Agent skill

Platform Trust Archive Manage

by forcedotcom in forcedotcom/sf-skills

ALWAYS USE THIS SKILL for anything involving Salesforce Archive (also called Trusted Services Archive) — search, view, unarchive, analyze, mask, and erase (RTBF) archived records via the Archive…

Apache-2.0Auto-check passedSales & Support

Install Platform Trust Archive Manage

skills CLI
$ npx skills add forcedotcom/sf-skills --skill platform-trust-archive-manage -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install forcedotcom/sf-skills platform-trust-archive-manage --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/forcedotcom/sf-skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/platform-trust-archive-manage .claude/skills/platform-trust-archive-manage && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
platform-trust-archive-manage
GitHub stars
1.1k
Token cost
~3k tokens
SKILL.md length
1,287 words
Files
4 (incl. references)
Skills in repo
252
Repo updated
First seen
Licence
Apache-2.0

At a glance

ALWAYS USE THIS SKILL for anything involving Salesforce Archive (also called Trusted Services Archive) — search, view, unarchive, analyze, mask, and erase (RTBF) archived records via the Archive…

  • Works in 5 steps: Identify the operation and read the… → For job status / monitoring, read the… → Construct and send the call — every… → …
  • Anything involving Salesforce Archive (also called Trusted Services Archive) — search
  • SKILL.md covers Scope, Required Inputs, Permissions and Workflow, plus 5 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Platform Trust Archive Manage is an agent skill from forcedotcom/sf-skills. ALWAYS USE THIS SKILL for anything involving Salesforce Archive (also called Trusted Services Archive) — search, view, unarchive, analyze, mask, and erase (RTBF) archived records via the Archive Connect API, and reading archive job status from the ArchiveActivity object. TRIGGER when: user mentions Salesforce Archive, Trusted Services Archive, archive/unarchive records, ArchiveActivity, archive jobs, archive policy, archive analyzer, archived record search, archive storage, archive failure logs, right to be…

Its SKILL.md is about 3k tokens, which your agent loads only when the skill is triggered. The skill folder holds 5 other files, including reference files (for example `examples/monitor-failed-jobs.md`, `references/archive-activity-entity.md` and `references/connect-api-operations.md`).

It sits in Sales & Support, covering CRM management and Runbooks and postmortems. It works with Salesforce. The repository describes itself as: Salesforce's curated collection of agent skills for building applications. Optimized for Agentforce Vibes, compatible with all AI tools. The licence is Apache-2.0.

When your agent uses it

  • Anything involving Salesforce Archive (also called Trusted Services Archive) — search
  • Erase (RTBF) archived records via the Archive Connect API
  • Reading archive job status from the ArchiveActivity object
  • : user mentions Salesforce Archive

Example prompts

  • “find records that were archived”
  • “restore archived data”
  • “why did the archive job fail”
  • “/platform-trust-archive-manage”

Workflow steps

5 steps, taken from the first numbered list in SKILL.md.

  1. Identify the operation and read the contract — do not rely on general knowledge of the Archive API, which has non-obvious contracts. Load…
  2. For job status / monitoring, read the data model — when the task involves archive jobs, failures, progress, counts, or logs, load…
  3. Construct and send the call — every operation is a {method, path, body} REST call. Send it with whatever Connect/REST API tool your…
  4. Branch on the right signal — some operations return HTTP 201 with a body-level success flag (body.statusCode, body.isSuccess). Read…
  5. Verify after every write — re-read state to confirm the effect (see the Verify-After-Write table below). Async operations (analyzer, RTBF…

What it can do on your machine

Read from SKILL.md and the folder at commit 4bbae5c. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Platform Trust Archive Manage loads about 3k tokens when it runs, and up to ~7.6k if it reads all its reference files. Until then it costs about 260 tokens; SKILL.md has 1,287 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~260
When it runs · the whole SKILL.md, loaded when a task matches
~3k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~7.6k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from forcedotcom/sf-skills at commit 4bbae5c, republished under its Apache-2.0 licence (© forcedotcom). 1,287 words, ~3,030 tokens.

