Application inventory

Connected and External Client Apps

OAuth monitoring

Scopes and sensitive policies

Change memory

Baseline and configuration history

One workflow

Findings, ownership, and verification

Move from raw metadata to actionable context.

Org360 keeps the evidence, health impact, and next action together so Salesforce teams can investigate without reconstructing context by hand.

Maintain a readable inventory

Review Connected Apps and External Client Apps with the OAuth scopes, access policies, publisher, and activity details Salesforce makes available.

Detect new applications

Compare against the established baseline and surface a new app as a finding when it appears in the org inventory.

Monitor sensitive OAuth changes

Identify added or removed scopes and policy changes that make permitted-user, refresh-token, session, or IP access less restrictive.

Use the Org Health workflow

Prioritize the finding, assign an owner, accept a documented risk, mark a false positive, or verify the fix with the same workflow as other checks.

How it works

A read-only workflow turns Salesforce setup signals into a persistent, reviewable history.

  1. STEP 1

    Inventory applications

    Collect the available Connected App and External Client App configuration.

  2. STEP 2

    Establish the baseline

    Record what exists and which access policies are currently configured.

  3. STEP 3

    Compare changes

    Detect new apps, scope changes, and sensitive policy drift.

  4. STEP 4

    Manage the finding

    Prioritize, notify, document, and verify through the Org Health workflow.

Inside Org360

Make external access changes visible.

Connected App findings appear with severity, evidence, change history, and the same ownership and verification workflow used across Org Health.

Last-use details and authorization counts are displayed only when Salesforce exposes them reliably. Org360 does not automatically conclude that an unused-looking application is safe to remove.

Data Warehouse SyncType: Connected AppSignal: OAuth scopes changed
Partner PortalType: External Client AppSignal: New app detected
Legacy IntegrationType: Connected AppSignal: Review authorization

Explore the connected Org360 workflow

Org health, change memory, and investigation are designed to work together rather than as isolated reports.

14-day Pro trial

Bring continuous context to your Salesforce org health.

Connect your Salesforce org and use every Org360 Pro feature for 14 days. No credit card required.

Start your 14-day free trial
Salesforce Connected App Monitoring | Org360