Skip to main content
BotShield is the personhood layer for Salesforce: it adds one thing your existing login can’t — proof of a real person, on demand — on top of whatever identity you already run. It ships as a managed package you install from AgentExchange and connect to your BotShield Console account with an API key. It answers two questions, each with its own rail:

Human Verification

“Is a human here?” — gate a checkout, a signup form, or any high-intent action with an anonymous human check at the edge. The verification is pushed into your org as a BotShield_Gate__c record you can act on.

Agents Ask

“Did a real human confirm this action?” — an Agentforce agent or a Flow pauses a sensitive step and asks a linked person to approve it with a passkey on their own phone. A signed Proof of Resolution lands back in the org as BotShield_Resolution__c.

Who acts picks the rail

  • A guest or customer taking an action in your storefront or community → Human Verification at the gate.
  • An agent or automation taking a sensitive action on someone’s behalf → Agents Ask for a per-action human confirmation.
Both rails are PII-free: a person is known to your org only by a pairwise opaque ID they linked themselves. No emails, no OTPs, no names.

What’s in the package

Prerequisites

1

A BotShield Console account and an API key

Sign up at console.botshield.ai and create an API key under Settings → API Keys. You’ll paste it into a Named Credential during setup.
2

A Salesforce org

Any edition that supports managed packages. The Agents Ask rail additionally requires Agentforce enabled for the agent-facing pieces.

Install and connect

Install the package, assign permission sets, and connect your Console keys.