This article addresses OmniStudio components (proposal/actions pages, OmniStudio FlexCards, OmniScripts, and Document Template Designer) failing with a generic internal server error or with actions no longer appearing, following the OmniStudio security enhancements introduced in Winter '26 and Spring '26.
The exact on-screen message is "An internal server error has occurred An error has occurred while processing your request. The salesforce.com support team has been notified of the problem. If you believe you have additional information that may be of help in reproducing or correcting the error please contact Salesforce Support. Please indicate the URL of the page you were requesting, any error ID shown on this page, and any other related information." Some users instead see "You don't have access to this Apex class. Your Salesforce admin can help you with that" when opening Apex Access on their profile.
The security enhancements enable these feature flags by default starting February 2, 2026: AdvancedOmnistudioAccessCheck, ApexClassCheckForIP, ApexClassCheck, EnforceDMFLSAndDataEncryption, and EnableQueryWithFLS.
When enabled, OmniStudio enforces object permissions, field-level security (FLS), and Apex class access for every running user (internal, Experience Cloud authenticated, and guest). Affected users are those whose profile or permission sets lack the required Apex class or FLS access; setup can differ between sandbox/UAT and production, which is why the same component works in one org and fails in another.
Work through the cause that matches your symptom.
Cause 1: OmniStudio components fail after the Spring '26 advanced access checks were enabled.
Cause 2: Proposal or component actions disappeared after the release (no error, buttons missing).
Cause 3: "You don't have access to this Apex class" when editing Apex Access, or setup differs between UAT and Production.
Cause 4: Document Generation from OmniScript fails with a limit or size error on large data maps.
Confirm the issue is resolved by reopening the affected proposal page, FlexCard, or Document Template Designer as the previously failing user: the page loads, all action buttons appear, and no internal server error is displayed.
005389123

We use three kinds of cookies on our websites: required, functional, and advertising. You can choose whether functional and advertising cookies apply. Click on the different cookie categories to find out more about each category and to change the default settings.
Privacy Statement
Required cookies are necessary for basic website functionality. Some examples include: session cookies needed to transmit the website, authentication cookies, and security cookies.
Functional cookies enhance functions, performance, and services on the website. Some examples include: cookies used to analyze site traffic, cookies used for market research, and cookies used to display advertising that is not directed to a particular individual.
Advertising cookies track activity across websites in order to understand a viewer’s interests, and direct them specific marketing. Some examples include: cookies used for remarketing, or interest-based advertising.