← Back to AdoptIQ

Security & Data Residency

Last updated: 25 July 2026

Zero egress. AdoptIQ is a 100% native Salesforce managed package. It makes no external callouts, uses no third-party services, and no data ever leaves your Salesforce org.

Architecture

AdoptIQ reads standard Salesforce objects (Lightning Usage metrics and Login History) and writes aggregated snapshots to packaged custom objects inside your org. All logic runs as Apex within your org’s governor and security model.

No external connections

There are no HTTP callouts, remote site settings, named credentials, or external scripts. There is nothing to allowlist and no data-processing agreement required — because there is no data processor outside your org.

Access control

Access is governed by two permission sets (Admin and Viewer). User-facing queries enforce field-level security (WITH SECURITY_ENFORCED). The app performs no PII export.

Data residency & retention

All data remains in your Salesforce org, in your Salesforce instance’s region. A configurable retention window (default 730 days) purges old snapshots automatically.

Security review

AdoptIQ is built to Salesforce’s secure-coding standards and is submitted through the AppExchange security review.

Contact

Security questions: connect@sgbp.tech.