Download SKILL.mdSave it as .claude/skills/platform-trust-archive-manage/SKILL.md (or your agent's skills folder). This skill also uses 3 other files; get the full folder from GitHub.
name
platform-trust-archive-manage
description
ALWAYS USE THIS SKILL for anything involving Salesforce Archive (also called Trusted Services Archive) — search, view, unarchive, analyze, mask, and erase (RTBF) archived records via the Archive Connect API, and reading archive job status from the ArchiveActivity object. TRIGGER when: user mentions Salesforce Archive, Trusted Services Archive, archive/unarchive records, ArchiveActivity, archive jobs, archive policy, archive analyzer, archived record search, archive storage, archive failure logs, right to be forgotten / RTBF on archived data, or masking archived PII — including phrasings like 'find records that were archived', 'restore archived data', 'why did the archive job fail', 'download the archive failure log', or 'monitor my archive jobs', AND even when they ask you to explain, give guidance, or write a runbook/doc about these topics rather than run code. SKIP when: the user wants generic data-export/backup unrelated to the Archive add-on, or wants to build the archive policy UI metadata.
metadata.version
1.0
metadata.domains
Platform

Salesforce Archive

Operate Salesforce Archive (also called Trusted Services Archive) through its Connect API and the ArchiveActivity job-metadata object. This skill covers how to search and restore archived records, run the analyzer, handle RTBF erasure and PII masking, check storage, and — the part most often missed — how to read archive job status from ArchiveActivity and use a job's Id + Type to download its logs.

Scope

  • In scope: Calling the Archive Connect API operations under /platform/data-resilience/archive/; querying the ArchiveActivity object via SOQL/Connect; correlating a job's ArchiveActivity record with its log-download endpoints; the verify-after-write pattern for each async operation.
  • Out of scope: Defining archive policies / ArchivePolicyDefinition metadata; building UI; generating Flows over archive data (ArchiveActivity is not Flow-queryable — see Gotchas); generic backup/export tooling unrelated to the add-on.

Required Inputs

Gather or infer before acting:

  • Operation intent: search (this is also how you view archived records), unarchive, analyze, mask, RTBF, storage check, or job-status/log lookup.
  • Target sObject (sobjectName): required for search and unarchive.
  • Filters: search and unarchive require sobjectName + at least one filter.
  • For log downloads: the requestId (an ArchiveActivity Id, 8qv… prefix) of a completed, log-producing job, and reportType = that activity's Type.

Preconditions (confirm or surface to the user if a call returns a not-permitted error):

  • The org must have Salesforce Archive enabled. Every operation is gated on this first.
  • Each operation requires a specific user permission on top of the org gate — see the Permissions table below. There is no single "archive admin" role; access is per-capability.

Permissions

Every operation first requires the org to have Salesforce Archive enabled. On top of that org gate, each capability is gated by a distinct user permission. A call the user isn't permitted for fails with a "not permitted" error — match the error to the missing permission below.

OperationUser permission required
search-archived-records, get-search-archived-records-next-pageViewSearchPage (Archive Search) — not ViewArchivedRecords
search-archived-records-with-sharing-rulesViewArchivedRecords
unarchive-recordsUnarchiveSdk
forget-archived-records (RTBF) + get-rtbf-statusRtbf
mask-archived-records + get-masking-statusRtbf (masking shares the same Rtbf permission — not a separate entitlement)
run-analyzer, get-analyzer-report, get-archive-storage-usedArchiveAnalyzer
get-execution-details-stream-url, get-failed-records-stream-urlViewActivitiesPage (Archive Activities)

Workflow

All steps are sequential within a task. Read the referenced file the first time you touch that area.

  1. Identify the operation and read the contract — do not rely on general knowledge of the Archive API, which has non-obvious contracts. Load references/connect-api-operations.md for the exact request/response shape, required inputs, and per-operation gotchas of every Archive Connect API operation. Do this before constructing any call (e.g. dateRanges plural vs singular, isSuccess flag vs HTTP status, url: null meaning no log).

  2. For job status / monitoring, read the data model — when the task involves archive jobs, failures, progress, counts, or logs, load references/archive-activity-entity.md for the ArchiveActivity field reference and how it links to the Connect API. Query ArchiveActivity via SOQL or Connect — not Flow. For a worked end-to-end example (find failed/in-progress jobs, then pull their execution-detail and failed-records logs), load examples/monitor-failed-jobs.md.

