Repository navigation
salesforce: recommend Headless 360 and label admin-set values - #520
Closed
minupalaniappan wants to merge 1 commit into
Closed
minupalaniappan wants to merge 1 commit into
minupalaniappan wants to merge 1 commit into
Conversation
Bump to 1.1.0. Recommend the Headless 360 (Beta) server URLs, label the server URL and Consumer Key as admin-set team values, and document admin setup, migration, and dispatch approvals. mcp.json, variable names, and the OAuth flow are unchanged so existing installs keep working.
Collaborator
Author
|
Superseded by #521, which adds Headless 360 as a separate plugin so the existing salesforce plugin stays unchanged. |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
What this PR delivers
Points the Salesforce plugin at Salesforce's new Headless 360 (Beta) hosted MCP server and makes it clear that a Salesforce admin sets the server URL and Consumer Key once for the team. Existing installs don't change:
mcp.json, the server key, the variable names, the scopes, and the OAuth flow are all untouched.Changes
plugin.json1.1.0:SALESFORCE_MCP_URLdescription recommends the Headless 360 production and sandbox URLs and notes that SObject and custom URLs keep working.dispatch.Why existing users are safe
sobject-readson purpose, and orgs that haven't activated the Beta.sobject-all(authorization serverlogin.salesforce.com, scopesmcp_apiandrefresh_token), so the same External Client App works.@salesforce/mcpthemselves inmcp.jsonrun a local server this plugin doesn't ship.Out of scope
CLIENT_SECRETvariable. It is deliberately not added. Unset placeholders stay literal (${CLIENT_SECRET}). Any definedclient_secretalso makes the MCP SDK pickclient_secret_basic, because Salesforce doesn't advertisenone. As a result, every existing install without a secret would send a bogus secret and fail at the token step. Supporting an optional secret first needs Cursor to drop blank or unresolved secrets.QA plan
Setup: a Salesforce Developer Edition org with an External Client App configured per the README, and Headless 360 activated.
dispatch_readonly, for example "show my open opportunities".dispatchwrite, for example "log a call on account X", which should ask for approval before it runs.sobject-allinstall keeps its URL and sign-in after 1.1.0 is indexed, with tools unchanged.node scripts/validate-plugins.mjspasses.Note
Low Risk
Docs and plugin manifest text only; existing OAuth and MCP configuration behavior is unchanged.
Overview
Bumps the Salesforce Cursor plugin to 1.1.0 with documentation and metadata only—no changes to
mcp.json, variable names, OAuth scopes, or the MCP wiring.plugin.jsonnow points the homepage andSALESFORCE_MCP_URLguidance at Headless 360 (Beta) (production/sandbox URLs, activation note) while stating that existing SObject and custom URLs still work. Variable titles/descriptions clarify that a Salesforce admin sets the server URL and Consumer Key once for the team; members only sign in. Adds theheadless-360keyword.README expands install/admin flow: “Who does what” table, Headless 360 as the recommended server (tools, API v67+, migration from SObject URLs), team marketplace configuration,
dispatchapproval guidance, and extra troubleshooting/docs links.CHANGELOG records 1.1.0.
Reviewed by Cursor Bugbot for commit 284d73f. Bugbot is set up for automated code reviews on this repo. Configure here.