> For the complete documentation index, see [llms.txt](https://help.nightfall.ai/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://help.nightfall.ai/data-exfiltration-prevention/exfiltration_salesforce/policies.md).

# Configuring Salesforce Exfiltration Policies

Exfiltration policies allow you to monitor download events across your Salesforce environment. Through real-time download monitoring, you can identify insider risk and anomalous behaviour before it escalates to large scale security incidents.  The following are supported and monitored by Nightfall for exfiltration activities,

* Attachments & Files
* Reports
* Records & Objects

Download of any of the above information containers is an exfiltration activity for Nightfall, and if such activities breach a threshold set in one of the exfiltration policies in Nightfall, then Nightfall will flag it an exfiltration event. You can configure which users should receive notifications and what automatic actions must be taken when an exfiltration event is detected.&#x20;

The detailed steps to configure the Salesforce Exfiltration policy is explained in the following documents.&#x20;

[Salesforce App Selection](/data-exfiltration-prevention/exfiltration_salesforce/policies/integration.md)

[Scope](/data-exfiltration-prevention/exfiltration_salesforce/policies/scope.md)

[Trigger](/data-exfiltration-prevention/exfiltration_salesforce/policies/trigger.md)

[Advanced Settings](/data-exfiltration-prevention/exfiltration_salesforce/policies/advanced_settings.md)

[Creating Policy](/data-exfiltration-prevention/exfiltration_salesforce/policies/create_policy.md)

[Remediation for Salesforce Exfiltration](/data-exfiltration-prevention/exfiltration_salesforce/policies/remediation.md)
