Permission & Access Management

Configure and Audit Salesforce Permission Sets in Plain English

Create permission sets and profiles, adjust field-level security, and ask "who has access to this field" in natural language. Cirra AI configures access and analyzes it in the same conversation, inside Claude, ChatGPT, Cursor, or any MCP-compatible client.

Get started for free · no credit card required

Trusted by teams at

Permission management in Salesforce is scattered across five different places, and none of them hold the whole picture on their own. Profile settings, permission sets, permission set groups, field-level security, and sharing rules each know a piece of the answer. Ask a simple question like "who can see the Salary field," and answering it properly means checking every profile and permission set that might touch that field, one by one.

That's fine with a handful of profiles. It falls apart once you're forty or fifty permission sets deep, built up over several years, some overlapping, some legacy, none of them safe to delete because nobody's quite sure what still depends on them. And granting or adjusting access still means the same slog either way: into Setup, find the right permission set or profile, click through object and field settings one at a time.

Cirra AI handles both halves of the problem from the same place. Describe the access change you need, and it's done. Ask who has access to something, and you get a straight answer, no five-tab detective work required.

The Difference

Most AI Tools Tell You What to Do. Cirra AI Does It.

Ask a generic AI chatbot an access question and you get a research assignment. Ask Cirra AI and you get the answer, pulled live from your org.

Advises

"Check which users have View All Data access"

A generic AI chatbot with no org connection can only tell you how to find the answer yourself.

  • Writes SOQL for the Profile object
  • You run it in Developer Console or Workbench
  • You manually map users to profiles
  • You export to a spreadsheet if you need a record
Manual steps · nothing executes in your org
Executes

"Check which users have View All Data access"

Cirra AI is connected to your org through the Salesforce Admin MCP Server, so it does the work instead of describing it.

  • Queries profiles and permission sets directly in your org
  • Cross-references field-level security across profiles and permission sets
  • Returns every permission set and profile that grants it, with assigned user counts
  • Ask follow-up questions or make the change, in the same conversation
4 steps · runs in your org · answer in seconds
How It Works

From Question to Answer, in One Conversation

1

Describe the access you need

Tell your Salesforce Admin MCP Server what to configure: "Create a permission set that gives the Support team read-only access to the Renewal Date field," or ask a question: "Who currently has edit access to the Opportunity Amount field?"

2

Cirra AI configures or analyzes

For configuration requests, Cirra AI creates or edits the permission set or profile and applies the field-level security you described. For access questions, it analyzes permission set hierarchies and reports back who has access, and through which permission set or profile.

3

Review and confirm

Changes and answers come back inside your AI tool. Ask follow-up questions or request adjustments in plain language. No trip to Setup required.

What You Can Build

Every Permission and Access Task, in One Place

Permission sets and profiles

Built from a plain-English description of who needs what access, including access to the custom objects and fields you've already built.

Field-level security

Applied through a permission set instead of clicking through Object Manager field by field. Profile-level changes are supported too.

Access answers

Questions like "who has access to X," pulled from permission set hierarchies instead of checked by hand.

User provisioning

New user creation, license assignment, and cloning permissions from an existing team member.

Security reviews

Surface which users or permission sets carry access that looks broader than it needs to be.

See It on Your Own Org

Connect Salesforce and run your first permission task in minutes. Free to start, no credit card required.

Start Free Trial
Not Just Creation

Built-In Permission Analysis, Not Just Permission Creation

Cirra AI analyzes permission set hierarchies to answer access questions directly, rather than requiring you to cross-reference profiles, permission sets, and field-level security settings by hand. The same connection also creates and edits permission sets and profiles, and assigns metadata elements to them.

This is the distinction worth noting: most AI tools in this space either configure permissions or report on them. Cirra AI does both in the same conversation, on the same connection, so a question like "who has access to this field, and can you remove it from the Marketing profile" doesn't require switching tools or approaches partway through.

All permission and access work runs through the same Salesforce Admin MCP Server connection as every other Cirra AI capability, scoped to your connected user's existing Salesforce permissions.

When You Need It

The Moments Permissions Actually Matter

You don't think about access control until something goes wrong, or someone asks a question you can't answer quickly.

New hire onboarding

Same access as the rep next to them

A new AE starts Monday and needs the same setup as your top rep. Instead of manually copying profile and permission set assignments one at a time, ask Cirra AI to clone the permissions.

Minutesnot hours
Employee offboarding

Revoke access completely, not partially

Someone's leaving and access needs to come down everywhere they had it. Get a complete list of what they could touch, then remove it systematically instead of guessing.

0lingering access
Compliance audit

Who can access customer PII?

An auditor wants to know who can see sensitive customer fields. Get the answer from your permission set hierarchy instead of checking every profile by hand.

Secondsnot days
Governed by the Permissions You Already Have
Access Model
OAuth-Bounded
Cirra AI can only grant or analyze access it's already permitted to see and touch, based on your connected user's own permissions.
Access Controls
Granular
Metadata, User Data, Personal Setup Data, and Business Data can each be set independently to None, Read Only, or Read and Write.
Change Log
Exportable Audit Trail
Every permission set created, profile edited, or field-level security change applied is logged.

Permission management is, by definition, security-sensitive work, so the same governance model applies with no exceptions. Nothing deploys without your explicit approval in the conversation.

Compatibility

Works in the AI Tool You Already Use

Configure and analyze permissions from any MCP-compatible AI tool. The same connection and governance model applies regardless of which client you're working in.

Claude
Desktop, Code, Cowork
ChatGPT
Web, Desktop, Codex CLI
Cursor
IDE or Desktop
Gemini Enterprise
Custom MCP connector
VS Code
via GitHub Copilot
Testimonials

What Admins Are Saying

FAQ

Frequently Asked Questions

Can Cirra AI tell me who has access to a specific field?
Yes. Ask who has access to a field or object, and Cirra AI analyzes your permission set hierarchy to answer, without you having to check each profile and permission set one by one.
Does Cirra AI work with both profiles and permission sets?
Yes. Cirra AI creates and edits both, and can assign metadata elements to specific permission sets for granular access control.
Can Cirra AI adjust field-level security?
Yes. Describe which fields should be visible or editable and for whom, and Cirra AI applies the change, normally through a permission set. Profile-level changes are supported as well.
Can Cirra AI create new users and assign licenses?
Yes. Cirra AI can create new users, assign licenses, clone permissions from an existing team member, and deactivate or reassign users.
Does Cirra AI generate compliance audit reports?
Cirra AI can answer specific access questions and analyze permission hierarchies on request. For formal compliance or audit reporting needs, confirm current capability with your Cirra AI contact before assuming a specific report format is available.
Will this replace my Salesforce admin?
No. Cirra AI handles the repetitive parts of permission and access management so your admin can spend time on the judgment calls: who should have access to what, and why, rather than clicking through Setup to find out. It's built to make an admin faster, not to remove the role.
What Salesforce edition do I need?
Cirra AI supports Salesforce Enterprise Edition and up.

Know Exactly Who Has Access, and Change It in the Same Breath

Connect your org and ask your first access question before your coffee's even poured.

Free plan available · Connect in minutes