experience-cloud-guest-access

experience-cloud-guest-access is a skill for Claude Code, Codex from BanibrataChatterjee/AwesomeSalesforceSkills. It costs 122 tokens per session (2,972 once invoked), scanned A, original, Apache-2.0.

A guide to making selected Salesforce Experience Cloud pages public and controlling what unauthenticated visitors can see. It explains guest users, page access, permissions, and record-sharing rules.

In plain words
What is it for?
Use it to publish public pages, configure the site's guest profile, control object and field visibility, and expose selected records through sharing rules.
Why use it?
It helps prevent private Salesforce data from appearing on public pages while still allowing intended guest access. It also explains how public submissions and guest record visibility are controlled.

Skill for Claude CodeCodex

Written for no agent in particular: nothing here depends on one.

Good fit Use it to publish public pages, configure the site's guest profile, control object and field visibility, and expose selected records through sharing rules.

Compare 6 skills from other repositories ↓
Install with agentmods
npx agentmods add skills/banibratachatterjee/awesomesalesforceskills/experience-cloud-guest-access
Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

Any agent
npx skills add BanibrataChatterjee/AwesomeSalesforceSkills --skill experience-cloud-guest-access
Clone the repo
git clone --depth 1 https://github.com/BanibrataChatterjee/AwesomeSalesforceSkills

Made for: Claude Code, Codex.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for experience-cloud-guest-access

README.md
[![agentmods](https://agentmods.dev/badge/skills/banibratachatterjee/awesomesalesforceskills/experience-cloud-guest-access/github.svg)](https://agentmods.dev/skills/banibratachatterjee/awesomesalesforceskills/experience-cloud-guest-access)
Your own site
<a href="https://agentmods.dev/skills/banibratachatterjee/awesomesalesforceskills/experience-cloud-guest-access"><img src="https://agentmods.dev/badge/skills/banibratachatterjee/awesomesalesforceskills/experience-cloud-guest-access/github.svg" alt="Measured on agentmods" height="20"></a>

Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.

agentmods 80×15 button for experience-cloud-guest-access

Your own site · 80×15
<a href="https://agentmods.dev/skills/banibratachatterjee/awesomesalesforceskills/experience-cloud-guest-access"><img src="https://agentmods.dev/badge/skills/banibratachatterjee/awesomesalesforceskills/experience-cloud-guest-access.svg" alt="Reviewed on agentmods" width="80" height="20"></a>
Per session 122 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 2,972 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. A grade says what 26 rules found in the file — not that it is safe.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5.1 $0.00122 $0.02972
Opus 5 $0.00061 $0.01486
Sonnet 5 $0.00024 $0.00594
Haiku 4.5 $0.00012 $0.00297

Measured 9d ago against content hash 5fab43ca1169, method: parsed. Prices are Anthropic first-party input rates as of 2026-09-12, from the pricing page.

Security

Grade A, and why

experience-cloud-guest-access scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 9d ago.

The scan reads SKILL.md. This mod also ships 1 executable file (scripts/check_experience_cloud_guest_access.py), listed below but not scanned — reading those needs a real analyzer, not pattern matching.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

skills/admin/experience-cloud-guest-access/SKILL.md · 198 lines

How it starts

The opening of the file, as written. The whole thing — 198 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Experience Cloud Guest Access

This skill activates when a practitioner needs to design, configure, or troubleshoot public-facing pages in an Experience Cloud site — pages reachable by unauthenticated visitors. It covers the one-guest-user-profile-per-site model, how to configure page access in Experience Builder, what object and field permissions the guest profile needs, and how explicit sharing rules govern which records appear on public pages.


Before Starting

Gather this context before working on anything in this domain:

  • Identify the site template: LWR (Lightning Web Runtime), Aura (Community), or Microsite. Page access configuration steps differ slightly across templates.
  • Confirm the org is on Spring '21 or later. The Secure Guest User Record Access toggle became mandatory in Spring '21 and changes how guest record visibility works — any site designed before this release may need sharing rule restructuring.
  • Know which pages must be public and which should require login. Page-level access is set in Experience Builder per page; this is the primary mechanism for controlling unauthenticated access.
  • Confirm whether any public pages require guests to submit records (e.g., contact forms, case deflection). Guest Create permissions on a profile are different from Read-only object access.

Core Concepts

One Guest User Profile Per Site

Each Experience Cloud site has exactly one guest user profile, generated automatically when the site is created. This profile controls all unauthenticated access for every public page on that site. It cannot be deleted or shared with another site — if you have three sites, you have three independent guest profiles.

The guest profile lives at Setup > Digital Experiences > All Sites > [Site] > Workspaces > Administration > Guest User Profile. Changes to the profile take effect for all public pages on that site immediately.

Page-Level Access in Experience Builder

Experience Builder controls whether an individual page is accessible to guests or requires login. The setting lives on each page under Page Properties > Page Access:

Read the full file on GitHub · 198 lines

Files

What ships with it

6 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 9d ago First seen · 198 lines · 122 tokens per session scan A 5fab43ca1169

Subscribe to this mod's changes

experience-cloud-guest-access is a skill published in the GitHub repository BanibrataChatterjee/AwesomeSalesforceSkills (3 stars, last pushed 4mo ago), licensed Apache-2.0. It adds 122 tokens to every session and 2,972 once invoked, about $0.0006 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-09-03.

Related

Other skills, from other repositories

antd

Use when the user's task involves Ant Design (antd) — writing antd components, debugging antd issues, querying antd APIs/props/tokens/demos, migrating between antd versions, or analyzing antd usage in a project. Triggers on antd-related code, imports from 'antd', or explicit antd questions.

ant-design/ant-design-pro · 69 tokens

v3-create-crud

A page generator for standard create, read, update, and delete screens, commonly called CRUD screens. It uses Element Plus, a Vue user-interface library, to build tables, searches, pagination, forms, and delete confirmations.

un-pany/v3-admin-vite · 108 tokens

v3-upsert-route

A route configuration helper for projects that keep their routes in `src/router/index.ts`. It creates or updates permanent and permission-controlled pages, including titles, icons, and child routes.

un-pany/v3-admin-vite · 88 tokens

v3-upsert-store

A workflow for creating or updating Pinia stores, which are shared state modules in Vue applications. It requires the store name, state fields, types, initial values, persistence choices, and actions.

un-pany/v3-admin-vite · 83 tokens

v3-use-composables

Documentation for reusable Vue functions in a project, covering device detection, asynchronous dropdown data, loading screens, pagination, routing, themes, page titles, and watermarks.

un-pany/v3-admin-vite · 137 tokens

pro-upgrade

An upgrade guide for projects built with Ant Design Pro, a React-based application template for business software. It compares the project with the latest official template and merges framework updates while preserving application code.

ant-design/ant-design-pro · 63 tokens