your preview sandbox, list every integration user and check which ones authenticate through SOAP login(). Assign the permission through a permission set rather than editing profiles, then run each integration once end to end. Also note the bigger deadline behind this change: the SOAP login() call itself retires on June 1, 2027, so this is the moment to plan the move to OAuth rather than patching it twice.

2. Profile Filtering is switched on by default

With Profile Filtering enforced by the Salesforce Winter ’27 release, users without the View All Profiles permission can no longer see the names of profiles they are not assigned to. On its own this is a sensible security change. The problem is anything built on the assumption that profile names are visible.

Who it affects: flows, validation rules, formula fields, Apex and reports that read Profile.Name for users who do not hold View All Profiles, plus any custom user management screens.

What to test: search your metadata for references to Profile.Name, run the affected automation as a standard user in the sandbox and confirm it still behaves. Where logic depends on profile, consider switching it to a custom permission, which is the more durable pattern anyway.

3. The OAuth username-password flow is retired on February 20, 2027

This is the change most likely to cause a silent outage. Salesforce is retiring the OAuth 2.0 username-password flow for connected apps, where an integration sends a username, password and security token to get an access token. Enforcement is set for February 20, 2027. When it lands, those integrations simply stop getting tokens, and there is no warning screen for a user to notice.

Who it affects: existing orgs with server to server integrations still using grant_type=password. New orgs already have the flow blocked by default.

What to test: ask every integration owner which OAuth flow they use. Move nightly jobs and middleware to the client credentials flow running as a dedicated integration user, or to the JWT bearer flow for more sensitive connections. Store secrets in Named Credentials, not in code or config files. The Salesforce Winter ’27 release is the moment to do this, because February leaves little room once year end freezes are taken into account.

4. Standard-volume platform events retire in Summer ’27

You can no longer define new standard-volume custom platform events, and new platform events are high-volume by default. Existing standard-volume events are due to retire in Summer ’27, according to the Salesforce Platform Events Developer Guide.

Who it affects: orgs with older event-driven integrations, especially ones built several years ago when standard volume was the default.

What to test: list your custom platform events and check each one’s publish behaviour. For every standard-volume event, plan the migration to high-volume and retest the subscribers, including any Apex triggers, flows and external CometD clients. The migration is not hard, but it touches every subscriber, so it belongs in a planned release rather than a rushed fix.

5. Accessibility updates change layouts above 200% zoom

Three accessibility updates enforced by the Salesforce Winter ’27 release improve how cards, docked containers, menu lists, panels, date pickers, popovers, utility bars, record headers, page headers and modal windows behave at zoom levels above 200%.

Who it affects: most orgs will simply get a better experience. The risk sits with custom Lightning components and CSS overrides that assume a fixed layout.

What to test: open your most used record pages, custom components and utility bar items at 200% and 400% browser zoom in the sandbox. Look for clipped buttons, overlapping text and modals that cannot be closed. Fix those before users who rely on zoom run into them.

Part 2: Five Flow and admin changes in the Salesforce Winter ’27 release

6. Flow Test Mode (beta) replaces Debug Mode

In the Salesforce Winter ’27 release, Test Mode gives Flow Builder a dedicated place to test a flow, combining what debug and flow tests used to do separately. You can save test scenarios with mock inputs and assertions, rerun them after every change and track coverage.

Why it matters: most flow failures in production come from a change to one branch breaking another branch nobody retested. Saved, repeatable tests are the cheapest protection against that.

What to do: pick your three most important record-triggered flows and build saved tests for them in the sandbox. Because Test Mode is still beta, keep your existing testing process running alongside it for now.

7. Screen flows can run on many records at once

After the Salesforce Winter ’27 release, a screen flow can run as a mass quick action from a list view or a related list, receiving the selected records as a collection of IDs. Screen flow quick actions also get custom modal sizing.

Why it matters: bulk updates that used to need a data loader job, a custom Lightning component or a developer can now be built by an admin.

What to do: look for requests your team handles with spreadsheets and data loader, such as reassigning a batch of cases or updating stages on selected opportunities. Those are good first candidates.

8. Flow Builder catches more mistakes at save time

With the Salesforce Winter ’27 release, Flow Builder warns when a Create Records element is missing required field assignments and catches field length violations when you save, instead of failing at runtime. There is also a new run option that makes a flow respect the running user’s permissions, plus an edit history panel and better version comparison.

Why it matters: fewer broken flows reach production, and you can see who changed which element and restore an older version.

What to do: open your largest flows in the sandbox after the upgrade and fix any new warnings. Then review which flows run in system context by default and decide whether they should run in user context instead. For guidance on getting an org ready for automation at this level, our Agentforce readiness checklist covers the permission and data clean up that makes this safer.

9. Apex heap limits go up

The Salesforce Winter ’27 release raises the Apex heap size limit from 6MB to 10MB for synchronous transactions and from 12MB to 25MB for asynchronous transactions. Developers can also test External Services and HTTP callouts in Apex integration tests (developer preview), and a new Apex Symbol API (beta) exposes Apex type metadata.

Why it matters: heap limit errors are a common cause of failed batch jobs and integrations that process large payloads. Some of those will now simply work.

What to do: check your logs for recent heap limit exceptions. Rerun those jobs in the sandbox, but do not treat the higher limit as permission to skip optimisation. Code that barely fitted in 6MB will not stay comfortable for long.

10. Reports get record preview and a home on LWR sites

The Salesforce Winter ’27 release lets you preview records straight from Lightning reports without leaving the report (beta), and Lightning reports and dashboards can now be embedded in Lightning Web Runtime Experience Cloud sites (beta).

Why it matters: partners and customers on an LWR portal can finally see real reports and charts, and internal users lose fewer clicks moving between a report and the records behind it.

What to do: if you run a partner or customer portal, check which reports your external users currently receive by email or export. Those are candidates for embedding once the feature leaves beta.

Part 3: Five Agentforce updates in the Salesforce Winter ’27 release

11. Agent Skills and Plugins get a unified registry

Salesforce’s Winter ’27 announcement introduces a unified registry for Agent Skills and Plugins with more than 100 prebuilt skills. Developers can create reusable, governed capabilities that work across surfaces instead of rebuilding the same action for each agent.

Why it matters: the cost of an Agentforce rollout is often in building and maintaining actions. A shared, governed library changes that equation, and it follows the same direction as the seven Agentforce named agents announced in September.

What to plan: list the actions your agents use today and check which ones now exist as prebuilt skills. Retiring custom actions you no longer need is also a maintenance saving.

12. Custom Scorers (beta) for agent quality

The Salesforce Winter ’27 release adds Agentforce Custom Scorers in beta, letting you define your own evaluation logic for agent sessions on top of the built-in quality metrics.

Why it matters: a generic quality score cannot tell you whether an agent followed your refund policy or escalated at the right point. Custom scoring lets you measure the rules that matter to your business.

What to plan: write down three or four rules every agent conversation must follow, and turn those into scorers in a sandbox. This is also the evidence a steering committee will ask for before approving wider rollout.

13. Adaptive Experiences and Dynamic Plans in service

Adaptive Experiences and Dynamic Plans listen to service conversations in real time and generate and update a resolution plan as the issue evolves. Salesforce says four customers are live, including PowerSchool with more than 550 users.

Why it matters: this moves AI from summarising after the call to guiding the agent during it, which is where handle time actually drops.

What to plan: this depends heavily on clean case data and well structured knowledge. If your knowledge base is out of date, fix that first. For consumption-based costs, our explainer on Agentforce pricing and Flex Credits shows how usage is billed.

14. Agentforce Contact Center expands, with autonomous scheduling

In the Salesforce Winter ’27 release, Agentforce Contact Center expands to more than 30 countries, bringing voice, digital channels and CRM together. Autonomous scheduling with Agentforce Voice lets an agent check availability and book or dispatch technicians around the clock, turning a booking call that used to take around 15 minutes into seconds.

Why it matters: field service and appointment-heavy businesses get a practical use case with a clear return, rather than a general chatbot.

What to plan: map your current booking calls. If most follow the same pattern of checking availability and confirming a slot, they are good candidates. Check your edition too, because what is included changed with the new Salesforce Core, Advanced and Max editions.

15. Agentforce orchestrates third-party agents

With the Salesforce Winter ’27 release, Agentforce can orchestrate agents running on AWS, Azure and Google through A2A-compliant ecosystems. In other words, a Salesforce agent can hand work to an agent built elsewhere and receive the result back.

Why it matters: few large companies will run every agent on one platform. Orchestration across vendors is what keeps a multi-vendor setup from turning into disconnected bots.

What to plan: if you already run agents outside Salesforce, list them and the data each one needs. Governance, logging and permissions across vendors will need an owner before this goes live. If you are weighing Salesforce’s own agents against Claude inside Salesforce, our comparison of Claudeforce vs Agentforce covers the trade-offs.

Smaller Sales and Service changes in the Salesforce Winter ’27 release

A few smaller Salesforce Winter ’27 release updates will not break anything but are worth showing users. In Sales, Einstein Conversation Insights suggests follow-up actions after meetings, reps can capture voice notes after a meeting in the Salesforce mobile app, and Pipeline Forecasting shows deal risks, methodology scores and contact insights. In Service, agents can view original case attachments inline in case details, delete outdated milestones from the case timeline, and use a revamped Enhanced Case Merge interface (beta).

What was pulled from the Salesforce Winter ’27 release: Flow Tags

Flow Tags, which would have let admins label and group flows by category, was removed from the Winter ’27 release during the week of September 14, 2026. The release notes change log records the removal, and Salesforce said only that the feature is not quite ready yet.

The practical lesson is simple. Plan and budget on what is generally available, not on what appeared in a preview, a keynote or an early version of the release notes. Keep using naming conventions and descriptions to organise flows until Flow Tags returns.

Salesforce Winter ’27 release testing checklist

Every Salesforce Winter ’27 release test needs an owner: integration leads cover authentication, admins cover Flow and profiles, and developers cover Apex and platform events. The table maps each change to its test and usual owner.

#AreaWhat to testUsual owner
1SOAP login()Assign the new API auth permission, run each SOAP integration end to endIntegration lead
2Profile FilteringFind Profile.Name references, run them as a standard userAdmin
3OAuth flowsList integrations on grant_type=password, plan client credentials or JWTIntegration lead
4Platform eventsList standard-volume events, plan migration to high-volumeDeveloper
5AccessibilityCheck key pages and custom components at 200% and 400% zoomAdmin, UX
6Flow Test ModeBuild saved tests for the three most important flowsAdmin
7Bulk screen flowsReplace one data loader task with a mass quick actionAdmin
8Flow save checksOpen large flows, clear new warnings, review run contextAdmin
9Apex heapRerun jobs that hit heap limits recentlyDeveloper
10ReportsIdentify portal reports suited to LWR embeddingAdmin
11 to 15AgentforceMap actions to prebuilt skills, draft custom scorers, list external agentsProduct owner

How to run the Salesforce Winter ’27 release upgrade in your org

  1. Confirm your date. Look up your production instance on Salesforce Trust status and put the maintenance window in the team calendar.
  2. Test in a preview sandbox, not a pre-release org. Pre-release orgs have the new features but none of your configuration, so they cannot tell you what breaks.
  3. Start with the release updates. Open Setup, then Release Updates, and work through anything marked for enforcement before touching new features.
  4. Run your regression tests. Apex tests, key flows, integrations and the top ten record pages your users open every day.
  5. Tell users what changes for them. A short note on the few visible changes saves a week of support tickets.
  6. Book the follow-up work. The OAuth, SOAP and platform event deadlines fall in 2027, but the migrations need a slot in your plan now.

Teams without the capacity to test every release properly often hand this recurring work to Salesforce managed services.

Frequently asked questions about the Salesforce Winter ’27 release

When is the Salesforce Winter ’27 release date?

Salesforce announced general availability of the Salesforce Winter ’27 release on October 12, 2026. Production orgs upgrade in waves before that date, and the exact weekend depends on your instance, which you can check on Salesforce Trust status.

What breaks in Salesforce Winter ’27?

The Salesforce Winter ’27 release changes most likely to cause problems are the SOAP login() permission requirement, Profile Filtering being on by default and accessibility changes affecting custom components. Two later deadlines matter just as much: the OAuth username-password flow retires on February 20, 2027 and standard-volume platform events retire in Summer ’27.

Is Flow Test Mode generally available in Winter ’27?

No. Flow Test Mode is in beta in the Salesforce Winter ’27 release. It is safe to use in a sandbox for building saved flow tests, but keep your existing testing process alongside it until it reaches general availability.

Did Salesforce remove Flow Tags from Winter ’27?

Yes. Flow Tags was removed from the Salesforce Winter ’27 release in September 2026, with the change recorded in the release notes change log. Salesforce has not given a new date.

What should Salesforce admins test first in Winter ’27?

Test the enforced release updates first: SOAP login() authentication, Profile Filtering and the accessibility changes. Then check which integrations still use the OAuth username-password flow, because those will stop working on February 20, 2027.

Do Winter ’27 Agentforce features cost extra?