  3. Construct and send the call — every operation is a {method, path, body} REST call. Send it with whatever Connect/REST API tool your environment provides (an MCP server that invokes Connect/REST APIs, the sf CLI, or any REST client). Two path rules are critical (full per-operation contracts are in references/connect-api-operations.md):

    • The operation names in this skill are NOT URL paths. search-archived-records, unarchive-records, etc. are labels; never put them in the path. Use the short literal paths below (each relative to base /platform/data-resilience/archive). Sending the operation name as a path segment (e.g. /…/archive/search-archived-records) returns 404.
    • The path stops at /platform/data-resilience/archive/… — there is NO /connect segment, even though this is a Connect API. A 404 / NOT_FOUND here means the path is wrong, NOT that Archive is disabled — fix the path before concluding the add-on is missing.
    OperationMethod + PathNotes
    search-archived-recordsPOST /searchrequires sobjectName + ≥1 filter
    search next pageGET /search/next/{scrollId}stop when scroll_id == "-1"
    search with sharing rulesPOST /search/with-sharing-rulesuses filtersJson object map
    unarchive-recordsPOST /unarchivesobjectName + filters
    run-analyzer / reportPOST /analyzer/run · GET /analyzer/report
    forget / RTBF + statusPOST /rtbf · GET /rtbf/{requestId}
    mask + statusPOST /mask · GET /mask/{requestId}
    storage usedGET /storage/archive-used
    execution-detail / failed-records logGET /log/execution-details-stream-url · GET /log/failed-records-stream-urlquery params requestId, reportType

    With the sf CLI, prefix the path with /services/data/v67.0; some MCP/REST tools take the bare path and add the version themselves (tool-dependent — see the reference). Then follow the contract: for searches, supply sobjectName + ≥1 filter; for date filtering use the plural dateRanges array of {field, from, to} with full ISO-8601 datetimes.

  4. Branch on the right signal — some operations return HTTP 201 with a body-level success flag (body.statusCode, body.isSuccess). Read references/connect-api-operations.md for which signal to trust per operation; never assume the HTTP status alone means success.

  5. Verify after every write — re-read state to confirm the effect (see the Verify-After-Write table below). Async operations (analyzer, RTBF, masking) return a request id you must poll.


Show full SKILL.md (495 more words)Show less

Verify-After-Write

After this writeConfirm by
run-analyzerPoll get-analyzer-report until the report is populated
unarchive-recordsRe-run search-archived-records — confirm records left the archive
forget-archived-records (RTBF)Poll get-rtbf-status with the returned request_id
mask-archived-recordsPoll get-masking-status with the returned request_id

Rules / Constraints

ConstraintRationale
Search & unarchive require sobjectName + at least one filterAn unfiltered request is rejected with "Search must be based on at least 1 field" — a full-object operation is never allowed.
Date filters must be full ISO-8601 datetimes (2020-01-01T00:00:00Z)A date-only value (2020-01-01) returns 400 JSON_PARSER_ERROR because the field is typed xsd:dateTime.
Search uses dateRanges (plural array); unarchive uses dateRange (singular)They are genuinely different fields on the two endpoints; using the wrong shape silently drops the filter or 400s.
Stop pagination when scroll_id == "-1"Calling get-search-archived-records-next-page with "-1" returns 500.
Log downloads need a real ArchiveActivity Id as requestId + that activity's Type as reportTypeThe backend resolves the log by the activity record; a mismatched reportType returns no log.
Excluded objects are not retrievableFeed, History, Relation, Share are not searchable; Files/Attachments are not retrievable via this API — do not promise them.
Query ArchiveActivity via SOQL/Connect, never FlowArchiveActivity has isProcessEnabled=false, so a Flow "Get Records" element on it fails with "You can't get ArchiveActivity records in a flow."

Gotchas

IssueResolution
Treating HTTP 201 as successSeveral operations return 201 with a body-level outcome. Branch on body.statusCode (search) or body.isSuccess (with-sharing-rules), not the HTTP code.
run-analyzer.isRunning used as a signalIt is always null; the endpoint only populates message. Poll get-analyzer-report to confirm completion instead.
search-archived-records-with-sharing-rules filters as an arrayfiltersJson must be a JSON-encoded object map {"Field":"Value"}, not an array of {field,value}; the array form returns isSuccess:false "No valid filters provided".
Log url treated as present because status is 201get-*-stream-url returns {url}; url: null means no log was resolved. Always check url != null.
Misreading get-archive-storage-usedusedStorage[]/availableStorage[] are parallel positional arrays: index 0=org DATA, 1=org FILE, 2=archive RECORDS, 3=archive FILE. availableStorage[2]/[3] are always 0 (archive tier is unmetered) — that means "not tracked", not "full".
Expecting ArchiveActivity in a FlowIt is not Flow-enabled (isProcessEnabled=false). Use SOQL/Connect/Reports.
Hitting unarchive capsUnarchive processes ≤1000 matched records per request and ≤50 requests/hour/org, and restores the whole archived hierarchy of each match.
RTBF/masking capscriteria ≤10 entries (one per object); ≤10,000 root records/day (shared between RTBF and masking); masking is irreversible. Both RTBF and masking are gated by the same Rtbf user permission.

