Loading
Upcoming Mandatory Changes to Public Key Infrastructure (PKI)Read More
Salesforce Enforces New Security Requirements in Summer 2026Read More
Secure Your Salesforce Org
Table of Contents
Select Filters

          No results
          No results
          Here are some search tips

          Check the spelling of your keywords.
          Use more general search terms.
          Select fewer filters to broaden your search.

          Search all of Salesforce Help
          Deselect Allow Policy Configurations That Ignore Job Errors and Bypass Automations Control

          Deselect Allow Policy Configurations That Ignore Job Errors and Bypass Automations Control

          Enforces error handling and automation triggers during Data Management Policy execution, preventing silent failures or skipped workflows that could leave data in inconsistent states.

          Control Name

          Data Management Policy Settings (De-select 'Allow policy configurations that ignore job errors and bypass automations').

          Control Overview

          Enforces error handling and automation triggers during Data Management Policy execution, preventing silent failures or skipped workflows that could leave data in inconsistent states.

          Description

          When deselected, policy jobs halt on errors (for example, validation failures, governor limits) and respect automation rules (flows, processes, triggers), ensuring data integrity and auditability across bulk operations.

          Recommended Configuration

          De-select 'Allow policy configurations that ignore job errors and bypass automations' in Setup>Data Management Policy Settings to mandate full error reporting and workflow execution for all policies.

          Security Impact

          Provides visibility into policy failures, preserves automation-based access controls/consent checks, and prevents incomplete data masking/deletion that exposes PII.

          Business Impact

          Maintains data quality through enforced validations, reduces remediation costs from partial job failures, and supports compliant automation chains for retention/consent.

          Security Risk If Not Configured

          Bypass of data job error automations enables silent continuation of flawed policies, masking compliance gaps, or data exposure.

          Threat Scenarios

          Misconfigured data management policies fail to enforce consent and data handling requirements, creating regulatory violations and user privacy breaches.

          Estimated CVSS Score Range

          High (7.0–8.9).

          Risk Impact Considerations

          Impact scales with policy volume and data sensitivity; test automation compatibility before enabling to avoid false positives blocking legitimate jobs.

          Higher Risk When

          Complex automations on high-volume objects (for example, Contacts with consent flows), delegated policy management, or scheduled bulk jobs without monitoring.

          Low Risk When

          Simple policies on small datasets, admin-only execution, combined with Event Monitoring for job outcome alerts.

          Security Health Review Guidance

          Select depending on the use case.

          Who Is Impacted

          Policy admins, automation developers (Flow /Process Builder), data stewards monitoring job outcomes, and compliance teams auditing execution logs.

           
          Loading
          Salesforce Help | Article