It depends on the feature and your edition. Check the availability section of each feature in the Salesforce Winter ’27 release notes before planning a rollout. Many Agentforce capabilities consume Flex Credits, and edition packaging changed in September 2026 with Core, Advanced and Max.

Getting help with the Salesforce Winter ’27 release

Ashapura Softech is a Salesforce implementation partner working with US businesses on Salesforce CRM development, Salesforce cloud services and CRM software development, and builds the custom middleware behind many Salesforce integrations through our enterprise software development team. If you want a second pair of eyes on your release updates, your integration authentication or an Agentforce rollout, we are happy to help, and you can see how we approach delivery in our Agentforce implementation partner guide.

Categories
Agentforce Salesforce

Agentforce Coworker: What It Does, What It Costs and How to Turn It On

Of everything Salesforce announced under AIforce at Dreamforce 2026, Agentforce Coworker is the piece most admins will meet first. It is not a pilot you apply for. In many orgs it is already switched on, because Salesforce began turning it on automatically from 10 August 2026. This guide explains what Agentforce Coworker is, what it can and cannot touch, what it costs, how to turn it on or keep it off, and how to fix the errors admins run into during setup.

Agentforce Coworker at a glance

QuestionShort answer
What it isAn AI assistant in the Salesforce search bar that answers questions in plain language and can act on CRM records
Where it worksSalesforce, Slack, Microsoft Teams, Claude, ChatGPT and mobile
What it readsSalesforce CRM, Slack and connected Data 360 sources
EditionsEnterprise, Unlimited and Agentforce 1
CostNo extra fee for CRM and Slack search on eligible Unmetered seats; Data 360 answers use credits
StatusAnnounced May 2026, automatic enablement from 10 August 2026, part of AIforce since 15 September 2026

What is Agentforce Coworker?

Agentforce Coworker is an AI assistant that sits in the Salesforce search bar inside Lightning. A user types a question in plain language, and instead of a list of matching records they get one written answer built from the data they are allowed to see. Salesforce’s own Coworker FAQ describes it as a teammate that can reason over complex requests, build a multi step plan and call backend tools to finish the task.

The simplest way to think about it: Coworker replaces “search, open five records, read, piece it together” with “ask once, get the summary”. It does not replace your agents, your flows or your reports. It sits in front of them and becomes the single entry point to them.

Agentforce Coworker timeline

  • May 2026: Marc Benioff announced Coworker as an AI teammate “inside every Salesforce search bar”, and it opened as a beta for Agentforce customers.
  • 10 August 2026: Salesforce started enabling it automatically for eligible orgs, on a rolling basis.
  • 15 September 2026: At Dreamforce it became one of the three products inside AIforce, next to Claudeforce and Slackforce. Salesforce said 100,000 users activated it in the first 35 days.
Agentforce Coworker timeline: beta in May 2026, automatic enablement from 10 August 2026, part of AIforce from 15 September 2026
Agentforce Coworker timeline in 2026.

Agentforce Coworker vs traditional Salesforce search

Classic global search is good at one thing: finding a record when you already know roughly what it is called. Coworker is built for the questions that sit between records.

Traditional Salesforce searchAgentforce Coworker
InputKeywords and record namesPlain language questions
OutputA list of matching recordsOne written answer with the records behind it
SourcesSalesforce objectsSalesforce, Slack and Data 360 sources
ActionNone, the user opens and edits recordsCreates or updates CRM records after confirmation, routes work to agents
SecurityUser permissionsUser permissions plus Data 360 governance, masking and grounding
Agentforce Coworker vs traditional Salesforce search: input, output, sources, actions and security compared
Agentforce Coworker compared with traditional Salesforce search.

Where Agentforce Coworker works

The Lightning search bar is where most users first see it, but Salesforce’s Agentforce Coworker page lists more surfaces: Slack, Microsoft Teams, Claude, ChatGPT and mobile. The point is that the same assistant, with the same permissions, follows the user into whichever tool they already have open. That is the idea behind AIforce as a whole, and it is why Coworker pairs naturally with Claudeforce for teams that already work in Claude.

What Agentforce Coworker can search and do

According to the Salesforce developer guide and the help FAQ, Coworker reads across three kinds of source:

  • Salesforce CRM data: accounts, contacts, opportunities, cases, custom objects, knowledge articles and past case history.
  • Slack: messages, channels and conversations the user can already access.
  • Data 360 sources: Salesforce says more than 270 external sources connect through Data 360 connectors, including data lakes, knowledge bases and enterprise apps such as Jira.

On top of search, it does three things that matter in daily work:

  • Create or update records. It checks permissions and validation first, and asks the user to confirm before it saves anything. Today this works only on Salesforce CRM records, not on Slack or external data.
  • Route the request. If a question belongs to a specialised agent, for example a service agent or one of the named agents like Casey or Piper, Coworker hands it over rather than guessing.
  • Summarise across sources. A sales rep can ask what is putting a deal at risk and get the open cases, the Slack thread about pricing and the stalled approval in one answer.
How Agentforce Coworker answers a question: user question, permission check, CRM, Slack and Data 360 sources, answer or action
How Agentforce Coworker turns one question into an answer or an action, inside the user’s own permissions.

Agentforce Coworker use cases and example prompts

The value shows up when people ask the questions they currently answer by opening several tabs. These are the kinds of prompts that fit each team.

Sales

  • “What should I know before my call with this account tomorrow?”
  • “Which of my opportunities closing this quarter have had no activity in two weeks?”
  • “Log a note on this opportunity: pricing approved, legal review next week.”

Service

  • “Has this customer reported this issue before, and how was it fixed?”
  • “Why are cases about login errors spiking this week?”
  • “Find the knowledge article that answers this case.”

Customer success and leadership

  • “Summarise open cases, renewal date and recent Slack discussion for this account.”
  • “Which strategic accounts have an open escalation and a renewal in the next 90 days?”

For the wider picture of where agents earn their keep, see our Agentforce use cases guide.

How it handles security and permissions

Salesforce says Coworker “fully honors the existing Salesforce access model”. It runs with the permissions of the person using it, so if a user cannot open a record, Coworker cannot read it for them. Behind that sit attribute based access control, PII masking, toxicity detection and result grounding through Data 360, and the AIforce announcement repeats the zero data retention model for the underlying language models.

External sources need more thought. Permission aware sources carry their access rules across automatically, and federated sources enforce permissions in real time at the source. For other connectors, an admin has to create governance policies in Data 360 by hand. Data from sources that are not zero copy is ingested and stored in Data 360, which matters for data residency reviews.

The practical catch is that “respects your permissions” is only as good as the permissions themselves. Many orgs have years of broad sharing rules, public read on objects that should be private, and profiles that were cloned instead of designed. Search used to hide that problem because nobody scrolled through everything. A good AI answer surfaces it in seconds. If you have not reviewed sharing in a while, do that before you roll Coworker out widely. Our Agentforce readiness checklist covers the same ground.

Automatic enablement: is Coworker already on in your org?

Salesforce’s automatic enablement FAQ says the rollout began on 10 August 2026 on a rolling basis. Your org is in scope if it has Unmetered User Based AI seats and Einstein is active.

Some orgs are left out of automatic enablement:

  • Orgs that have opted out of generative AI.
  • Multi dataspace or multi org setups.
  • HIPAA, health and life sciences, and government orgs.
  • Flex Foundation seats without Unmetered entitlements.

If your org is in scope and you would rather roll it out on your own schedule, there are two ways to opt out: the link in the notification email Salesforce sends, or Setup > Agentforce Coworker > Opt Out of Auto Activation. Users who gain an eligible seat after the automatic switch on still need an admin to give them access by hand.

Agentforce Coworker pricing: what does it cost?

For most seat based customers, the search itself is included. Salesforce states that searching CRM data and Slack carries no extra fee for users on eligible Unmetered seats, and that their usage shows as zero consumption in the Digital Wallet.

Costs appear in two places:

  • Data 360 objects. Answers that pull from connected Data 360 objects consume Flex Credits or Data Services Credits.
  • Users without an eligible seat. Anyone who loses an Unmetered seat moves back to normal Flex Credit or Data Services Credit billing.

So the budget question is not “what does Coworker cost” but “which users are on metered seats, and how much Data 360 do we plan to expose”. If you are still working out how Flex Credits are counted, start with our Flex Credits explainer, and read the Core, Advanced and Max editions change alongside it, since the new editions bundle credits differently.

Agentforce Coworker pricing: no extra fee for CRM and Slack search on eligible seats, credits for Data 360 answers and metered users
Who pays what for Agentforce Coworker.

Requirements to turn on Agentforce Coworker

If your org was not switched on automatically, you can turn it on yourself. The setup guide and the help FAQ list these requirements.

RequirementWhat you need
EditionEnterprise, Unlimited or Agentforce 1
Usage based licensingData Cloud or Data 360, a Foundations or Flex Foundations licence, and Flex Credits
Seat based licensingData Cloud or Data 360, plus Agentforce 1 Edition or Agentforce for Sales, Service and Industries
Admin accessSalesforce admin role, the Agentforce Coworker Admin permission set and the AI Search Setup permission set licence
User accessThe Access_Ai_Search permission set group

How to turn on Agentforce Coworker, step by step

  1. In Setup, type Agentforce Coworker in the Quick Find box.
  2. Select Get Started with Agentforce Coworker, click Turn On and confirm. Einstein turns on automatically at this point. Setup takes a few minutes, and Salesforce shows a warning if any prerequisite is missing.
  3. If your org has more than one data space, choose the data space, then select the data sources Coworker should use.
  4. In the Manage Users section, click Manage and assign the Access_Ai_Search permission set group to the users who should have it.
  5. For seat based access, open each user in Setup, go to Permission Set License Assignments, tick Unmetered User-Based AI and save.
  6. Test with two or three users from different roles before you widen access. Ask each the same question and check that the answers differ in the way their permissions say they should.
How to turn on Agentforce Coworker in six steps: Quick Find, Turn On, data sources, assign users, seat licence, test
The six steps to turn on Agentforce Coworker.

Troubleshooting common Agentforce Coworker errors

These are the errors Salesforce lists in its troubleshooting FAQ, with the fix for each.

ErrorLikely causeFix
Coworker does not appear, or “Not Enabled”User is missing the licence or the Access_Ai_Search groupCheck the permission set licence and group assignment for that user
401 UnauthorizedConnected App or OrgJWT set up incorrectlyConfirm the Connected App definitions and OrgJWT certificates match
400 Invalid IDAgent ID is truncated or in the wrong formatCopy the full 18 character Agent ID from the setup URL
500 Server Error or engine lookup failureBackend or model gateway interruptionHard refresh the browser, then turn Coworker off and on again
Invalid TokenThe session failed OAuth or JWT validationCheck client credentials and the gateway network path

Limits worth knowing before rollout

  • 30 language model calls per minute per user. Salesforce notes this is not technically enforced yet, but one question can trigger several calls, so heavy users will reach it sooner than the number suggests.
  • Record updates are CRM only. Coworker can read Slack and Data 360, but it can only write to Salesforce records.
  • Files over 75 MB are not indexed, so very large documents will never show up in answers.
  • English only during the beta. Salesforce says other languages follow at general availability.
  • Not yet available in GovCloud. It does work for authenticated Experience Cloud users.
  • Answers are only as good as the data. Duplicate accounts, empty close dates and stale opportunity stages all show up in the answer. An AI summary of messy data is still messy data, just faster.

A sensible Agentforce Coworker rollout plan for admins

Whether Coworker is already on or you are about to switch it on, the order of work is the same:

  1. Check the status. Open Setup and see whether Coworker is active and who has the Access_Ai_Search group.
  2. Review sharing. Look at organisation wide defaults, sharing rules and the objects with public read. Fix what you would not want a quick question to reveal.
  3. Clean the high use objects. Merge duplicate accounts and contacts and fill the fields reps rely on, such as stage, close date and next step.
  4. Decide on Slack and Data 360. Connect Slack if your teams live there. Connect Data 360 sources only where the value is clear, set governance policies for any source that is not permission aware, and remember those answers consume credits.
  5. Start with a pilot group. Pick one sales team and one service team, collect the questions they actually ask, and write short guidance on what Coworker is good at.
  6. Measure. Track adoption, the questions that return weak answers and credit consumption for the first month before you expand.
Agentforce Coworker rollout plan: check status, review sharing, clean data, connect Slack and Data 360, pilot group, measure
A six step Agentforce Coworker rollout plan for admins.

If you need help with the sharing review, the data clean up or the Data 360 connections, our Salesforce managed services and Data Cloud consulting teams work on exactly these steps.

Frequently asked questions about Agentforce Coworker

Is Agentforce Coworker part of AIforce?

Yes. At Dreamforce 2026 Salesforce grouped Agentforce Coworker, Claudeforce and Slackforce under AIforce, its new interface layer for reaching Salesforce data from any screen.

Is Agentforce Coworker free?

Searching CRM data and Slack carries no extra fee for users on eligible Unmetered User Based AI seats. Answers that use Data 360 objects consume Flex Credits or Data Services Credits, and users without an eligible seat are billed on credits.

Was Agentforce Coworker turned on automatically?

