Skip to content

Warden documentation

Warden is a Salesforce CLI plugin for user lifecycle administration. It helps teams audit access, compare users with their intended state, provision users from reusable personas, and safely manage freeze, restore, and snapshot workflows.

Start with Getting started for installation and a first provisioning run. Use the guides below when you need the detailed behavior of an individual workflow or its machine-readable output.

  • Getting started — install Warden and run your first audit or provisioning plan.
  • Command details — provisioning merge rules, field precedence, assignment modes, and dry-run behavior.
  • Access audits — forward and reverse access scopes, attribution, and Permission Set Group muting.
  • User matching — supported match fields, fuzzy Username resolution, and lifecycle targeting.
  • Lifecycle output and snapshots — resolved identity, assignment labels, snapshots, and action reporting.
  • Output contract — human, CSV, and JSON formats, destinations, and exit codes.