Skip to main content

Fin for Salesforce: Required permissions

How to set up the necessary Salesforce permissions for integrating your Fin workspace.

To power seamless automation and intelligent support experiences, Fin integrates deeply with your Salesforce instance. This integration requires specific object and field-level permissions, which allow Fin to create, update, and sync data with Salesforce.

This article will walk you through:

  • Why these permissions are important

  • Who needs them

  • What permissions the OAuth user requires

  • A complete reference table of the required permissions


Why do these permissions matter?

Fin relies on Salesforce data to create cases, post summaries, read contact information, and route conversations to agents. Without the proper permissions, Fin may be unable to interact with your Salesforce environment effectively—resulting in failed syncs, blocked automations, or limited functionality.


Who needs these permissions?

There are two key Salesforce users involved in the integration:

  • The OAuth Salesforce user – the one linked during integration setup

  • The user assigned as Fin – the user Fin impersonates when responding, posting, or taking workflow actions


What permissions does the OAuth user require

How do I set up the permissions?

Follow the How to connect Fin to Salesforce help article to connect Fin with Salesforce and install the necessary permissions.


Required Salesforce permissions

Salesforce Object

Fields

Operations

Who Needs It

Why It's Needed

EmailMessage

Id, FromName, FromAddress, ToAddress, Subject, ThreadIdentifier, HtmlBody, TextBody, CreatedById, CreatedDate, Incoming, ParentId, LastModifiedDate, LastModifiedById

Create, Read

Connected User, Fin

Used to create messages and replies for email-to-case workflows

CaseFeed

Id, Title, Body, Type, CreatedBy.*, CreatedDate, Visibility, ParentId, LastModifiedDate

Read

Connected User

Required for tracking case activity

FeedItem

Id, Body, ParentId, IsRichText, Type, Visibility, CreatedDate, CreatedById, LastEditById

Create

Connected User, Fin

Adds conversation transcripts and AI summaries to cases

Case

Id, Subject, Description, ContactId, OwnerId, SuppliedEmail, SuppliedName, Origin, SourceId, FinInvolved__c, FinResolutionState__c, FinMarkedAsSpam__c, FinConversationId__c

Create, Read, Update

All roles

Core case creation, handoff, and field sync

Contact

Id, Email, CreatedDate, FirstName, LastName

Create, Read

Connected User

Needed when creating or associating contacts to cases

User

Id, ContactId, FirstName, LastName, Email, UserType, IsActive

Read

Connected User

Enables assigning cases to specific users

Group

Id, Name, Type

Read

Connected User

Grants visibility into Salesforce queues

QueueSobject

QueueId, SobjectType

Read

Connected User

Allows selection of queues for routing cases

MessagingSession

Status, ConversationId

Read

Fin Messenger

Checking the status of the MessagingSession

Conversation

Id, ConversationIdentifier

Read

Fin Messenger

To get the right messaging session

PermissionSet

Name

Read

Connected User

Allows us to confirm if the permission package is installed

PermissionSetAssignment

PermissionSetId, AssigneeId

Read

Connected User

Allows us to confirm if the permission set is assigned to the right user.

EmailRoutingAddress

Id, Address, EmailServicesAddressId

Read

Connected User

Allows listing active routing email addresses.

EmailServicesAddress

Id, IsActive

Read

Connected User

Allows checking if listed routing email address is valid.

Tip: Fields marked with __c (e.g., FinInvolved__c) are custom fields used to track AI involvement and resolution state. Make sure they’re configured in Settings → Salesforce Integration.


Implementation checklist

Before you go live, make sure to:

  • Assign the custom Fin for Salesforce permissions Permission Set

  • Enable Chatter, and Feed Tracking in Salesforce

  • Confirm visibility for custom fields like FinInvolved__c , FinResolutionState__c, FinMarkedAsSpam__c & FinConversationId__c

  • Test the integration using a sandbox or non-production environment


Helpful Salesforce docs


💡Tip

Need more help? Get support from our Community Forum
Find answers and get help from Intercom Support and Community Experts


Did this answer your question?