Possibly. Salesforce began automatic enablement on 10 August 2026 for orgs with Unmetered User Based AI seats and Einstein active. HIPAA, health, government and multi org setups were excluded.

How do I opt out of automatic activation?

Use the opt out link in the Salesforce notification email, or go to Setup, Agentforce Coworker, and turn on Opt Out of Auto Activation.

Can Agentforce Coworker see data a user cannot see?

No. It runs with the permissions of the person using it, so it can only read and change what that user can already read and change.

Does Agentforce Coworker work in Slack and Microsoft Teams?

Yes. Salesforce lists Slack, Microsoft Teams, Claude, ChatGPT and mobile as surfaces alongside the Salesforce search bar.

Which editions support Agentforce Coworker?

Enterprise, Unlimited and Agentforce 1 editions, with Data Cloud or Data 360 in place.

Why can’t I see Agentforce Coworker in my org?

Usually the user is missing the required permission set licence or the Access_Ai_Search permission set group. Check both in Setup before looking for anything else.

The bottom line

Agentforce Coworker is the most visible part of AIforce because it lives where every user already clicks: the search bar. It costs little or nothing for most seat based orgs, and it may already be running in yours. The real work is not switching it on. It is making sure your permissions and data are in a state where a fast, confident answer is also a correct one. Start there, pilot small, and expand once the answers hold up.

Categories
Agentforce Salesforce

Agentforce Named Agents: What Casey, Paige, Carter, Hunter, Marshall, Piper and Fin Actually Do

For two years Agentforce was something you built. You picked a topic, wrote instructions, wired up actions, tested it, and hoped the thing behaved in production. At Dreamforce in September 2026 Salesforce changed the starting point: seven named agents that arrive already configured for a specific job, six of them generally available on day one.

That shift is bigger than the names suggest. A prebuilt agent is an opinion about how a job should be done, baked into software. It will fit some orgs closely and fight others. This guide goes through all seven, what each one is actually scoped to do, which cloud it needs, what is shipping today versus later, and where we would not use it.

The seven Agentforce named agents at a glance

AgentJob it doesWhere it livesStatus
CaseyCustomer service resolution across voice, SMS, WhatsApp and web chatService CloudGA now
PaigeIT and HR service requests through Slack and employee portalsEmployee ExperienceGA now
CarterProduct discovery, comparison and checkout help for shoppersCommerce CloudGA now
PiperInbound lead engagement and qualification across web and emailSales and MarketingGA now
FinComplex customer experience workflows spanning channelsCustomer OperationsGA now
MarshallBack office process orchestration with deterministic executionBack OfficeGA now
HunterOutbound pipeline, from research through to outreachSales CloudPilot now, GA expected November 2026

1. Casey: the service agent that finally covers voice

Casey handles customer service issues end to end across voice, SMS, WhatsApp and web chat. The channel spread is the part worth noticing. Most deflection projects we see start and stop at web chat, because chat is where the transcript is clean and the integration is easy. Voice is where the volume and the cost actually sit, and voice is where a handover to a human has always been ugly.

What Casey is good at: repeat, policy driven questions where the answer exists in a knowledge article or a record. Order status, appointment changes, password and access issues, returns inside policy.

What it does not remove: the need for a clean knowledge base. An agent that reads bad articles gives confident bad answers faster than a human would. If your knowledge base has not been audited in a year, that audit is the first project, not the agent.

2. Paige: employee service, where the ROI case is easiest

Paige answers IT and HR service requests inside Slack and employee portals. Of the seven, this is the one with the least risk attached, because the audience is internal. A wrong answer to an employee costs a follow up ticket. A wrong answer to a customer costs the customer.

That makes Paige a sensible first deployment even for an organisation whose real target is customer facing automation. You get the operating experience, the prompt tuning habits and the escalation design without putting revenue on the line while you learn.

3. Carter: commerce assistance, not a storefront replacement

Carter works inside Commerce Cloud on product discovery, comparison and checkout assistance. It is the agent most often confused with something it is not. Carter does not replace your storefront, your catalogue structure or your merchandising rules. It sits on top of them, and it inherits their quality.

If product data is thin, if attributes are inconsistent between categories, or if the same item appears three times under different SKUs, Carter surfaces those problems to shoppers rather than hiding them. Catalogue hygiene is the prerequisite. We cover how that data flows in our guide to Salesforce ecommerce integrations.

4. Piper: inbound lead qualification

Piper engages and qualifies inbound leads across websites and email. The job is speed to lead and consistency of questioning, two things humans are reliably bad at on a Friday afternoon.

The caution here is qualification criteria. Piper applies whatever definition of a qualified lead you give it, at scale, without the quiet human correction that normally happens in the background. If your MQL definition has drifted from what sales will actually accept, an agent will expose that gap within a week. Fix the definition before you automate it.

5. Fin: the cross channel workflow agent

Fin is scoped to complex customer experience workflows that span channels, which is the vaguest brief of the seven and also the most interesting. Think of the cases that start in chat, move to email, require a back office action and end with an outbound confirmation. Those are the ones that fall through today, because no single team owns them end to end.

Fin is worth evaluating if your complaint volume is driven by process breakage rather than by product problems. It is not worth evaluating if your handoffs are undocumented, because there is nothing for it to follow.

6. Marshall: deterministic back office execution

Marshall orchestrates back office processes with what Salesforce calls deterministic execution. That word matters. Most of the anxiety around agents in finance and operations comes from non determinism: the same input producing a different sequence of steps on different days. Marshall is positioned as the answer to that, running defined processes in a defined order rather than reasoning its way to an outcome.

Where this fits: invoice handling, order processing, fulfilment exceptions, reconciliation steps that today sit in a spreadsheet and a person’s head. Where it does not: anything where the process itself is undefined. Marshall executes a process, it does not design one for you.

7. Hunter: outbound pipeline, and the one that is not GA yet

Hunter covers outbound sales pipeline from account research through to outreach, and it is the only one of the seven still in pilot, with general availability expected in November 2026. It is also the agent that debuts long horizon runtime, which is the genuinely new platform capability in this release.

Long horizon runtime means an agent can pursue a goal across days and weeks rather than inside a single session. It preserves memory between runs, survives interruption through durable execution, and can be steered mid flight without being restarted. For outbound that is the difference between a sequence and a campaign that adapts.

It is also the capability that deserves the most governance attention. An agent working a goal for three weeks accumulates three weeks of decisions nobody reviewed individually. Decide in advance what it is allowed to send, to whom, and what it must escalate.

What shipped alongside the agents

Three platform pieces came with the agent portfolio and change how the seven are used together.

Multi agent orchestration is generally available now, and routes work across the specialised agents so they operate as a team rather than seven separate deployments. This is what stops Casey and Fin from both claiming the same case.

AI Skills in Agentforce Coworker lets an employee teach a task once and have it reused across the workforce. It is in pilot now with general availability expected in October 2026.

Agent Optimizer covers building, refining, testing and analysing agent performance across the lifecycle, with general availability expected in October 2026. Until it lands, measurement of agent quality is still something you assemble yourself.

All of this sits inside the wider announcement Salesforce made at Dreamforce. If you want the commercial side, including which Flex Credit allowance comes with which tier, start with what AIforce actually changed and the Core, Advanced and Max editions.

When a named agent is the wrong answer

Four situations where we would tell a client to wait.

The underlying data is not trustworthy. Every one of these agents reads your records and your content. Duplicate accounts, stale knowledge articles and half migrated product data do not get smoothed over by an agent, they get amplified and put in front of a customer.

The process is undocumented. Marshall and Fin in particular assume a process exists. If the answer to “what happens next” depends on which person picks it up, an agent has nothing to follow.

Your volume is low. An agent earns its keep on repetition. A team handling forty cases a week will spend more effort tuning than it saves.

The job is judgement, not throughput. Complaint escalations that involve goodwill decisions, a renewal conversation with an unhappy account, anything with a legal or clinical dimension. Those stay human, with the agent doing preparation rather than resolution.

How to choose which one to turn on first

The order we recommend, and the reasoning behind it.

Start with Paige if you have an internal service desk. Lowest blast radius, fastest feedback loop, and the operating habits transfer directly to the customer facing agents afterwards.

Start with Casey if service cost is the board level number. It is the only one of the seven that touches voice, which is usually where the cost sits.

Start with Piper if speed to lead is the bottleneck. Measure current first response time before you deploy, because this is the one agent whose effect shows up in a single clean metric.

Wait on Hunter unless you are comfortable in a pilot. General availability is expected in November 2026, and long horizon runtime is new enough that early deployments are learning exercises as much as productivity ones.

Whichever you pick, scope one job, instrument it, and run it for a month before adding a second. Teams that switch on four agents at once cannot tell which one caused the change in their numbers.

What this means for existing Agentforce builds

If you already built custom agents, the named agents do not obsolete them, but they should prompt a review. Anything you built that maps closely to one of the seven jobs is now maintenance you may not need to carry. Anything you built that is specific to your business, your products or your regulatory position is exactly what should stay custom.

The practical exercise is to list your current agent topics against the seven and mark each as replace, keep or merge. Our Agentforce readiness checklist covers the questions to ask before either path, and the implementation partner guide covers how the delivery work is usually split.

The named agents are not the only way users reach Agentforce. Agentforce Coworker in the Lightning search bar routes a question to the right specialised agent on its own, and our Agentforce Coworker guide explains how that works and what it costs.

The named agents arrive alongside a busy platform release. See the Salesforce Winter ’27 release guide for the 15 changes to test in your org, including the new Agent Skills registry.

Frequently asked questions

Are all seven Agentforce named agents available now?

Six are generally available: Casey, Paige, Carter, Piper, Fin and Marshall. Hunter is in pilot, with general availability expected in November 2026.

Do the named agents replace custom built Agentforce agents?

No. They cover common, well defined jobs. Anything specific to your products, your industry rules or your internal processes still needs to be built, and the two run alongside each other under multi agent orchestration.

Which licences do the named agents need?

Each sits inside a product area, so Casey needs Service Cloud, Carter needs Commerce Cloud and so on. Consumption is drawn from the Flex Credit allowance that comes with your edition, which means two organisations on the same edition can see very different usage. Confirm current entitlements with Salesforce or your account executive before budgeting.

What is long horizon runtime?

It lets an agent pursue a goal across days and weeks instead of within one session, by preserving memory between runs, surviving interruptions and accepting steering mid task. Hunter is the first agent to use it.

Where do we start if we have never deployed an agent?

With an internal use case, a documented process and a single measurable metric. Paige on an IT or HR service desk is the usual low risk starting point.

Talk to us about which agent fits

Ashapura Softech is a certified Salesforce partner working with teams in the United States on Service Cloud, Sales Cloud, Commerce Cloud and Agentforce delivery. If you want a view on which of the seven fits your org, and what would have to be cleaned up first, get in touch.

Categories
Agentforce Salesforce

What Is AIforce? Salesforce’s Dreamforce 2026 Announcement Explained

On 15 September 2026, at Dreamforce in San Francisco, Salesforce announced AIforce. The framing Salesforce used for it is blunt: AI replaces the UI. Instead of asking people to open Salesforce to get work done, AIforce lets AI agents read and act on Salesforce data from wherever the person already is, whether that is Claude, Slack, Lightning or a tool your own team has built.

If you run a Salesforce org, this is the announcement from this Dreamforce that actually changes how your users will touch the system. Here is what was announced, what is available today, and what it is reasonable to do about it this quarter.

What is AIforce?

AIforce is a layer on top of Salesforce’s existing Agentic Enterprise architecture, not a replacement for Agentforce. It takes what already sits in your org, Customer 360 records, Data 360 context and the Agentforce agents you have configured, and exposes them to AI interfaces outside the Salesforce UI.

The practical effect is that a rep can update an opportunity, log a call, pull pipeline or ask for account research without opening a Salesforce tab. Marc Benioff described the idea as combining model intelligence with the context customers have already built inside Salesforce to create a composable system.

The word composable is doing real work in that sentence. AIforce is built on the Headless 360 toolkit Salesforce shipped in March 2026, which exposes platform capability through APIs, Model Context Protocol servers and developer tooling. Agents are assembled from those pieces rather than bought whole.

The three products inside AIforce

Claudeforce

Claudeforce is the extended Anthropic partnership. It puts Salesforce inside Claude, shipping with 37 prebuilt sales skills covering work like prospecting and pipeline management, with analytics and further skills for service, marketing, commerce and industries on the roadmap. There is also a Salesforce Development plug in for Claude Code carrying more than 40 skills for developers.

Salesforce in Claude is in beta and open to all customers now. If your team already uses Claude, this is the lowest friction way to see what the interface revolution actually feels like on your own data.

We covered the Salesforce and Anthropic partnership in detail in What is Claudeforce.

Slackforce

Slackforce brings Salesforce into Slack as an interactive surface rather than a notification feed. It includes a Slackbot assistant and Slack CRM, which lets a user create an account, log call notes and update records from a prompt without leaving the channel. Slack Code covers collaborative AI development in the same place.

For teams whose real working day happens in Slack, this closes the gap that CRM adoption programmes have been fighting for a decade. Data quality problems are usually a data entry friction problem, and this removes a large part of that friction.

