Definition
Health Check is a Setup tool that evaluates the security configuration of the Salesforce org against Salesforce's recommended baseline standards. It assigns a score from 0 to 100 and identifies specific settings that are below recommendations, such as password policies, session settings, and login requirements.
Real-World Example
The admin at Granite Financial runs Health Check and receives a score of 72 out of 100. The tool flags that the minimum password length is only 8 characters (recommendation: 12), session timeout is set to 12 hours (recommendation: 2 hours), and clickjack protection is disabled. She updates each setting and reruns Health Check, achieving a score of 95.
Why Health Check Matters
Health Check is a foundational element of Salesforce administration. Admins rely on it to control how users interact with the platform, ensuring that the right people have the right access while maintaining data integrity across the organization. Misconfiguring this area can lead to security gaps, data leakage, or frustrated users who cannot do their jobs.
As your Salesforce org grows and evolves, Health Check becomes increasingly important for governance. It helps administrators enforce business policies without writing code, making it an essential tool for the 80% of Salesforce customization that happens declaratively through clicks, not code.
How Organizations Use Health Check
- •Prestige Worldwide — Configured Health Check to enforce their data governance policies across 500+ users. By setting up proper controls, they reduced unauthorized data exports by over 90% and passed their annual security audit without any findings for the first time.
- •Oceanic Corp — Used Health Check to streamline their onboarding process for new hires. Instead of manually configuring access for each person, they built standardized configurations that could be assigned in minutes, reducing IT onboarding time from two days to under an hour.
- •Vandelay Industries — Applied Health Check as part of a broader org cleanup initiative. By auditing and optimizing their setup, they improved page load times, reduced user confusion caused by unnecessary fields, and made their Salesforce instance more maintainable for the admin team.
