WITHSECURE CLOUD PROTECTION FOR AGENTFORCE
Real-time protection for your Agentforce workflows
Protect your Agentforce use cases against phishing and malware. Scale on your AI journey securely, without disruption.
Real-time detection
Runs inside Salesforce without friction

Safe data means safe AI adoption
Real-time scanning
Unstructured data is scanned the moment ts moves – even in Agentforce workflows.
Native & seamless
100% Salesforce-native. No setup hassle, no added complexity, no slowdown.
Clean data for agents
Agents act on safe data – and don’t pass on threats like malware or phishing.
Compliance-ready
Full audit trails and enterprise-grade certifications.

Agentforce moves fast, most security doesn’t
Salesforce Agentforce unlocks new speed and efficiency, but also new gaps in protection. AI agents can process, share, and retrieve content in milliseconds, far beyond the reach of any perimeter tools outside Salesforce. Without native, real-time scanning inside Salesforce, threats will slip through unseen.
Unscanned content flows in:
Files and links from portals, forms, or chats aren’t scanned by default.
Agents outpace security:
AI can retrieve or share threats before your standard tools ever react.
Responsibility is yours: Agentforce doesn’t scan content – if you don’t, no one does.
Salesforce doesn’t scan what your AI agents touch
79% of security leaders believe AI-driven threats will soon outpace traditional defenses. (Source: Salesforce 2025)
Salesforce offers great platform tools, but they don’t scan links or files inside AI workflows. That means no protection when an agent clicks a link, retrieves a file, or logs content at machine speed. Threats can slip in and spread before legacy CASBs, endpoint or email tools ever notice.


The only real-time protection made for Agentforce
Salesforce Agentforce needs security that moves just as fast.
WithSecure Cloud Protection for Agentforce is the only solution that scans files, links, and QR codes truly inside Salesforce – in real time, at upload, click, download, or agent-triggered action.
Native app to Salesforce:
Security without speedbumps or added complexity.
Real-time defense:
Detects threats instantly, before agents or users act on them.
Built for Agentforce:
Designed to secure both human and AI workflows on Salesforce.
Trusted protection, now for agentic workflows
WithSecure Cloud Protection already protects some of the largest, most complex, and regulated Salesforce environments. Now, the Agentforce add-on brings that same real-time, native protection to AI-driven workflows. Scale your AI securely from day one with enterprise-grade security:
Certified: ISO 27001 & ISAE 3000 (SOC 2 Type 2)
Proven in Fortune 500s and highly regulated sectors.
Native to Salesforce, without unnecessary data traffic outside the platform.

Protect AI-powered customer support without speedbumps
Your AI agents handle more content, faster than ever. We ensure every file and link stays clean before threats can spread.
1. Threat enters the conversation
An attacker shares a malicious file or link via chat, form, portal or email.
2. Agentforce responds instantly
AI logs or routes the content at machine speed – no threat checks or phishing awareness.
3. WithSecure scans in real time
Threats are detected and blocked immediately, before they spread to human users.
4. Clean data only, no threats passed
Safe for agents, safe for customers. Clean content continues instantly. No delays, no surprises.
Made for secure AI adoption
Whether you’re in security, Salesforce ops, or business automation, Agentforce protection is built to fit your priorities.

Salesforce Leads & Architects
Secure your new Agentforce use cases seamlessly without disrupting new or existing workflows.

Security Leaders (CISOs, SecOps)
Gain real-time visibility and control over AI-driven activities within Salesforce.

IT Leaders (CIOs)
Confidently scale Salesforce AI capabilities while maintaining governance and compliance.

Business & Automation Leaders
Accelerate automation initiatives without compromising on security. Have a peace of mind.
Agentforce security in 30 seconds
Already a customer? The add-on is included with your license.
The Agentforce extension is included for all licensed customers of WithSecure™ Cloud Protection for Salesforce. No extra cost, no new vendor onboarding. It’s ready to install from AppExchange.





