Loading
Salesforce Enforces New Security Requirements in Summer 2026Read More
Set Up and Maintain Your Salesforce Organization
Encrypt New Files and Attachments

Encrypt New Files and Attachments

For another layer of data protection, encrypt files and attachments. If Shield Platform Encryption is on, the body of each file or attachment is encrypted when it’s uploaded.

Required Editions

Available in both Salesforce Classic (not available in all orgs) and Lightning Experience.
Available in: Enterprise, Performance, and Unlimited Editions with the Salesforce Shield or Shield Platform Encryption licenses.
Available for free in Developer Edition.
User Permissions Needed
To view setup: View Setup and Configuration
To encrypt files: Customize Application
Note
Note This content relates to Shield Platform Encryption. Read about implementing field-level encryption using Shield Extension in Own from Salesforce.
Note
Note Before you begin, make sure that your org has an active encryption key. If you’re not sure, check with your Salesforce admin.
  1. From Setup, in the Quick Find box, enter Encryption Settings, and then select Encryption Settings.
  2. In the Encryption Policy section, turn on Encrypt Files and Attachments.
Important
Important Users with access to the file can work normally with it regardless of their encryption-specific permissions. Users who are logged in to your org and have read access can search and view the body content.

Users can continue to upload files and attachments per the usual file size limits. Expansion of file sizes caused by encryption doesn’t count against these limits.

Turning on file and attachment encryption affects new files and attachments. It doesn’t automatically encrypt files and attachments that are already in Salesforce. Apply your active key material to existing data with on the Encryption Statistics and Data Sync page.

To check whether a file or attachment is encrypted, look for the encryption indicator on the detail page of the file or attachment. You can also query the isEncrypted field on the ContentVersion object (for files) or on the Attachment object (for attachments).

Here’s What It Looks Like When a File Is Encrypted

A file detail page for an encrypted file.
Note
Note The encryption indicator is only available in Salesforce Classic.
 
Loading
Salesforce Help | Article