Output Expectations

This is a knowledge/API skill — it produces API calls and their interpreted results, plus SOQL against ArchiveActivity. It does not generate deployable metadata. Deliverables per task: the correct operation invocation(s), the right success-signal branching, and a verify-after-write confirmation.


Reference File Index

FileWhen to read
references/connect-api-operations.mdBefore constructing any Archive Connect API call — full per-operation contracts, success signals, and limits
references/archive-activity-entity.mdFor any job-status / failure / progress / log task — ArchiveActivity field reference and its link to the log-download endpoints
examples/monitor-failed-jobs.mdTo follow an end-to-end monitoring flow: find failed/in-progress jobs, then download their logs

© forcedotcom, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 3 other files (references) in skills/platform-trust-archive-manage of forcedotcom/sf-skills.

  • SKILL.md
  • examples/monitor-failed-jobs.md
  • references/archive-activity-entity.md
  • references/connect-api-operations.md

Open the folder on GitHubat commit 4bbae5c

Compare with similar skills

Platform Trust Archive Manage next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Platform Trust Archive Manage compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Platform Trust Archive Manage this skillforcedotcom/sf-skills1.1k—~3kAutomated safety check: PassApache-2.0
Salesforce Incident Runbookjeremylongshore/tons-of-skills-marketplace2.8k—~1.1kAutomated safety check: PassMIT
Sf Datacloud ActJaganpro/sf-skills424—~1.3kAutomated safety check: PassMIT
Sf Datacloud ConnectJaganpro/sf-skills424—~1.9kAutomated safety check: PassMIT
Sf Datacloud HarmonizeJaganpro/sf-skills424—~1.2kAutomated safety check: PassMIT
Salesforce Observabilityjeremylongshore/tons-of-skills-marketplace2.8k—~1.1kAutomated safety check: PassMIT

Similar skills

  • Salesforce Incident Runbook

    jeremylongshore/tons-of-skills-marketplace

    Run evidence-led Salesforce integration incident response from detection through containment, recovery, reconciliation, and prevention.

    2.8k GitHub stars~1.1k tokensUpdated yesterday
    Sales & SupportAuto-check passed
  • Sf Datacloud Act

    Jaganpro/sf-skills

    Salesforce Data Cloud Act phase. An agent skill from Jaganpro/sf-skills.

    424 GitHub stars~1.3k tokensUpdated 5 mo ago
    Sales & SupportAuto-check passed
  • Sf Datacloud Connect

    Jaganpro/sf-skills

    Salesforce Data Cloud Connect phase. An agent skill from Jaganpro/sf-skills.

    424 GitHub stars~1.9k tokensUpdated 5 mo ago
    Sales & SupportAuto-check passed
  • Sf Datacloud Harmonize

    Jaganpro/sf-skills

    Salesforce Data Cloud Harmonize phase. An agent skill from Jaganpro/sf-skills.

    424 GitHub stars~1.2k tokensUpdated 5 mo ago
    Sales & SupportAuto-check passed
  • Salesforce Observability

    jeremylongshore/tons-of-skills-marketplace

    Build Salesforce integration observability across application traces, platform status, limits, async jobs, events, logs, and business reconciliation.

    2.8k GitHub stars~1.1k tokensUpdated yesterday
    Sales & SupportAuto-check passed
  • Sf Debug

    Jaganpro/sf-skills

    Salesforce debug log analysis and troubleshooting with 100-point scoring.

    424 GitHub stars~1.3k tokensUpdated 5 mo ago
    Sales & SupportAuto-check passed

More from forcedotcom/sf-skills

All 252 skills in this repo
  • Agentforce Architecture Analyze

    forcedotcom/sf-skills

    Declared architecture snapshot for one Agentforce agent: planner, topics, actions, flows, Apex, prompt templates, and NGA plugins.

