Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add e-t-y-b/etyb-skills --skill salesforcegit clone --depth 1 https://github.com/e-t-y-b/etyb-skillsWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/e-t-y-b/etyb-skills/salesforce)<a href="https://agentmods.dev/skills/e-t-y-b/etyb-skills/salesforce"><img src="https://agentmods.dev/badge/skills/e-t-y-b/etyb-skills/salesforce/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/e-t-y-b/etyb-skills/salesforce"><img src="https://agentmods.dev/badge/skills/e-t-y-b/etyb-skills/salesforce.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00235 | $0.02566 |
| Opus 5 | $0.00118 | $0.01283 |
| Sonnet 5 | $0.00047 | $0.00513 |
| Haiku 4.5 | $0.00023 | $0.00257 |
Grade A, and why
stack-salesforce scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 11d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 117 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Salesforce Stack — Team Briefing
This is a knowledge overlay, not a new specialist. The existing ETYB team does the work — backend-architect writes the backend code, devops-engineer wires the deploys, security-engineer enforces the boundary. This pack tells each role where the current Salesforce knowledge lives.
Where the full briefing lives
The full Stack briefing lives in this same folder. Per-product and per-role pages are siblings of this SKILL.md. Every page carries last_verified_on stamps and authoritative-source URLs in its frontmatter; see skills/etyb/core/knowledge-currency.md for the drift-check protocol that uses them.
- Stack briefing:
stacks/salesforce/index.md - Per-product pages:
stacks/salesforce/<product>.md— one per entry inproducts_coveredabove - Per-role views:
stacks/salesforce/<role>.md— one per role inapplies_to_rolesabove
When ETYB is installed locally these are read directly from disk. For third-party agents without the install, the same content is reachable as raw markdown at https://raw.githubusercontent.com/e-t-y-b/etyb-skills/main/stacks/salesforce/<page>.md.
When delegate_to_skills (frontmatter above) lists a first-party vendor MCP/skill that's installed in the user's environment, ETYB defers to it first. The in-repo Stack content is the curated fallback.
What changed in 2025-2026 that older training data misses
Critical context — an LLM with a 2024 cutoff will get these wrong:
- Einstein Copilot is now Agentforce (renamed Jan 2025). Same product. Old names are wrong.
- Data Cloud is now Data 360 (renamed Dreamforce '25). CRM Analytics is now Tableau Cloud-integrated.
- Headless 360 (TDX 2026) — the whole platform is exposed as APIs/MCP/CLI. Agent clients (Claude Code, Cursor, Codex) can drive Salesforce directly.
- Salesforce Hosted MCP Servers went GA in April 2026 (Enterprise+). 60+ MCP tools shipped.
- Agentforce Vibes 2.0 (TDX 2026) — Salesforce's in-IDE coding agent. Default model is Claude Sonnet 4.5.
- Salesforce Functions was retired (Jan 31, 2025). Heroku ended new enterprise sales (Feb 2026). Don't propose either for new architecture.
sfCLI is current;sfdxis a deprecated alias.- External Client Apps (ECA) replace Connected Apps — mandatory migration deadline May 11, 2026.
- MFA mandate for all UI logins phases in June–August 2026. Phishing-resistant MFA required for admins.
- Apex Cursors GA in Spring '26 — iterate 50M-row result sets across transactions.
- Flow Orchestration is free (Feb 2026) — no longer a paid add-on.
- Lightning Out 2.0 GA (Winter '26). LWC TypeScript types +
lightning/graphqlmodule (Spring '26).
What ships with it
30 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
- agentforce.md 10 KB
- ai-ml-engineer.md 11 KB
- apex.md 12 KB
- appexchange-marketplace.md 7.7 KB
- backend-architect.md 11 KB
- data-360.md 9.7 KB
- database-architect.md 12 KB
- devops-engineer.md 13 KB
- einstein-trust-layer.md 7.3 KB
- evals/evals-iteration-2.json 21 KB
- evals/evals.json 15 KB
- external-client-apps.md 7.8 KB
- financial-services-cloud.md 12 KB
- fintech-architect.md 13 KB
- flow.md 5.3 KB
- frontend-architect.md 7.3 KB
- health-cloud.md 10 KB
- healthcare-architect.md 11 KB
- heroku.md 3.6 KB
- hyperforce.md 4.0 KB
- index.md 9.3 KB
- lwc.md 10 KB
- mfa-enforcement.md 5.0 KB
- qa-engineer.md 11 KB
- saas-architect.md 16 KB
- salesforce-functions.md 2.3 KB
- salesforce-hosted-mcp.md 6.3 KB
- security-engineer.md 14 KB
- sf-cli.md 7.6 KB
- system-architect.md 14 KB
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 11d ago First seen · 117 lines · 235 tokens per session scan A 3ca3d551dab6
stack-salesforce is a skill published in the GitHub repository e-t-y-b/etyb-skills (10 stars, last pushed 2mo ago), licensed MIT. It adds 235 tokens to every session and 2,566 once invoked, about $0.0012 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.
Other skills, from other repositories
architecture-patterns
Architecture validation and patterns for clean architecture, backend structure enforcement, project structure validation, test standards, and context-aware sizing. Use when designing system boundaries, enforcing layered architecture, validating project structure, defining test standards, or choosing the right…
architecture-decision-record
ADR templates in the Nygard format with context, decision, consequences, and alternatives. Use when writing ADRs, recording an architectural decision, or evaluating options.
frontmcp-guides
Tutorials, end-to-end walkthroughs, and complete reference projects for FrontMCP. Use when you want a getting-started guide, a full worked example, or to learn best practices by following a step-by-step build rather than a single API reference. Includes a beginner weather-API server (tool plus static resource, Zod…
architecture-paradigm-microservices
Applies microservices for independent deployment and per-service scaling. Use when teams need autonomous release cycles with distinct capability scaling needs.
architecture-paradigm-layered
Applies layered n-tier architecture with enforced boundaries. Use when designing moderate systems needing clear presentation, domain, and persistence layers.
architecture-paradigm-event-driven
Applies event-driven async messaging to decouple producers and consumers. Use when designing real-time or multi-subscriber systems needing loose coupling.