Agentforce Coworker

Agentforce Coworker is an AI teammate inside the Lightning interface, working across devices and operating strictly inside your existing business rules, permissions and security model, with zero data retention. Salesforce has described it as instantly available to customers.

Coworker is the part of AIforce most admins will meet first, because Salesforce began switching it on automatically in August. We cover eligibility, cost, the opt out setting and the setup steps in our Agentforce Coworker guide.

Coworker is the one to test first if your objection to agents so far has been governance. It inherits the permission set of the person it is working for, so it cannot see what that person cannot see. Our guide to Agentforce use cases covers where agents have actually been shipped in practice.

The Headless Toolkit and AgentExchange

Underneath the three products sits the Headless Toolkit, which exposes platform elements through MCPs, APIs, plug ins and skills so you can build your own AI experience rather than take one off the shelf. AgentExchange is where partners publish integrations, with Anthropic, AWS, Google, OpenAI, DocuSign and Vercel already named in that ecosystem.

This matters for anyone with a non standard process. The interesting AIforce work in 2027 will not be turning on Coworker, it will be exposing your own objects, validation rules and approval flows as skills an agent can call safely.

Salesforce Core, Advanced and Max: the edition change to read alongside it

Salesforce also simplified its editions, effective September 2026, into Core, Advanced and Max across Agentforce Sales, Service and Industries. Every edition now bundles Agentforce capabilities such as Account Research and Service Rep Assistant, Slack and Slackbot, embedded agentic analytics powered by Tableau Next, enterprise grade data security and Premier Success Plans, along with Flex Credits: 500K on Core, 1M on Advanced and 2.75M on Max.

List pricing is 195 dollars per user per month for Core, 395 for Advanced and 550 for Max. Salesforce has said existing Agentforce 1 Edition customers can move to Max at no extra cost, legacy edition pricing is unchanged for current customers, and Industry Edition pricing is still to come this autumn.

Confirm your own numbers with your account executive before you budget against these. Published list pricing and what lands on a renewal quote are rarely the same thing, and consumption based Flex Credits change the shape of the bill.

What this actually changes for your org

Your interface strategy is now a real decision. Until this announcement, “where do users work” had one answer. Now there are four plausible answers and you should pick deliberately per team rather than let it happen by accident.

Permissions and sharing rules become the control surface. An agent that inherits a user’s permissions is only as safe as those permissions are tidy. If your profiles and permission sets have drifted over years of ad hoc requests, that debt is about to become visible in a new way.

Data quality gets more exposed, not less. An agent asked to research an account will answer from what is in your org. Duplicate accounts, stale contacts and half filled custom fields have been survivable while a human was reading the record and mentally correcting it. They are less survivable when the answer arrives as a confident sentence.

Automation you already have may be duplicated. Before you build an agent for a task, check whether a Flow already does it. Agents are the right tool for judgement and language, not for deterministic steps a Flow handles cheaply.

A sensible order of work

  1. Turn on Salesforce in Claude for a small group, in a sandbox or with a limited permission set, and watch what people actually ask it.
  2. Run a permissions audit before you widen access. Profiles, permission sets, field level security, sharing rules.
  3. Run a duplicate and data completeness pass on accounts and contacts, since that is what agent answers are built from.
  4. Pilot Agentforce Coworker with one team and one measurable task rather than across the org.
  5. Model your edition options against actual usage before renewal, including what Flex Credit consumption looks like at your volume.

Steps two and three are unglamorous and they are where most of the value is. Agent quality is downstream of org hygiene, which is the bulk of what our Salesforce managed services team spends its time on.

Frequently asked questions about AIforce

Is AIforce the same as Agentforce?

No. Agentforce is the agent platform inside Salesforce. AIforce is the layer that lets those agents and your Salesforce data be reached from outside the Salesforce interface, through Claude, Slack, Lightning or your own build.

Is AIforce available now?

Salesforce in Claude is in beta and open to all customers. Agentforce Coworker has been described as instantly available. Other components, including further Claudeforce skills for service, marketing, commerce and industries, are on the roadmap rather than shipped.

What does AIforce cost?

Salesforce has not published separate AIforce pricing. The related edition pricing effective September 2026 is 195, 395 and 550 dollars per user per month for Core, Advanced and Max respectively, with Flex Credits included at each tier. Check current pricing with Salesforce directly.

What are Salesforce Flex Credits?

Flex Credits are the consumption units bundled with the new editions, 500K with Core, 1M with Advanced and 2.75M with Max. Because agent usage draws on them, two orgs on the same edition can see very different bills depending on how heavily agents are used.

Do we need Data Cloud for this to work well?

You do not strictly need it, but the quality of agent answers depends on the context available to them. If your customer data is spread across systems Salesforce cannot see, that is the gap to close first. Our Salesforce Data Cloud and Data 360 consulting page covers what that work involves.

Where should a mid sized team start?

With one team, one task, and a permissions audit first. Agent quality follows org hygiene, so the groundwork matters more than the agent configuration.

Where AIforce lands

We are a certified Salesforce partner working with teams in the United States from Irving, Texas, with our development centre in Ahmedabad. The work we expect to matter most over the next two quarters is not agent configuration, it is the permission, data and automation groundwork that decides whether an agent gives a useful answer or a confidently wrong one.

If you want a second opinion on where your org stands before you widen agent access, get in touch.

Two pieces of this are worth reading on their own. The commercial change is covered in our guide to the Core, Advanced and Max editions, and the earlier question of how the two agent platforms differ is answered in Claudeforce vs Agentforce. If you are working out a credit budget, Flex Credits explained has the arithmetic.

The seven named agents announced alongside all this are covered one by one, with status and licence notes, in our guide to the Agentforce named agents.

Categories
Agentforce Salesforce

Salesforce Agentforce Use Cases: What Works in Sales, Service, Marketing and Commerce

This guide covers Salesforce Agentforce use cases that companies have actually put live, grouped by the team that owns them: sales, service, marketing, commerce and the contact center. Most Agentforce articles list twenty things an AI agent “could” do. This one sticks to live deployments and the results those companies have published. At the end you will find a simple way to choose your first use case and what a Salesforce AI implementation needs before an agent goes live.

What Agentforce is, in two sentences

Agentforce is Salesforce’s platform for building AI agents that read your CRM data, follow the rules you set, and take actions such as updating a case, booking a meeting or drafting a quote. Salesforce ships prebuilt agents for each cloud, and you can build your own in Agentforce Builder using Flows, Apex and prompt templates you already have.

If you are still comparing options, our Claudeforce vs Agentforce guide explains how the two fit together.

Agentforce for Service: the most proven use case

Service is where Agentforce has the most live deployments, because the work is repetitive, the answers already sit in knowledge articles, and success is easy to measure (deflection, resolution rate, handle time).

What the Service Agent does

  • Answers customer questions across chat, messaging and web, using your knowledge base and case history
  • Takes actions: checks an order, changes a booking, opens or updates a case
  • Hands off to a human rep with the full conversation and a summary when it cannot resolve the issue

Published Agentforce customer service results

CompanyWhat the agent handlesPublished result
OpenTableRestaurant web queries73% of queries handled after three weeks
Shoe CarnivalCustomer calls40% of call volume handled, escalations cut from 75% to 35%
AgibankBanking requests22,500 requests a month, 75% deflection
Fisher & PaykelAppliance supportSelf-service rose from 40% to 70%
1-800AccountantChat during tax week70% of chats resolved autonomously
FinnairCustomer service questionsAims to automate 80% of questions

Source: Salesforce customer stories. Figures are as published by Salesforce and its customers.

Where it works best: order status, booking changes, account questions, returns, appointment scheduling and FAQ-heavy support. Where to be careful: complaints, refunds above a set amount, and anything regulated. Keep a human approval step on those.

Salesforce Service Cloud is the base for all of this. See our Service Cloud services page.

Agentforce Contact Center and Agentforce Voice

This is the newest part of the story and the least crowded, which is why it deserves its own section.

Agentforce Contact Center became generally available on 10 March 2026. It brings voice, digital channels, routing, call recording, transcription and analytics into Salesforce itself, running on Hyperforce, instead of bolting a separate telephony system onto the CRM. Workforce engagement features (workforce and quality management) were added in June 2026.

Agentforce Voice is the voice side of the agent. It can hold a real-time conversation that the caller can interrupt, transcribe it live, update CRM records during the call, trigger workflows and hand the call to a person. It works with Amazon Connect, Five9, Genesys, NICE and Vonage, so you do not have to replace an existing telephony provider to use it.

Practical contact center use cases

  • After-hours voice line: the agent answers, verifies the caller, handles simple requests and books a callback for the rest
  • Call deflection for top intents: order status, balance checks, appointment changes
  • Live assist for human reps: real-time transcript, suggested answers and an automatic call summary into the case
  • Post-call work: wrap-up notes, disposition codes and follow-up tasks created without the rep typing them

A note on licensing: not every Contact Center or Voice capability is in the base Agentforce licence. Map the features you need to the right edition and add-ons before you budget. Our Agentforce pricing and Flex Credits guide covers how consumption is charged.

Agentforce for Sales

Sales use cases are growing fast because they remove the admin work reps dislike, without taking the relationship away from the rep. For the setup side, see agentic AI in Salesforce Sales Cloud.

Prebuilt sales agents

  • SDR Agent: engages inbound leads around the clock, answers product questions from your content, and books meetings
  • Lead nurturing: sends follow-ups to leads that are not ready to talk yet
  • Pipeline management: watches deal activity and suggests next steps so opportunities do not stall
  • Sales Coach: role-plays and reviews pitches so reps can practise before a real call
  • Quote creation: drafts a quote from a plain-language request and the customer’s record

Published Agentforce for sales results

  • Asymbl: coverage equal to a team five times larger, about 575,000 dollars saved a year, targeted engagement up 427%
  • Equipter: time to reach inbound leads cut from nearly a day to hours
  • Carnegie Learning: account research time cut by 92%, from up to an hour to 5-10 minutes
  • Trustpilot: win rates up 36%
  • Uber: email conversion up 60% and ad sales 83% faster

Where it works best: high inbound lead volume, long lists of small accounts, and teams where reps spend hours on research and CRM updates. If quoting is your bottleneck, pair this with our Salesforce CPQ work.

Agentforce for Marketing

The Campaign Agent in Marketing Cloud builds a campaign from a goal: it drafts the brief, suggests the audience segment, writes first-draft content and sets up the journey for review. Marketers approve, edit and launch.

Use cases we see make sense

  • Turning a one-line campaign goal into a brief and segment in minutes
  • Personalising email and SMS content by segment without writing every variant by hand
  • Answering questions from website visitors and passing qualified ones to sales
  • Suggesting changes to a live journey based on performance

Published results: 360 MMS reports campaign build time cut 16 times. Goodyear and Equinix both use Agentforce to scale targeted campaigns and lead generation.

Agents are only as good as the data behind them, so marketing use cases depend heavily on clean, unified profiles. That is the job of Data Cloud. See our Salesforce Data Cloud consulting page and our Marketing Cloud services.

Agentforce for Commerce

Commerce agents work on both sides of the store.

For shoppers

  • A shopping assistant on the storefront that answers product questions, compares items and recommends products based on what the customer says
  • Order tracking, returns and exchanges handled in chat or on WhatsApp
  • For B2B buyers, reordering and quick quotes from past orders

For merchants

  • Writing product descriptions and category copy
  • Setting up promotions from a plain-language instruction
  • Spotting stock or conversion problems and suggesting fixes

Published results: Grupo Falabella moved 71% of digital service interactions to WhatsApp within three weeks. Advanced Turf Solutions uses Agentforce to answer online product questions and send the right PDFs. Saks uses it for routine inquiries so staff can focus on personal service.

Commerce agents need clean product, order and inventory data. If your store runs on Shopify, Magento or BigCommerce rather than Commerce Cloud, that data must first flow into Salesforce. Our guide to Salesforce ecommerce integrations explains how. See our Salesforce Commerce Cloud page.

Agentforce use cases in other teams

  • HR and recruiting: Capita reports time-to-hire cut from months to as little as 24 hours; Adecco uses agents for resume screening and interview scheduling
  • Field service: agents prepare work briefs, schedule jobs and suggest fixes to technicians
  • Financial services: Hero FinCorp reports loan approval in 30 minutes with 75% straight-through processing
  • Healthcare: appointment booking, reminders and patient FAQs (Amplifon runs this across nearly 10,000 locations)
  • Nonprofit: Good360 matches donated goods to communities three times faster. See our Nonprofit Cloud page

How to choose your first Agentforce use case

Pick the first agent with four questions:

  1. Is the volume high? Hundreds of similar requests a week, not ten.
  2. Is the answer already written down? Knowledge articles, policies, product data.
  3. Can the action be done in Salesforce? A Flow or API already exists for it.
  4. Is the risk low if the agent gets it wrong? Start where a mistake is easy to fix.

For most companies this points to one of three starters: service FAQs and order status, inbound lead response, or after-hours voice.

