02checks
What does a 55-check Salesforce org audit cover?
The audit runs 55 automated checks across 12 sections, every time the org is refreshed and whenever you ask. Automation and Flows are checked for several Flows on the same object and trigger, missing fault paths, DML inside loops, hardcoded record ids and active Process Builder or Workflow Rules. Apex is checked for SOQL and DML in loops, classes without tests, coverage under 75%, empty catch blocks, ancient API versions and oversized classes.
Permissions checks look for guest user object access, Modify All Data outside admin profiles and API access granted too broadly. Live usage checks read login history and opportunity data to find users who have not logged in for 30 or 90 days, users who never logged in at all, elevated login failures and stagnant pipeline stages. Compliance checks map what they find to SOC 2, ISO 27001 and Essential Eight controls.
- Automation and Flows, Apex and code, permissions and security
- Fields and data quality, limits and performance, installed packages
- Change intelligence: production changes made outside the pipeline
- Adoption: MFA enforcement, Security Health Check score, connected app sprawl
- AI readiness: gaps that would block Agentforce