Agentforce — Independent Software Review

Empower your business with autonomous AI agents.

Compliance Transparency Index

Grade: A — Score: 85/100

Best For

Not Ideal For

Operational Overview

Agentforce utilizes advanced agentic AI technology, allowing businesses to automate complex workflows and enhance productivity. By integrating with Salesforce's Headless 360 platform, it provides a unified view of customer data, ensuring that AI-driven decisions are based on accurate and relevant information.

The platform enhances workflows by enabling AI agents to autonomously plan, reason, and execute multi-step tasks, significantly reducing the need for human intervention. This capability allows teams to focus on strategic initiatives while AI handles routine tasks, improving overall efficiency and effectiveness.

However, businesses must consider potential risks associated with AI deployment, including data security and privacy concerns. Salesforce addresses these risks through the Agentforce Trust Layer, which ensures that proprietary data remains protected and is not used to train external models, allowing for secure AI operations.

Pricing Structure

Salesforce Foundations: $0 add-on for eligible Salesforce customers

Flex Credits: $500 USD per 100,000 credits

Conversations: $2 USD per conversation

Agentforce User License: $5 USD/user/month plus required Flex Credits

Agentforce Add-ons: $125/user/month

Agentforce Industries Add-ons: $150/user/month

Agentforce 1 Editions: From $550/user/month

Alternative Consideration

Consider switching to Microsoft Dynamics 365: Offers similar AI capabilities but may lack the same level of integration with existing Salesforce tools.

Frequently Asked Questions

How does Agentforce compare with Microsoft Copilot Studio?

Agentforce is built around Salesforce CRM data, permissions, Flow, Apex, Data 360, and Agentforce Builder, while Microsoft Copilot Studio is centered on Microsoft 365, Power Platform connectors, Dataverse, and Azure-linked environments. Salesforce lists Flex Credits at $500 per 100,000 credits, with a standard Agentforce action consuming 20 credits, while Microsoft lists Copilot Studio capacity packs at $200 per month for 25,000 Copilot Credits and also offers pay-as-you-go. Those credit units are not directly equivalent, so the stronger fit usually depends on whether the organization's core business data and workflows already live in Salesforce or Microsoft.

Does Agentforce require Data 360 to work?

Salesforce's current public documentation gives conflicting prerequisite guidance. A Trailhead module says Data 360 must be provisioned and enabled for all Agentforce use and that Agentforce Data Library and Einstein Trust Layer features do not work without it, while the current Agentforce DX setup guide says agents that do not require Data 360 can skip enabling it. Buyers should verify the requirement for their exact agent type, environment, grounding method, and Trust Layer or Data Library use before implementation.

Can Agentforce reuse existing Salesforce Flow, Apex, and prompt templates?

Yes. Agentforce actions can call Salesforce Flow, Apex, and Prompt Builder templates, and Agent Script can expose those actions to the reasoning engine or require them at specific steps. This lets an organization reuse existing Salesforce business logic rather than rebuilding every workflow specifically for an AI agent.

Can Agentforce connect to external systems through Model Context Protocol?

Yes. Salesforce has a native Model Context Protocol client in Agentforce that can register third-party MCP servers, allowlist their tools, and add those tools as agent actions in Agentforce Builder. Agentforce Gateway can then apply policies to specific agents and MCP server tools, while MuleSoft and Salesforce-hosted servers can also be discovered through the API Catalog.

How does Agentforce test for hallucinations and unsafe agent behavior?

Salesforce provides Agentforce Testing Center in sandbox environments to evaluate topic classification, action sequences, multi-turn conversations, response quality, prompt injection cases, and agent behavior against expected results. Salesforce also documents Trust Layer controls including prompt defense, toxicity detection, grounding, and configurable agent instructions or guardrails. Testing consumes requests and credits and can modify data, which is why Salesforce recommends running these tests in a sandbox rather than production.

Can Agentforce be deployed to web, messaging, Slack, email, and voice channels?

Yes, but channel support depends on the agent type and related Salesforce products. Salesforce documents Employee Agent deployment to Lightning Experience, Salesforce Mobile, Slack, and web chat, while Service Agents can use enhanced messaging, email, telephony, and other service channels. Agentforce Voice extends supported agents to phone, web, and mobile voice experiences and can require Salesforce Voice or partner telephony configuration.

Do third-party LLM providers train on Agentforce customer data?

Salesforce says the Einstein Trust Layer applies zero data retention to third-party LLM providers used by Agentforce, so those providers do not retain the data or use it to train their models after the response is returned. Salesforce also says global predictive models do not apply to the Agentforce platform and agent actions. Other Salesforce AI features added to an agent can have separate data-use rules and opt-out controls, so that protection should not be generalized to every AI feature in the Salesforce ecosystem.

Which LLMs can Agentforce use in the current and legacy builders?

Salesforce says agents created in the new Agentforce Builder use GPT-4.1 under Salesforce Default, while agents created in the legacy builder use GPT-4o. Salesforce also documents an AWS-hosted option using Anthropic Claude Haiku 4.5 and a Google Gemini option using Gemini 3.5 Flash, while agent actions can call other predefined or Salesforce-managed models. Salesforce's current documentation does not support bringing an arbitrary external model directly into Agentforce Default.

How are Employee Agents and Customer Agents secured differently in Agentforce?

Salesforce documents two different security models. Employee Agents typically run in the context of the logged-in Salesforce user and inherit that user's licenses, permission sets, field-level security, and sharing rules, while Customer Agents use a dedicated Agent User for public channels such as messaging or web chat. Salesforce recommends granting that Agent User only the specific permissions needed for its actions.

How can administrators monitor Agentforce usage and performance after deployment?

Salesforce provides Digital Wallet for near real-time consumption tracking, usage trends, configurable alerts, and tags that show which agents or resources are driving usage. Agentforce Observability adds centralized monitoring for agent performance, health, adoption, and consumption. Together they let administrators review both operational behavior and usage-based spend after agents go live.

AI Visibility Report

How AI agents (ChatGPT, Perplexity, Claude, others) read this review page in the past 7 days. Updated weekly. View Agentforce AI Visibility Report.