Use caseTypical first winMain dependency
Service FAQs and order statusDeflection and faster repliesGood knowledge base
Inbound lead response (SDR)Faster speed to leadClean lead and product data
After-hours voiceCalls answered 24/7Telephony setup and call flows
Campaign buildingFaster launchUnified customer data
Commerce assistantHigher self-serviceProduct and order data in Salesforce

What a Salesforce AI implementation needs before go-live

  • Clean data: duplicates and missing fields lead straight to wrong answers
  • Permissions: the agent should only see and change what its role allows
  • Guardrails and topics: clear instructions on what the agent must and must not do
  • Testing: run real past conversations through the agent before customers see it
  • Handoff rules: when and how a human takes over
  • Measurement: agree the metric (deflection, resolution, speed to lead) before launch

Our Agentforce readiness checklist goes through each step in detail.

How Ashapura Softech helps

Ashapura Softech is a certified Salesforce partner (see our Salesforce cloud services). Our Salesforce AI services cover use-case selection, data cleanup, agent build in Agentforce Builder, Contact Center and Voice setup, testing and ongoing tuning. Read how to choose an Agentforce implementation partner, or contact us to talk through your first agent.

FAQs

What are the most common Salesforce Agentforce use cases?

Customer service self-service, inbound lead response, sales research and pipeline follow-up, campaign building, commerce shopping assistants and contact center voice.

Is Agentforce only for customer service?

No. Service has the most live deployments, but Salesforce ships agents for sales, marketing, commerce, field service and employee support.

What is Agentforce Contact Center?

Salesforce’s native contact center, generally available since March 2026, combining voice, digital channels, routing, recording, transcription and AI agents inside Salesforce.

Does Agentforce Voice replace my phone system?

Not necessarily. It works with Amazon Connect, Five9, Genesys, NICE and Vonage, so you can keep your existing telephony.

How long does a first Agentforce use case take?

It depends on data quality and scope. A focused service or lead-response agent on clean data is a much shorter project than a multi-channel contact center rollout.

Where does AIforce fit with these use cases?

AIforce, announced at Dreamforce on 15 September 2026, is the layer that lets these agents and your Salesforce data be reached from outside the Salesforce interface, through Claude, Slack or Lightning. The use cases above do not change, the surface the user works on does. See What is AIforce for the component breakdown and the new Core, Advanced and Max edition pricing.

Several of these use cases now have a prebuilt agent attached to them. The named agents guide maps Casey, Paige, Carter, Piper, Fin, Marshall and Hunter to the jobs they are scoped for.

Categories
eCommerce Salesforce

Salesforce Ecommerce Integrations: Shopify, Magento, BigCommerce, and Adobe Commerce

“Salesforce ecommerce integration” usually means connecting a separate storefront platform, Shopify, Magento/Adobe Commerce, or BigCommerce, to Salesforce CRM (or Salesforce Commerce Cloud, if that’s the storefront itself) so that order, customer and product data flow into the systems your sales, service and marketing teams actually work in.

Why Integrate a Storefront Platform With Salesforce

Most organizations running Shopify, Magento or BigCommerce aren’t looking to replace their storefront with Salesforce Commerce Cloud. They’re looking to stop re-keying order and customer data by hand between the storefront and Salesforce CRM (Sales Cloud, Service Cloud, or Marketing Cloud). Without integration, a support rep working a case in Service Cloud has no visibility into the customer’s order history sitting in Shopify. A sales rep can’t see ecommerce purchase behavior when working an account. Marketing can’t segment or trigger journeys off real purchase data without exporting and re-importing it manually.

The Four Integration Approaches

Pre-built connector apps. AppExchange listings (for example eShopSync and similar Shopify connectors, or Mageplaza/DCKAP-style apps for Magento and BigCommerce) sync core objects, orders, customers, products, inventory, out of the box with minimal setup. Fastest to deploy, least customizable. A reasonable fit when your data mapping needs are standard and you don’t need custom business logic in the sync itself.

Middleware / iPaaS platforms. Tools like MuleSoft (Salesforce’s own integration platform) or lighter options like Zapier sit between the storefront and Salesforce and let you define field mapping, filtering rules, and when syncs fire (real-time trigger vs scheduled batch). This is the middle ground: more flexible than a pre-built app, far less build effort than custom API work. MuleSoft is the standard choice once you’re connecting more than two systems or need enterprise-grade orchestration and error handling.

Custom API integration. Built directly against the storefront’s REST/GraphQL API (Shopify, Magento, BigCommerce all expose one) and Salesforce’s REST API. Maximum control over exactly what syncs, when, and how conflicts are resolved, but it’s a real engineering commitment to build and maintain, not a weekend project.

Low-code/no-code platforms. Zapier and similar tools work for simple, low-volume automations, a new order creates a lead, a new customer creates a contact, but tend to get expensive and brittle at real ecommerce volume or when the logic gets more complex than a single trigger-action pair.

What Actually Syncs

Regardless of method, the data that typically flows between a storefront and Salesforce includes: customer profiles and contact details, order details (line items, totals, payment and fulfillment status), product catalog and inventory levels, returns/refunds and shipping tracking, and abandoned cart data for marketing follow-up. Where each of these lands in Salesforce depends on your object model, orders might map to Opportunities, to a custom Order object, or to Service Cloud cases for support context, and getting that mapping right up front is most of the actual integration work.

Platform-Specific Notes

Shopify. Shopify’s REST and GraphQL APIs are well documented and widely supported by both AppExchange connectors and MuleSoft connectors, making it generally the most straightforward of the three to integrate.

Magento / Adobe Commerce. As a self-hosted or cloud-hosted platform with deep customization potential, Magento integrations are more often custom or semi-custom, especially where the storefront itself has been heavily modified. Budget more discovery time here to map what’s actually been built on top of the base platform.

BigCommerce. Positioned similarly to Shopify as a SaaS platform with a documented API, BigCommerce integrations follow the same connector-or-middleware pattern, with the specific app ecosystem being smaller than Shopify’s.

Where Integrations Commonly Go Wrong

The recurring failure pattern isn’t the initial sync, it’s what happens after: no clear ownership of which system is the source of truth for a given field, sync errors that fail silently instead of alerting anyone, and object mapping decisions made without input from the teams (sales, service, marketing) who’ll actually use the resulting data. Getting the data model and error-handling plan right before building beats getting the connector working fast.

Salesforce Magento (Adobe Commerce) Integration

Magento, now branded Adobe Commerce, is the most common storefront to find heavily customized in the wild. Because it’s self-hosted (or Adobe Commerce Cloud-hosted) and open at the code level, organizations tend to have built custom modules, non-standard checkout flows, and bespoke product attribute sets on top of the base platform over several years. That has one direct consequence for a Salesforce integration: discovery takes longer here than on Shopify or BigCommerce, because “what does this store actually do” isn’t fully answered by reading Magento’s standard documentation.

Technically, Magento exposes both a REST and a GraphQL API, and the integration methods are the same four covered above, pre-built connectors (Mageplaza and similar are common names in this space), MuleSoft or another middleware layer, or a custom build against the API. For a heavily customized Magento instance, a semi-custom approach, middleware plus some custom mapping logic, is usually the realistic middle ground: a pure pre-built connector often can’t account for custom attributes or a non-standard checkout, and a fully custom build is more engineering than most catalogs justify.

What to check before scoping a Magento-Salesforce integration: which Magento version (the API surface and supported connectors differ between Magento 1 legacy installs, which are end-of-life, and Magento 2/Adobe Commerce), whether the storefront is self-hosted or Adobe-hosted, and an honest inventory of custom modules touching order, customer or product data.

Salesforce BigCommerce Integration

BigCommerce sits closer to Shopify than to Magento in how a Salesforce integration typically plays out: it’s a SaaS platform with a documented, well-maintained REST API, so most integrations don’t need to reverse-engineer custom store logic the way a heavily modified Magento build does. The gap versus Shopify is ecosystem size, BigCommerce’s pre-built connector and app marketplace for Salesforce specifically is smaller, so a standard mapping (orders, customers, inventory, products) is more likely to need a middleware layer like MuleSoft or a thin custom build rather than a single-click AppExchange install.

BigCommerce’s multi-storefront capability (one catalog serving several branded storefronts) is worth flagging early if it applies, since it changes how order and customer data should map into Salesforce: decide up front whether each storefront maps to a separate business unit or account segment in Salesforce, or whether they roll up into one view, before building the sync, not after.

Salesforce for Retail and Ecommerce: Where This Fits

“Salesforce for ecommerce” covers more ground than just connecting a storefront. For a retail or DTC brand, Salesforce usually shows up in one of three shapes: Salesforce Commerce Cloud as the storefront itself (a replacement for Shopify/Magento/BigCommerce, not an integration with them), Salesforce CRM (Sales Cloud, Service Cloud, Marketing Cloud) connected to an existing storefront (the integration work this page covers), or a hybrid where Commerce Cloud runs alongside CRM for a unified retail stack.

Which shape makes sense depends mostly on where the pain actually is. If the storefront itself is working fine but customer service, sales visibility, or marketing segmentation are the gap, integrating your existing Shopify/Magento/BigCommerce store with Salesforce CRM (as covered above) solves that without a storefront migration. If the storefront platform itself is the limiting factor, headless commerce needs, complex B2B/B2C hybrid catalogs, deep personalization, that’s a Salesforce Commerce Cloud conversation, and a materially bigger project than an integration.

How Ashapura Softech Helps With Salesforce Ecommerce Integration

Ashapura Softech is a certified Salesforce partner with a team that builds both the storefront and the CRM side. Depending on where you are starting, we can help with:

For further reading, see what AI commerce agents need from your ERP and CRM, how the Salesforce editions compare, how shipment tracking improves the customer experience, starting an ecommerce business and choosing a Salesforce managed services provider.

If you plan to add AI agents to your store later, our guide to Agentforce use cases covers shopping assistants, order tracking and merchant agents.

FAQs

Do I need Salesforce Commerce Cloud to integrate Shopify or Magento with Salesforce?

No. Salesforce Commerce Cloud is a separate, competing storefront product. Shopify, Magento and BigCommerce all integrate with Salesforce CRM (Sales Cloud, Service Cloud, Marketing Cloud) independently of Commerce Cloud.

What’s the fastest way to get started?

A pre-built AppExchange connector for your specific storefront platform, if your data mapping needs are standard. Move to middleware (MuleSoft) or custom API work only once you hit a mapping or logic requirement the connector app can’t handle.

Is real-time sync necessary?

Depends on the use case. Order and inventory data usually benefits from real-time or near-real-time sync to avoid overselling and give support reps current information. Less time-sensitive data (historical reporting, batch segment updates) can run on a scheduled sync without issue.

Categories
Agentforce Salesforce

What Is Salesforce Headless 360? The Architecture Behind Agentic CRM

Quick answer

Headless 360 is the API driven layer Salesforce announced at TDX 2026 that lets AI agents read, write and reason over Salesforce data without opening the Salesforce interface. It does not replace your org. It exposes the same data, workflows and business rules to an agent through MCP servers, under the permissions that user already has. It is also the foundation the Claudeforce partnership is built on.

Update (14 Sep 2026): On 11 Sep 2026 Salesforce announced a new portfolio of named, job-ready Agentforce agents built for specific high-value work: Casey (customer service), Paige (IT and HR service), Carter (shopper agent for e-commerce), Marshall (supply chain orchestration), Piper (inbound lead generation) and Fin (complex customer experience), all generally available now, plus Hunter (outbound sales), in pilot with general availability expected November 2026. The release also adds long-horizon runtime so agents can pursue goals over days or weeks rather than single interactions, AI Skills for teaching agents new tasks (pilot now, GA October 2026), multi-agent orchestration across workflows, and an Agent Optimizer for continuous performance tuning (GA October 2026). This sits on top of the Core, Advanced and Max editions Salesforce introduced in early September.

When Salesforce put its CRM inside Claude in August 2026, the reaction focused on the plugin. The more interesting question is why it was possible at all. The answer is a piece of architecture Salesforce announced four months earlier, and it deserves more attention than it got.

Headless 360 is the reason an external AI agent can read your pipeline, update an opportunity and respect your sharing rules without anyone opening a Salesforce tab.

What Headless 360 actually is

Salesforce’s own definition: “an architectural transformation that exposes every capability Salesforce has built over 25 years directly as an API, a Model Context Protocol (MCP) tool, or a CLI command.”

It was announced on 15 April 2026 at TDX 2026 in San Francisco, under the headline “No Browser Required.”

The framing from the announcement is the clearest statement of intent Salesforce has made about where the platform is going:

In the agentic enterprise, humans aren’t the only ones navigating. Agents are too, and they don’t go to a browser or click through UIs.

The scale involved: 4,000+ existing APIs, 220+ CLI commands, 60+ MCP tools and 30+ prebuilt coding skills, all reachable by an agent that has never rendered a Salesforce page.

One thing it is not, in Salesforce’s own words: “Headless 360 does not replace the Salesforce interface you work in every day.” The panic in some admin communities after the “no browser required” headline was understandable and misplaced.

