This page is meant to be shared with your Salesforce admin before they install the package. It explains exactly what gets added to your org and what permissions it requests.
The package (namespace crmdigest) contains exactly one component: an External Client App named "CRM Digest" — Salesforce's standard framework for third-party OAuth integrations (the same mechanism used by tools like Slack or Zapier).
It does not include any of the following:
When your users connect via the "Connect your org" step, they'll be asked to approve these two permissions:
| Permission | Why we need it |
|---|---|
Manage user data via APIs (api) | Read Opportunity, Activity, and Task records to build your digest reports. |
Perform requests at any time (refresh_token, offline_access) | Send scheduled digests on your chosen cadence without requiring you to log in again each time. |
For full technical/security details (encryption, data retention, sub-processors), our security documentation is available on request — email [email protected] and we'll send it over.