OrgRecon
Introducing OrgRecon

Salesforce Experience Cloud security: Find guest-user exposure.

OrgRecon is an owner-authorized Salesforce security scanner that discovers public Experience Cloud surfaces, proves what anonymous users can access, and turns deterministic evidence into clear remediation.

  • Verified owners only
  • Approved hosts only
  • No Salesforce record contents retained
Findings summary

A conclusion first. Technical depth when you need it.

1,855,481

Matching records

Salesforce-reported aggregate counts across three guest-readable objects.

9

Open findings

Three confirmed guest exposures and six external posture findings.

8

Sensitive categories

Name, email, phone, address, organization, support case, subject, and status.

Report evidence

See the finding. Follow the proof.

Live dashboard component preview

This preview is rendered by the same React component used in the authenticated OrgRecon dashboard, using a sanitized Northstar Partner Portal canonical demo report.

External posture

Six public controls. One calm review path.

Evidence-bound assistant

Ask AI about the selected finding.

Selected finding · Customer_Profile__c

How should I remediate anonymous access to Customer_Profile__c?

OrgRecon confirmed that anonymous Salesforce responses returned records and value-present sensitive fields for Customer_Profile__c.

  1. Open the Experience Cloud site’s Guest User Profile.
  2. Review object Read access, field-level access, sharing rules, and exposed Apex paths.
  3. Publish the change and rescan until the request is denied or no records are returned.
Grounded only in normalized, redacted evidence. This public interaction does not call a live model.
About Me

“Security and platform teams shouldn't have to rely on guesswork.”

Portrait of Nir Alon
Founder and builder

Nir Alon

I’m Nir Alon, founder of OrgRecon. As a security engineer with years spent securing SaaS platforms and backends at cybersecurity startups, I built OrgRecon to answer one critical question: What can an anonymous guest actually access?

Security and platform teams shouldn't have to rely on guesswork. OrgRecon gives you verifiable proof of your exposure using an approach that is strictly owner-authorized, privacy-aware, and built to discard raw response data automatically.

Frequently Asked Questions

Straight answers before an assessment starts.

What does OrgRecon evaluate?

OrgRecon evaluates approved public Salesforce Experience Cloud surfaces to determine what an anonymous guest can reach. It also records bounded public internet posture evidence, such as DNS, TLS, and HTTP control observations.

Why is owner authorization required?

Assessments are limited to verified owners and explicitly approved hosts. That keeps discovery and validation within a clear, accountable scope.

What data does OrgRecon retain?

OrgRecon retains normalized evidence such as counts, schema, presence, and provenance. Salesforce record contents, identifiers, tokens, cookies, and raw response bodies are discarded.

How does OrgRecon prove a finding?

OrgRecon uses bounded, deterministic requests and records the observable result. Reports connect each owner-facing conclusion to its schema, privacy boundary, provenance, and normalized evidence.

Does OrgRecon change my Salesforce configuration?

No. OrgRecon observes and reports evidence; it does not change Salesforce access controls or configuration. The owner reviews the proof, makes the remediation, and can assess again to verify the result.

See the proof

Know what guests can access before they do.

Follow an illustrative exposure from anonymous observation to remediation—or create an account for an owner-authorized assessment.