The four pillars

PillarWhat it provides
Skills30+ prebuilt skills giving coding agents such as Claude Code, Cursor and Windsurf the knowledge to discover, understand and act on Salesforce natively
MCP and APIs60+ MCP tools plus the full suite of Salesforce APIs
MetadataOrg-aware grounding, so an agent understands your objects, fields and configuration rather than guessing
Headless Experience LayerA rendering layer that surfaces Salesforce experiences into Slack, Teams, WhatsApp and voice

The metadata pillar is the one that separates this from a generic API integration. An agent hitting a REST endpoint knows the schema. An agent grounded in org metadata knows that your Stage picklist has a value called “Verbal Commit” that means something specific in your business.

The MCP servers Salesforce has shipped

Salesforce’s hosted MCP servers reached general availability on 29 April 2026. The current catalogue:

ServerStatusWhat it exposes
SObject AllGAFull CRUD plus query and search across all Salesforce objects
SObject ReadsGARead and query only, no mutations
SObject MutationsGACreate and update, no delete
SObject DeletesGADelete only
Data 360GAQuery unified customer data, roughly 200 Data 360 APIs
Headless 360BetaSalesforce Setup and platform capabilities via Discover, Describe and Dispatch
Tableau NextGASemantic models, KPI queries, analytics execution
Marketing EngagementGAJourneys, campaigns, data extensions, content
Slackbot MCP ClientGAConnects Slackbot to Salesforce and 20+ partner apps

The separation of reads, mutations and deletes into distinct servers is a deliberate governance decision, and a sensible one. Activating SObject Reads alone lets an agent answer questions without ever being able to change anything.

The Headless 360 MCP server itself

Still in beta as of July 2026, and narrower than the name suggests. It exposes exactly four tools:

  • discover – semantic search across a vector index of APIs and skills, returning ranked candidates
  • describe – returns the technical contract: APIs, parameters, dependencies and the ordered steps
  • dispatch – invokes the skill, routes to the endpoint and enforces user access guards
  • dispatch_readonly – the same, restricted to GET operations

Roughly 100 skills at launch, focused on Setup tasks for admins: user management, password operations, permission assignment, Apex trigger management, platform events, Change Data Capture, event relays and named credential configuration. Salesforce says thousands more are in development.

Worth being clear about the beta status. This is a Beta Service under Salesforce’s beta terms, and the skill library is thin relative to the ambition of the announcement.

How your permissions survive the trip

This is the part that determines whether Headless 360 is a governance breakthrough or a security incident waiting to happen.

Salesforce’s clearest statement, from the beta announcement:

If you can’t do it in Salesforce, your agent can’t do it through the MCP server.

Every transaction runs as the authenticated user, scoped through an external client app holding the mcp_api scope. Authentication is per-user OAuth 2.0 with PKCE.

Salesforce describes four enforcement layers on every call:

  1. Identity – the agent acts as a specific user, not an anonymous service account
  2. Access – sharing rules, field-level security and permission sets apply
  3. Invocation scope – only explicitly exposed tools and actions are available
  4. Governance – validation rules, triggers, approval chains and governor limits all fire

Patrick Stokes, Salesforce’s president of applications and marketing, put it bluntly when describing the Claude plugin: if you don’t own a record or have permission to see it, the MCP server doesn’t either.

The sentence every admin should read twice

From Salesforce’s own admin blog:

When an agent acts on behalf of a user, it can do anything that user is permitted to do.

That is the whole risk model in one line. Permission inheritance is only a safety feature if the permissions are correct. Every over-provisioned profile in your org – the one that got view-all on a standard object during go-live because it was the fastest fix – has just become an agent-reachable surface.

It was survivable when exploiting it required someone to log in and know where to look. It is materially less survivable when a colleague can ask a question in plain English and an agent will go and find the answer.

This is why a permission-model audit is no longer housekeeping. It is a security control, and it belongs before the pilot rather than after it. Our Agentforce readiness checklist covers exactly what that audit should look for, and our Claudeforce breakdown explains why it became urgent this quarter.

Salesforce also documents a client-side control worth using: MCP clients support tool-level restrictions that require human approval before an agent action executes. Salesforce’s own recommendation is to configure these before allowing configuration changes or data modification, and to test in a sandbox first.

What it actually takes to switch on

Standard MCP servers are inactive by default. Four steps to get an external agent connected:

1. Activate the server. Setup, search for “MCP Servers,” open the Salesforce Servers tab, select the server and click Activate. Copy the API name (drop the platform prefix) and the server URL.

2. Create an External Client App. Setup, External Client App Manager, New External Client App. Then:

  • Enable OAuth
  • Set the callback URL your client expects
  • Add exactly two scopes: “Perform requests at any time” (refresh_token, offline_access) and “Access Salesforce Hosted MCP Servers” (mcp_api)
  • Uncheck “Require secret for Web Server Flow” and “Require secret for Refresh Token Flow”
  • Check “Require Proof Key for Code Exchange (PKCE)” and “Issue JWT-based access tokens for named users”
  • Collect the consumer key and secret from OAuth Settings

3. Connect the client using its MCP add command with the server URL, consumer key and callback port, then authenticate and grant access.

4. Test before you trust it. Salesforce recommends Postman for a smoke test.

Server URLs follow the pattern https://api.salesforce.com/platform/mcp/v1/<SERVER-NAME> for production, with /sandbox/ inserted for sandbox and scratch orgs. API version 67.0 or later is required.

Two gotchas practitioners report that Salesforce’s guide does not mention: PKCE may need enabling globally first under Setup, OAuth and OpenID Connect Settings, and a newly created External Client App can take up to 30 minutes to become usable.

Where the gaps are

Headless 360 is a genuine engineering achievement with three honest weaknesses worth knowing before you plan around it.

Salesforce built the access layer, not the governance layer. There are no quality checks on agent-generated code, no technical-debt assessment, no naming-convention enforcement, no automation-chain validation. Salesforce shipped Testing Center, Custom Scoring Evals, Observability and Session Tracing, which help, but observation is not the same as control. General-purpose code scanners cannot see Salesforce-native concerns such as governor limits, Flow complexity or metadata dependencies.

The builder gap is real. Vernon Keenan’s TDX coverage made the sharpest version of this argument: pro-code developers gained a substantial agentic toolkit while admins and Flow builders got very little, with no visible bridge programme to retool the existing ecosystem. If your Salesforce capability sits mostly with admins rather than developers, Headless 360 does not currently meet you where you are.

Testing headless agents is harder than testing Flows. The debugging habits built around Flow and Apex do not transfer cleanly, which is precisely why Salesforce had to build separate evaluation tooling. Budget for the learning curve.

Bulk operations deserve specific attention. A user with delete rights can, in principle, instruct an agent to delete records at scale. Mitigate with Transaction Security Policies, or by activating SObject Reads rather than SObject All, or by blocking delete tools client-side.

What it costs

Salesforce has published no Headless 360 rate card, and this is the single least documented part of the story.

What is officially stated: MCP access “is included with Enterprise Edition and above – there’s no separate SKU required,” the MCP server “will use your existing API limits,” and “Flex Credits apply when you invoke Agentforce actions, run Data 360 queries, or use Prompt Builder.”

What is not stated: any per-API-call or per-MCP-call price. When CIO asked how API and MCP interactions under Headless 360 are currently billed, Salesforce declined to comment. Salesforce’s CRO said publicly that the company will work with customers “to find the right ways in a fair way to monetize those new interactions.”

The practical read: assume existing API-limit accounting plus Flex Credits on downstream agent work, and get whatever you are told in writing before you scale. Our Agentforce pricing breakdown covers the credit rate card in detail.

How this connects to the rest of the platform

Headless 360 sits inside the wider architecture Salesforce now describes as five systems: Agentforce as the system of agency, Slack as the system of engagement, Tableau as the system of insight, Customer 360 as the system of record, and Data 360 as the system of context.

Two clarifications worth making because commentary keeps blurring them:

Agentforce and MCP are complementary, not competing. Agentforce is where you choose the model and build the agent. MCP is what exposes skills and knowledge to an agent, wherever that agent lives.

Salesforce has not published a link between Headless 360 and the Atlas Reasoning Engine. No primary source connects the two, and Salesforce’s Atlas documentation does not mention Headless 360. The honest framing is that Headless 360 is the access and invocation layer while Atlas is the reasoning layer inside Agentforce. How, or whether, Atlas plans over Headless 360 skills is not documented.

There is also a naming inconsistency worth noting. The Claudeforce press release attributes the plugin’s foundation to AIforce, described as “Salesforce’s enterprise harness that connects business data and workflows to agents through MCP servers, APIs, and CLI tools” – which is Headless 360’s description in substance, under a different name. Salesforce has not published a statement equating them.

What to do about it

If you are an admin: audit your permission model before anything else. Profiles and permission sets with broader access than anyone remembers granting are now the highest-priority item on your list. Then activate the narrowest server that does the job – SObject Reads before SObject All.

If you are a developer: start with the Salesforce DX MCP Server locally and the hosted servers in a scratch org. The Trailhead module and the developer workshop are both current and worth the hour.

If you own the platform: the questions to get answered before a production rollout are what gets logged, what gets retained, where, and how consumption will be billed as volume grows.

If you are a partner or SI: the governance layer between Salesforce’s access layer and a production deployment is not built. That gap is billable work – permission architecture, MCP scoping, agent testing strategy and consumption forecasting. Firms with offshore delivery capacity to staff it have more addressable scope than they did a quarter ago.

Frequently asked questions

What is Salesforce Headless 360?

Headless 360 is a Salesforce architecture that exposes the platform’s capabilities as APIs, Model Context Protocol tools and CLI commands, so AI agents can use Salesforce data, workflows and governance rules without a user interface. It was announced on 15 April 2026 at TDX 2026.

Does Headless 360 replace the Salesforce UI?

No. Salesforce states directly that Headless 360 does not replace the Salesforce interface, which is not going away. It adds a second way in for agents.

How does Headless 360 handle permissions?

Every call runs as the authenticated user via OAuth 2.0 with PKCE. Sharing rules, field-level security, permission sets, validation rules, triggers, approval chains and governor limits all apply. Salesforce’s summary is that if you cannot do it in Salesforce, your agent cannot do it through the MCP server.

What MCP servers does Salesforce offer?

SObject All, SObject Reads, SObject Mutations, SObject Deletes, Data 360, Tableau Next and Marketing Engagement are generally available. The Headless 360 MCP server is in beta. A Slackbot MCP Client is generally available and requires Enterprise Edition or above.

What does Headless 360 cost?

Salesforce has published no separate rate card. MCP access is included on Enterprise Edition and above, calls use existing API limits, and Flex Credits apply when an Agentforce action, Data 360 query or prompt runs. Salesforce declined to comment when asked how API and MCP interactions are currently billed.

Is Headless 360 what powers Salesforce in Claude?

Reporting on the Claudeforce launch says the plugin is built on Headless 360. Salesforce’s own press release attributes it to “AIforce,” described in almost identical terms. The two are very likely the same substrate under different names, but Salesforce has not published a statement equating them.

Sources

If you are looking at the non Salesforce route, the same permission and data questions come up in what your ERP and CRM must provide before you build a Claude commerce agent.

Ashapura Softech is a certified Salesforce implementation partner. If you want your org’s permission model audited before you expose it to agents, book a CRM health check. See also our Salesforce DevOps services and Salesforce cloud services.

Categories
Agentforce Salesforce

Is Your Salesforce Org Ready for AI Agents? A 2026 Readiness Checklist

Update (14 Sep 2026): On 11 Sep 2026 Salesforce announced a new portfolio of named, job-ready Agentforce agents built for specific high-value work: Casey (customer service), Paige (IT and HR service), Carter (shopper agent for e-commerce), Marshall (supply chain orchestration), Piper (inbound lead generation) and Fin (complex customer experience), all generally available now, plus Hunter (outbound sales), in pilot with general availability expected November 2026. The release also adds long-horizon runtime so agents can pursue goals over days or weeks rather than single interactions, AI Skills for teaching agents new tasks (pilot now, GA October 2026), multi-agent orchestration across workflows, and an Agent Optimizer for continuous performance tuning (GA October 2026). This sits on top of the Core, Advanced and Max editions Salesforce introduced in early September.

Most Agentforce pilots do not fail because the model is not good enough. They fail because the org underneath it was never built for something that reads everything, believes what it reads, and acts on it in seconds.

This is the assessment we run before any agentic rollout. It takes about a week for a mid-sized org, it is mostly reporting rather than development, and it will tell you whether you are eight weeks from a pilot or eight months.

Why readiness got harder in 2026

Two things changed this year, and both raise the cost of a messy org.

Salesforce shipped Headless 360 in April, exposing the platform as APIs and MCP tools that external agents can call without a browser. Then in August, Claudeforce put a Salesforce plugin inside Claude with 37 prebuilt sales skills.

Both inherit each user’s existing Salesforce permissions. Salesforce presents that as the security story, and it is a good one – but read the sentence from Salesforce’s own admin blog carefully:

When an agent acts on behalf of a user, it can do anything that user is permitted to do.

Permission inheritance is only a safety feature if the permissions are correct. That is the whole readiness argument in one line.

