Skip to main content

AGENTFORCE-16.1: Agent Action Without Custom Permission Gate

๐Ÿ”ด High ยท Custom Permission Enforcement

Detects agent actions targeting Apex classes that perform DML on financially-sensitive objects (Opportunity, Order, Contract, Quote) without checking CustomPermission or FeatureManagement.checkPermission() before execution.

Detailsโ€‹

FieldValue
Rule IDAGENTFORCE-16.1
SeverityHigh
CategoryCustom Permission Enforcement
ComplianceSOC2_CC6, NIST_AI_RMF

Remediationโ€‹

Refer to the SquireX documentation for remediation guidance specific to AGENTFORCE-16.1.

See Alsoโ€‹