Claude security directory
Salesforce - Beta
Published by Salesforce
Medium risk
The Salesforce MCP Server lets your teams securely access Customer 360 data and Salesforce capabilities without leaving the chat — all while honoring Salesforce security, permissions, and governance. Knowledge workers ask about pipeline, summarize cases, create campaigns, draft updates, and reason across accounts, opportunities, and more — grounded in real Salesforce data. Builders can use the Salesforce MCP server to configure and customize Salesforce to move their teams faster than ever. The Salesforce Headless 360 MCP Server is a Beta Service. Read our Developer Documentation to learn more: https://developer.salesforce.com/docs/platform/hosted-mcp-servers/guide/headless-360-mcp.html
Security assessment
Plutonium assessed this web connector for permissions, capabilities, and security-relevant behavior.
- Can change or update your information: This connector can edit, rename, overwrite, or otherwise modify records in the connected service. If a request gets manipulated, your data could be altered without you noticing.
- Reads your private information: This connector can read data the connected service holds about you - documents, messages, contact lists, source code, customer records, or saved profile details - and pass it back to the AI.
- Sends your data to outside companies: Anything you share with this connector flows through one or more third-party services. Those companies see, store, and may use the data according to their own policies.
Available capabilities
This add-on exposes 4 tools or capabilities.
- describe
- discover
- dispatch
- dispatch_readonly
The interactive security report will load automatically.