Following the announcement by Salesforce that the security policy around Connected Apps
is going to change, Gearset is recommending that current users install the Gearset Connected Apps in your Salesforce orgs.
Why are we asking you to do this?
Salesforce made an announcement on 18th August 2025 that they are changing the restrictions on Connected Apps.
Current connections to Gearset should be unaffected by the change, but any future connections either by new users or to new orgs & sandboxes will require the Gearset Connected App(s) to be installed as well as being connected.
There is a straightforward step to install the Gearset app and we are asking users to do this before Salesforce start to roll out the changes to these restrictions.
The Connected App(s) cannot be installed or deployed using the Metadata API, therefore this is a manual process as outlined below.
What to do
For any org that you use to log in to Gearset or use within Gearset, get a Salesforce System Administrator
on the org to do the following easy steps, which should take less than a minute:
Go to the
Connected Apps OAuth Usage
section withinSetup
in yourSalesforce org
.Find the Gearset apps in the list:
Gearset
,Gearset Deploy
(& if you use Code Reviews:Clayton
)Click on
Install
for each of these apps.
βNote: IfUninstall
appears rather thanInstall
, this means the app has already been installed and no further action is required.
βClick on Install for each of these apps
βOnce installed, check the settings for the app and make sure your policy has a setting for
Permitted users
ofAll users may self-authorise
.
β
Once you have installed the apps, they will now appear in the Manage Connected Apps
section like so:
They will also appear in the Connected Apps OAuth Usage
section showing they have been installed:
Here is a short video guide on how to do so.
What are the apps Gearset uses?
Gearset uses three connected apps:
Gearset
- to log in to Gearsetthis will appear if you or any users log in to Gearset using the
Salesforce
option (typically this would just be for your production org)
Gearset Deploy
- to connect an orgthis will appear for any orgs you connect to Gearset (for metadata deployments, backup, etc)
Clayton
- for connecting to Code Reviews in Gearsetfor any orgs you have connected to the Gearset Code Reviews tool
More details in this document.
Troubleshooting
If you are struggling to either log in to Gearset, or connect to your org, please check the settings for the Gearset
& Gearset Deploy
apps.
Go to
Connected Apps OAuth Usage
section in Salesforce SetupSelect
Manage App Policies
for the appCheck to see the policy setting
Permitted users
.
If you have the default setting of
All users may self-authorize
, Gearset connections will behave in the same way as previously, where users will be able to connect Gearset apps.If you have the setting
Admin approved users are pre-authorized
, the connection behavior will be different from when the app was not installed. Unless you have explicitly given permission to each of your team, they will no longer be able to access Gearset or connect to the org. Details on how to give this permission is in the Salesforce documentation.
Please reach out via the in-app chat if you have any further questions.