Shield Platform Encryption adds extra protection to sensitive data contained in files
and attachments. As a result, documents, images, and other files uploaded to Salesforce remain
encrypted. When you turn on encryption, the body of each new file or attachment is encrypted as
it's uploaded to the platform.
Required Editions
Available in both Lightning Experience and Salesforce Classic (not available in
all orgs).
Available in: Enterprise, Performance, Unlimited and
Developer Editions. Requires purchasing Salesforce Shield or Shield
Platform Encryption.
Encryption is valuable for organizations that handle sensitive documents, contracts, or
confidential media. It prevents unauthorized access to the raw file data even if the
underlying database storage is compromised.
Users with appropriate access permissions can continue to view, download, and work with
encrypted files normally.
These kinds of files are encrypted when you enable file encryption:
Files attached to email
Files attached to feeds
Files attached to records
Images included in Rich Text Area fields
Files on the Content, Libraries, and Files tabs (Salesforce Files, including
file previews, and Salesforce CRM Content files)
Files managed with Salesforce Files Sync and stored in Salesforce
Files attached to Chatter posts, comments, and the sidebar
Notes body text using the new Notes tool
Files attached to Knowledge articles
Quote PDFs
These file types and attachments aren’t encrypted:
Chatter group photos
Chatter profile photos
Documents
Notes previews in the new Notes tool
Notes and Notes previews in the old Notes tool
Some small files that are less than 32K in size are sometimes stored in the transactional
database. If you have turned on Database Encryption, these small files are encrypted. However,
larger files and attachments are not stored inside the transactional database. Use the Files
and Attachments encryption feature to encrypt them.
When you turn on encryption for files and attachments, Salesforce encrypts new files and
attachments. Existing files and attachments remain unencrypted until you sync them with your
active tenant secret.
We use three kinds of cookies on our websites: required, functional, and advertising. You can choose whether functional and advertising cookies apply. Click on the different cookie categories to find out more about each category and to change the default settings.
Privacy Statement
Required Cookies
Always Active
Required cookies are necessary for basic website functionality. Some examples include: session cookies needed to transmit the website, authentication cookies, and security cookies.
Functional Cookies
Functional cookies enhance functions, performance, and services on the website. Some examples include: cookies used to analyze site traffic, cookies used for market research, and cookies used to display advertising that is not directed to a particular individual.
Advertising Cookies
Advertising cookies track activity across websites in order to understand a viewer’s interests, and direct them specific marketing. Some examples include: cookies used for remarketing, or interest-based advertising.