    1.1k GitHub stars~4.5k tokensUpdated yesterday
    Auto-check passed
  • Agentforce D360 Analyze

    forcedotcom/sf-skills

    Data Cloud 360° view of a single Agentforce session. An agent skill from forcedotcom/sf-skills.

    1.1k GitHub stars~3.4k tokensUpdated yesterday
    Auto-check passed
  • Apply a Salesforce sandbox post-copy automation JSON config against a target org.

    1.1k GitHub stars~5.3k tokensUpdated yesterday
    Auto-check: notes
  • Apply a Salesforce sandbox post-copy automation JSON config against a target org.

    1.1k GitHub stars~5.4k tokensUpdated yesterday
    Auto-check: notes
  • Design Systems Slds Apply

    forcedotcom/sf-skills

    Apply SLDS-compliant UI using the correct blueprints, styling hooks, utility classes, and icons.

    1.1k GitHub stars~3.7k tokensUpdated yesterday
    Auto-check passed
  • Experience Lwc Generate

    forcedotcom/sf-skills

    Lightning Web Components with PICKLES methodology and 165-point scoring.

    1.1k GitHub stars~2.4k tokensUpdated yesterday
    Auto-check passed

Works with

Questions about Platform Trust Archive Manage

What does Platform Trust Archive Manage do?

ALWAYS USE THIS SKILL for anything involving Salesforce Archive (also called Trusted Services Archive) — search, view, unarchive, analyze, mask, and erase (RTBF) archived records via the Archive…. Platform Trust Archive Manage is an agent skill from forcedotcom/sf-skills. ALWAYS USE THIS SKILL for anything involving Salesforce Archive (also called Trusted Services Archive) — search, view, unarchive, analyze, mask, and erase (RTBF) archived records via the Archive Connect API, and reading archive job status from the ArchiveActivity object.

When should I use Platform Trust Archive Manage?

Platform Trust Archive Manage fits situations like: anything involving Salesforce Archive (also called Trusted Services Archive) — search; erase (RTBF) archived records via the Archive Connect API; reading archive job status from the ArchiveActivity object; : user mentions Salesforce Archive.

How do I install Platform Trust Archive Manage in Claude Code?

Run `npx skills add forcedotcom/sf-skills --skill platform-trust-archive-manage -a claude-code`. Or copy the skill folder (skills/platform-trust-archive-manage in forcedotcom/sf-skills) into .claude/skills/platform-trust-archive-manage in your project. Claude Code loads it when a task matches its description.

How do I install Platform Trust Archive Manage in Codex?

Run `npx skills add forcedotcom/sf-skills --skill platform-trust-archive-manage -a codex`. Or copy the skill folder (skills/platform-trust-archive-manage in forcedotcom/sf-skills) into .agents/skills/platform-trust-archive-manage in your project. Codex loads it when a task matches its description.

Can I use Platform Trust Archive Manage in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add forcedotcom/sf-skills --skill platform-trust-archive-manage -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/platform-trust-archive-manage, .gemini/skills/platform-trust-archive-manage, .github/skills/platform-trust-archive-manage and .opencode/skills/platform-trust-archive-manage in your project.

What does Platform Trust Archive Manage need to run?

SKILL.md names no scripts, command-line tools or credentials: Platform Trust Archive Manage is instructions for the agent only.

Does Platform Trust Archive Manage access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Platform Trust Archive Manage safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Platform Trust Archive Manage use?

Platform Trust Archive Manage is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Platform Trust Archive Manage use?

About 3k tokens (SKILL.md is roughly 12k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 4.6k tokens, read only when the agent opens those files.

What are the alternatives to Platform Trust Archive Manage?

Skills that share tags, products or a category with Platform Trust Archive Manage: Salesforce Incident Runbook (jeremylongshore/tons-of-skills-marketplace, 2.8k stars), Sf Datacloud Act (Jaganpro/sf-skills, 424 stars), Sf Datacloud Connect (Jaganpro/sf-skills, 424 stars) and Sf Datacloud Harmonize (Jaganpro/sf-skills, 424 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Platform Trust Archive Manage?

forcedotcom (a GitHub organization) maintains it in forcedotcom/sf-skills, which has 1,067 GitHub stars. The repository holds 252 skills in this directory. The repository was last updated on October 9, 2026.

Source: forcedotcom/sf-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.