Frequently asked questions
Is this a separate product from WithSecure Cloud Protection for Salesforce?
WithSecure Cloud Protection for Agentforce is a free add-on for licensed customers of WithSecure Cloud Protection for Salesforce, available now on AppExchange. The administration and reporting are unified, so there is no added complexity, such as separate portals.
What does the Agentforce extension actually add?
It extends real-time protection to URLs handled via agentic (AI-driven) workflows – like the Agentforce Service Agent use cases. The core product already scans files in most situations. This ensures threats can’t spread through AI workflows, which external security tools can’t reach. All future Agentforce-native security features will be released through the extension.
As of today, Agentforce does not officially support file uploads from chat-based interactions. File upload capabilities in customer-facing chat are a feature of Messaging for In-App & Web (MIAW), not Agentforce itself.
However, agents are used in various ways across Salesforce:
- In customer support, AI agents often assist in chat workflows, responding to inquiries and guiding users.
- Agents are also deployed for backend process automation and orchestration, where they may retrieve, handle, or distribute files from other sources as part of automated logic.
It’s important to assess the specific Agentforce implementation and workflow path when evaluating file exposure risks.
Will this protection layer affect performance or automation speed?
No. The extension is built for speed like no other. It scans in real time without slowing down agent or human workflows. Unlike external tools with complex data routing, the scanning doesn’t delay the AI agents or human users.
Who is this designed for?
Enterprises using Agentforce or planning to adopt it; especially those in regulated industries where data hygiene, AI monitoring and auditability are critical.
We already have other security tools – why would we need something targeted for Agentforce?
Perimeter tools like email security or endpoint detection can’t scan inside Salesforce at the moment agentic workflows act.
Agentforce introduces a new layer of machine-speed autonomous AI. If a phishing link or malicious file slips in, traditional tools on your employees’ devices may detect it after it’s already been processed or shared. This is too late. And in case of customers and partners, there is no control of local security measures. You need to make sure that the data AI agents (and human users) handle is safe from cyber threats. Perimeter security tools do not ensure this.
WithSecure Cloud Protection scans natively within Salesforce, the moment content is uploaded, downloaded, or clicked. In real time, without delay.
How is this different from other Salesforce security tools?
Most tools rely on perimeter protections – like email or endpoint security. Legacy CASBs have a latency too big for swift AI agents. Only WithSecure Cloud Protection scans natively inside Salesforce, in real time, at the exact moment content is submitted, clicked, or handled by AI agents.
That’s the level of protection Agentforce requires, and no other security solution matches this native + real-time + AI-aware combination. This is Agentforce-native security.
Is the solution certified for compliance?
Yes. WithSecure Cloud Protection is ISAE 3000 Type 2 (SOC 2 Type 2) and ISO 27001 certified, and provides full visibility and traceability for audits, even across AI-powered Agentforce workflows.
Does WithSecure Cloud Protection for Agentforce alter my Salesforce environment?
No. WithSecure Cloud Protection for Agentforce does not alter your Salesforce environment.
It installs natively, without changing your existing workflows, data structures, or configurations. The extension simply adds real-time protection for agentic content (files and URLs), working seamlessly alongside your current setup — so you can secure automation without disruption.
How is the app hosted?
WithSecure Cloud Protection for Salesforce uses a cloud-based threat analysis service called WithSecure Security Cloud. The service is hosted on AWS. You don’t need to worry about hosting yourself, and there are zero hidden hosting costs.
The cloud service is hosted on data centers located in Ireland, US, Japan, Singapore and Australia. You can choose your point of presence, in other words where your data is located, and effectively control your data residency.
How do we activate the Agentforce extension?
Just install the extension from AppExchange and configure it via the familiar WithSecure Cloud Protection app UI in your Salesforce. It’s a click-and-go process with no new portals needed. You can find the installation instructions in this support article.
Get a Free Demo
THE #1 SALESFORCE MALWARE PROTECTION SOLUTION
Fill the form and get:
Free 15-day trial – test the product without limitations
Real attack simulation and product demo
Free customized and actionable risk assessment