You are here:
Deselect Allow Policy Configurations That Ignore Job Errors and Bypass Automations Control
Enforces error handling and automation triggers during Data Management Policy execution, preventing silent failures or skipped workflows that could leave data in inconsistent states.
Control Name
Data Management Policy Settings (De-select 'Allow policy configurations that ignore job errors and bypass automations').
Control Overview
Enforces error handling and automation triggers during Data Management Policy execution, preventing silent failures or skipped workflows that could leave data in inconsistent states.
Description
When deselected, policy jobs halt on errors (for example, validation failures, governor limits) and respect automation rules (flows, processes, triggers), ensuring data integrity and auditability across bulk operations.
Recommended Configuration
De-select 'Allow policy configurations that ignore job errors and bypass automations' in Setup>Data Management Policy Settings to mandate full error reporting and workflow execution for all policies.
Security Impact
Provides visibility into policy failures, preserves automation-based access controls/consent checks, and prevents incomplete data masking/deletion that exposes PII.
Business Impact
Maintains data quality through enforced validations, reduces remediation costs from partial job failures, and supports compliant automation chains for retention/consent.
Security Risk If Not Configured
Bypass of data job error automations enables silent continuation of flawed policies, masking compliance gaps, or data exposure.
Threat Scenarios
Misconfigured data management policies fail to enforce consent and data handling requirements, creating regulatory violations and user privacy breaches.
Estimated CVSS Score Range
High (7.0–8.9).
Risk Impact Considerations
Impact scales with policy volume and data sensitivity; test automation compatibility before enabling to avoid false positives blocking legitimate jobs.
Higher Risk When
Complex automations on high-volume objects (for example, Contacts with consent flows), delegated policy management, or scheduled bulk jobs without monitoring.
Low Risk When
Simple policies on small datasets, admin-only execution, combined with Event Monitoring for job outcome alerts.
Security Health Review Guidance
Select depending on the use case.
Who Is Impacted
Policy admins, automation developers (Flow /Process Builder), data stewards monitoring job outcomes, and compliance teams auditing execution logs.