Pillar 1: Data quality

An agent cannot tell the difference between a stale record and a current one. It will read your pipeline exactly as it stands and produce a confident, fluent, wrong answer.

Run these five reports before anything else. All are standard reporting, none require development.

CheckWhat good looks likeWhat it breaks
Duplicate account and contact rateUnder 2%Account planning, customer health, stakeholder mapping
Open opportunities with a close date in the pastUnder 5%Every forecast narrative the agent produces
Open opportunities with no activity in 30 daysUnder 15%Deal health scoring, pipeline review
Opportunities with an empty next stepUnder 10%Close planning, daily briefings
Contacts with no role on the opportunityUnder 20%Stakeholder mapping, meeting prep

If 30% of your open opportunities have a close date in the past, a forecast narrative generated from that pipeline does active harm. It reads as authoritative, and someone will act on it.

The fix is rarely a data cleanse. It is usually a validation rule and a process change, because the same conditions will regenerate within two quarters otherwise. Clean once, then enforce.

The field that lies

Every org has fields that are mandatory in process but optional in the schema. A rep is told to fill in Competitor and Loss Reason, nobody enforces it, and 60% are blank.

A human reading the record knows to discount the field. An agent asked “why are we losing to competitor X” will answer from the 40% that is populated and present it as the picture. Selection bias, delivered with total confidence.

List every field your business treats as required and check whether the schema agrees. Where it does not, either enforce it or stop treating the field as a source of truth.

Pillar 2: Permissions

This is the pillar that moved from housekeeping to security control, and it is where we find the most serious findings in almost every assessment.

What to pull:

  • Every profile and permission set with View All or Modify All on a standard object
  • Every profile with Export Reports
  • Sharing rules granting broader access than the role hierarchy implies
  • Integration users with elevated permissions and no owner
  • Users with permissions inherited from a role they no longer hold

What you will find, in our experience of running this: at least one profile that got View All on a standard object during the original go-live because it was the fastest way to unblock a deadline, and which nobody has revisited since.

That was survivable when exploiting it required logging in and knowing exactly where to look. It is much less survivable when any user with that profile can ask a plain-English question and have an agent go and find the answer across every record they technically can see.

The remediation sequence:

  1. Inventory the over-provisioned profiles
  2. Find out who actually uses the access, from login and report-export history
  3. Move genuine needs into a narrow permission set
  4. Remove the blanket grant
  5. Retest the affected workflows before you go near an agent

Budget three to four weeks for a mid-sized org. This is the item that most often turns an “eight week” pilot into a quarter, and skipping it is not an option once agents are reading on a user’s behalf.

Pillar 3: Business logic

When work starts in Claude or Slack and finishes in Salesforce, your page layouts stop being where behaviour is governed.

Anything you enforced through interface design – a field that only appears at a certain stage, a button that only some users see, a required field on a specific record type – has to be re-enforced somewhere an agent will encounter it. That means validation rules, flows and the sharing model.

The audit:

  • List every business rule currently enforced only by a page layout or a Lightning component
  • Check each one has an equivalent validation rule or flow
  • Identify flows that assume a human is present – screen flows, confirmation prompts, anything waiting on input
  • Find automations that fire on field update and could loop when an agent writes at speed

That last one matters more than it sounds. Automation chains built for human-paced data entry behave differently when something writes forty records in a minute. Governor limits do fire on agent traffic, which is a protection, but hitting them mid-workflow produces partial states nobody designed for.

If your business logic lives in a mix of Apex, flows and process builders accumulated over years, this is the right moment to consolidate it. That is Salesforce DevOps work – version control, a release process, a test suite – and it is the difference between a platform an agent can be trusted with and one it cannot.

Pillar 4: Process

Two questions decide whether a pilot produces a budget line or an anecdote.

Which single workflow are you piloting? Not which platform. One skill, with a measurable before-and-after. Meeting prep and pipeline review are the strongest candidates because both have a time cost you can measure this week without instrumentation.

How will you know it worked? Establish the baseline before you turn anything on:

  • Minutes per rep per week on the task today, from a sample of five reps over one week
  • The same measurement after four weeks of agent use
  • An accuracy check by a sales manager on a sample of twenty outputs
  • Whether reps still do the task manually as well, which is the failure mode nobody reports

Resist enabling everything at once. A pilot proving one workflow converts into a budget. A pilot enabling 37 skills produces enthusiasm that evaporates at the next quarterly review. The same principle applies to Sales Cloud ROI work: one workflow, one baseline, one number.

Pillar 5: Measurement and governance

Adoption metrics change meaning. If sellers begin their day in Claude or Slack, Salesforce login counts stop being a proxy for usage. Decide now what replaces them, or you will spend Q1 arguing about a metric that no longer measures anything.

Training changes shape. You are teaching prompting and verification rather than navigation. The most important skill you can build in a sales team is the habit of checking an agent’s output against the record before acting on it. That habit is easy to build in week one and nearly impossible to retrofit after someone has been burned.

Consumption needs an owner. Agentforce meters on Flex Credits, and credits expire at the order end date with no rollover. Somebody has to watch the burn rate monthly. Our Agentforce pricing breakdown covers the rate card and where budgets typically go wrong.

The regulated-industry additions

If you are in financial services, healthcare or life sciences, three more items apply, and they should start before procurement rather than after.

Get the data flow diagram for each deployment path. A single request may touch the model provider, Amazon Bedrock and Salesforce. Ask where data rests and where it is processed at each hop. Salesforce’s Trust Boundary answers this for the Agentforce path by running inference inside its own virtual private cloud. It does not obviously answer it for an external plugin path.

Ask what is logged and retained, and for how long. Then check that answer against your own retention policy rather than assuming they align.

Reuse your existing review template. If you have integrated an EHR or a core banking system, you already have the muscle for this. Teams running Salesforce Health Cloud under HIPAA will recognise most of the questions.

The checklist, condensed

Print this. It is the whole assessment on one page.

Data

  • Duplicate account and contact rate measured
  • Open opportunities with past close dates measured
  • Open opportunities with no 30-day activity measured
  • Empty next-step fields measured
  • Process-required but schema-optional fields listed
  • Validation rules added so the same problems do not regenerate

Permissions

  • All View All and Modify All grants inventoried
  • Report-export permissions reviewed
  • Sharing rules checked against the role hierarchy
  • Integration users audited and given owners
  • Over-provisioned access narrowed into permission sets
  • Affected workflows retested after remediation

Business logic

  • Rules enforced only by page layouts identified
  • Equivalent validation rules or flows in place
  • Human-dependent flows flagged
  • Automation loops on rapid writes tested
  • Business logic under version control

Process

  • One pilot workflow chosen
  • Baseline measured before enabling anything
  • Accuracy review assigned to a named manager
  • Success threshold agreed in advance

Measurement

  • Replacement adoption metric agreed
  • Prompting and verification training planned
  • Consumption owner named
  • Monthly credit burn review scheduled

Regulated industries

  • Data flow diagram obtained for each deployment path
  • Logging and retention confirmed against your own policy
  • Security review completed pre-purchase

How long this actually takes

For a mid-sized org with a Salesforce implementation more than three years old:

PhaseDurationWho
Data quality assessment3-5 daysAdmin or analyst, reporting only
Permission audit1 week to assess, 3-4 weeks to remediateAdmin plus security review
Business logic review1-2 weeksDeveloper or architect
Pilot design and baseline1 weekRevOps
Pilot run4 weeksOne team

Roughly eight to ten weeks from start to a pilot with a defensible number attached. Orgs that have kept their permission model tight can do it in five.

The permission remediation is the long pole, and it is also the item most likely to be skipped under deadline pressure. Do not skip it. It is the one whose failure mode is a data exposure rather than a disappointing demo.
Once your org is ready, the next question is where to start. Our guide to Salesforce Agentforce use cases shows what companies have put live in sales, service, marketing, commerce and the contact center.

This checklist matters even if you never build a custom agent. Agentforce Coworker, the AI assistant in the Salesforce search bar, has been switched on automatically in many orgs since August 2026, and it answers questions from whatever your sharing rules allow. See our Agentforce Coworker guide for eligibility, cost and the opt out setting.

Readiness also depends on the release you are on. Our guide to the Salesforce Winter ’27 release lists the 15 changes to test before GA, including Flow Test Mode and new Agentforce quality scoring.

Frequently asked questions

What is an Agentforce readiness assessment?

A structured review of whether a Salesforce org can support AI agents safely and usefully. It covers data quality, permission architecture, business logic placement, pilot design and consumption governance. It is mostly reporting and analysis rather than development work.

How clean does CRM data need to be for Agentforce?

Cleaner than most orgs are. As practical thresholds: duplicates under 2%, open opportunities with past close dates under 5%, and open opportunities with no 30-day activity under 15%. Beyond those levels, agent output degrades in ways that are hard to spot because it still reads fluently.

Why does the permission model matter more with AI agents?

Because agents inherit each user’s existing Salesforce permissions. Salesforce’s own admin guidance states that an agent acting on a user’s behalf can do anything that user is permitted to do. Over-provisioned access that was survivable when it required manual effort becomes reachable through a plain-English question.

How long does it take to get ready for Agentforce?

Eight to ten weeks for a typical mid-sized org, of which permission remediation is three to four. Orgs with a well-maintained permission model can be ready in about five weeks.

Should we pilot every Agentforce skill at once?

No. Pick one workflow with a measurable time cost, baseline it before you enable anything, and have a sales manager review a sample of outputs for accuracy. One proven workflow converts into budget. Thirty-seven enabled at once produces anecdotes.

What changes for Salesforce admins when agents arrive?

The interface stops being the control surface. Anything enforced through page layouts or component visibility has to move into validation rules, flows and the sharing model. That is more admin work, not less, and it is harder to skip.

Sources

Ashapura Softech is a certified Salesforce implementation partner. Once the readiness gaps are clear the next step is vetting the vendor, and our list of nine questions to ask an Agentforce partner covers what to put in front of them. We run this assessment as a fixed-scope CRM health check covering data quality, permission architecture and automation debt – book one here. See also our CRM software development and Salesforce cloud services, or the delivery work in our case studies.

Editions note, September 2026: Agentforce now ships inside every tier of Salesforce’s new Core, Advanced and Max editions rather than as an add on, which changes what a readiness conversation has to cover. See what replaced Enterprise and Unlimited.

Related reading: readiness is not only an org question, it is a systems question. See the ERP and CRM readiness checklist for Claude Commerce Agents, including which platforms have connectors today.

Categories
Agentforce Salesforce

Agentforce Pricing Explained (2026): Flex Credits, Conversations and Pay-Per-Resolution

Quick answer

There is no single Agentforce price. Flex Credits are sold at $500 per 100,000 credits, which works out to $0.10 for a standard agent action and $0.15 for a voice action on the Salesforce rate card effective 21 April 2026. The older $2 per conversation model is still live, applies only to customer facing agents, and cannot run in the same org as Flex Credits. Sandbox usage is discounted by 20%, and Data 360 usage is metered separately.

Update (14 Sep 2026): On 11 Sep 2026 Salesforce announced a new portfolio of named, job-ready Agentforce agents built for specific high-value work: Casey (customer service), Paige (IT and HR service), Carter (shopper agent for e-commerce), Marshall (supply chain orchestration), Piper (inbound lead generation) and Fin (complex customer experience), all generally available now, plus Hunter (outbound sales), in pilot with general availability expected November 2026. The release also adds long-horizon runtime so agents can pursue goals over days or weeks rather than single interactions, AI Skills for teaching agents new tasks (pilot now, GA October 2026), multi-agent orchestration across workflows, and an Agent Optimizer for continuous performance tuning (GA October 2026). This sits on top of the Core, Advanced and Max editions Salesforce introduced in early September.

Update, September 2026: Core, Advanced and Max replaced these editions

On 3 September 2026 Salesforce replaced Enterprise, Unlimited and Agentforce 1 with three new editions: Core at $195 per user per month with 500,000 Flex Credits, Advanced at $395 with 1 million, and Max at $550 with 2.75 million. Agentforce 1 customers can move to Max at no extra cost, and existing customer pricing on legacy editions is unchanged. The credit mechanics described below still apply, but the edition names and allocations above are the current ones. Full breakdown in our guide to the Core, Advanced and Max editions.

Agentforce pricing has changed three times in eighteen months, and most of the guides available online are describing a version of it that no longer applies. Some are also repeating a metering rule that Salesforce’s own documentation contradicts.

This is the current picture as of August 2026, with every figure taken from Salesforce’s published pricing page, rate cards and help documentation. Where something is not disclosed, we say so rather than estimating.

The four ways Salesforce charges for Agentforce

There is no single Agentforce price. There are four billing mechanisms, and most customers end up on two or three of them at once.

ModelWhat triggers a chargeList priceBest fit
Flex CreditsEach action, prompt, query or voice minute an agent consumes$500 per 100,000 creditsVariable volume, employee-facing agents, voice
ConversationsEach customer-facing conversation session$2 per conversationHigh-action conversations where a flat session price wins
Pay-per-resolutionOnly when the Help Agent resolves an issue end to end$2 per resolutionCustomer self-service where deflection is the goal
Per-user add-onsNamed user, flat monthly$125/user/month, $150 for IndustriesPredictable internal use by a defined team

The first thing to understand is that Flex Credits did not replace the $2 conversation model. Both are live on Salesforce’s pricing page today and the buyer chooses. Conversations are restricted to customer-facing agents; Flex Credits cover customer-facing, employee-facing and voice.

Agentic Work Units are not a price

This is worth stating plainly because a large amount of commentary has it wrong, including some that quotes executives loosely.

Salesforce’s own definition: an Agentic Work Unit is “a platform-level metric that captures the breadth of activity happening across the Agentic Enterprise, from Agentforce to Slack.” It counts “one discrete task accomplished by an AI agent” – a prompt processed, a reasoning chain completed, or a tool invoked.

It is a disclosure metric, used in earnings reporting and marketing. Salesforce has published no price per AWU, and no conversion between AWUs and Flex Credits. If you see a blog quoting a dollar figure per Agentic Work Unit, it is somebody’s arithmetic, not Salesforce’s price.

The nearest billable analogue to “one discrete task” is a Flex Credit action at 20 credits, but Salesforce has never equated the two, and neither should you when building a budget.

The Flex Credits rate card, in full

Flex Credits launched in May 2025 at $500 per 100,000 credits – half a cent per credit. Salesforce’s published rate card, effective 21 April 2026:

Usage typeProductionSandbox
Standard action20 credits16
Custom action20 credits16
Standard voice action30 credits24
Custom voice action30 credits24
Starter prompt2 creditsn/a
Basic prompt2 creditsn/a
Standard prompt4 creditsn/a
Advanced prompt16 creditsn/a
Speech-to-text150 credits per hour transcribedn/a
Text-to-speech6,000 credits per 1M charactersn/a
Translation4,000 credits per 1M charactersn/a
Voice minutes60 credits per minute48

At $0.005 a credit, that makes a standard agent action 10 cents, a voice action 15 cents, and a minute of Agentforce Voice 30 cents, rounded up to the next full minute.

Sandbox usage runs at a 20% discount, and Salesforce confirms the sandbox multiplier “applies to pre-production environments, which include sandboxes as well as scratch orgs.”

Data 360 usage is metered separately on a tiered multiplier that resets on the first day of each calendar month, so heavy query volume gets progressively cheaper per row. Queries start at 3 credits per million rows at the base tier and fall to 0.6 at the top tier. Unification is far more expensive at 75,000 credits per million rows. Sandbox Data 360 does not use the tiers.

Two rules that cost people money

Credits expire. Salesforce’s terms are explicit: Flex Credits “must be used before the Order End Date set forth in the Usage Details table on the Order Form, and no rollover will be permitted.” Buying a large pre-purchase block against optimistic adoption forecasts means paying for capacity you then forfeit.

Prompts are chunked, actions are not. Prompt usage is counted in 2,000-token chunks, rounded up – Salesforce’s own worked example is that 6,500 tokens counts as four prompts. Verbose system prompts and over-retrieved knowledge chunks therefore cost real money.

Actions work differently, and this is where a widely repeated claim goes wrong.

The 10,000-token myth

Several well-circulated pricing guides state that an agent action exceeding 10,000 tokens is billed as multiple actions – 15,000 tokens as two actions, 20,001 as three – and attribute this to Salesforce documentation.

Salesforce’s current help documentation on Flex Credits billable usage types says the opposite:

Currently, every standard action called by the agent is metered as one standard action, irrespective of the number of tokens processed.

The 2,000-token chunking rule applies to prompts, not actions. The most likely explanation is that the two rules got conflated, or that those guides are citing a superseded version of the page – note Salesforce’s own hedge in the word “currently.”

Either way, if you have modelled your Agentforce budget on token-multiplied action costs, your forecast is wrong in a direction that will surprise your finance team pleasantly, and you should redo it against the actual rate card before your next renewal conversation.

What you need before you can buy anything

ItemRequirement
Salesforce FoundationsFree, on Enterprise Edition and above. Includes Agentforce Builder, Prompt Builder, Agent Script, Agentforce Coworker and Agentforce Vibes at no cost
Free creditsEnterprise Edition and above get 100,000 Flex Credits free
Agentforce User Licence$5 per user per month, requires Flex Credits, limited CRM object access
Agentforce add-ons$125 per user per month for Sales, Service or Field Service; unmetered employee usage
Agentforce Industries$150 per user per month
Agentforce 1 EditionFrom $550 per user per month, includes an add-on plus 2.5 million Flex Credits per org per year

The practical floor is Enterprise Edition. Below that, the conversation does not start.

Note the internal inconsistency in Salesforce’s own help documentation about the minimum edition for Service Agent specifically – some pages say Enterprise and above, an older page says Performance, Unlimited and Developer. Confirm your exact entitlement with your account executive rather than with a documentation page.

Pay-per-resolution: the model that actually changes the risk

Announced in June 2026 and generally available from July, the Agentforce Help Agent charges $2 per resolution, and only when the agent resolves the issue autonomously from start to finish.

Salesforce’s stated terms: “If a customer gives negative feedback or asks for human escalation, there is no charge.” Both Data 360 and Agentforce actions are unmetered during the interaction.

The headline number is the same $2 as the conversation model, but the risk transfer is completely different. Under conversations you pay whether or not the agent helped. Under pay-per-resolution, a failed interaction costs you nothing.

What counts as one resolution, per Salesforce’s metering definitions:

  • Email – one resolved interaction
  • Enhanced chat and portal – up to two hours of interaction
  • Third-party messaging – up to two hours of interaction
  • Voice – a ten-minute duration limit per resolution

For a service organisation with a well-maintained knowledge base, this is the most defensible Agentforce commercial model available right now, because the vendor carries the quality risk rather than the customer.

Flex Credits or conversations? Do the arithmetic

At 20 credits per action and $0.005 per credit, an action costs 10 cents. A flat conversation costs $2. The break-even therefore sits around twenty actions per conversation.

  • Below twenty actions per conversation, Flex Credits are cheaper
  • Above twenty, the flat conversation price wins

That is straightforward arithmetic on Salesforce’s published rates, not a Salesforce recommendation, and it is worth running against your own transcript data before you sign. Pull a sample of a hundred real service conversations, count the discrete tool calls each would require, and you will know which model to negotiate.

Where budgets actually go wrong

Salesforce publishes rates. It does not publish the behaviour that generates them. Five patterns account for most overruns:

Voice is a different economy. A voice action costs 30 credits rather than 20, and Agentforce Voice also meters at 60 credits per minute, rounded up. A three-minute call is 180 credits before any actions are counted. Agentforce Voice also sits on top of Service Cloud Voice licensing, which is easy to leave out of a business case entirely.

Sandbox iteration compounds. Sandbox is 20% cheaper per action, but a hundred test scenarios at five actions each is 8,000 credits a pass, and nobody tests once. Budget for the build as well as the run.

Guardrail failures burn credits with nothing to show. Every off-topic request that slips through and triggers an action is 20 credits spent on a non-answer.

Retrieval bloat inflates prompt costs. Prompts bill in 2,000-token chunks. An over-eager knowledge retrieval that stuffs eight chunks into context where two would do is a permanent tax on every single interaction.

Nobody has modelled agent-to-agent traffic. Salesforce has not documented how agent-to-agent invocations meter, and we could find no substantive practitioner reporting on it either. If your architecture involves agents calling agents, treat this as an open question to raise in your contract negotiation rather than an assumption to build on.

Headless 360 and Salesforce in Claude: what is and is not priced

With Claudeforce announced in August 2026, the pricing question extends beyond the Salesforce UI.

Headless 360 has no published rate card. Salesforce states that MCP access “is included with Enterprise Edition and above – there’s no separate SKU required,” that the MCP server “will use your existing API limits,” and that “Flex Credits apply when you invoke Agentforce actions, run Data 360 queries, or use Prompt Builder.”

So officially there is no new meter. API calls draw on existing entitlements, and downstream agent work consumes Flex Credits at the standard rate. There is no published per-API-call or per-MCP-call price, and Salesforce declined to comment when CIO asked how these interactions are currently billed. The full architecture is covered in our guide to what Salesforce Headless 360 is.

Salesforce in Claude pricing is not disclosed. The announcement carries only the standard line that “pricing and packaging are subject to change.” Whether it is bundled into an existing entitlement, sold as an add-on, or metered per action has not been stated. Anyone building a business case on it today is guessing.

How to negotiate this properly

Three buying models are available: Pre-Purchase (pay upfront for a fixed block), Pre-Commit (commit to a baseline, billed monthly in arrears) and PayGo (no commitment, monthly in arrears).

The order in which you negotiate matters more than which one you pick.

  1. Model your traffic in credits before you build anything. Estimate actions per interaction, prompt sizes, voice minutes and Data 360 query volume. A spreadsheet built on the rate card above takes an afternoon and changes the shape of the deal.
  2. Negotiate consumption before seats. Seat counts are the easy part of the conversation. Consumption rates and caps are where the money moves.
  3. Get a capped unit rate written into the order form, for the contract term, not the current quarter.
  4. Scope per-user charges to actual users. The $125 add-on is unmetered for that user, which is excellent value for heavy users and pure waste for occasional ones.
  5. Ask what happens to unused credits. They expire at the order end date with no rollover, so the pre-purchase block should be sized to a realistic ramp, not an optimistic one.

If you are running this alongside a broader platform programme, the same discipline that keeps a Salesforce CRM development project on budget applies here: forecast the consumption, then instrument it, then review it monthly. It is also the first thing we check in an Agentforce readiness assessment.

The numbers Salesforce is reporting

For context on how fast this is moving, from Salesforce’s own earnings releases:

MetricQ1 FY27Q2 FY27
Agentforce ARR$1.2B, +205% YoYOver $1.5B, +240% YoY
Agentforce + Data 360 ARRNearly $3.4BNearly $3.9B, +210% YoY
Agentic Work Units (cumulative)3.8B7.0B
Agentic Work Units (in quarter)+111% QoQ3.2B, +97% QoQ

One caveat Salesforce discloses and most coverage omits: “Effective Q2 FY27, Agentforce ARR includes our AI offerings, Slackbot and Headless 360.” The Q1 to Q2 jump is therefore partly demand and partly a definitional change, and Salesforce has not published the split.

One Agentforce feature that often costs nothing extra is Agentforce Coworker: searching CRM data and Slack is included for users on eligible Unmetered seats, while Data 360 answers consume credits. The details are in our Agentforce Coworker guide.

Frequently asked questions

How much does Agentforce cost?

There is no single price. Flex Credits cost $500 per 100,000 credits, which makes a standard agent action about 10 cents. Customer-facing conversations can instead be bought at $2 each. The Agentforce Help Agent charges $2 per autonomously resolved issue. Per-user add-ons are $125 per user per month, or $150 for Industries editions.

What is a Flex Credit worth?

Half a cent. Salesforce sells them at $500 per 100,000 credits. A standard or custom agent action consumes 20 credits, a voice action 30, and a minute of Agentforce Voice 60.

Do Flex Credits expire?

Yes. They must be used before the order end date, and Salesforce permits no rollover.

Is Agentforce free on any edition?

Salesforce Foundations is free on Enterprise Edition and above, and includes Agentforce Builder, Prompt Builder, Agent Script, Agentforce Coworker and Agentforce Vibes. Enterprise Edition and above also receive 100,000 Flex Credits at no cost.

What is an Agentic Work Unit worth in dollars?

Nothing, because it is not a billing unit. Agentic Work Units are a platform-level disclosure metric Salesforce uses in earnings reporting. No price per AWU and no AWU-to-credit conversion has been published.

Is an agent action billed more if it uses more tokens?

No. Salesforce’s documentation states that every standard action is metered as one standard action regardless of tokens processed. The token-chunking rule applies to prompts, which bill in 2,000-token chunks rounded up.

What does Headless 360 cost?

Salesforce has published no separate price. MCP access is included on Enterprise Edition and above, calls draw on existing API limits, and Flex Credits apply when an Agentforce action, Data 360 query or prompt runs.

How much does Salesforce in Claude cost?

Not disclosed. Salesforce has said only that pricing and packaging are subject to change.

Sources

Ashapura Softech is a certified Salesforce implementation partner. If you are budgeting an Agentforce rollout and want the consumption modelled before you sign, book a CRM health check. We cover data quality, permission architecture and consumption forecasting. If you have not shortlisted a vendor yet, start with how to choose an Agentforce implementation partner. You can also browse our Salesforce cloud services.

Connector note: before budgeting agent work, check whether your CRM or ERP actually has a Claude connector. We listed what is and is not on the directory in what your ERP and CRM have to give a Claude commerce agent.

Flex Credits did not stay a standalone line item. At Dreamforce in September 2026 Salesforce folded the credit allowances into its new Core, Advanced and Max editions, so an org pricing Agentforce today is really pricing an edition. Our breakdown of what AIforce actually changed sets out which allowance comes with which tier.

If you are building the business case, our Agentforce implementation partner team can model credit consumption against your real case volumes before you sign.